summaryrefslogtreecommitdiff
path: root/tests
diff options
context:
space:
mode:
authorIvan Kanakarakis <ivan.kanak@gmail.com>2019-11-27 18:27:56 +0200
committerIvan Kanakarakis <ivan.kanak@gmail.com>2019-11-27 18:48:31 +0200
commit44e145a4614fccd7fb00abb0f4cf28d2a57c4f2f (patch)
treec5abc3b12a3050d35eefe8ce1b2182b4de180d98 /tests
parent2dbe481104f9acc6d408bc14c054c4f46b087a97 (diff)
downloadpysaml2-44e145a4614fccd7fb00abb0f4cf28d2a57c4f2f.tar.gz
Run tests without network connection
Signed-off-by: Ivan Kanakarakis <ivan.kanak@gmail.com>
Diffstat (limited to 'tests')
-rw-r--r--tests/remote_data/InCommon-metadata-export.xml133392
-rw-r--r--tests/remote_data/metadata.aaitest.xml28743
-rw-r--r--tests/test_30_mdstore.py25
-rw-r--r--tests/test_30_mdstore_old.py15
4 files changed, 162172 insertions, 3 deletions
diff --git a/tests/remote_data/InCommon-metadata-export.xml b/tests/remote_data/InCommon-metadata-export.xml
new file mode 100644
index 00000000..d11a3e26
--- /dev/null
+++ b/tests/remote_data/InCommon-metadata-export.xml
@@ -0,0 +1,133392 @@
+<?xml version="1.0" encoding="UTF-8" standalone="no"?><EntitiesDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" ID="_20191126T193752" validUntil="2019-12-10T19:37:52Z"><ds:Signature>
+<ds:SignedInfo>
+<ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
+<ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
+<ds:Reference URI="#_20191126T193752">
+<ds:Transforms>
+<ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
+<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
+</ds:Transforms>
+<ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
+<ds:DigestValue>UVq0Y+NsVJ3CawPNGUZ9P7jlQbf44N3/ioWj88rdtnc=</ds:DigestValue>
+</ds:Reference>
+</ds:SignedInfo>
+<ds:SignatureValue>
+rbpmKf1UY3axO4j+2IDIaCoCqOcmGF33ehOc6iGUkDuc2SRy5/A80E5+Qri5IAfTyHC+vRQuKk/7
+ctEyODid2P14iKs2IIDgORD7VuqwVizI+aKxVVjMHNVyacUooOe+m+1PJ45N3LTw5EYucQnWtd+/
+afLBHfglugNexxpKfn8a2nKWQscJV+LobjVzDNMW8/HXUCYSsqstQIo3h5O7PDBTRjEBAVPAZGwO
+bWwI/8nwvnqVtzzbcnQ231ABpq1phaJ9Kll4E8yvJP3YJUBPitwZfNFaTksN837vPU8yOS173TaW
+rF5ZIBXrt2qUXt1ef2eEzqol+51et04Liejrwg==
+</ds:SignatureValue>
+<ds:KeyInfo>
+<ds:KeyValue>
+<ds:RSAKeyValue>
+<ds:Modulus>
+0Chdkrn+dG5Zj5L3UIw+xeWgNzm8ajw7/FyqRQ1SjD4Lfg2WCdlfjOrYGNnVZMCTfItoXTSpg4rX
+xHQsykeNiYRu2+02uMS+1pnBqWjzdPJE0od+q8EbdvE6ShimjyNn0yQfGyQKCNdYuc+75MIHsaIO
+AEtDZUST9Sd4oeU1zRjV2sGvUd+JFHveUAhRc0b+JEZfIEuq/LIU9qxm/+gFaawlmojZPyOWZ1Jl
+swbrrJYYyn10qgnJvjh9gZWXKjmPxqvHKJcATPhAh2gWGabWTXBJCckMe1hrHCl/vbDLCmz0/oYu
+oaSDzP6zE9YSA/xCplaHA0moC1Vs2H5MOQGlew==
+</ds:Modulus>
+<ds:Exponent>AQAB</ds:Exponent>
+</ds:RSAKeyValue>
+</ds:KeyValue>
+<ds:X509Data>
+<ds:X509Certificate>
+MIIDgTCCAmmgAwIBAgIJAJRJzvdpkmNaMA0GCSqGSIb3DQEBCwUAMFcxCzAJBgNVBAYTAlVTMRUw
+EwYDVQQKDAxJbkNvbW1vbiBMTEMxMTAvBgNVBAMMKEluQ29tbW9uIEZlZGVyYXRpb24gTWV0YWRh
+dGEgU2lnbmluZyBLZXkwHhcNMTMxMjE2MTkzNDU1WhcNMzcxMjE4MTkzNDU1WjBXMQswCQYDVQQG
+EwJVUzEVMBMGA1UECgwMSW5Db21tb24gTExDMTEwLwYDVQQDDChJbkNvbW1vbiBGZWRlcmF0aW9u
+IE1ldGFkYXRhIFNpZ25pbmcgS2V5MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0Chd
+krn+dG5Zj5L3UIw+xeWgNzm8ajw7/FyqRQ1SjD4Lfg2WCdlfjOrYGNnVZMCTfItoXTSpg4rXxHQs
+ykeNiYRu2+02uMS+1pnBqWjzdPJE0od+q8EbdvE6ShimjyNn0yQfGyQKCNdYuc+75MIHsaIOAEtD
+ZUST9Sd4oeU1zRjV2sGvUd+JFHveUAhRc0b+JEZfIEuq/LIU9qxm/+gFaawlmojZPyOWZ1Jlswbr
+rJYYyn10qgnJvjh9gZWXKjmPxqvHKJcATPhAh2gWGabWTXBJCckMe1hrHCl/vbDLCmz0/oYuoaSD
+zP6zE9YSA/xCplaHA0moC1Vs2H5MOQGlewIDAQABo1AwTjAdBgNVHQ4EFgQU5ij9YLU5zQ6K75kP
+gVpyQ2N/lPswHwYDVR0jBBgwFoAU5ij9YLU5zQ6K75kPgVpyQ2N/lPswDAYDVR0TBAUwAwEB/zAN
+BgkqhkiG9w0BAQsFAAOCAQEAaQkEx9xvaLUt0PNLvHMtxXQPedCPw5xQBd2VWOsWPYspRAOSNbU1
+VloY+xUkUKorYTogKUY1q+uh2gDIEazW0uZZaQvWPp8xdxWqDh96n5US06lszEc+Lj3dqdxWkXRR
+qEbjhBFh/utXaeyeSOtaX65GwD5svDHnJBclAGkzeRIXqxmYG+I2zMm/JYGzEnbwToyC7yF6Q8cQ
+xOr37hEpqz+WN/x3qM2qyBLECQFjmlJrvRLkSL15PCZiu+xFNFd/zx6btDun5DBlfDS9DG+SHCNH
+6Nq+NfP+ZQ8CGzP/3TaZPzMlKPDCjp0XOQfyQqFIXdwjPFTWjEusDBlm4qJAlQ==
+</ds:X509Certificate>
+</ds:X509Data>
+</ds:KeyInfo>
+</ds:Signature>
+<md:Extensions xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+<mdrpi:PublicationInfo creationInstant="2019-11-26T19:37:52Z" publisher="https://incommon.org"/>
+</md:Extensions>
+
+<!-- The Ohio State University -->
+<EntityDescriptor entityID="https://issues.shibboleth.net/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://issues.shibboleth.net/jira/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Shibboleth.net Issue Tracking</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The issue (improvements, bugs, tasks) tracking system used by the Shibboleth project. Unauthenticated users may view submitted issues. Authenticated users may submit new issues and comment on existing ones.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://wiki.shibboleth.net/confluence/display/DEV/Infrastructure+Information</mdui:PrivacyStatementURL>
+ <mdui:Logo height="82" width="64" xml:lang="en">https://shibboleth.net/images/gryphon_64x82.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17931620734547917775, expires on Wed Mar 4 14:58:08 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://issues.shibboleth.net/jira/Shibboleth.sso/SAML/Artifact" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://issues.shibboleth.net/jira/Shibboleth.sso/SAML/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://issues.shibboleth.net/jira/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://issues.shibboleth.net/jira/Shibboleth.sso/SAML2/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://issues.shibboleth.net/jira/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://issues.shibboleth.net/jira/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Shibboleth.net Issue Tracking</ServiceName>
+ <ServiceDescription xml:lang="en">The issue (improvements, bugs, tasks) tracking system used by the Shibboleth project. Unauthenticated users may view submitted issues. Authenticated users may submit new issues and comment on existing ones.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The Ohio State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ohio State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.osu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Shibboleth Contact</GivenName>
+ <EmailAddress>contact@shibboleth.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Contact</GivenName>
+ <EmailAddress>contact@shibboleth.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Contact</GivenName>
+ <EmailAddress>contact@shibboleth.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Contact</GivenName>
+ <EmailAddress>contact@shibboleth.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wiki.shibboleth.net/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wiki.shibboleth.net/confluence/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Shibboleth.net Wiki</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The wiki hosting the documentation for Shibboleth. Unauthenticated user may view the existing documentation. Authenticated users may create new documentation pages and edit existing ones.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://wiki.shibboleth.net/confluence/display/DEV/Infrastructure+Information</mdui:PrivacyStatementURL>
+ <mdui:Logo height="82" width="64" xml:lang="en">https://shibboleth.net/images/gryphon_64x82.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13994284866104799497, expires on Wed Mar 4 14:57:28 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wiki.shibboleth.net/confluence/Shibboleth.sso/SAML/Artifact" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wiki.shibboleth.net/confluence/Shibboleth.sso/SAML/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wiki.shibboleth.net/confluence/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wiki.shibboleth.net/confluence/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiki.shibboleth.net/confluence/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wiki.shibboleth.net/confluence/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Shibboleth.net Wiki</ServiceName>
+ <ServiceDescription xml:lang="en">The wiki hosting the documentation for Shibboleth. Unauthenticated user may view the existing documentation. Authenticated users may create new documentation pages and edit existing ones.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The Ohio State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ohio State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.osu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Contact</GivenName>
+ <EmailAddress>contact@shibboleth.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Shibboleth Contact</GivenName>
+ <EmailAddress>contact@shibboleth.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Contact</GivenName>
+ <EmailAddress>contact@shibboleth.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Contact</GivenName>
+ <EmailAddress>contact@shibboleth.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:osu.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://webauth.service.ohio-state.edu/support.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">osu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ohio State University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://webauth.service.ohio-state.edu/info.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://it.osu.edu/sites/default/files/files-1477502394/disclosurepolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="83" width="83" xml:lang="en">https://webauth.service.ohio-state.edu/images/osu_mdui.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16487676915339263015, expires on Tue Jul 10 19:17:22 2046 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://webauth.service.ohio-state.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.service.ohio-state.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.service.ohio-state.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webauth.service.ohio-state.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webauth.service.ohio-state.edu/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The Ohio State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ohio State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.osu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>8help@osu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Authentication Support</GivenName>
+ <EmailAddress>webauth-admin@lists.service.ohio-state.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Authentication Support</GivenName>
+ <EmailAddress>webauth-admin@lists.service.ohio-state.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Response Team</GivenName>
+ <EmailAddress>security@osu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Cornell University -->
+<EntityDescriptor entityID="https://shibidp.cit.cornell.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cornell.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Cornell University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dfa.cornell.edu/policy/policies/access-information-technology-data-and-monitoring-network-transmissions</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="383" xml:lang="en">https://shibidp.cit.cornell.edu/cornell-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1315837868438779038659806298608780803577283839491, expires on Fri Nov 23 18:52:44 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibidp.cit.cornell.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibidp.cit.cornell.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibidp.cit.cornell.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibidp.cit.cornell.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibidp.cit.cornell.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cornell.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1315837868438779038659806298608780803577283839491, expires on Fri Nov 23 18:52:44 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibidp.cit.cornell.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibidp.cit.cornell.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Cornell University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Cornell University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cornell.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Hong Ye</GivenName>
+ <EmailAddress>hy93@cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>University Security Office</GivenName>
+ <EmailAddress>security-services@cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Identity Management</GivenName>
+ <EmailAddress>idmgmt@cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tom Horton</GivenName>
+ <EmailAddress>horton@cornell.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of California - Office of the President -->
+<EntityDescriptor entityID="https://coa.ucop.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCOP Chart Of Accounts</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UC Chart Of Accounts Lookup Service</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 514669520802383001841578448266004699725683922927, expires on Mon Oct 1 16:11:49 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://coa.ucop.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCOP Chart Of Accounts</ServiceName>
+ <ServiceDescription xml:lang="en">UC Chart Of Accounts Lookup Service</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cognos-training.ucop.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cognos-training.ucop.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Cognos Training</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Shibboleth Service Provider for Cognos Training Environment</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11917453971993718858, expires on Sun Dec 10 00:12:35 2028 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cognos-training.ucop.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cognos-training.ucop.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cognos-training.ucop.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://counsellink.ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCOP CounselLink</mdui:DisplayName>
+ <mdui:Description xml:lang="en">CounselLink is an electronic billing and matter management tool that will be used by legal staff at UCOP (OGC), campus counsel offices and medical centers.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>
+MIID5zCCAs+gAwIBAgIJAI4XubteXKakMA0GCSqGSIb3DQEBCwUAMIGJMQswCQYDVQQGEwJVUzETMBEGA1UECAwKQ2FsaWZvcm5pYTEQMA4GA1UEBwwHT2FrbGFuZDE5MDcGA1UECgwwVW5pdmVyc2l0eSBPZiBDYWxpZm9ybmlhIE9mZmljZSBPZiBUaGUgUHJlc2lkZW50MRgwFgYDVQQDDA9zYW1sc3AudWNvcC5lZHUwHhcNMTgwMzE2MTkwMTU2WhcNMjgwMzE1MTkwMTU2WjCBiTELMAkGA1UEBhMCVVMxEzARBgNVBAgMCkNhbGlmb3JuaWExEDAOBgNVBAcMB09ha2xhbmQxOTA3BgNVBAoMMFVuaXZlcnNpdHkgT2YgQ2FsaWZvcm5pYSBPZmZpY2UgT2YgVGhlIFByZXNpZGVudDEYMBYGA1UEAwwPc2FtbHNwLnVjb3AuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAszwtTz6DR5Ss5BBMezjVqeBvMOYEkCi9hcSVG8d84GuFnCA7jy/fn//77dEquD7M/YA13mrpA0Y+Lz0AgLTDgx3nJjX2nQROjM+s0EWIVAYc9V+E8B4B335HJnDWrLXJIS2L4GdI0G261iJh3z+cPPCeXpFC8hWOjnBKzyMWviQzHuROBjjD4J30IvGHBbnJkFy0huc4P3wL+dM3lvgzhBCKhLCCaKm2KCiQAqBno3Xls9KltVpP9f0Kjf/a1KcMqf1M2+0nXWEoP1d3RRY6UdCXmyLwcMeCQsLAlm0nJZnhi3bryDsF6rhOLkGsrR8SBGzSwWPgw1rc7Az5BAjHPQIDAQABo1AwTjAdBgNVHQ4EFgQUiiRJo82bx2ZPFymQ5dS7y/DbDm0wHwYDVR0jBBgwFoAUiiRJo82bx2ZPFymQ5dS7y/DbDm0wDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAiASEw6ZhABMoUgA+XxNkFc5rJDz6leNBCpPd3LtTsi0llCLoc//4AMxo+3zqnUFSh7rBCqjSiHxWFuZiM3vQSKGn/hD9H5Vm/5MfAiCpvmGmrSSbSZ3VZ09P5LifraNwfw66Lpm6JLtr84nC5fMksl1+0W6LJMCHHrVR3iDIOh4oc1rXkqg2HUVTBWcFZB5FPa6uVp4Rfjmn5SF5rAGSvjjHKHBg579PJGCFn/GAdgCyquXGzNRSNw/AiDekXjszH2F2CwIrpuwwbPCxOQ9EjH7nWsereXoKuJhDmBZ7guw2keo/i72mAdG8CYXwgX8LjZ7k1+JHDP/bEOWACU8bQA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/COUNSELLINK" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCOP CounselLink</ServiceName>
+ <ServiceDescription xml:lang="en">CounselLink is an electronic billing and matter management tool that will be used by legal staff at UCOP (OGC), campus counsel offices and medical centers.</ServiceDescription>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://d1uat03.universityofcalifornia.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California D1UAT03</mdui:DisplayName>
+ <mdui:Description xml:lang="en">D1UAT03 for UCPath integration Testing</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpproxy-ucpath-qa.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml2-acs.php/D1UAT03" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://dash.cdlib.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cdl-datashare-p01.ucop.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash.cdlib.org/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash.ucop.edu/Shibboleth.sso/Login" index="3"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash.berkeley.edu/Shibboleth.sso/Login" index="4"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash.ucla.edu/Shibboleth.sso/Login" index="5"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash.lib.uci.edu/Shibboleth.sso/Login" index="6"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash.ucmerced.edu/Shibboleth.sso/Login" index="7"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://oneshare.cdlib.org/Shibboleth.sso/Login" index="8"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash-ucla.cdlib.org/Shibboleth.sso/Login" index="9"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://datasets.lbl.gov/Shibboleth.sso/Login" index="10"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash.library.ucsc.edu/Shibboleth.sso/Login" index="11"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://datashare.ucsf.edu/Shibboleth.sso/Login" index="12"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uc3-dash2-prd.cdlib.org/Shibboleth.sso/Login" index="13"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash.ucr.edu/Shibboleth.sso/Login" index="14"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash.ucdavis.edu/Shibboleth.sso/Login" index="15"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash.ucsb.edu/Shibboleth.sso/Login" index="16"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Dash</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This application allows UC faculty and researchers to publish and share digital datasets</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://dash.ucop.edu/stash/about</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cdlib.org/about/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="87" width="400" xml:lang="en">https://dash.ucop.edu/images/logo_dash.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15829187456284973965, expires on Mon Apr 15 21:59:18 2024 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cdl-datashare-p01.ucop.edu/Shibboleth.sso/SAML2/Artifact" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cdl-datashare-p01.ucop.edu/Shibboleth.sso/SAML/Artifact" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cdl-datashare-p01.ucop.edu/Shibboleth.sso/SAML2/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cdl-datashare-p01.ucop.edu/Shibboleth.sso/SAML/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash.cdlib.org/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash.cdlib.org/Shibboleth.sso/SAML2/POST" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash.cdlib.org/Shibboleth.sso/SAML/POST" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash.berkeley.edu/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash.berkeley.edu/Shibboleth.sso/SAML/Artifact" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash.berkeley.edu/Shibboleth.sso/SAML2/POST" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash.berkeley.edu/Shibboleth.sso/SAML/POST" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash.ucop.edu/Shibboleth.sso/SAML2/Artifact" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash.ucop.edu/Shibboleth.sso/SAML/Artifact" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash.ucop.edu/Shibboleth.sso/SAML2/POST" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash.ucop.edu/Shibboleth.sso/SAML/POST" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash.ucla.edu/Shibboleth.sso/SAML2/POST" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash.ucla.edu/Shibboleth.sso/SAML2/Artifact" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash.ucla.edu/Shibboleth.sso/SAML/POST" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash.ucla.edu/Shibboleth.sso/SAML/Artifact" index="20"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash.lib.uci.edu/Shibboleth.sso/SAML2/POST" index="21"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash.lib.uci.edu/Shibboleth.sso/SAML2/Artifact" index="22"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash.lib.uci.edu/Shibboleth.sso/SAML/POST" index="23"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash.lib.uci.edu/Shibboleth.sso/SAML/Artifact" index="24"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash.ucmerced.edu/Shibboleth.sso/SAML2/POST" index="25"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash.ucmerced.edu/Shibboleth.sso/SAML2/Artifact" index="26"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash.ucmerced.edu/Shibboleth.sso/SAML/POST" index="27"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash.ucmerced.edu/Shibboleth.sso/SAML/Artifact" index="28"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oneshare.cdlib.org/Shibboleth.sso/SAML2/POST" index="29"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://oneshare.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="30"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://oneshare.cdlib.org/Shibboleth.sso/SAML/POST" index="31"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://oneshare.cdlib.org/Shibboleth.sso/SAML/Artifact" index="32"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash-ucla.cdlib.org/Shibboleth.sso/SAML2/POST" index="33"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash-ucla.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="34"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash-ucla.cdlib.org/Shibboleth.sso/SAML/POST" index="35"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash-ucla.cdlib.org/Shibboleth.sso/SAML/Artifact" index="36"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://datasets.lbl.gov/Shibboleth.sso/SAML2/POST" index="37"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://datasets.lbl.gov/Shibboleth.sso/SAML2/Artifact" index="38"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://datasets.lbl.gov/Shibboleth.sso/SAML/POST" index="39"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://datasets.lbl.gov/Shibboleth.sso/SAML/Artifact" index="40"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash.library.ucsc.edu/Shibboleth.sso/SAML2/POST" index="41"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash.library.ucsc.edu/Shibboleth.sso/SAML2/Artifact" index="42"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash.library.ucsc.edu/Shibboleth.sso/SAML/POST" index="43"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash.library.ucsc.edu/Shibboleth.sso/SAML/Artifact" index="44"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://datashare.ucsf.edu/Shibboleth.sso/SAML2/POST" index="45"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://datashare.ucsf.edu/Shibboleth.sso/SAML2/Artifact" index="46"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://datashare.ucsf.edu/Shibboleth.sso/SAML/POST" index="47"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://datashare.ucsf.edu/Shibboleth.sso/SAML/Artifact" index="48"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc3-dash2-prd.cdlib.org/Shibboleth.sso/SAML2/POST" index="49"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uc3-dash2-prd.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="50"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uc3-dash2-prd.cdlib.org/Shibboleth.sso/SAML/POST" index="51"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uc3-dash2-prd.cdlib.org/Shibboleth.sso/SAML/Artifact" index="52"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash.ucr.edu/Shibboleth.sso/SAML2/POST" index="53"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash.ucr.edu/Shibboleth.sso/SAML2/Artifact" index="54"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash.ucr.edu/Shibboleth.sso/SAML/POST" index="55"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash.ucr.edu/Shibboleth.sso/SAML/Artifact" index="56"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash.ucdavis.edu/Shibboleth.sso/SAML2/POST" index="57"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash.ucdavis.edu/Shibboleth.sso/SAML2/Artifact" index="58"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash.ucdavis.edu/Shibboleth.sso/SAML/POST" index="59"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash.ucsb.edu/Shibboleth.sso/SAML2/POST" index="60"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash.ucsb.edu/Shibboleth.sso/SAML2/Artifact" index="61"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash.ucsb.edu/Shibboleth.sso/SAML/POST" index="62"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Dash</ServiceName>
+ <ServiceDescription xml:lang="en">This application allows UC faculty and researchers to publish and share digital datasets</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Marisa Strong</GivenName>
+ <EmailAddress>uc3@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jim Vanderveen</GivenName>
+ <EmailAddress>uc3@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Daniella Lowenberg</GivenName>
+ <EmailAddress>uc3@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jim Vanderveen</GivenName>
+ <EmailAddress>jim.vanderveen@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://dash-dev.cdlib.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uc3-datashare-dev.cdlib.org/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash-dev.cdlib.org/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash-dev.berkeley.edu/Shibboleth.sso/Login" index="3"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash-dev.ucop.edu/Shibboleth.sso/Login" index="4"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dev.dash.ucla.edu/Shibboleth.sso/Login" index="5"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash-dev2.cdlib.org/Shibboleth.sso/Login" index="6"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash-dev2.ucop.edu/Shibboleth.sso/Login" index="7"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash-dev.lib.uci.edu/Shibboleth.sso/Login" index="8"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash-dev.ucmerced.edu/Shibboleth.sso/Login" index="9"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://oneshare-dev.cdlib.org/Shibboleth.sso/Login" index="10"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://oneshare2-dev.cdlib.org/Shibboleth.sso/Login" index="11"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash-ucla-dev.cdlib.org/Shibboleth.sso/Login" index="12"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://datasets-dev.lbl.gov/Shibboleth.sso/Login" index="13"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash-dev.library.ucsc.edu/Shibboleth.sso/Login" index="14"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uc3-dash2-dev.cdlib.org/Shibboleth.sso/Login" index="15"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://datashare-dev.ucsf.edu/Shibboleth.sso/Login" index="16"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash2-dev.cdlib.org/Shibboleth.sso/Login" index="17"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash2-dev.ucop.edu/Shibboleth.sso/Login" index="18"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://oneshare-aws-dev.cdlib.org/Shibboleth.sso/Login" index="19"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash-dev.ucr.edu/Shibboleth.sso/Login" index="20"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dash2-dev.berkeley.edu/Shibboleth.sso/Login" index="21"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dev.dash.ucsb.edu/Shibboleth.sso/Login" index="22"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dryad-dev.cdlib.org/Shibboleth.sso/Login" index="23"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Dash Development Instance</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Store and share research datasets</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://dash-dev.ucop.edu/stash/about</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cdlib.org/about/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="140" xml:lang="en">https://dash-dev.ucop.edu/images/logo_dash.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17689045369320502842, expires on Sat Mar 9 18:19:13 2024 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uc3-datashare-dev.cdlib.org/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc3-datashare-dev.cdlib.org/Shibboleth.sso/SAML2/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uc3-datashare-dev.cdlib.org/Shibboleth.sso/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uc3-datashare-dev.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uc3-datashare-dev.cdlib.org/Shibboleth.sso/SAML/Artifact" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uc3-datashare-dev.cdlib.org/Shibboleth.sso/SAML/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc3-datashare-dev.cdlib.org/Shibboleth.sso/SAML2/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash-dev.cdlib.org/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash-dev.berkeley.edu/Shibboleth.sso/SAML2/POST" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash-dev.berkeley.edu/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash-dev.berkeley.edu/Shibboleth.sso/SAML/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash-dev.berkeley.edu/Shibboleth.sso/SAML/Artifact" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash-dev.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash-dev.cdlib.org/Shibboleth.sso/SAML/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash-dev.cdlib.org/Shibboleth.sso/SAML/Artifact" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash-dev.ucop.edu/Shibboleth.sso/SAML2/POST" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash-dev.ucop.edu/Shibboleth.sso/SAML2/Artifact" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash-dev.ucop.edu/Shibboleth.sso/SAML/POST" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev.dash.ucla.edu/Shibboleth.sso/SAML2/POST" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dev.dash.ucla.edu/Shibboleth.sso/SAML2/Artifact" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dev.dash.ucla.edu/Shibboleth.sso/SAML/POST" index="20"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dev.dash.ucla.edu/Shibboleth.sso/SAML/Artifact" index="21"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash-dev2.ucop.edu/Shibboleth.sso/SAML2/POST" index="22"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash-dev2.ucop.edu/Shibboleth.sso/SAML2/Artifact" index="23"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash-dev2.ucop.edu/Shibboleth.sso/SAML/POST" index="24"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash-dev2.ucop.edu/Shibboleth.sso/SAML/Artifact" index="25"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash-dev2.cdlib.org/Shibboleth.sso/SAML2/POST" index="26"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash-dev2.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="27"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash-dev2.cdlib.org/Shibboleth.sso/SAML/POST" index="28"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash-dev2.cdlib.org/Shibboleth.sso/SAML/Artifact" index="29"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash-dev.lib.uci.edu/Shibboleth.sso/SAML2/POST" index="30"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash-dev.lib.uci.edu/Shibboleth.sso/SAML2/Artifact" index="31"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash-dev.lib.uci.edu/Shibboleth.sso/SAML/POST" index="32"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash-dev.lib.uci.edu/Shibboleth.sso/SAML/Artifact" index="33"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash-dev.ucmerced.edu/Shibboleth.sso/SAML2/POST" index="34"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash-dev.ucmerced.edu/Shibboleth.sso/SAML2/Artifact" index="35"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash-dev.ucmerced.edu/Shibboleth.sso/SAML/POST" index="36"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash-dev.ucmerced.edu/Shibboleth.sso/SAML/Artifact" index="37"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oneshare-dev.cdlib.org/Shibboleth.sso/SAML2/POST" index="38"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://oneshare-dev.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="39"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://oneshare-dev.cdlib.org/Shibboleth.sso/SAML/POST" index="40"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://oneshare-dev.cdlib.org/Shibboleth.sso/SAML/Artifact" index="41"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oneshare2-dev.cdlib.org/Shibboleth.sso/SAML2/POST" index="42"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://oneshare2-dev.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="43"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://oneshare2-dev.cdlib.org/Shibboleth.sso/SAML/POST" index="44"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://oneshare2-dev.cdlib.org/Shibboleth.sso/SAML/Artifact" index="45"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash-ucla-dev.cdlib.org/Shibboleth.sso/SAML2/POST" index="46"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash-ucla-dev.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="47"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash-ucla-dev.cdlib.org/Shibboleth.sso/SAML/POST" index="48"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash-ucla-dev.cdlib.org/Shibboleth.sso/SAML/Artifact" index="49"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://datasets-dev.lbl.gov/Shibboleth.sso/SAML2/POST" index="50"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://datasets-dev.lbl.gov/Shibboleth.sso/SAML2/Artifact" index="51"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://datasets-dev.lbl.gov/Shibboleth.sso/SAML/POST" index="52"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://datasets-dev.lbl.gov/Shibboleth.sso/SAML/Artifact" index="53"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash-dev.library.ucsc.edu/Shibboleth.sso/SAML2/POST" index="54"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash-dev.library.ucsc.edu/Shibboleth.sso/SAML2/Artifact" index="55"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash-dev.library.ucsc.edu/Shibboleth.sso/SAML/POST" index="56"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash-dev.library.ucsc.edu/Shibboleth.sso/SAML/Artifact" index="57"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc3-dash2-dev.cdlib.org/Shibboleth.sso/SAML2/POST" index="58"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uc3-dash2-dev.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="59"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uc3-dash2-dev.cdlib.org/Shibboleth.sso/SAML/POST" index="60"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uc3-dash2-dev.cdlib.org/Shibboleth.sso/SAML/Artifact" index="61"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://datashare-dev.ucsf.edu/Shibboleth.sso/SAML2/POST" index="62"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://datashare-dev.ucsf.edu/Shibboleth.sso/SAML2/Artifact" index="63"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://datashare-dev.ucsf.edu/Shibboleth.sso/SAML/POST" index="64"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://datashare-dev.ucsf.edu/Shibboleth.sso/SAML/Artifact" index="65"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash2-dev.ucop.edu/Shibboleth.sso/SAML2/POST" index="66"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash2-dev.ucop.edu/Shibboleth.sso/SAML2/Artifact" index="67"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash2-dev.ucop.edu/Shibboleth.sso/SAML/POST" index="68"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash2-dev.ucop.edu/Shibboleth.sso/SAML/Artifact" index="69"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash2-dev.cdlib.org/Shibboleth.sso/SAML2/POST" index="70"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash2-dev.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="71"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash2-dev.cdlib.org/Shibboleth.sso/SAML/POST" index="72"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash2-dev.cdlib.org/Shibboleth.sso/SAML/Artifact" index="73"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oneshare-aws-dev.cdlib.org/Shibboleth.sso/SAML2/POST" index="74"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://oneshare-aws-dev.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="75"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://oneshare-aws-dev.cdlib.org/Shibboleth.sso/SAML/POST" index="76"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://oneshare-aws-dev.cdlib.org/Shibboleth.sso/SAML/Artifact" index="77"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash-dev.ucr.edu/Shibboleth.sso/SAML2/POST" index="78"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash-dev.ucr.edu/Shibboleth.sso/SAML2/Artifact" index="79"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash-dev.ucr.edu/Shibboleth.sso/SAML/POST" index="80"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash-dev.ucr.edu/Shibboleth.sso/SAML/Artifact" index="81"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dash2-dev.berkeley.edu/Shibboleth.sso/SAML2/POST" index="82"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dash2-dev.berkeley.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="83"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dash2-dev.berkeley.edu/Shibboleth.sso/SAML2/Artifact" index="84"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dash2-dev.berkeley.edu/Shibboleth.sso/SAML/POST" index="85"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dash2-dev.berkeley.edu/Shibboleth.sso/SAML/Artifact" index="86"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dev.dash.ucsb.edu/Shibboleth.sso/SAML2/Artifact" index="87"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev.dash.ucsb.edu/Shibboleth.sso/SAML2/POST" index="88"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dev.dash.ucsb.edu/Shibboleth.sso/SAML/POST" index="89"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dev.dash.ucsb.edu/Shibboleth.sso/SAML/Artifact" index="90"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dryad-dev.cdlib.org/Shibboleth.sso/SAML2/POST" index="91"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dryad-dev.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="92"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dryad-dev.cdlib.org/Shibboleth.sso/SAML/Artifact" index="93"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dryad-dev.cdlib.org/Shibboleth.sso/SAML/POST" index="94"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Dash Development Instance</ServiceName>
+ <ServiceDescription xml:lang="en">Store and share research datasets</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Marisa Strong</GivenName>
+ <EmailAddress>marisa.strong@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Daniella Lowenberg</GivenName>
+ <EmailAddress>uc3@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jim Vanderveen</GivenName>
+ <EmailAddress>jim.vanderveen@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jim Vanderveen</GivenName>
+ <EmailAddress>jim.vanderveen@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://dash-stg.cdlib.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dryad-stg.cdlib.org/Shibboleth.sso/Login" index="18"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Dash Staging Instance</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Dash is used by University of California researchers to store and share research datasets in digital form.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://dash-stg.ucop.edu/stash/about</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://cdlib.org/about/policies-and-guidelines/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="87" width="400" xml:lang="en">https://dash-stg.ucop.edu/images/logo_dash.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18013555937847973367, expires on Sun Apr 14 18:12:14 2024 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dryad-stg.cdlib.org/Shibboleth.sso/SAML/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dryad-stg.cdlib.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dryad-stg.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dryad-stg.cdlib.org/Shibboleth.sso/SAML/Artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Dash Staging Instance</ServiceName>
+ <ServiceDescription xml:lang="en">Dash is used by University of California researchers to store and share research datasets in digital form.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Marisa Strong</GivenName>
+ <EmailAddress>uc3@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Daniella Lowenberg</GivenName>
+ <EmailAddress>uc3@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Marisa Strong</GivenName>
+ <EmailAddress>uc3@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Marisa Strong</GivenName>
+ <EmailAddress>marisa.strong@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://datadryad.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://datadryad.org/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dryadx2-prd.cdlib.org/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Dryad Production Instance</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The Dryad Digital Repository is a curated resource that makes the data underlying scientific publications discoverable, freely reusable, and citable.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://dryad-stg.cdlib.org/stash/about</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cdlib.org/about/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="87" width="400" xml:lang="en">https://dash.ucop.edu/images/logo_dash.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15829187456284973965, expires on Mon Apr 15 21:59:18 2024 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://datadryad.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://datadryad.org/Shibboleth.sso/SAML/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://datadryad.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dryadx2-prd.cdlib.org/Shibboleth.sso/SAML2/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dryadx2-prd.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dryadx2-prd.cdlib.org/Shibboleth.sso/SAML/POST" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dryadx2-prd.cdlib.org/Shibboleth.sso/SAML/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://datadryad.org/Shibboleth.sso/SAML/Artifact" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Dryad Production Instance</ServiceName>
+ <ServiceDescription xml:lang="en">The Dryad Digital Repository is a curated resource that makes the data underlying scientific publications discoverable, freely reusable, and citable.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Daniella Lowenberg</GivenName>
+ <EmailAddress>uc3@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Marisa Strong</GivenName>
+ <EmailAddress>marisa.strong@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Marisa Strong</GivenName>
+ <EmailAddress>marisa.strong@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://dev.etransfer.ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dev.etransfer.ucop.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">eTransfer Development Server</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12683605570255594190, expires on Sat Sep 13 22:35:10 2025 GMT -->
+ <ds:X509Certificate>
+MIIDETCCAfmgAwIBAgIJALAFOBDGQCLOMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV
+BAMTEGRldi5hY2EudWNvcC5lZHUwHhcNMTUwOTE2MjIzNTEwWhcNMjUwOTEzMjIz
+NTEwWjAbMRkwFwYDVQQDExBkZXYuYWNhLnVjb3AuZWR1MIIBIjANBgkqhkiG9w0B
+AQEFAAOCAQ8AMIIBCgKCAQEAx6XSgqI/UO4Ld0a5gjlG4y08cqW7MPoxIRsDIW/f
+itRIIJJD3BDiSUIUIYvcXEhlXuvVcgt102R1KiCQsghaZaebKU4Rrogtj8PyBvwb
+CZ+dMzN8eqY9CbHn2Vf/hFMfBtq4t9ueewZOJqGxyZylEqFDq7LQZ7EO7b8FQTqp
+JxTOGmm0g23s8qIvqpCV8DqUGiroUV81kgOTuciK2EnZWCgjSkwsrUHamo7zlPLy
+hCQXSgzgyFbhhbm2xnviQS716B+tHl8THw8Kkxxc3qLV9bCTsIhV4V9jEUI5aSUd
+Yn1e0H46VVd0387jknKjgpq65BFxtHt1984dokriTUf8pwIDAQABo1gwVjA1BgNV
+HREELjAsghBkZXYuYWNhLnVjb3AuZWR1hhhodHRwczovL2Rldi5hY2EudWNvcC5l
+ZHUwHQYDVR0OBBYEFGdjsQ/cmQJtgfAxICSlyjVf6sJ6MA0GCSqGSIb3DQEBBQUA
+A4IBAQACoCEQn+7E+ZlfWp/i1aO690dzdR6jrw9qFzmuo+l7XaRh7F4r6SJm0FxZ
+jhLxzmEk0TaEmtR0/OlTqcrGHM154IufU+nFdHFJY7xH9XA4icWYebaMAQgK3TXB
+iGddsnz65iN3NsfmlUgsZlDF7bbYdRbGFzNN5Rbse4ZP9Sa0YmQ3FQUacIXxL/ly
+yuFlTU8uYOEEC3Hv9FniDySJBMYlH+AKTwRHyT6P7QmuDtzSD1UyC408Q55Sjrrr
+jCp8HZ4vV3boGODGLrtdVylIKN2r2mciIAIv8pMTK9/RMWo/t/AJW1fHxwMFv6/8
+cZPirvlq6ylFCDXkXT1fKWpzuGbC
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev.etransfer.ucop.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dev.etransfer.ucop.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dev.etransfer.ucop.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dev.etransfer.ucop.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Mohana Kakkera</GivenName>
+ <EmailAddress>Mohan.Kakkera@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://dmp.cdlib.org">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dmp.cdlib.org/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dmptool.org/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.dmptool.org/Shibboleth.sso/Login" index="3"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uc3-dmp2-prd.cdlib.org/Shibboleth.sso/Login" index="7"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uc3-dmp-prd.cdlib.org/Shibboleth.sso/Login" index="9"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dmptool-prd.cdlib.org/Shibboleth.sso/Login" index="10"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DMPTool Production Instance</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Create, share, review, and publish Data Management Plans conforming to Institution and Funder requirements</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://dmptool.org/about_us</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://dmptool.org/terms</mdui:PrivacyStatementURL>
+ <mdui:Logo height="53" width="153" xml:lang="en">https://dmptool.org/images/DMPTool_logo_blue_shades_v1b3b.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18385770954492677166, expires on Mon Aug 23 15:44:36 2021 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dmp.cdlib.org/Shibboleth.sso/SAML/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dmp.cdlib.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dmp.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dmptool.org/Shibboleth.sso/SAML/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dmptool.org/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dmptool.org/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.dmptool.org/Shibboleth.sso/SAML/POST" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.dmptool.org/Shibboleth.sso/SAML2/POST" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.dmptool.org/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uc3-dmp-prd.cdlib.org/Shibboleth.sso/SAML/POST" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc3-dmp-prd.cdlib.orgg/Shibboleth.sso/SAML2/POST" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uc3-dmp-prd.cdlib.org/Shibboleth.sso/SAML/Artifact" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dmptool-prd.cdlib.org/Shibboleth.sso/SAML/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dmptool-prd.cdlib.org/Shibboleth.sso/SAML2/POST" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dmptool-prd.cdlib.org/Shibboleth.sso/SAML/Artifact" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc3-dmp2-prd.cdlib.org/Shibboleth.sso/SAML2/POST" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uc3-dmp2-prd.cdlib.org/Shibboleth.sso/SAML/POST" index="17"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DMPTool Production Instance</ServiceName>
+ <ServiceDescription xml:lang="en">Create, share, review, and publish Data Management Plans conforming to Institution and Funder requirements</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Perry Willet</GivenName>
+ <EmailAddress>uc3@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Jim Vanderveen</GivenName>
+ <EmailAddress>jim.vanderveen@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Marisa Strong</GivenName>
+ <EmailAddress>marisa.strong@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://dmp-dev.cdlib.org">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dmptool-dev.cdlib.org/Shibboleth.sso/Login" index="4"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uc3-dmp-dev.cdlib.org/Shibboleth.sso/Login" index="5"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DMPTool Development Instance</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Create, share, review, and publish Data Management Plans conforming to Institution and Funder requirements</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://dmptool.org/about_us</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://dmptool.org/terms</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="279" xml:lang="en">https://dmptool.org/images/DMPTool_logo_blue_shades_v1b3b.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18385770954492677166, expires on Mon Aug 23 15:44:36 2021 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dmptool-dev.cdlib.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dmptool-dev.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dmptool-dev.cdlib.org/Shibboleth.sso/SAML/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc3-dmp-dev.cdlib.org/Shibboleth.sso/SAML2/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uc3-dmp-dev.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uc3-dmp-dev.cdlib.org/Shibboleth.sso/SAML/POST" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DMPTool Development Instance</ServiceName>
+ <ServiceDescription xml:lang="en">Create, share, review, and publish Data Management Plans conforming to Institution and Funder requirements</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Perry Willett</GivenName>
+ <EmailAddress>perry.willett@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Jim Vanderveen</GivenName>
+ <EmailAddress>jim.vanderveen@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Marisa Strong</GivenName>
+ <EmailAddress>marisa.strong@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://dmp-stage.cdlib.org">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uc3-dmp-stg.cdlib.org/Shibboleth.sso/Login" index="6"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dmptool-stg.cdlib.org/Shibboleth.sso/Login" index="7"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DMPTool Stage Instance</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Create, share, review, and publish Data Management Plans conforming to Institution and Funder requirements</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://dmptool.org/about_us</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://dmptool.org/terms</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="279" xml:lang="en">https://dmptool.org/images/DMPTool_logo_blue_shades_v1b3b.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18385770954492677166, expires on Mon Aug 23 15:44:36 2021 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc3-dmp-stg.cdlib.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uc3-dmp-stg.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uc3-dmp-stg.cdlib.org/Shibboleth.sso/SAML/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dmptool-stg.cdlib.org/Shibboleth.sso/SAML/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dmptool-stg.cdlib.org/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dmptool-stg.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc3-dmpx2-stg-2a.cdlib.org/Shibboleth.sso/SAML2/POST" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uc3-dmpx2-stg-2a.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uc3-dmpx2-stg-2a.cdlib.org/Shibboleth.sso/SAML/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc3-dmpx2-stg-2c.cdlib.org/Shibboleth.sso/SAML2/POST" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uc3-dmpx2-stg-2c.cdlib.org/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uc3-dmpx2-stg-2c.cdlib.org/Shibboleth.sso/SAML/POST" index="12"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DMPTool Stage Instance</ServiceName>
+ <ServiceDescription xml:lang="en">Create, share, review, and publish Data Management Plans conforming to Institution and Funder requirements</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Marisa Strong</GivenName>
+ <EmailAddress>marisa.strong@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Brian Riley</GivenName>
+ <EmailAddress>brian.rilery@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Perry Willett</GivenName>
+ <EmailAddress>perry.willett@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jim Vanderveen</GivenName>
+ <EmailAddress>jim.vanderveen@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://dmsuat.ucop.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dmsuat.ucop.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Data Management System (DMS)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The UC Health Liability Data Management System project, conducted under the auspices and authority of UC Office of the President Risk Services ITS group, is implementing an encrypted, secure transfer of protected healthcare information (PHI) data over the Internet from its service provider, RL Solutions, to the Sherlock cloud at the San Diego Supercomputing Center (SDSC) on the UC San Diego campus.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12421035591847631043, expires on Sun Mar 28 21:09:28 2027 GMT -->
+ <ds:X509Certificate>
+MIIEDzCCAnegAwIBAgIJAKxgYg+yj9jDMA0GCSqGSIb3DQEBCwUAMCMxITAfBgNV
+BAMTGGRtcy11YXQtd2ViMS5zMi5pbnRlcm5hbDAeFw0xNzAzMzAyMTA5MjhaFw0y
+NzAzMjgyMTA5MjhaMCMxITAfBgNVBAMTGGRtcy11YXQtd2ViMS5zMi5pbnRlcm5h
+bDCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAL04zMrmWbIgSKwXuHEe
+xP+3ZC1GFzWuf59LInSMr9RYMIeyU6NZA5AT1Lm04+wLYOQ2GtHzTvjB7c43Qmxh
+Konl/EBLlteLKO3Gdm8aGrWCLtf5FFoNxbQ9SgYpER1TGpOVrnJHNeC1XYEVMib/
+wMzHCAa09GXiZCa9/SXMJiP2YUWdOxZSNIiH7HBQ9r+CR+3wJ2JnvphFSMZSTdrv
+cmt+bdJNb2zZKPo3RRBTu/4co/cHTE/G3js0DzSFbIHCb+hngwj7Fq7ocJWpd6K+
+qxVz4HNNZyyIPOk5hk9oITmP08nlBg0EmMuy9RaeH5QnyYhniTyFdUDQYsLuJv7m
+QKdQa31B3S61Lvq72Jbqb3H2pbhc4dfU1Ju3vERZRmnFIGo5ajEEREf8/JlGukRa
+DYTjDIF7zzCngOq3Tc7Z/yE9WoFuQ+K8Qt76Ziv8rElFHKT/Nc3REXnQWfIf9wsH
+pCZ0VB7TxM46DnLaMBmnPjukRUN3yAimFEkhpPlJrSMO8QIDAQABo0YwRDAjBgNV
+HREEHDAaghhkbXMtdWF0LXdlYjEuczIuaW50ZXJuYWwwHQYDVR0OBBYEFB3LlHD8
+BQS+of3ATm0vrFQZ4uJkMA0GCSqGSIb3DQEBCwUAA4IBgQC828QY8MzbNt/IWMcJ
+hxJDuGp9YPSySidXruwYnYVt9Qg2Eop230xnszc5+SC0N0hHk7UMspv3+Y7QIQ6z
+GEtPwSLJd6CWX889uxYZPIZClLgNjfmBK+i/v+G0sFz/Ul7yh6vNbq8ngdRHZdQr
+Bg64h40jKVMexai8jJM27+IZtQGcscBgqE97s3L3aNYUVIqQIJkBDLcBThRF5qHp
+t8j56UoHR1H96KuFUP0NuUeaaobqK6QMnwsI7fs3QUE4jhRCu29RIvxm4T9zCG3I
+DdEtlPt+yn2BnAFUqJT8DzKgYCaJkMPhtyHVF1z4qEZf1nauSvfwZPGi0dmZJEPC
+CcI+KnMZkwUS2w67oeKqEuRzJw7eJlJ8sJeVqaTv2B7ocCH71ItBqSVfMEp2S5wm
+S+B5M/XMsBNELJfWPiNf+k1AZrNKPbdWlQ43fw7lQYLHx5zsCBDgayfHc+zBTEYr
+JXVy+WlMe8S45f8yAAkI5EazzzRV00dsBNs57Ut12ohTzvM=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dmsuat.ucop.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dmsuat.ucop.edu/Shibboleth.sso/SAML/POST" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Data Management System (DMS)</ServiceName>
+ <ServiceDescription xml:lang="en">The UC Health Liability Data Management System project, conducted under the auspices and authority of UC Office of the President Risk Services ITS group, is implementing an encrypted, secure transfer of protected healthcare information (PHI) data over the Internet from its service provider, RL Solutions, to the Sherlock cloud at the San Diego Supercomputing Center (SDSC) on the UC San Diego campus.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UCOP IAM</GivenName>
+ <EmailAddress>iamGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UCOP DataCenter HelpDesk</GivenName>
+ <EmailAddress>ucopdatacenter.helpdesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://dress1.universityofcalifornia.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Dress Rehearsal #1 SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Authsource for UCPath Dress Rehearsal #1</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>
+MIIFgTCCBGmgAwIBAgIRAKW79A6RZoXk2kF7f/4pLsIwDQYJKoZIhvcNAQELBQAw
+djELMAkGA1UEBhMCVVMxCzAJBgNVBAgTAk1JMRIwEAYDVQQHEwlBbm4gQXJib3Ix
+EjAQBgNVBAoTCUludGVybmV0MjERMA8GA1UECxMISW5Db21tb24xHzAdBgNVBAMT
+FkluQ29tbW9uIFJTQSBTZXJ2ZXIgQ0EwHhcNMTUwMzIzMDAwMDAwWhcNMTgwMzIy
+MjM1OTU5WjCBvDELMAkGA1UEBhMCVVMxDjAMBgNVBBETBTk0NjA3MQswCQYDVQQI
+EwJDQTEQMA4GA1UEBxMHT2FrbGFuZDEdMBsGA1UECRMUMTExMSBGcmFua2xpbiBT
+dHJlZXQxOTA3BgNVBAoTMFVuaXZlcnNpdHkgb2YgQ2FsaWZvcm5pYSBPZmZpY2Ug
+b2YgdGhlIFByZXNpZGVudDEMMAoGA1UECxMDSVJDMRYwFAYDVQQDEw1zYW1sLnVj
+b3AuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsU79M0n3EPme
+if+os8UvQgHzlGm4DvKp05ri4a/rp4l3Y8a/aGWXXOY2o+eYi1Io0F35Wpaez6YF
+cDJlEnuDoY4DI67gVBZ7yaCKo4hbprVC86qwlzH/bCzzooIbxhOoPTJBe5I8famw
+tpavW8jo7Af3sPOu8Mniv9ZfSlQzZZWduU5VfwNtUjQG5JgQVrUWY2hC/ErWZmLX
+jm+Xlx3cJTtJbNOXLLNtQQ2bcSgWRVcbYaUxnuuJABAYxnMkHsL6c/mJUSbos42j
+zHw61X/NE4i4zvRiVsYfphz5KjV1yPgZVqsPbPLLRaVZ7olWUUM1fhx/EazhdKXo
+lWQEeUlcTQIDAQABo4IBwTCCAb0wHwYDVR0jBBgwFoAUHgWjd49sluJbh0umtIas
+cQAM5zgwHQYDVR0OBBYEFMGCtZLWM4Xo5l1wh7fgg1C2Xg5MMA4GA1UdDwEB/wQE
+AwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcD
+AjBnBgNVHSAEYDBeMFIGDCsGAQQBriMBBAMBATBCMEAGCCsGAQUFBwIBFjRodHRw
+czovL3d3dy5pbmNvbW1vbi5vcmcvY2VydC9yZXBvc2l0b3J5L2Nwc19zc2wucGRm
+MAgGBmeBDAECAjBEBgNVHR8EPTA7MDmgN6A1hjNodHRwOi8vY3JsLmluY29tbW9u
+LXJzYS5vcmcvSW5Db21tb25SU0FTZXJ2ZXJDQS5jcmwwdQYIKwYBBQUHAQEEaTBn
+MD4GCCsGAQUFBzAChjJodHRwOi8vY3J0LnVzZXJ0cnVzdC5jb20vSW5Db21tb25S
+U0FTZXJ2ZXJDQV8yLmNydDAlBggrBgEFBQcwAYYZaHR0cDovL29jc3AudXNlcnRy
+dXN0LmNvbTAYBgNVHREEETAPgg1zYW1sLnVjb3AuZWR1MA0GCSqGSIb3DQEBCwUA
+A4IBAQA2qRGXaXwqY7nHB+q9l26mjE23aqqzrBCXE0PZlQaqWdLL2H/88FVlf4yO
+bHauSc1VHjuBhIUEcpnCaegB79yiGmIL/rfVBgXS1XHA24okOuail4AL/kwHaQNk
+D8kmFEqoA+IjtQ9Klznu4hPRIgKekc9OTgkDYHQXQDD4C8gtmGCakNLb+Ma5bHBg
+iFq/W1eAQVRt636JKA0brjME9sS0nA/bwvYZhIf+97zqfJSkMM1rr860FsEkVh9z
+s0eUBR1p+lpfM01fIXJ3VTCaOdez3JFN3xl7OnzobRZtHU1oUIxce5XL42go+rtv
+ZYQq/sjsJubzToMtorjM6APcZxip
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpproxy-ucpath-qa.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml2-acs.php/Dress1" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Randy Roberts</GivenName>
+ <EmailAddress>Randy.Roberts@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://dress2.universityofcalifornia.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCPath Dress Rehearsal</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Service Provider for UCPath Dress Rehearsal</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpproxy-ucpath.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml2-acs.php/Dress2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpproxy-ucpath.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml2-acs.php/Dress2" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Randy Roberts</GivenName>
+ <EmailAddress>Randy.Roberts@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://drpit03.universityofcalifornia.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California IT03</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UCPath IT03 Service Providewr</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpproxy-ucpath-qa.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml2-acs.php/DRPIT03" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ehs.ucop.edu/bss">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">https://ehs.ucop.edu/bss</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14092146635347100890, expires on Sun Oct 24 21:35:04 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ehs.ucop.edu/bss/Shibboleth.sso/SAML/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ehs.ucop.edu/bss/Shibboleth.sso/SAML2/POST" index="2"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>SDSC Support</GivenName>
+ <EmailAddress>support@sdsc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>SDSC Web/DB</GivenName>
+ <EmailAddress>webdb@sdsc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://epbcs-training.ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">EPBCS Training</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Training site for EPBCS in Oracle Cloud</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/Oracle-a607043" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">EPBCS Training</ServiceName>
+ <ServiceDescription xml:lang="en">Training site for EPBCS in Oracle Cloud</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://epbcs.ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">EPBCS.UCOP.EDU</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Proxied Service Provider for the EPBCS Oracle Cloud Environment</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>
+MIID5zCCAs+gAwIBAgIJAI4XubteXKakMA0GCSqGSIb3DQEBCwUAMIGJMQswCQYDVQQGEwJVUzETMBEGA1UECAwKQ2FsaWZvcm5pYTEQMA4GA1UEBwwHT2FrbGFuZDE5MDcGA1UECgwwVW5pdmVyc2l0eSBPZiBDYWxpZm9ybmlhIE9mZmljZSBPZiBUaGUgUHJlc2lkZW50MRgwFgYDVQQDDA9zYW1sc3AudWNvcC5lZHUwHhcNMTgwMzE2MTkwMTU2WhcNMjgwMzE1MTkwMTU2WjCBiTELMAkGA1UEBhMCVVMxEzARBgNVBAgMCkNhbGlmb3JuaWExEDAOBgNVBAcMB09ha2xhbmQxOTA3BgNVBAoMMFVuaXZlcnNpdHkgT2YgQ2FsaWZvcm5pYSBPZmZpY2UgT2YgVGhlIFByZXNpZGVudDEYMBYGA1UEAwwPc2FtbHNwLnVjb3AuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAszwtTz6DR5Ss5BBMezjVqeBvMOYEkCi9hcSVG8d84GuFnCA7jy/fn//77dEquD7M/YA13mrpA0Y+Lz0AgLTDgx3nJjX2nQROjM+s0EWIVAYc9V+E8B4B335HJnDWrLXJIS2L4GdI0G261iJh3z+cPPCeXpFC8hWOjnBKzyMWviQzHuROBjjD4J30IvGHBbnJkFy0huc4P3wL+dM3lvgzhBCKhLCCaKm2KCiQAqBno3Xls9KltVpP9f0Kjf/a1KcMqf1M2+0nXWEoP1d3RRY6UdCXmyLwcMeCQsLAlm0nJZnhi3bryDsF6rhOLkGsrR8SBGzSwWPgw1rc7Az5BAjHPQIDAQABo1AwTjAdBgNVHQ4EFgQUiiRJo82bx2ZPFymQ5dS7y/DbDm0wHwYDVR0jBBgwFoAUiiRJo82bx2ZPFymQ5dS7y/DbDm0wDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAiASEw6ZhABMoUgA+XxNkFc5rJDz6leNBCpPd3LtTsi0llCLoc//4AMxo+3zqnUFSh7rBCqjSiHxWFuZiM3vQSKGn/hD9H5Vm/5MfAiCpvmGmrSSbSZ3VZ09P5LifraNwfw66Lpm6JLtr84nC5fMksl1+0W6LJMCHHrVR3iDIOh4oc1rXkqg2HUVTBWcFZB5FPa6uVp4Rfjmn5SF5rAGSvjjHKHBg579PJGCFn/GAdgCyquXGzNRSNw/AiDekXjszH2F2CwIrpuwwbPCxOQ9EjH7nWsereXoKuJhDmBZ7guw2keo/i72mAdG8CYXwgX8LjZ7k1+JHDP/bEOWACU8bQA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/Oracle-a592760" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">EPBCS.UCOP.EDU</ServiceName>
+ <ServiceDescription xml:lang="en">Proxied Service Provider for the EPBCS Oracle Cloud Environment</ServiceDescription>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ermspqa.ucop.edu/rl">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ermspqa.ucop.edu/rl/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">RL-Incident Reporting System</mdui:DisplayName>
+ <mdui:Description xml:lang="en">RL Solutions Incident Reporting System for Medical Centers.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16123136745473374025, expires on Mon Dec 6 19:22:36 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ermspqa.ucop.edu/rl/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ermspqa.ucop.edu/rl/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ermspqa.ucop.edu/rl/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ermspqa.ucop.edu/rl/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ermspqa.ucop.edu/rl/Shibboleth.sso/SAML/POST" index="5"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">RL-Incident Reporting System</ServiceName>
+ <ServiceDescription xml:lang="en">RL Solutions Incident Reporting System for Medical Centers.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UCOP IAM</GivenName>
+ <EmailAddress>iamGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UCOP DataCenter HelpDesk</GivenName>
+ <EmailAddress>ucopdatacenter.helpdesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ermspqa.ucop.edu/rlshs">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ermspqa.ucop.edu/rlshs/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">RL SHS CAPs system</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Student Health Services Counseling and Psychological Services is designed to improve the process through a web based application and database.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Sat Oct 10 16:38:13 2015 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ermspqa.ucop.edu/rlshs/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ermspqa.ucop.edu/rlshs/Shibboleth.sso/SAML/POST" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">RL SHS CAPs system</ServiceName>
+ <ServiceDescription xml:lang="en">Student Health Services Counseling and Psychological Services is designed to improve the process through a web based application and database.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UCOP IAM</GivenName>
+ <EmailAddress>iamGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UCOP DataCenter HelpDesk</GivenName>
+ <EmailAddress>ucopdatacenter.helpdesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ermsp.ucop.edu/rl">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ermsp.ucop.edu/rl/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">RL-Incident Reporting System</mdui:DisplayName>
+ <mdui:Description xml:lang="en">RL Solutions Incident Reporting System for Medical Centers.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12415263873327116215, expires on Sat Jun 15 17:30:37 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ermsp.ucop.edu/rl/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ermsp.ucop.edu/rl/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ermsp.ucop.edu/rl/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ermsp.ucop.edu/rl/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ermsp.ucop.edu/rl/Shibboleth.sso/SAML/POST" index="5"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">RL-Incident Reporting System</ServiceName>
+ <ServiceDescription xml:lang="en">RL Solutions Incident Reporting System for Medical Centers.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>!AM Group</GivenName>
+ <EmailAddress>iamGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UCOP IAM</GivenName>
+ <EmailAddress>iamGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Contact Name: UCOP DataCenter HelpDesk</GivenName>
+ <EmailAddress>ucopdatacenter.helpdesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ermsp.ucop.edu/rlshs">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ermsp.ucop.edu/rlshs/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">RL SHS-CAPs system</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Student Health Services Counseling and Psychological Services is designed to improve the process through a web based application and database. </mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12415263873327116215, expires on Sat Jun 15 17:30:37 2024 GMT -->
+ <ds:X509Certificate>
+MIIDBTCCAe2gAwIBAgIJAKxL4LbCZy+3MA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMMDmVybXNwLnVjb3AuZWR1MB4XDTE0MDYxODE3MzAzN1oXDTI0MDYxNTE3MzAz
+N1owGTEXMBUGA1UEAwwOZXJtc3AudWNvcC5lZHUwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQCjGpzm87UkMYvJpxROmZCKarMjSZ92mEr2rKPjzmCkpbN0
+NOSXvl+UqLEtjqOh5Qp+VD7qivEsPqlxX/J8LlPufTTu7kd+BP9JyIWMpodMlK3o
+Mj0mgP9Rn8Y61xOrvOWoOmFzaQ97oZBWxSAjdomY6FXMurzsmWgV1WSTER53fVG8
+fODnesgT72V58tDXZgMpGtlIqzLs1B07UVsLFYcR34hXT+vMNgCR18R1alNpmZ7D
+gi4jhIXvZHCgJBopI23LMCcukb8xVCZq56Cp5ZNq7iFk1mpSAUeSRvZ99HL0NmT8
+J8ClYK5Gd+ydS53/oeWSN/axot5JjDRLfBWRpRKpAgMBAAGjUDBOMB0GA1UdDgQW
+BBQjbZZ9SPVcy8skhJPzi3CKFvnWfDAfBgNVHSMEGDAWgBQjbZZ9SPVcy8skhJPz
+i3CKFvnWfDAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQBn7ey3slsP
++Kzo64ts1OogKC6iMvLUaHOKz7LMcE1NIUHKewuKr6Q44WZETehmaRI08kQPwdIA
+SneW6KV7K8AE4/QxPsZ5EhWO/KvoWNKRnnrVHwgmNFPDOEduiuIzEjGSq+/15p1A
+E8AdnQ4D0veFHVmiHtGqHevmYfXP/3+Jc/rgyEYplSIB/wo4evu6oa6mU7nh4bcL
+1LMOE0M2EIM3aFf0JR5O3ZtGmPRQ6/1d8xRqkBFYSQfxbYH5TK2mYgVLq6aMD2BM
+8e7ngjVDz0fWtq6hXCah3Jdn0V14+pZvF7pcZnQgX9kiMzPjggGpsNObTK7PeKtk
+BONpQwrxifYb
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ermsp.ucop.edu/rlshs/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ermsp.ucop.edu/rlshs/Shibboleth.sso/SAML/POST" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">RL SHS-CAPs system</ServiceName>
+ <ServiceDescription xml:lang="en">Student Health Services Counseling and Psychological Services is designed to improve the process through a web based application and database. </ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UCOP IAM</GivenName>
+ <EmailAddress>iamGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UCOP DataCenter HelpDesk</GivenName>
+ <EmailAddress>ucopdatacenter.helpdesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://erstomcatprod.ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://erstomcatprod.ucop.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UC Effort Reporting System</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of California Effort Reporting System</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Sun Jan 13 22:07:10 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://erstomcatprod.ucop.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://erstomcatprod.ucop.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://erstomcatprod.ucop.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://erstomcatprod.ucop.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UC Effort Reporting System</ServiceName>
+ <ServiceDescription xml:lang="en">University of California Effort Reporting System</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Latheef Kottal</GivenName>
+ <EmailAddress>Latheef.Kottal@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGRP@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://erstomcatqa.ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://erstomcatqa.ucop.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">erstomcatqa</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Sun Jan 13 22:07:10 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://erstomcatqa.ucop.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://erstomcatqa.ucop.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://erstomcatqa.ucop.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://erstomcatqa.ucop.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Steven Hunter</GivenName>
+ <EmailAddress>Steven.Hunter@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>AIG</GivenName>
+ <EmailAddress>AIG@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://etransfer.ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://etransfer.ucop.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">eTransfer Production</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13839780449646008184, expires on Sun Sep 14 23:25:00 2025 GMT -->
+ <ds:X509Certificate>
+MIIDAzCCAeugAwIBAgIJAMAQxv4ei9d4MA0GCSqGSIb3DQEBBQUAMB8xHTAbBgNV
+BAMTFGFjYS13ZWItcDAyLnVjb3AuZWR1MB4XDTE1MDkxNzIzMjUwMFoXDTI1MDkx
+NDIzMjUwMFowHzEdMBsGA1UEAxMUYWNhLXdlYi1wMDIudWNvcC5lZHUwggEiMA0G
+CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDBKdgiovkPxq7xM1kkhNZiuUei1kgr
+bkgTO6lEpTH1zanDdtbYTvpwQe/dT7sSDkTdYfOmaVFtbhin6exxTzJl7mBdSDwZ
+je0phIken36w6iVh+b+wZy023eibxSpvkk3PMj+/nzORoG0fh4xNtAuX1EF1UVQn
+YNUJwxG4FwT71HGUmhsy1gKrtYAjiX3Gow4pnimZ2cIBIRar1mPLvdp3lHDWDU4s
+/PepqXpWkEu+T/Fc9QwGGyXAjZBtTJKIoj1zMqKZSP0j9zP5NJIJdcfCRTQcsuU9
+OkxUCkqZcVpk5CVaQLfiWB/uqkEgHsiUv8/SiElO/0hsit+dhM/a6NWDAgMBAAGj
+QjBAMB8GA1UdEQQYMBaCFGFjYS13ZWItcDAyLnVjb3AuZWR1MB0GA1UdDgQWBBQG
+GL9PT9Njlu6FMzgwcKrdXelWXTANBgkqhkiG9w0BAQUFAAOCAQEAJ9Pv0Xqb1TqG
+K+SGcVLVTJOx2CG+HII6BMFUsv39pY7U13zwChOFmxgH3vphka1NKI4qPwawx8TG
+mpkwwyEF1ZyibNzKKWgX+79G62LjvyYY6CGHkUJ8n+C7Ge9MMVpU62dFYf+PjaZ5
+P+gXz+RM8q2MdUuYJnS3p2bDrCO++co9J53rXaf0ykwf46NCJdn1wjr1VK6RG1W0
+mv+wfJ9xrRYnYCAZxb5dZLuDhWiwi3AXUFPU8SvE/XH1yt1Z10Pw8GqlOmkYv6D4
+aIbU3NLbZ4LkYimWrgmplqzTksxetbxkiDl8WAHkfkOWaK1GJ0wF2sr5ZIYrRlV0
+4tYg7hiS5g==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://etransfer.ucop.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://etransfer.ucop.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://etransfer.ucop.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://etransfer.ucop.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">eTransfer Production</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Christopher Scott</GivenName>
+ <EmailAddress>Christopher.Scott@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael MacDonald</GivenName>
+ <EmailAddress>Michael.MacDonald@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://gep-uat.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Global eProcurement UAT</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/GEP-UAT" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Global eProcurement UAT</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://gep.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCOP GEP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Service Provider for Global eProcurement</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>
+MIIFgTCCBGmgAwIBAgIRAKW79A6RZoXk2kF7f/4pLsIwDQYJKoZIhvcNAQELBQAw
+djELMAkGA1UEBhMCVVMxCzAJBgNVBAgTAk1JMRIwEAYDVQQHEwlBbm4gQXJib3Ix
+EjAQBgNVBAoTCUludGVybmV0MjERMA8GA1UECxMISW5Db21tb24xHzAdBgNVBAMT
+FkluQ29tbW9uIFJTQSBTZXJ2ZXIgQ0EwHhcNMTUwMzIzMDAwMDAwWhcNMTgwMzIy
+MjM1OTU5WjCBvDELMAkGA1UEBhMCVVMxDjAMBgNVBBETBTk0NjA3MQswCQYDVQQI
+EwJDQTEQMA4GA1UEBxMHT2FrbGFuZDEdMBsGA1UECRMUMTExMSBGcmFua2xpbiBT
+dHJlZXQxOTA3BgNVBAoTMFVuaXZlcnNpdHkgb2YgQ2FsaWZvcm5pYSBPZmZpY2Ug
+b2YgdGhlIFByZXNpZGVudDEMMAoGA1UECxMDSVJDMRYwFAYDVQQDEw1zYW1sLnVj
+b3AuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsU79M0n3EPme
+if+os8UvQgHzlGm4DvKp05ri4a/rp4l3Y8a/aGWXXOY2o+eYi1Io0F35Wpaez6YF
+cDJlEnuDoY4DI67gVBZ7yaCKo4hbprVC86qwlzH/bCzzooIbxhOoPTJBe5I8famw
+tpavW8jo7Af3sPOu8Mniv9ZfSlQzZZWduU5VfwNtUjQG5JgQVrUWY2hC/ErWZmLX
+jm+Xlx3cJTtJbNOXLLNtQQ2bcSgWRVcbYaUxnuuJABAYxnMkHsL6c/mJUSbos42j
+zHw61X/NE4i4zvRiVsYfphz5KjV1yPgZVqsPbPLLRaVZ7olWUUM1fhx/EazhdKXo
+lWQEeUlcTQIDAQABo4IBwTCCAb0wHwYDVR0jBBgwFoAUHgWjd49sluJbh0umtIas
+cQAM5zgwHQYDVR0OBBYEFMGCtZLWM4Xo5l1wh7fgg1C2Xg5MMA4GA1UdDwEB/wQE
+AwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcD
+AjBnBgNVHSAEYDBeMFIGDCsGAQQBriMBBAMBATBCMEAGCCsGAQUFBwIBFjRodHRw
+czovL3d3dy5pbmNvbW1vbi5vcmcvY2VydC9yZXBvc2l0b3J5L2Nwc19zc2wucGRm
+MAgGBmeBDAECAjBEBgNVHR8EPTA7MDmgN6A1hjNodHRwOi8vY3JsLmluY29tbW9u
+LXJzYS5vcmcvSW5Db21tb25SU0FTZXJ2ZXJDQS5jcmwwdQYIKwYBBQUHAQEEaTBn
+MD4GCCsGAQUFBzAChjJodHRwOi8vY3J0LnVzZXJ0cnVzdC5jb20vSW5Db21tb25S
+U0FTZXJ2ZXJDQV8yLmNydDAlBggrBgEFBQcwAYYZaHR0cDovL29jc3AudXNlcnRy
+dXN0LmNvbTAYBgNVHREEETAPgg1zYW1sLnVjb3AuZWR1MA0GCSqGSIb3DQEBCwUA
+A4IBAQA2qRGXaXwqY7nHB+q9l26mjE23aqqzrBCXE0PZlQaqWdLL2H/88FVlf4yO
+bHauSc1VHjuBhIUEcpnCaegB79yiGmIL/rfVBgXS1XHA24okOuail4AL/kwHaQNk
+D8kmFEqoA+IjtQ9Klznu4hPRIgKekc9OTgkDYHQXQDD4C8gtmGCakNLb+Ma5bHBg
+iFq/W1eAQVRt636JKA0brjME9sS0nA/bwvYZhIf+97zqfJSkMM1rr860FsEkVh9z
+s0eUBR1p+lpfM01fIXJ3VTCaOdez3JFN3xl7OnzobRZtHU1oUIxce5XL42go+rtv
+ZYQq/sjsJubzToMtorjM6APcZxip
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/GEP" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCOP GEP</ServiceName>
+ <ServiceDescription xml:lang="en">Service Provider for Global eProcurement</ServiceDescription>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://i9complete-qa.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">i9Complete QA</mdui:DisplayName>
+ <mdui:Description xml:lang="en">I9 Processing QA Site</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/Tracker" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://i9complete.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">i9Complete</mdui:DisplayName>
+ <mdui:Description xml:lang="en">I9 Processing Site</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>
+MIID5zCCAs+gAwIBAgIJAI4XubteXKakMA0GCSqGSIb3DQEBCwUAMIGJMQswCQYD
+VQQGEwJVUzETMBEGA1UECAwKQ2FsaWZvcm5pYTEQMA4GA1UEBwwHT2FrbGFuZDE5
+MDcGA1UECgwwVW5pdmVyc2l0eSBPZiBDYWxpZm9ybmlhIE9mZmljZSBPZiBUaGUg
+UHJlc2lkZW50MRgwFgYDVQQDDA9zYW1sc3AudWNvcC5lZHUwHhcNMTgwMzE2MTkw
+MTU2WhcNMjgwMzE1MTkwMTU2WjCBiTELMAkGA1UEBhMCVVMxEzARBgNVBAgMCkNh
+bGlmb3JuaWExEDAOBgNVBAcMB09ha2xhbmQxOTA3BgNVBAoMMFVuaXZlcnNpdHkg
+T2YgQ2FsaWZvcm5pYSBPZmZpY2UgT2YgVGhlIFByZXNpZGVudDEYMBYGA1UEAwwP
+c2FtbHNwLnVjb3AuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+szwtTz6DR5Ss5BBMezjVqeBvMOYEkCi9hcSVG8d84GuFnCA7jy/fn//77dEquD7M
+/YA13mrpA0Y+Lz0AgLTDgx3nJjX2nQROjM+s0EWIVAYc9V+E8B4B335HJnDWrLXJ
+IS2L4GdI0G261iJh3z+cPPCeXpFC8hWOjnBKzyMWviQzHuROBjjD4J30IvGHBbnJ
+kFy0huc4P3wL+dM3lvgzhBCKhLCCaKm2KCiQAqBno3Xls9KltVpP9f0Kjf/a1KcM
+qf1M2+0nXWEoP1d3RRY6UdCXmyLwcMeCQsLAlm0nJZnhi3bryDsF6rhOLkGsrR8S
+BGzSwWPgw1rc7Az5BAjHPQIDAQABo1AwTjAdBgNVHQ4EFgQUiiRJo82bx2ZPFymQ
+5dS7y/DbDm0wHwYDVR0jBBgwFoAUiiRJo82bx2ZPFymQ5dS7y/DbDm0wDAYDVR0T
+BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAiASEw6ZhABMoUgA+XxNkFc5rJDz6
+leNBCpPd3LtTsi0llCLoc//4AMxo+3zqnUFSh7rBCqjSiHxWFuZiM3vQSKGn/hD9
+H5Vm/5MfAiCpvmGmrSSbSZ3VZ09P5LifraNwfw66Lpm6JLtr84nC5fMksl1+0W6L
+JMCHHrVR3iDIOh4oc1rXkqg2HUVTBWcFZB5FPa6uVp4Rfjmn5SF5rAGSvjjHKHBg
+579PJGCFn/GAdgCyquXGzNRSNw/AiDekXjszH2F2CwIrpuwwbPCxOQ9EjH7nWser
+eXoKuJhDmBZ7guw2keo/i72mAdG8CYXwgX8LjZ7k1+JHDP/bEOWACU8bQA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/Tracker" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://idpproxy-ucpath-qa.universityofcalifornia.edu/ucpath">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">IdP Proxy</mdui:DisplayName>
+ <mdui:Description xml:lang="en">IdP Proxy SP for UCPAth non-Production Environment</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpproxy-ucpath-qa.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml2-acs.php/UCPath" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://idpproxy-ucpath-qa.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml1-acs.php/UCPath" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://idpproxy-ucpath-qa.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml2-acs.php/UCPath" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://idpproxy-ucpath-qa.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml1-acs.php/UCPath/artifact" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Boyce</GivenName>
+ <EmailAddress>Mark.Boyce@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Krishna Mohan</GivenName>
+ <EmailAddress>Krishna.Mohan@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://igc-prod.ucop.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://igc-prod.ucop.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCOP InfoSphere Information Governance(IGC)-PROD</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UCOP SSO implementation to access IBM InfoSphere Information Governance Catalog application</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14943141610203188298, expires on Sun Nov 18 21:24:56 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://igc-prod.ucop.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://igc-prod.ucop.edu/Shibboleth.sso/SAML/POST" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCOP InfoSphere Information Governance(IGC)-PROD</ServiceName>
+ <ServiceDescription xml:lang="en">UCOP SSO implementation to access IBM InfoSphere Information Governance Catalog application</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UCOP IAM</GivenName>
+ <EmailAddress>amGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UCOP IAM</GivenName>
+ <EmailAddress>amGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://igc-qa.ucop.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://igc-qa.ucop.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCOP InfoSphere Information Governance(IGC)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UCOP SSO implementation to access IBM InfoSphere Information Governance Catalog application</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16580512313544507579, expires on Thu Oct 25 21:44:22 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://igc-qa.ucop.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://igc-qa.ucop.edu/Shibboleth.sso/SAML/POST" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCOP InfoSphere Information Governance(IGC)</ServiceName>
+ <ServiceDescription xml:lang="en">UCOP SSO implementation to access IBM InfoSphere Information Governance Catalog application</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UCOP IAM</GivenName>
+ <EmailAddress>iamGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UCOP IAM</GivenName>
+ <EmailAddress>iamGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://jaggaer-test.ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">https://jaggaer-test.ucop.edu</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Service Provider for Sciquest Test Environment</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/JAGGAER-Test" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">https://jaggaer-test.ucop.edu</ServiceName>
+ <ServiceDescription xml:lang="en">Service Provider for Sciquest Test Environment</ServiceDescription>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://jaggaer.ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Siquest Jaggaer</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Proxy Service Provider for Siquest Jaggaer</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/JAGGAER" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Siquest Jaggaer</ServiceName>
+ <ServiceDescription xml:lang="en">Proxy Service Provider for Siquest Jaggaer</ServiceDescription>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://jobbuilder-qa.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">JobBuilder QA</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Quality Assurance instance of JobBuilder</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>
+MIID6TCCAtGgAwIBAgIJAIwtasivR47DMA0GCSqGSIb3DQEBCwUAMIGKMQswCQYD
+VQQGEwJVUzETMBEGA1UECAwKQ2FsaWZvcm5pYTEQMA4GA1UEBwwHT2FrbGFuZDE5
+MDcGA1UECgwwVW5pdmVyc2l0eSBPZiBDYWxpZm9ybmlhIE9mZmljZSBPZiBUaGUg
+UHJlc2lkZW50MRkwFwYDVQQDDBBzYW1sLXFhLnVjb3AuZWR1MB4XDTE4MDMxNTIw
+MzA1M1oXDTI4MDMxNDIwMzA1M1owgYoxCzAJBgNVBAYTAlVTMRMwEQYDVQQIDApD
+YWxpZm9ybmlhMRAwDgYDVQQHDAdPYWtsYW5kMTkwNwYDVQQKDDBVbml2ZXJzaXR5
+IE9mIENhbGlmb3JuaWEgT2ZmaWNlIE9mIFRoZSBQcmVzaWRlbnQxGTAXBgNVBAMM
+EHNhbWwtcWEudWNvcC5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
+AQCxjHoW3dfnmemZt2vK+/Uwcq7NTTsB3d3ErWx8PipYukT/6FO6YlUnSEYWkgjA
+5Y3pMkCyNtqztdH2hiDOjBHf+01KSqTDc1sbbUP8AWeh6RbSfurh4u0DRqrQNC22
+8ClAICbZlGBA+7gEuWN+BLYo9oGNmbLUwwURjpjaxrdnGW27EHcrWJlv1AEHUIEs
+NuOVXZUXKJ+muCRTNQnujUVu2/tZn7QghovGqCwQLPpu5mXWPfAcN6hlmugl0Any
+D+bM2ABiThPZ/VF0xTbeGL39z3aeVe8EcTAU9XeimzRbCknAzeZ/LpOLvg8rmhB7
+Py7TKdGosvTiak59vS4dwDyXAgMBAAGjUDBOMB0GA1UdDgQWBBQ5dGG4AwJljCy3
+jEOmJvwY+7IG/TAfBgNVHSMEGDAWgBQ5dGG4AwJljCy3jEOmJvwY+7IG/TAMBgNV
+HRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAFx0zPayZVTCRjlGGNuYdSoT43
+OtHF/sCT47kBo4Wane6JazB6mst7W3dcYN4JLKBXMU4vg30KU7IxfxHrELDqOu2Q
+NJ9QSRVBCqA0EiGcIjw1eA/1KdhJ/IkaQ5HjgwLQAEZov+bHvNHnJeqVt2W1kB4D
+5u8jreaB9VeG4p3IVh0aGL/mOD5Z5E3d6K2DKkGjx6k2DiTnjFm16T9ew+PVT0TX
+RusTVuQPSssNx7BE9sXQjNRd5l7tLVGwFAC04MAhoF0t1JskYDdqhbAuCG//+llu
+VcbVBnzWtdpWw9oCSPjwOnb8rH0QkFW/Bl58KKpg68Y8DNnhbLeNQ5z3v/SG
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/JobBuilder" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">JobBuilder QA</ServiceName>
+ <ServiceDescription xml:lang="en">Quality Assurance instance of JobBuilder</ServiceDescription>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>~ITS-IAMGrp</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS-SOC-SHD</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://jobbuilder.ucop.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Job Builder</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://policy.ucop.edu/doc/7000470/ElectronicCommunications</mdui:PrivacyStatementURL>
+ <mdui:Logo height="66" width="231" xml:lang="en">https://publicrelations.ucmerced.edu/sites/communications.ucmerced.edu/files/images/branding-guidelines/170824_merced_logo_originalfont.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17167995875827379083, expires on Sat Jul 22 23:10:11 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://jobbuilder.ucop.edu/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://jobbuilder.ucop.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jobbuilder.ucop.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jobbuilder.ucop.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://jobbuilder.ucop.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://jobbuilder.ucop.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://jobbuilder.ucop.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://jobbuilder.ucop.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://jobbuilder.ucop.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Job Builder</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>ACS Support</GivenName>
+ <EmailAddress>bfssupport@ucmerced.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brad Chilcoat</GivenName>
+ <EmailAddress>Brad.Chilcoat@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Yer Yang</GivenName>
+ <EmailAddress>yyang22@ucmerced.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://jobbuilder.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">JobBuilder</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Service Provider for UCOP Job Builder Application</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>
+MIID5zCCAs+gAwIBAgIJAI4XubteXKakMA0GCSqGSIb3DQEBCwUAMIGJMQswCQYD
+VQQGEwJVUzETMBEGA1UECAwKQ2FsaWZvcm5pYTEQMA4GA1UEBwwHT2FrbGFuZDE5
+MDcGA1UECgwwVW5pdmVyc2l0eSBPZiBDYWxpZm9ybmlhIE9mZmljZSBPZiBUaGUg
+UHJlc2lkZW50MRgwFgYDVQQDDA9zYW1sc3AudWNvcC5lZHUwHhcNMTgwMzE2MTkw
+MTU2WhcNMjgwMzE1MTkwMTU2WjCBiTELMAkGA1UEBhMCVVMxEzARBgNVBAgMCkNh
+bGlmb3JuaWExEDAOBgNVBAcMB09ha2xhbmQxOTA3BgNVBAoMMFVuaXZlcnNpdHkg
+T2YgQ2FsaWZvcm5pYSBPZmZpY2UgT2YgVGhlIFByZXNpZGVudDEYMBYGA1UEAwwP
+c2FtbHNwLnVjb3AuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+szwtTz6DR5Ss5BBMezjVqeBvMOYEkCi9hcSVG8d84GuFnCA7jy/fn//77dEquD7M
+/YA13mrpA0Y+Lz0AgLTDgx3nJjX2nQROjM+s0EWIVAYc9V+E8B4B335HJnDWrLXJ
+IS2L4GdI0G261iJh3z+cPPCeXpFC8hWOjnBKzyMWviQzHuROBjjD4J30IvGHBbnJ
+kFy0huc4P3wL+dM3lvgzhBCKhLCCaKm2KCiQAqBno3Xls9KltVpP9f0Kjf/a1KcM
+qf1M2+0nXWEoP1d3RRY6UdCXmyLwcMeCQsLAlm0nJZnhi3bryDsF6rhOLkGsrR8S
+BGzSwWPgw1rc7Az5BAjHPQIDAQABo1AwTjAdBgNVHQ4EFgQUiiRJo82bx2ZPFymQ
+5dS7y/DbDm0wHwYDVR0jBBgwFoAUiiRJo82bx2ZPFymQ5dS7y/DbDm0wDAYDVR0T
+BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAiASEw6ZhABMoUgA+XxNkFc5rJDz6
+leNBCpPd3LtTsi0llCLoc//4AMxo+3zqnUFSh7rBCqjSiHxWFuZiM3vQSKGn/hD9
+H5Vm/5MfAiCpvmGmrSSbSZ3VZ09P5LifraNwfw66Lpm6JLtr84nC5fMksl1+0W6L
+JMCHHrVR3iDIOh4oc1rXkqg2HUVTBWcFZB5FPa6uVp4Rfjmn5SF5rAGSvjjHKHBg
+579PJGCFn/GAdgCyquXGzNRSNw/AiDekXjszH2F2CwIrpuwwbPCxOQ9EjH7nWser
+eXoKuJhDmBZ7guw2keo/i72mAdG8CYXwgX8LjZ7k1+JHDP/bEOWACU8bQA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/JobBuilder" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Charles Shook</GivenName>
+ <EmailAddress>Charles.Shoook@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://n2it.universityofcalifornia.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCPath N2IT Service Provider</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Proxy SP to support UCPath N2IT integration of UCSB and UCLA</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>
+MIID6TCCAtGgAwIBAgIJAIwtasivR47DMA0GCSqGSIb3DQEBCwUAMIGKMQswCQYD
+VQQGEwJVUzETMBEGA1UECAwKQ2FsaWZvcm5pYTEQMA4GA1UEBwwHT2FrbGFuZDE5
+MDcGA1UECgwwVW5pdmVyc2l0eSBPZiBDYWxpZm9ybmlhIE9mZmljZSBPZiBUaGUg
+UHJlc2lkZW50MRkwFwYDVQQDDBBzYW1sLXFhLnVjb3AuZWR1MB4XDTE4MDMxNTIw
+MzA1M1oXDTI4MDMxNDIwMzA1M1owgYoxCzAJBgNVBAYTAlVTMRMwEQYDVQQIDApD
+YWxpZm9ybmlhMRAwDgYDVQQHDAdPYWtsYW5kMTkwNwYDVQQKDDBVbml2ZXJzaXR5
+IE9mIENhbGlmb3JuaWEgT2ZmaWNlIE9mIFRoZSBQcmVzaWRlbnQxGTAXBgNVBAMM
+EHNhbWwtcWEudWNvcC5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
+AQCxjHoW3dfnmemZt2vK+/Uwcq7NTTsB3d3ErWx8PipYukT/6FO6YlUnSEYWkgjA
+5Y3pMkCyNtqztdH2hiDOjBHf+01KSqTDc1sbbUP8AWeh6RbSfurh4u0DRqrQNC22
+8ClAICbZlGBA+7gEuWN+BLYo9oGNmbLUwwURjpjaxrdnGW27EHcrWJlv1AEHUIEs
+NuOVXZUXKJ+muCRTNQnujUVu2/tZn7QghovGqCwQLPpu5mXWPfAcN6hlmugl0Any
+D+bM2ABiThPZ/VF0xTbeGL39z3aeVe8EcTAU9XeimzRbCknAzeZ/LpOLvg8rmhB7
+Py7TKdGosvTiak59vS4dwDyXAgMBAAGjUDBOMB0GA1UdDgQWBBQ5dGG4AwJljCy3
+jEOmJvwY+7IG/TAfBgNVHSMEGDAWgBQ5dGG4AwJljCy3jEOmJvwY+7IG/TAMBgNV
+HRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAFx0zPayZVTCRjlGGNuYdSoT43
+OtHF/sCT47kBo4Wane6JazB6mst7W3dcYN4JLKBXMU4vg30KU7IxfxHrELDqOu2Q
+NJ9QSRVBCqA0EiGcIjw1eA/1KdhJ/IkaQ5HjgwLQAEZov+bHvNHnJeqVt2W1kB4D
+5u8jreaB9VeG4p3IVh0aGL/mOD5Z5E3d6K2DKkGjx6k2DiTnjFm16T9ew+PVT0TX
+RusTVuQPSssNx7BE9sXQjNRd5l7tLVGwFAC04MAhoF0t1JskYDdqhbAuCG//+llu
+VcbVBnzWtdpWw9oCSPjwOnb8rH0QkFW/Bl58KKpg68Y8DNnhbLeNQ5z3v/SG
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpproxy-ucpath-qa.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml2-acs.php/N2IT" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Randy Roberts</GivenName>
+ <EmailAddress>Randy.Roberts@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://n2uat.universityofcalifornia.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">N2 UAT Service Provider</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Service Provider for UCPath N2 User Acceptance Testing</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpproxy-ucpath-qa.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml2-acs.php/N2UAT" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jeff MacCharles</GivenName>
+ <EmailAddress>Jeff.MacCharles@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Randy Roberts</GivenName>
+ <EmailAddress>Randy.Roberts@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://netdocs.ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCOP NetDocuments</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Office of the General Counsel NetDocuments Site</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/NetDocs" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCOP NetDocuments</ServiceName>
+ <ServiceDescription xml:lang="en">Office of the General Counsel NetDocuments Site</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Paul Atwood</GivenName>
+ <EmailAddress>Paul.Atwood@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Joshua Moore</GivenName>
+ <EmailAddress>support@netdocuments.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ogc-filetrail.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCOP OGC FileTrail</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SimpleSAMLphp Service Provider supporting UCOP OGC's FileTrail federation</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>
+MIIFgTCCBGmgAwIBAgIRAKW79A6RZoXk2kF7f/4pLsIwDQYJKoZIhvcNAQELBQAw
+djELMAkGA1UEBhMCVVMxCzAJBgNVBAgTAk1JMRIwEAYDVQQHEwlBbm4gQXJib3Ix
+EjAQBgNVBAoTCUludGVybmV0MjERMA8GA1UECxMISW5Db21tb24xHzAdBgNVBAMT
+FkluQ29tbW9uIFJTQSBTZXJ2ZXIgQ0EwHhcNMTUwMzIzMDAwMDAwWhcNMTgwMzIy
+MjM1OTU5WjCBvDELMAkGA1UEBhMCVVMxDjAMBgNVBBETBTk0NjA3MQswCQYDVQQI
+EwJDQTEQMA4GA1UEBxMHT2FrbGFuZDEdMBsGA1UECRMUMTExMSBGcmFua2xpbiBT
+dHJlZXQxOTA3BgNVBAoTMFVuaXZlcnNpdHkgb2YgQ2FsaWZvcm5pYSBPZmZpY2Ug
+b2YgdGhlIFByZXNpZGVudDEMMAoGA1UECxMDSVJDMRYwFAYDVQQDEw1zYW1sLnVj
+b3AuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsU79M0n3EPme
+if+os8UvQgHzlGm4DvKp05ri4a/rp4l3Y8a/aGWXXOY2o+eYi1Io0F35Wpaez6YF
+cDJlEnuDoY4DI67gVBZ7yaCKo4hbprVC86qwlzH/bCzzooIbxhOoPTJBe5I8famw
+tpavW8jo7Af3sPOu8Mniv9ZfSlQzZZWduU5VfwNtUjQG5JgQVrUWY2hC/ErWZmLX
+jm+Xlx3cJTtJbNOXLLNtQQ2bcSgWRVcbYaUxnuuJABAYxnMkHsL6c/mJUSbos42j
+zHw61X/NE4i4zvRiVsYfphz5KjV1yPgZVqsPbPLLRaVZ7olWUUM1fhx/EazhdKXo
+lWQEeUlcTQIDAQABo4IBwTCCAb0wHwYDVR0jBBgwFoAUHgWjd49sluJbh0umtIas
+cQAM5zgwHQYDVR0OBBYEFMGCtZLWM4Xo5l1wh7fgg1C2Xg5MMA4GA1UdDwEB/wQE
+AwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcD
+AjBnBgNVHSAEYDBeMFIGDCsGAQQBriMBBAMBATBCMEAGCCsGAQUFBwIBFjRodHRw
+czovL3d3dy5pbmNvbW1vbi5vcmcvY2VydC9yZXBvc2l0b3J5L2Nwc19zc2wucGRm
+MAgGBmeBDAECAjBEBgNVHR8EPTA7MDmgN6A1hjNodHRwOi8vY3JsLmluY29tbW9u
+LXJzYS5vcmcvSW5Db21tb25SU0FTZXJ2ZXJDQS5jcmwwdQYIKwYBBQUHAQEEaTBn
+MD4GCCsGAQUFBzAChjJodHRwOi8vY3J0LnVzZXJ0cnVzdC5jb20vSW5Db21tb25S
+U0FTZXJ2ZXJDQV8yLmNydDAlBggrBgEFBQcwAYYZaHR0cDovL29jc3AudXNlcnRy
+dXN0LmNvbTAYBgNVHREEETAPgg1zYW1sLnVjb3AuZWR1MA0GCSqGSIb3DQEBCwUA
+A4IBAQA2qRGXaXwqY7nHB+q9l26mjE23aqqzrBCXE0PZlQaqWdLL2H/88FVlf4yO
+bHauSc1VHjuBhIUEcpnCaegB79yiGmIL/rfVBgXS1XHA24okOuail4AL/kwHaQNk
+D8kmFEqoA+IjtQ9Klznu4hPRIgKekc9OTgkDYHQXQDD4C8gtmGCakNLb+Ma5bHBg
+iFq/W1eAQVRt636JKA0brjME9sS0nA/bwvYZhIf+97zqfJSkMM1rr860FsEkVh9z
+s0eUBR1p+lpfM01fIXJ3VTCaOdez3JFN3xl7OnzobRZtHU1oUIxce5XL42go+rtv
+ZYQq/sjsJubzToMtorjM6APcZxip
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/FileTrail" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/FileTrail" index="2"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Boyce</GivenName>
+ <EmailAddress>Mark.Boyce@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Krishna Mohan</GivenName>
+ <EmailAddress>Krishna.Mohan@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://pcpy.universityofcalifornia.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Prod Copy Service Provider</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UCPath Production Copy</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpproxy-ucpath-qa.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml2-acs.php/PCPY" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAMGroup</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://procurementbenefitsso.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wae-sp.ucop.edu/bb_sso/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UC Procurement Benefit Bank - SSO Validation</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Service Provider for UC Procurement Benefit Bank campus SSO Validation testing</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16674197931618020689, expires on Fri May 18 18:38:38 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wae-sp.ucop.edu/bb_sso/Shibboleth.sso/SAML2/POST" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://procurementbenefit.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wae-sp.ucop.edu/bb/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UC Procurement Benefit Bank - Production SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Production Service Provider for UCOP Procurement's Benefit Bank</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16674197931618020689, expires on Fri May 18 18:38:38 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wae-sp.ucop.edu/bb/Shibboleth.sso/SAML2/POST" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://promapp.ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">OGC Promapp</mdui:DisplayName>
+ <mdui:Description xml:lang="en">OGC Prom Application. Promapp is a process management/documentation application</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/OGC-Promapp" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">OGC Promapp</ServiceName>
+ <ServiceDescription xml:lang="en">OGC Prom Application. Promapp is a process management/documentation application</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://puat02.universityofcalifornia.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCPath PUAT02 Location Service Provider</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Service Provider for P-Stack User Acceptance Testing</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpproxy-ucpath-qa.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml2-acs.php/PUAT02" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAMGroup</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://puat.universityofcalifornia.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Production UAT</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UAT for UCPath Pre-Prod Environment</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>
+MIIFgTCCBGmgAwIBAgIRAKW79A6RZoXk2kF7f/4pLsIwDQYJKoZIhvcNAQELBQAw
+djELMAkGA1UEBhMCVVMxCzAJBgNVBAgTAk1JMRIwEAYDVQQHEwlBbm4gQXJib3Ix
+EjAQBgNVBAoTCUludGVybmV0MjERMA8GA1UECxMISW5Db21tb24xHzAdBgNVBAMT
+FkluQ29tbW9uIFJTQSBTZXJ2ZXIgQ0EwHhcNMTUwMzIzMDAwMDAwWhcNMTgwMzIy
+MjM1OTU5WjCBvDELMAkGA1UEBhMCVVMxDjAMBgNVBBETBTk0NjA3MQswCQYDVQQI
+EwJDQTEQMA4GA1UEBxMHT2FrbGFuZDEdMBsGA1UECRMUMTExMSBGcmFua2xpbiBT
+dHJlZXQxOTA3BgNVBAoTMFVuaXZlcnNpdHkgb2YgQ2FsaWZvcm5pYSBPZmZpY2Ug
+b2YgdGhlIFByZXNpZGVudDEMMAoGA1UECxMDSVJDMRYwFAYDVQQDEw1zYW1sLnVj
+b3AuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsU79M0n3EPme
+if+os8UvQgHzlGm4DvKp05ri4a/rp4l3Y8a/aGWXXOY2o+eYi1Io0F35Wpaez6YF
+cDJlEnuDoY4DI67gVBZ7yaCKo4hbprVC86qwlzH/bCzzooIbxhOoPTJBe5I8famw
+tpavW8jo7Af3sPOu8Mniv9ZfSlQzZZWduU5VfwNtUjQG5JgQVrUWY2hC/ErWZmLX
+jm+Xlx3cJTtJbNOXLLNtQQ2bcSgWRVcbYaUxnuuJABAYxnMkHsL6c/mJUSbos42j
+zHw61X/NE4i4zvRiVsYfphz5KjV1yPgZVqsPbPLLRaVZ7olWUUM1fhx/EazhdKXo
+lWQEeUlcTQIDAQABo4IBwTCCAb0wHwYDVR0jBBgwFoAUHgWjd49sluJbh0umtIas
+cQAM5zgwHQYDVR0OBBYEFMGCtZLWM4Xo5l1wh7fgg1C2Xg5MMA4GA1UdDwEB/wQE
+AwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcD
+AjBnBgNVHSAEYDBeMFIGDCsGAQQBriMBBAMBATBCMEAGCCsGAQUFBwIBFjRodHRw
+czovL3d3dy5pbmNvbW1vbi5vcmcvY2VydC9yZXBvc2l0b3J5L2Nwc19zc2wucGRm
+MAgGBmeBDAECAjBEBgNVHR8EPTA7MDmgN6A1hjNodHRwOi8vY3JsLmluY29tbW9u
+LXJzYS5vcmcvSW5Db21tb25SU0FTZXJ2ZXJDQS5jcmwwdQYIKwYBBQUHAQEEaTBn
+MD4GCCsGAQUFBzAChjJodHRwOi8vY3J0LnVzZXJ0cnVzdC5jb20vSW5Db21tb25S
+U0FTZXJ2ZXJDQV8yLmNydDAlBggrBgEFBQcwAYYZaHR0cDovL29jc3AudXNlcnRy
+dXN0LmNvbTAYBgNVHREEETAPgg1zYW1sLnVjb3AuZWR1MA0GCSqGSIb3DQEBCwUA
+A4IBAQA2qRGXaXwqY7nHB+q9l26mjE23aqqzrBCXE0PZlQaqWdLL2H/88FVlf4yO
+bHauSc1VHjuBhIUEcpnCaegB79yiGmIL/rfVBgXS1XHA24okOuail4AL/kwHaQNk
+D8kmFEqoA+IjtQ9Klznu4hPRIgKekc9OTgkDYHQXQDD4C8gtmGCakNLb+Ma5bHBg
+iFq/W1eAQVRt636JKA0brjME9sS0nA/bwvYZhIf+97zqfJSkMM1rr860FsEkVh9z
+s0eUBR1p+lpfM01fIXJ3VTCaOdez3JFN3xl7OnzobRZtHU1oUIxce5XL42go+rtv
+ZYQq/sjsJubzToMtorjM6APcZxip
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>
+MIID6TCCAtGgAwIBAgIJAIwtasivR47DMA0GCSqGSIb3DQEBCwUAMIGKMQswCQYD
+VQQGEwJVUzETMBEGA1UECAwKQ2FsaWZvcm5pYTEQMA4GA1UEBwwHT2FrbGFuZDE5
+MDcGA1UECgwwVW5pdmVyc2l0eSBPZiBDYWxpZm9ybmlhIE9mZmljZSBPZiBUaGUg
+UHJlc2lkZW50MRkwFwYDVQQDDBBzYW1sLXFhLnVjb3AuZWR1MB4XDTE4MDMxNTIw
+MzA1M1oXDTI4MDMxNDIwMzA1M1owgYoxCzAJBgNVBAYTAlVTMRMwEQYDVQQIDApD
+YWxpZm9ybmlhMRAwDgYDVQQHDAdPYWtsYW5kMTkwNwYDVQQKDDBVbml2ZXJzaXR5
+IE9mIENhbGlmb3JuaWEgT2ZmaWNlIE9mIFRoZSBQcmVzaWRlbnQxGTAXBgNVBAMM
+EHNhbWwtcWEudWNvcC5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
+AQCxjHoW3dfnmemZt2vK+/Uwcq7NTTsB3d3ErWx8PipYukT/6FO6YlUnSEYWkgjA
+5Y3pMkCyNtqztdH2hiDOjBHf+01KSqTDc1sbbUP8AWeh6RbSfurh4u0DRqrQNC22
+8ClAICbZlGBA+7gEuWN+BLYo9oGNmbLUwwURjpjaxrdnGW27EHcrWJlv1AEHUIEs
+NuOVXZUXKJ+muCRTNQnujUVu2/tZn7QghovGqCwQLPpu5mXWPfAcN6hlmugl0Any
+D+bM2ABiThPZ/VF0xTbeGL39z3aeVe8EcTAU9XeimzRbCknAzeZ/LpOLvg8rmhB7
+Py7TKdGosvTiak59vS4dwDyXAgMBAAGjUDBOMB0GA1UdDgQWBBQ5dGG4AwJljCy3
+jEOmJvwY+7IG/TAfBgNVHSMEGDAWgBQ5dGG4AwJljCy3jEOmJvwY+7IG/TAMBgNV
+HRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAFx0zPayZVTCRjlGGNuYdSoT43
+OtHF/sCT47kBo4Wane6JazB6mst7W3dcYN4JLKBXMU4vg30KU7IxfxHrELDqOu2Q
+NJ9QSRVBCqA0EiGcIjw1eA/1KdhJ/IkaQ5HjgwLQAEZov+bHvNHnJeqVt2W1kB4D
+5u8jreaB9VeG4p3IVh0aGL/mOD5Z5E3d6K2DKkGjx6k2DiTnjFm16T9ew+PVT0TX
+RusTVuQPSssNx7BE9sXQjNRd5l7tLVGwFAC04MAhoF0t1JskYDdqhbAuCG//+llu
+VcbVBnzWtdpWw9oCSPjwOnb8rH0QkFW/Bl58KKpg68Y8DNnhbLeNQ5z3v/SG
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpproxy-ucpath-qa.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml2-acs.php/PUAT" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Randy Roberts</GivenName>
+ <EmailAddress>Randy.Roberts@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://qa.etransfer.ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://qa.etransfer.ucop.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">eTransfer QA</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The eTransfer web application is designed to improve the intercampus employee transfer process by providing an easy to use web interface.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10558604939364310651, expires on Sun Sep 14 23:29:59 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://qa.etransfer.ucop.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://qa.etransfer.ucop.edu/Shibboleth.sso/SAML/Artifact" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://qa.etransfer.ucop.edu/Shibboleth.sso/SAML/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://qa.etransfer.ucop.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://qa.etransfer.ucop.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="5"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">eTransfer QA</ServiceName>
+ <ServiceDescription xml:lang="en">The eTransfer web application is designed to improve the intercampus employee transfer process by providing an easy to use web interface.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Christopher Scott</GivenName>
+ <EmailAddress>Christopher.Scott@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Micheal MacDonald</GivenName>
+ <EmailAddress>Michael.MacDonald@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Micheal MacDonald</GivenName>
+ <EmailAddress>Michael.MacDonald@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://qa.procurementbenefit.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wae-sp.ucop.edu/bb_qa/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UC Procurement Benefit Bank - Quality Assurance</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Service Provider for UC Procurement Benefit Bank QA site</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16674197931618020689, expires on Fri May 18 18:38:38 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wae-sp.ucop.edu/bb_qa/Shibboleth.sso/SAML2/POST" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://qa.tntjira.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">TNT JIRA QA</mdui:DisplayName>
+ <mdui:Description xml:lang="en">QA Instance of TNT's JIRA</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>
+MIID6TCCAtGgAwIBAgIJAIwtasivR47DMA0GCSqGSIb3DQEBCwUAMIGKMQswCQYD
+VQQGEwJVUzETMBEGA1UECAwKQ2FsaWZvcm5pYTEQMA4GA1UEBwwHT2FrbGFuZDE5
+MDcGA1UECgwwVW5pdmVyc2l0eSBPZiBDYWxpZm9ybmlhIE9mZmljZSBPZiBUaGUg
+UHJlc2lkZW50MRkwFwYDVQQDDBBzYW1sLXFhLnVjb3AuZWR1MB4XDTE4MDMxNTIw
+MzA1M1oXDTI4MDMxNDIwMzA1M1owgYoxCzAJBgNVBAYTAlVTMRMwEQYDVQQIDApD
+YWxpZm9ybmlhMRAwDgYDVQQHDAdPYWtsYW5kMTkwNwYDVQQKDDBVbml2ZXJzaXR5
+IE9mIENhbGlmb3JuaWEgT2ZmaWNlIE9mIFRoZSBQcmVzaWRlbnQxGTAXBgNVBAMM
+EHNhbWwtcWEudWNvcC5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
+AQCxjHoW3dfnmemZt2vK+/Uwcq7NTTsB3d3ErWx8PipYukT/6FO6YlUnSEYWkgjA
+5Y3pMkCyNtqztdH2hiDOjBHf+01KSqTDc1sbbUP8AWeh6RbSfurh4u0DRqrQNC22
+8ClAICbZlGBA+7gEuWN+BLYo9oGNmbLUwwURjpjaxrdnGW27EHcrWJlv1AEHUIEs
+NuOVXZUXKJ+muCRTNQnujUVu2/tZn7QghovGqCwQLPpu5mXWPfAcN6hlmugl0Any
+D+bM2ABiThPZ/VF0xTbeGL39z3aeVe8EcTAU9XeimzRbCknAzeZ/LpOLvg8rmhB7
+Py7TKdGosvTiak59vS4dwDyXAgMBAAGjUDBOMB0GA1UdDgQWBBQ5dGG4AwJljCy3
+jEOmJvwY+7IG/TAfBgNVHSMEGDAWgBQ5dGG4AwJljCy3jEOmJvwY+7IG/TAMBgNV
+HRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAFx0zPayZVTCRjlGGNuYdSoT43
+OtHF/sCT47kBo4Wane6JazB6mst7W3dcYN4JLKBXMU4vg30KU7IxfxHrELDqOu2Q
+NJ9QSRVBCqA0EiGcIjw1eA/1KdhJ/IkaQ5HjgwLQAEZov+bHvNHnJeqVt2W1kB4D
+5u8jreaB9VeG4p3IVh0aGL/mOD5Z5E3d6K2DKkGjx6k2DiTnjFm16T9ew+PVT0TX
+RusTVuQPSssNx7BE9sXQjNRd5l7tLVGwFAC04MAhoF0t1JskYDdqhbAuCG//+llu
+VcbVBnzWtdpWw9oCSPjwOnb8rH0QkFW/Bl58KKpg68Y8DNnhbLeNQ5z3v/SG
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/QAJira" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">TNT JIRA QA</ServiceName>
+ <ServiceDescription xml:lang="en">QA Instance of TNT's JIRA</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>sco@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://roadmap-dev.cdlib.org">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://roadmap-dev.cdlib.org/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uc3-roadmap-dev.cdlib.org/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DMP Roadmap</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Create, share, review, and publish Data Management Plans conforming to Institution and Funder requirements</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://roadmap-dev.cdlib.org/about_us</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.cdlib.org/about/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13734791667620146013, expires on Sun Apr 25 18:50:01 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://roadmap-dev.cdlib.org/Shibboleth.sso/SAML/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://roadmap-dev.cdlib.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://roadmap-dev.cdlib.org/Shibboleth.sso/SAML/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uc3-roadmap-dev.cdlib.org/Shibboleth.sso/SAML/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc3-roadmap-dev.cdlib.org/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uc3-roadmap-dev.cdlib.org/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DMP Roadmap</ServiceName>
+ <ServiceDescription xml:lang="en">Create, share, review, and publish Data Management Plans conforming to Institution and Funder requirements</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Marisa Strong</GivenName>
+ <EmailAddress>marisa.strong@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephanie Simms</GivenName>
+ <EmailAddress>stephanie.simms@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jim Vanderveen</GivenName>
+ <EmailAddress>jim.vanderveen@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://roots.ucop.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://roots.ucop.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Redwood Roots SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Service provider for the Redwood Roots application</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 694904333970449377891761960383991075659639503256, expires on Mon Mar 12 22:27:21 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://roots.ucop.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://roots.ucop.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://roots.ucop.edu/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://roots.ucop.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://roots.ucop.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://roots.ucop.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://roots.ucop.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sandbox.procurementbenefit.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wae-sp.ucop.edu/sandbox/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Procurement Benefit Sandbox</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Sandbox for Procurement Benefit development and testing</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16674197931618020689, expires on Fri May 18 18:38:38 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wae-sp.ucop.edu/sandbox/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wae-sp.ucop.edu/sandbox/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wae-sp.ucop.edu/sandbox/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wae-sp.ucop.edu/sandbox/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Procurement Benefit Sandbox</ServiceName>
+ <ServiceDescription xml:lang="en">Sandbox for Procurement Benefit development and testing</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>iamgroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://serviceNow-uat.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCOP Service Now UAT</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ServiceNow is a cloud based tool that supports ITIL processes such as incident management, release management, change management, etc. This request is to allow campus users to access UCOP ServiceNow, a trusted application, to report incidents for shared services applications that are managed by UCOP such as but not limited to UCPath.
+
+</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/serviceNow-UAT" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Kalyan Vallamsetla</GivenName>
+ <EmailAddress>Kalyan.Vallamsetla@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kalyan Vallamsetla</GivenName>
+ <EmailAddress>Kalyan.Vallamsetla@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Sean Villa-Carlos</GivenName>
+ <EmailAddress>Sean.Villa-Carlos@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://serviceNow.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCOP Service Now</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ServiceNow is a cloud based tool that supports ITIL processes such as incident management, release management, change management, etc. This request is to allow campus users to access UCOP ServiceNow, a trusted application, to report incidents for shared services applications that are managed by UCOP such as but not limited to UCPath. </mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>
+MIID5zCCAs+gAwIBAgIJAI4XubteXKakMA0GCSqGSIb3DQEBCwUAMIGJMQswCQYD
+VQQGEwJVUzETMBEGA1UECAwKQ2FsaWZvcm5pYTEQMA4GA1UEBwwHT2FrbGFuZDE5
+MDcGA1UECgwwVW5pdmVyc2l0eSBPZiBDYWxpZm9ybmlhIE9mZmljZSBPZiBUaGUg
+UHJlc2lkZW50MRgwFgYDVQQDDA9zYW1sc3AudWNvcC5lZHUwHhcNMTgwMzE2MTkw
+MTU2WhcNMjgwMzE1MTkwMTU2WjCBiTELMAkGA1UEBhMCVVMxEzARBgNVBAgMCkNh
+bGlmb3JuaWExEDAOBgNVBAcMB09ha2xhbmQxOTA3BgNVBAoMMFVuaXZlcnNpdHkg
+T2YgQ2FsaWZvcm5pYSBPZmZpY2UgT2YgVGhlIFByZXNpZGVudDEYMBYGA1UEAwwP
+c2FtbHNwLnVjb3AuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+szwtTz6DR5Ss5BBMezjVqeBvMOYEkCi9hcSVG8d84GuFnCA7jy/fn//77dEquD7M
+/YA13mrpA0Y+Lz0AgLTDgx3nJjX2nQROjM+s0EWIVAYc9V+E8B4B335HJnDWrLXJ
+IS2L4GdI0G261iJh3z+cPPCeXpFC8hWOjnBKzyMWviQzHuROBjjD4J30IvGHBbnJ
+kFy0huc4P3wL+dM3lvgzhBCKhLCCaKm2KCiQAqBno3Xls9KltVpP9f0Kjf/a1KcM
+qf1M2+0nXWEoP1d3RRY6UdCXmyLwcMeCQsLAlm0nJZnhi3bryDsF6rhOLkGsrR8S
+BGzSwWPgw1rc7Az5BAjHPQIDAQABo1AwTjAdBgNVHQ4EFgQUiiRJo82bx2ZPFymQ
+5dS7y/DbDm0wHwYDVR0jBBgwFoAUiiRJo82bx2ZPFymQ5dS7y/DbDm0wDAYDVR0T
+BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAiASEw6ZhABMoUgA+XxNkFc5rJDz6
+leNBCpPd3LtTsi0llCLoc//4AMxo+3zqnUFSh7rBCqjSiHxWFuZiM3vQSKGn/hD9
+H5Vm/5MfAiCpvmGmrSSbSZ3VZ09P5LifraNwfw66Lpm6JLtr84nC5fMksl1+0W6L
+JMCHHrVR3iDIOh4oc1rXkqg2HUVTBWcFZB5FPa6uVp4Rfjmn5SF5rAGSvjjHKHBg
+579PJGCFn/GAdgCyquXGzNRSNw/AiDekXjszH2F2CwIrpuwwbPCxOQ9EjH7nWser
+eXoKuJhDmBZ7guw2keo/i72mAdG8CYXwgX8LjZ7k1+JHDP/bEOWACU8bQA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/serviceNow" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kalyan Vallamsetla</GivenName>
+ <EmailAddress>Kalyan.Vallamsetla@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kalyan Vallamsetla</GivenName>
+ <EmailAddress>Kalyan.Vallamsetla@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Sean Villa-Carlos</GivenName>
+ <EmailAddress>Sean.Villa-Carlos@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://siteimprove.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UC Web Accessibility Testing Tool</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SiteImprove is a web site assessment tool licensed by UC. The license is to support accessibility scanning and reporting for UC Websites.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/SiteImprove" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UC Web Accessibility Testing Tool</ServiceName>
+ <ServiceDescription xml:lang="en">SiteImprove is a web site assessment tool licensed by UC. The license is to support accessibility scanning and reporting for UC Websites.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Judy Thai</GivenName>
+ <EmailAddress>Judy.Thai@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Yvonne Tevis</GivenName>
+ <EmailAddress>Yvonne.Tevis@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://spuat.universityofcalifornia.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SP UAT Service Provider</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Service Provider for UCPath SP User Acceptance Testing</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpproxy-ucpath-qa.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml2-acs.php/SPUAT" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jeff MacCharles</GivenName>
+ <EmailAddress>Jeff.MacCharles@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Randy Roberts</GivenName>
+ <EmailAddress>Randy.Roberts@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.ucanr.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://idm.uat.ucanr.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCANR IDM Service Provider</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9458664441808561335, expires on Sun May 2 21:56:32 2027 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idm.uat.ucanr.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idm.uat.ucanr.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://idm.uat.ucanr.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://idm.uat.ucanr.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Steve Edberg</GivenName>
+ <EmailAddress>sbedberg@ucanr.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://tntjira.ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">TnTJira</mdui:DisplayName>
+ <mdui:Description xml:lang="en">QA Jira Instance</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/TnTJira" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">TnTJira</ServiceName>
+ <ServiceDescription xml:lang="en">QA Jira Instance</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uat.roots.ucop.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uat.roots.ucop.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Redwood Roots UAT</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UAT Service Provider for Redwood Roots</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 602422340883327940940795091844395382842571603421, expires on Sat Mar 24 17:32:27 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uat.roots.ucop.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uat.roots.ucop.edu/Shibboleth.sso/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uat.roots.ucop.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uat.roots.ucop.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uat.roots.ucop.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uat.roots.ucop.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uat.visualizedata.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Tableau UAT</mdui:DisplayName>
+ <mdui:Description xml:lang="en">User Acceptance Testing for Tableau at UCOP</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-logout.php/UAT-Tableau"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/UAT-Tableau" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml1-acs.php/UAT-Tableau" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/UAT-Tableau" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml1-acs.php/UAT-Tableau/artifact" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Krishna Malipatel</GivenName>
+ <EmailAddress>Krishna.Malipatel@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucanridp.ucanr.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucanr.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California, Agriculture and Natural Resources</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity Provider for UCANR</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 536462225106477217453954057090186427894161017160, expires on Sun Nov 23 19:48:00 2036 GMT -->
+ <ds:X509Certificate>
+MIIDPzCCAiegAwIBAgIUXffMU5sFDAB1FCSA3JaBCMR5CUgwDQYJKoZIhvcNAQEL
+BQAwIDEeMBwGA1UEAwwVdWNhbnJzaGliMDEudWNhbnIuZWR1MB4XDTE2MTEyMzE5
+NDgwMFoXDTM2MTEyMzE5NDgwMFowIDEeMBwGA1UEAwwVdWNhbnJzaGliMDEudWNh
+bnIuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAlDjnyoTxp/9m
+/qtBcbmFtGKMlnY5PVD/trCRxg7KD9n2ennokClyOIacEDiokK9WaV2ALib7MB27
+R1kXraVA8i7Tgq1Wco8ApDMbEzFVzQpUwGaUUYzgvyZ6B5Fp8Qt26suBkboQbz/9
+6XQPiigwSsRXni+PihzOMXWj/Bjb8GbjKlDumnyyxViUw8UIDNDWLmzGrx15kiIF
+ewPAtZm490oHAUScRPg+9utlWNMRI1dwF0aXUHB111qwvJgj67K6WAVbC9+EXV5s
+U6Ksp+/4ZwdjsvAVg9REreEIilLWhqJlhmyd9rdoqk/wlQpOU+rhVH2tiaZir1pC
+o84lMSMBvQIDAQABo3EwbzAdBgNVHQ4EFgQUZZv/mI4OWR0ews925MO2UFT0vYEw
+TgYDVR0RBEcwRYIVdWNhbnJzaGliMDEudWNhbnIuZWR1hixodHRwczovL3VjYW5y
+c2hpYjAxLnVjYW5yLmVkdS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOC
+AQEAgVbOcybA7SyZ8miKHFARvutB/iXI6uXiMUmwztKqrAyRW/VK+O2igZ6YcucQ
+GINUdB/LBStodzmT4bYR8UP+gHpdFwkjdXxdwtyM64bR3siS0AvltkJd6hSgALML
+7gbv2ulC1jbVfzW8RIaWCJJzu+ZDtQUjTqzIj8JmfrGYymCAz3R27gpEv0180eo+
+ziT5ffXTINhlvtZuDoFO4TCg0dckUSssddZt0iarWE3wEGWHji3JQIeeQGtISWJw
+vRQRsMIt+qn3eSzhW6hzS28BuvmbhTbTGWDnKF7iKA2qr9yfk+GzPKA9p/lL4q0S
+xHMYXB7tpiADzM08Sjggjy7zmw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucanridp.ucanr.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucanridp.ucanr.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ucanridp.ucanr.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://ucanridp.ucanr.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security OPerations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uchealth-zoom.universityofcalifornia.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCHealth-Zoom</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Zoom Conferencing for UCHealth</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/UCHealth-Zoom" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Boyce</GivenName>
+ <EmailAddress>Mark.Boyce@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucpathpmojiradev.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCPATH PMO JIRA Dev</mdui:DisplayName>
+ <mdui:Description xml:lang="en">JIRA Instance for UCPath PMO Development</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/Jira" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/Jira" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCPATH PMO JIRA Dev</ServiceName>
+ <ServiceDescription xml:lang="en">JIRA Instance for UCPath PMO Development</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Boyce</GivenName>
+ <EmailAddress>Mark.Boyce@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Krishna Mohan</GivenName>
+ <EmailAddress>Krishna.Mohan@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucpathpmojira.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCPATH PMO JIRA Prod</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Production JIRA instance for UCPath PMO</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/Jira" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/Jira" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCPATH PMO JIRA Prod</ServiceName>
+ <ServiceDescription xml:lang="en">Production JIRA instance for UCPath PMO</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucpath.universityofcalifornia.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University Of California UCPath Service Provider</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Service Provider supporting UCPath Federation</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>
+MIIFgTCCBGmgAwIBAgIRAKW79A6RZoXk2kF7f/4pLsIwDQYJKoZIhvcNAQELBQAw
+djELMAkGA1UEBhMCVVMxCzAJBgNVBAgTAk1JMRIwEAYDVQQHEwlBbm4gQXJib3Ix
+EjAQBgNVBAoTCUludGVybmV0MjERMA8GA1UECxMISW5Db21tb24xHzAdBgNVBAMT
+FkluQ29tbW9uIFJTQSBTZXJ2ZXIgQ0EwHhcNMTUwMzIzMDAwMDAwWhcNMTgwMzIy
+MjM1OTU5WjCBvDELMAkGA1UEBhMCVVMxDjAMBgNVBBETBTk0NjA3MQswCQYDVQQI
+EwJDQTEQMA4GA1UEBxMHT2FrbGFuZDEdMBsGA1UECRMUMTExMSBGcmFua2xpbiBT
+dHJlZXQxOTA3BgNVBAoTMFVuaXZlcnNpdHkgb2YgQ2FsaWZvcm5pYSBPZmZpY2Ug
+b2YgdGhlIFByZXNpZGVudDEMMAoGA1UECxMDSVJDMRYwFAYDVQQDEw1zYW1sLnVj
+b3AuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsU79M0n3EPme
+if+os8UvQgHzlGm4DvKp05ri4a/rp4l3Y8a/aGWXXOY2o+eYi1Io0F35Wpaez6YF
+cDJlEnuDoY4DI67gVBZ7yaCKo4hbprVC86qwlzH/bCzzooIbxhOoPTJBe5I8famw
+tpavW8jo7Af3sPOu8Mniv9ZfSlQzZZWduU5VfwNtUjQG5JgQVrUWY2hC/ErWZmLX
+jm+Xlx3cJTtJbNOXLLNtQQ2bcSgWRVcbYaUxnuuJABAYxnMkHsL6c/mJUSbos42j
+zHw61X/NE4i4zvRiVsYfphz5KjV1yPgZVqsPbPLLRaVZ7olWUUM1fhx/EazhdKXo
+lWQEeUlcTQIDAQABo4IBwTCCAb0wHwYDVR0jBBgwFoAUHgWjd49sluJbh0umtIas
+cQAM5zgwHQYDVR0OBBYEFMGCtZLWM4Xo5l1wh7fgg1C2Xg5MMA4GA1UdDwEB/wQE
+AwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcD
+AjBnBgNVHSAEYDBeMFIGDCsGAQQBriMBBAMBATBCMEAGCCsGAQUFBwIBFjRodHRw
+czovL3d3dy5pbmNvbW1vbi5vcmcvY2VydC9yZXBvc2l0b3J5L2Nwc19zc2wucGRm
+MAgGBmeBDAECAjBEBgNVHR8EPTA7MDmgN6A1hjNodHRwOi8vY3JsLmluY29tbW9u
+LXJzYS5vcmcvSW5Db21tb25SU0FTZXJ2ZXJDQS5jcmwwdQYIKwYBBQUHAQEEaTBn
+MD4GCCsGAQUFBzAChjJodHRwOi8vY3J0LnVzZXJ0cnVzdC5jb20vSW5Db21tb25S
+U0FTZXJ2ZXJDQV8yLmNydDAlBggrBgEFBQcwAYYZaHR0cDovL29jc3AudXNlcnRy
+dXN0LmNvbTAYBgNVHREEETAPgg1zYW1sLnVjb3AuZWR1MA0GCSqGSIb3DQEBCwUA
+A4IBAQA2qRGXaXwqY7nHB+q9l26mjE23aqqzrBCXE0PZlQaqWdLL2H/88FVlf4yO
+bHauSc1VHjuBhIUEcpnCaegB79yiGmIL/rfVBgXS1XHA24okOuail4AL/kwHaQNk
+D8kmFEqoA+IjtQ9Klznu4hPRIgKekc9OTgkDYHQXQDD4C8gtmGCakNLb+Ma5bHBg
+iFq/W1eAQVRt636JKA0brjME9sS0nA/bwvYZhIf+97zqfJSkMM1rr860FsEkVh9z
+s0eUBR1p+lpfM01fIXJ3VTCaOdez3JFN3xl7OnzobRZtHU1oUIxce5XL42go+rtv
+ZYQq/sjsJubzToMtorjM6APcZxip
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpproxy-ucpath.universityofcalifornia.edu/simplesaml/module.php/saml/sp/saml2-acs.php/UCPath" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://unifyhr-qa.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">FMEV Service Provider</mdui:DisplayName>
+ <mdui:Description xml:lang="en">QA Service Provider for UnifyHR's application</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>
+MIID6TCCAtGgAwIBAgIJAIwtasivR47DMA0GCSqGSIb3DQEBCwUAMIGKMQswCQYDVQQGEwJVUzETMBEGA1UECAwKQ2FsaWZvcm5pYTEQMA4GA1UEBwwHT2FrbGFuZDE5MDcGA1UECgwwVW5pdmVyc2l0eSBPZiBDYWxpZm9ybmlhIE9mZmljZSBPZiBUaGUgUHJlc2lkZW50MRkwFwYDVQQDDBBzYW1sLXFhLnVjb3AuZWR1MB4XDTE4MDMxNTIwMzA1M1oXDTI4MDMxNDIwMzA1M1owgYoxCzAJBgNVBAYTAlVTMRMwEQYDVQQIDApDYWxpZm9ybmlhMRAwDgYDVQQHDAdPYWtsYW5kMTkwNwYDVQQKDDBVbml2ZXJzaXR5IE9mIENhbGlmb3JuaWEgT2ZmaWNlIE9mIFRoZSBQcmVzaWRlbnQxGTAXBgNVBAMMEHNhbWwtcWEudWNvcC5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCxjHoW3dfnmemZt2vK+/Uwcq7NTTsB3d3ErWx8PipYukT/6FO6YlUnSEYWkgjA5Y3pMkCyNtqztdH2hiDOjBHf+01KSqTDc1sbbUP8AWeh6RbSfurh4u0DRqrQNC228ClAICbZlGBA+7gEuWN+BLYo9oGNmbLUwwURjpjaxrdnGW27EHcrWJlv1AEHUIEsNuOVXZUXKJ+muCRTNQnujUVu2/tZn7QghovGqCwQLPpu5mXWPfAcN6hlmugl0AnyD+bM2ABiThPZ/VF0xTbeGL39z3aeVe8EcTAU9XeimzRbCknAzeZ/LpOLvg8rmhB7Py7TKdGosvTiak59vS4dwDyXAgMBAAGjUDBOMB0GA1UdDgQWBBQ5dGG4AwJljCy3jEOmJvwY+7IG/TAfBgNVHSMEGDAWgBQ5dGG4AwJljCy3jEOmJvwY+7IG/TAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAFx0zPayZVTCRjlGGNuYdSoT43OtHF/sCT47kBo4Wane6JazB6mst7W3dcYN4JLKBXMU4vg30KU7IxfxHrELDqOu2QNJ9QSRVBCqA0EiGcIjw1eA/1KdhJ/IkaQ5HjgwLQAEZov+bHvNHnJeqVt2W1kB4D5u8jreaB9VeG4p3IVh0aGL/mOD5Z5E3d6K2DKkGjx6k2DiTnjFm16T9ew+PVT0TXRusTVuQPSssNx7BE9sXQjNRd5l7tLVGwFAC04MAhoF0t1JskYDdqhbAuCG//+lluVcbVBnzWtdpWw9oCSPjwOnb8rH0QkFW/Bl58KKpg68Y8DNnhbLeNQ5z3v/SG
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/UNIFYHR-QA" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://unifyhr.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UnifyHR Service Provider</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Proxied SP for UnifyHR</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/UNIFYHR" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ursahealth-qa.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">URSA Health QA</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/URSAHEALTH" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml1-acs.php/URSAHEALTH" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">URSA Health QA</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Steve Hackbarth</GivenName>
+ <EmailAddress>shackbarth@ursahealth.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ursahealth.ucop.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">URSA Health</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220298528879193967156970121971664236226, expires on Thu Mar 22 23:59:59 2018 GMT -->
+ <ds:X509Certificate>
+MIIFgTCCBGmgAwIBAgIRAKW79A6RZoXk2kF7f/4pLsIwDQYJKoZIhvcNAQELBQAw
+djELMAkGA1UEBhMCVVMxCzAJBgNVBAgTAk1JMRIwEAYDVQQHEwlBbm4gQXJib3Ix
+EjAQBgNVBAoTCUludGVybmV0MjERMA8GA1UECxMISW5Db21tb24xHzAdBgNVBAMT
+FkluQ29tbW9uIFJTQSBTZXJ2ZXIgQ0EwHhcNMTUwMzIzMDAwMDAwWhcNMTgwMzIy
+MjM1OTU5WjCBvDELMAkGA1UEBhMCVVMxDjAMBgNVBBETBTk0NjA3MQswCQYDVQQI
+EwJDQTEQMA4GA1UEBxMHT2FrbGFuZDEdMBsGA1UECRMUMTExMSBGcmFua2xpbiBT
+dHJlZXQxOTA3BgNVBAoTMFVuaXZlcnNpdHkgb2YgQ2FsaWZvcm5pYSBPZmZpY2Ug
+b2YgdGhlIFByZXNpZGVudDEMMAoGA1UECxMDSVJDMRYwFAYDVQQDEw1zYW1sLnVj
+b3AuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsU79M0n3EPme
+if+os8UvQgHzlGm4DvKp05ri4a/rp4l3Y8a/aGWXXOY2o+eYi1Io0F35Wpaez6YF
+cDJlEnuDoY4DI67gVBZ7yaCKo4hbprVC86qwlzH/bCzzooIbxhOoPTJBe5I8famw
+tpavW8jo7Af3sPOu8Mniv9ZfSlQzZZWduU5VfwNtUjQG5JgQVrUWY2hC/ErWZmLX
+jm+Xlx3cJTtJbNOXLLNtQQ2bcSgWRVcbYaUxnuuJABAYxnMkHsL6c/mJUSbos42j
+zHw61X/NE4i4zvRiVsYfphz5KjV1yPgZVqsPbPLLRaVZ7olWUUM1fhx/EazhdKXo
+lWQEeUlcTQIDAQABo4IBwTCCAb0wHwYDVR0jBBgwFoAUHgWjd49sluJbh0umtIas
+cQAM5zgwHQYDVR0OBBYEFMGCtZLWM4Xo5l1wh7fgg1C2Xg5MMA4GA1UdDwEB/wQE
+AwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcD
+AjBnBgNVHSAEYDBeMFIGDCsGAQQBriMBBAMBATBCMEAGCCsGAQUFBwIBFjRodHRw
+czovL3d3dy5pbmNvbW1vbi5vcmcvY2VydC9yZXBvc2l0b3J5L2Nwc19zc2wucGRm
+MAgGBmeBDAECAjBEBgNVHR8EPTA7MDmgN6A1hjNodHRwOi8vY3JsLmluY29tbW9u
+LXJzYS5vcmcvSW5Db21tb25SU0FTZXJ2ZXJDQS5jcmwwdQYIKwYBBQUHAQEEaTBn
+MD4GCCsGAQUFBzAChjJodHRwOi8vY3J0LnVzZXJ0cnVzdC5jb20vSW5Db21tb25S
+U0FTZXJ2ZXJDQV8yLmNydDAlBggrBgEFBQcwAYYZaHR0cDovL29jc3AudXNlcnRy
+dXN0LmNvbTAYBgNVHREEETAPgg1zYW1sLnVjb3AuZWR1MA0GCSqGSIb3DQEBCwUA
+A4IBAQA2qRGXaXwqY7nHB+q9l26mjE23aqqzrBCXE0PZlQaqWdLL2H/88FVlf4yO
+bHauSc1VHjuBhIUEcpnCaegB79yiGmIL/rfVBgXS1XHA24okOuail4AL/kwHaQNk
+D8kmFEqoA+IjtQ9Klznu4hPRIgKekc9OTgkDYHQXQDD4C8gtmGCakNLb+Ma5bHBg
+iFq/W1eAQVRt636JKA0brjME9sS0nA/bwvYZhIf+97zqfJSkMM1rr860FsEkVh9z
+s0eUBR1p+lpfM01fIXJ3VTCaOdez3JFN3xl7OnzobRZtHU1oUIxce5XL42go+rtv
+ZYQq/sjsJubzToMtorjM6APcZxip
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>
+MIID5zCCAs+gAwIBAgIJAI4XubteXKakMA0GCSqGSIb3DQEBCwUAMIGJMQswCQYD
+VQQGEwJVUzETMBEGA1UECAwKQ2FsaWZvcm5pYTEQMA4GA1UEBwwHT2FrbGFuZDE5
+MDcGA1UECgwwVW5pdmVyc2l0eSBPZiBDYWxpZm9ybmlhIE9mZmljZSBPZiBUaGUg
+UHJlc2lkZW50MRgwFgYDVQQDDA9zYW1sc3AudWNvcC5lZHUwHhcNMTgwMzE2MTkw
+MTU2WhcNMjgwMzE1MTkwMTU2WjCBiTELMAkGA1UEBhMCVVMxEzARBgNVBAgMCkNh
+bGlmb3JuaWExEDAOBgNVBAcMB09ha2xhbmQxOTA3BgNVBAoMMFVuaXZlcnNpdHkg
+T2YgQ2FsaWZvcm5pYSBPZmZpY2UgT2YgVGhlIFByZXNpZGVudDEYMBYGA1UEAwwP
+c2FtbHNwLnVjb3AuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+szwtTz6DR5Ss5BBMezjVqeBvMOYEkCi9hcSVG8d84GuFnCA7jy/fn//77dEquD7M
+/YA13mrpA0Y+Lz0AgLTDgx3nJjX2nQROjM+s0EWIVAYc9V+E8B4B335HJnDWrLXJ
+IS2L4GdI0G261iJh3z+cPPCeXpFC8hWOjnBKzyMWviQzHuROBjjD4J30IvGHBbnJ
+kFy0huc4P3wL+dM3lvgzhBCKhLCCaKm2KCiQAqBno3Xls9KltVpP9f0Kjf/a1KcM
+qf1M2+0nXWEoP1d3RRY6UdCXmyLwcMeCQsLAlm0nJZnhi3bryDsF6rhOLkGsrR8S
+BGzSwWPgw1rc7Az5BAjHPQIDAQABo1AwTjAdBgNVHQ4EFgQUiiRJo82bx2ZPFymQ
+5dS7y/DbDm0wHwYDVR0jBBgwFoAUiiRJo82bx2ZPFymQ5dS7y/DbDm0wDAYDVR0T
+BAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAiASEw6ZhABMoUgA+XxNkFc5rJDz6
+leNBCpPd3LtTsi0llCLoc//4AMxo+3zqnUFSh7rBCqjSiHxWFuZiM3vQSKGn/hD9
+H5Vm/5MfAiCpvmGmrSSbSZ3VZ09P5LifraNwfw66Lpm6JLtr84nC5fMksl1+0W6L
+JMCHHrVR3iDIOh4oc1rXkqg2HUVTBWcFZB5FPa6uVp4Rfjmn5SF5rAGSvjjHKHBg
+579PJGCFn/GAdgCyquXGzNRSNw/AiDekXjszH2F2CwIrpuwwbPCxOQ9EjH7nWser
+eXoKuJhDmBZ7guw2keo/i72mAdG8CYXwgX8LjZ7k1+JHDP/bEOWACU8bQA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/URSAHEALH" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml1-acs.php/URSAHEALTH" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">URSA Health</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Steve Hackbarth</GivenName>
+ <EmailAddress>shackbarth@ursahealth.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGroup@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ventiv-qa.ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">https://ventiv-qa.ucop.edu</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Risk Services the document is to outline the approach being proposed to authenticate and authorize user- identity for RCA SSO.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10100846949428596419, expires on Tue Mar 14 20:30:53 2028 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml2-logout.php/VENTIVTECH"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/VENTIVTECH" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml1-acs.php/VENTIVTECH" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/VENTIVTECH" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://samlproxy-qa.ucop.edu/simplesaml/module.php/saml/sp/saml1-acs.php/VENTIVTECH/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">https://ventiv-qa.ucop.edu</ServiceName>
+ <ServiceDescription xml:lang="en">Risk Services the document is to outline the approach being proposed to authenticate and authorize user- identity for RCA SSO.</ServiceDescription>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Administrator</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ventiv.ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ventiv RCA UCOP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Risk Services the document is to outline the approach being proposed to authenticate and authorize user- identity for RCA SSO.
+</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/uc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238856492243265188, expires on Wed Mar 15 19:01:56 2028 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-logout.php/VENTIVTECH"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/VENTIVTECH" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml1-acs.php/VENTIVTECH" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml2-acs.php/VENTIVTECH" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://samlproxy.ucop.edu/simplesaml/module.php/saml/sp/saml1-acs.php/VENTIVTECH/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Ventiv RCA UCOP</ServiceName>
+ <ServiceDescription xml:lang="en">Risk Services the document is to outline the approach being proposed to authenticate and authorize user- identity for RCA SSO.
+</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Administrative</GivenName>
+ <EmailAddress>iamgrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:ucop.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucop.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California, Office of the President</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity Provider for University of California, Office of the President</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucop.edu/ethics-compliance-audit-services/_files/compliance/privacy/statement-of-privacy-for-web-based-applications.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ucop.edu/_common/_images/sso/ucop.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1119749830483279885900428890155151164030890824300, expires on Tue Apr 15 21:44:42 2031 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ucopidp.ucop.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://ucopidp.ucop.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucopidp.ucop.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://ucopidp.ucop.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucopidp.ucop.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ucopidp.ucop.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucop.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1119749830483279885900428890155151164030890824300, expires on Tue Apr 15 21:44:42 2031 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ucopidp.ucop.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://ucopidp.ucop.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California - Office of the President</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California - Office of the President</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucop.edu/welcome.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Group</GivenName>
+ <EmailAddress>IAMGrp@ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>soc@ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of California-Irvine -->
+<EntityDescriptor entityID="urn:mace:incommon:uci.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://shib.service.uci.edu/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uci.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California, Irvine</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://uci.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="82" width="505" xml:lang="en">https://shib.service.uci.edu/idp/images/uci.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13326752637013869187, expires on Mon Jul 13 23:18:51 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.nacs.uci.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.nacs.uci.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.nacs.uci.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.nacs.uci.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.nacs.uci.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.nacs.uci.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uci.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13326752637013869187, expires on Mon Jul 13 23:18:51 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.nacs.uci.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.nacs.uci.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California-Irvine</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California-Irvine</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uci.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dana Watanabe</GivenName>
+ <EmailAddress>dwatanab@uci.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Chris Peters</GivenName>
+ <EmailAddress>cjpeters@uci.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>OIT Response Center</GivenName>
+ <EmailAddress>oit@uci.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Cliff Chuang</GivenName>
+ <EmailAddress>lchuang1@uci.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>OIT Security</GivenName>
+ <EmailAddress>security@uci.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Washington -->
+<EntityDescriptor entityID="https://welcome.kpmp.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://welcome.kpmp.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Kidney Precision Medicine Project welcome</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This is the main welcome site for the Kidney Precision Medicine Project</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://kpmp.org/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://kpmp.org/contact-us/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="189" xml:lang="en">https://kpmp.org/wp-content/uploads/2018/05/kpmp-logo-trans-small.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15998413882629643037, expires on Sun Sep 10 20:44:03 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://welcome.kpmp.org/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://welcome.kpmp.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://welcome.kpmp.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://welcome.kpmp.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://welcome.kpmp.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://upload.kpmp.org/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev-upload.kpmp.org/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Kidney Precision Medicine Project welcome</ServiceName>
+ <ServiceDescription xml:lang="en">This is the main welcome site for the Kidney Precision Medicine Project</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Washington</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Washington</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.washington.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kidney Precision Medicine Project</GivenName>
+ <EmailAddress>info@kpmp.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UW Med Research IT</GivenName>
+ <EmailAddress>rithelp@uw.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UW Med Research IT</GivenName>
+ <EmailAddress>rithelp@uw.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:washington.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.u.washington.edu/error-incommon.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">washington.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Washington</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The University of Washington IdP enables standards-based federation for the UW community.
+</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://wiki.cac.washington.edu/x/fiOD</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.washington.edu/online/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="79" width="160" xml:lang="en">https://wiki.cac.washington.edu/download/attachments/69729985/uw-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14562430836939313802, expires on Fri Apr 23 19:10:39 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.u.washington.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.u.washington.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.u.washington.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.u.washington.edu/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Washington</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Washington</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.washington.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Technical Support</GivenName>
+ <EmailAddress>iam-support@uw.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Administrative Support</GivenName>
+ <EmailAddress>iam-support@uw.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IAM Support</GivenName>
+ <EmailAddress>iam-support@uw.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IAM Security Support</GivenName>
+ <EmailAddress>iam-support@uw.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Internet2 -->
+<EntityDescriptor entityID="https://confluence.testbed.tier.internet2.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://confluence.testbed.tier.internet2.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">TIER Testbed Confluence</mdui:DisplayName>
+ <mdui:Description xml:lang="en">A test Confluence instance to test attribute release.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://confluence.testbed.tier.internet2.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.internet2.edu/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="91" width="122" xml:lang="en">https://www.internet2.edu/media/medialibrary/2013/10/15/internet2_logo_200pxtrans.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15953335566372411083, expires on Mon Nov 30 15:22:17 2026 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://confluence.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://confluence.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://confluence.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://confluence.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">TIER Testbed Confluence</ServiceName>
+ <ServiceDescription xml:lang="en">A test Confluence instance to test attribute release.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Internet2</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Internet2</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.internet2.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Paul Caskey</GivenName>
+ <EmailAddress>pcaskey@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Christopher Hubing</GivenName>
+ <EmailAddress>chubing@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nick Roy</GivenName>
+ <EmailAddress>nroy@internet2.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://filesender.internet2.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://filesender.internet2.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Internet2 FileSender</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service allows any researcher at an institution who is a research and education member of InCommon, is willing to release EPPN and e-mail attributes, and operates an IdP to temporarily store a file of up to 1TB in size and notify recipients of its availability and how to retrieve it. It is designed to provide a solution to the e-mail large file attachement restriction in most mail systems.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.internet2.edu/filesender/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.internet2.edu/filesender/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="91" width="122" xml:lang="en">https://www.internet2.edu/media/medialibrary/2013/10/15/internet2_logo_200pxtrans.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Sat May 28 11:29:29 2022 GMT -->
+ <ds:X509Certificate>
+MIIEAzCCAuugAwIBAgIBADANBgkqhkiG9w0BAQUFADCBxDELMAkGA1UEBhMCVVMx
+ETAPBgNVBAgTCE1pY2hpZ2FuMRIwEAYDVQQHEwlBbm4gQXJib3IxQTA/BgNVBAoT
+OFVuaXZlcnNpdHkgQ29ycG9yYXRpb24gZm9yIEFkdmFuY2VkIEludGVybmV0IERl
+dmVsb3BtZW50MSEwHwYDVQQDExhmaWxlc2VuZGVyLmludGVybmV0Mi5lZHUxKDAm
+BgkqhkiG9w0BCQEWGXRlY2hzdXBwb3J0QGludGVybmV0Mi5lZHUwHhcNMTIwNTMw
+MTEyOTI5WhcNMjIwNTI4MTEyOTI5WjCBxDELMAkGA1UEBhMCVVMxETAPBgNVBAgT
+CE1pY2hpZ2FuMRIwEAYDVQQHEwlBbm4gQXJib3IxQTA/BgNVBAoTOFVuaXZlcnNp
+dHkgQ29ycG9yYXRpb24gZm9yIEFkdmFuY2VkIEludGVybmV0IERldmVsb3BtZW50
+MSEwHwYDVQQDExhmaWxlc2VuZGVyLmludGVybmV0Mi5lZHUxKDAmBgkqhkiG9w0B
+CQEWGXRlY2hzdXBwb3J0QGludGVybmV0Mi5lZHUwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQDJB0GAiWyeyrR5PgW3rnNspNceX1w3M1HL8jY4ZABYUTQz
+hfHhzhrXxxHwM8Ei8yUczK9hSnHtnURP7GulLfj/4cJZT7lwE/rJopJLPCpS2rXh
+JsAhhpjJVV80FF+wVofDMGZwu/gWR2DKcee6Spok7f2pJJLBbmX5DtenMoR6n7Tp
+aVpEtD+wgxrauh/7zzyUJtUbahflUoGxX0Il7LLetOYGgT4u65Du4f/t0fkBxmrl
+vZaNQDDwiJC9g2vZZ5poukx61okmvvkJHs2IsFGbIPrO6lE0v9kDZ93MawTuXuz1
+vldyvULlZ08p7rNIFWI6qqcdtlROgU0iKCcIOUXXAgMBAAEwDQYJKoZIhvcNAQEF
+BQADggEBAKfZknSamtnmWlj0WogmIDn68RoEu8VdU8ny8G0+tErvGGUI9l/y68+h
+X6XyGHPmKUzNMs++wO6e2NjnT+cNNiYgNoSNom+t3I4IxfIE6AGvzqFlhwZrgqAg
+TFow06r0ratzBhfcRlNldAJ30SIFSn/5TyjyR/fAQ8S228saq7hMA8NyzrUY0rqT
+TTiYKzVJRFUVeY1tyDhvMC6PfF5sZLe8hG/rOWVG+h8U5a7FcKkGElxxDDCNsehy
+IGjK2QnyLyqzPNnHwosEzEZDf2yLb6Ee2PIApSqKtO9Syl5QMCiG1dJpb2my00IF
+LXYiHXLNNHaUlb4KEmLyRIb/SCUFu/g=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://filesender.internet2.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://filesender.internet2.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://filesender.internet2.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://filesender.internet2.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://filesender.internet2.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://filesender.internet2.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Internet2 FileSender</ServiceName>
+ <ServiceDescription xml:lang="en">This service allows any researcher at an institution who is a research and education member of InCommon, is willing to release EPPN and e-mail attributes, and operates an IdP to temporarily store a file of up to 1TB in size and notify recipients of its availability and how to retrieve it. It is designed to provide a solution to the e-mail large file attachement restriction in most mail systems.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Internet2</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Internet2</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.internet2.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>TSG</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>TSG</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>TSG</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>TSG</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://fmaccept.inc.testbed.tier.internet2.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fmaccept.inc.testbed.tier.internet2.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InCommon Federation Manager Development</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.internet2.edu/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="91" width="122" xml:lang="en">https://www.internet2.edu/media/medialibrary/2013/10/15/internet2_logo_200pxtrans.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12251523701829318651, expires on Sun Aug 1 12:05:28 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fmaccept.inc.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fmaccept.inc.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InCommon Federation Manager Development</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Internet2</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Internet2</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.internet2.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Christopher Hubing</GivenName>
+ <EmailAddress>chubing@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nick Roy</GivenName>
+ <EmailAddress>nroy@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Nick Lewis</GivenName>
+ <EmailAddress>nlewis@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Technical Services Group</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://fmdev.inc.testbed.tier.internet2.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fmdev.inc.testbed.tier.internet2.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InCommon Federation Manager Development</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.internet2.edu/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="91" width="122" xml:lang="en">https://www.internet2.edu/media/medialibrary/2013/10/15/internet2_logo_200pxtrans.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10980259698171887993, expires on Sat Oct 17 21:01:45 2026 GMT -->
+ <ds:X509Certificate>
+MIIDejCCAmICCQCYYbgFAxLBeTANBgkqhkiG9w0BAQsFADB/MQswCQYDVQQGEwJV
+UzERMA8GA1UECAwITWljaGlnYW4xEjAQBgNVBAcMCUFubiBBcmJvcjESMBAGA1UE
+CgwJSW50ZXJuZXQyMQ0wCwYDVQQLDARUSUVSMSYwJAYDVQQDDB1mbS50ZXN0YmVk
+LnRpZXIuaW50ZXJuZXQyLmVkdTAeFw0xNjEwMTkyMTAxNDVaFw0yNjEwMTcyMTAx
+NDVaMH8xCzAJBgNVBAYTAlVTMREwDwYDVQQIDAhNaWNoaWdhbjESMBAGA1UEBwwJ
+QW5uIEFyYm9yMRIwEAYDVQQKDAlJbnRlcm5ldDIxDTALBgNVBAsMBFRJRVIxJjAk
+BgNVBAMMHWZtLnRlc3RiZWQudGllci5pbnRlcm5ldDIuZWR1MIIBIjANBgkqhkiG
+9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzUMghR8e8LJfPYj2klF/mtQO9yqSpDj763uP
+N9tfAfIpi8FBOVvTrYzU2iwAsdosGzYL+CaKiadhazF/8EYm1ydjxMaKk1kogyOh
+gdD/dmKExJvbYoUIM2+tz/XBRwe0Qiad075Q5H9dTDtFduyNHaPBaQ5AyPVKiGkA
+FDqXDpayRUSWXAGWrw0YTxOPoTEju3vSGXzuK+DwczjI4uxfjhXJ8TpmVDmzkew2
+xW2+m+inx/9o8Me3sIk6evcQIGzRxj9MWWdjh48F4V8FgbF3n9Xs5mvwvrXezLoc
+CynTFqvchn4sOJMKs069kVVCQ3Li+R1Pz1aAsUzaME/Qvk8NIwIDAQABMA0GCSqG
+SIb3DQEBCwUAA4IBAQCpQT+9aad96PUFzMcm6hRud0EY8dUQ3Y+KpL8OTXZDYUP0
+CBgVjTpjOevXkjUMOIMtTXyRIgMxiOh+OB1/kGKR3y95/WO311DKf6F0smmBGM3j
+DFRtfFlartRa8duyscDMbvDgi4ggtVgONB3PFNl33JmBTc4tryfoOyWYYdvTEEQL
+f3TWRgJ8S+oeYJ45FlhWiyWk8eGxRWvFDp/53SWJJoab0MhL0IAR74U1AD4HoGZD
+uCckQNZOgG+67ANviZ0ecVtvZNOMBb+dunky/kXfDSQqUTR5NRw7dOJPkbgreZTZ
+9SLzGE8yTxVfX5wibj0lxY1nA9U5j2glQzNaOq9e
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fmdev.inc.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fmdev.inc.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fmdev.inc.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fmdev.inc.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InCommon Federation Manager Development</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Internet2</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Internet2</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.internet2.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Christopher Hubing</GivenName>
+ <EmailAddress>chubing@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Paul Caskey</GivenName>
+ <EmailAddress>pcaskey@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nick Roy</GivenName>
+ <EmailAddress>nroy@internet2.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://fm.testbed.tier.internet2.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fm.testbed.tier.internet2.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">TIER Testbed Federation Manager</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.internet2.edu/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="91" width="122" xml:lang="en">https://www.internet2.edu/media/medialibrary/2013/10/15/internet2_logo_200pxtrans.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10980259698171887993, expires on Sat Oct 17 21:01:45 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fm.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fm.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fm.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fm.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">TIER Testbed Federation Manager</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Internet2</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Internet2</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.internet2.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Christopher Hubing</GivenName>
+ <EmailAddress>chubing@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Paul Caskey</GivenName>
+ <EmailAddress>pcaskey@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Nick Roy</GivenName>
+ <EmailAddress>nroy@internet2.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://jagger.testbed.tier.internet2.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://jagger.testbed.tier.internet2.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">TIER Testbed Jagger</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://jagger.testbed.tier.internet2.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.internet2.edu/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="91" width="122" xml:lang="en">https://www.internet2.edu/media/medialibrary/2013/10/15/internet2_logo_200pxtrans.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17945230125261727289, expires on Fri Dec 4 18:15:51 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jagger.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://jagger.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://jagger.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://jagger.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">TIER Testbed Jagger</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Internet2</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Internet2</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.internet2.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Christopher Hubing</GivenName>
+ <EmailAddress>chubing@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Paul Caskey</GivenName>
+ <EmailAddress>pcaskey@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nick Roy</GivenName>
+ <EmailAddress>nroy@internet2.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://login.at.internet2.edu/Saml2/proxy_saml2_backend.xml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://login.at.internet2.edu/Saml2/disco" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Internet2 Collaboration Login</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Collaboration Login Service at Internet2</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://ds.at.internet2.edu/ICMP/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.internet2.edu/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="91" width="122" xml:lang="en">https://www.internet2.edu/media/medialibrary/2013/10/15/internet2_logo_200pxtrans.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15752264257825098709, expires on Thu Oct 7 15:24:30 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.at.internet2.edu/Saml2/acs/post" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Internet2 Collaboration Login</ServiceName>
+ <ServiceDescription xml:lang="en">Collaboration Login Service at Internet2</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Internet2</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Internet2</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.internet2.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>InCommon Ops</GivenName>
+ <EmailAddress>admin@incommon.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>InCommon Ops</GivenName>
+ <EmailAddress>admin@incommon.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>InCommon Ops</GivenName>
+ <EmailAddress>admin@incommon.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>InCommon Ops</GivenName>
+ <EmailAddress>admin@incommon.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://services.internet2.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.internet2.edu/Shibboleth.sso/DS" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lists.internet2.edu/Shibboleth.sso/DS" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lists.incommon.org/Shibboleth.sso/DS" index="3"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://service3.internet2.edu/Shibboleth.sso/DS" index="4"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://devtracker.internet2.edu/Shibboleth.sso/Login" index="5"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lists.usucan.org/Shibboleth.sso/DS" index="6"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rt.internet2.edu/Shibboleth.sso/DS" index="7"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://chinatest.internet2.edu/Shibboleth.sso/Login" index="8"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://china.internet2.edu/Shibboleth.sso/Login" index="9"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://forum.internet2.edu/Shibboleth.sso/Login" index="10"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://webtest.internet2.edu/Shibboleth.sso/Login" index="11"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://splunk.internet2.edu/Shibboleth.sso/Login" index="12"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://forum-staging.internet2.edu/Shibboleth.sso/Login" index="13"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.internet2.edu/Shibboleth.sso/Login" index="14"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://saltweb.internet2.edu/Shibboleth.sso/Login" index="15"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://meetings.internet2.edu/Shibboleth.sso/Login" index="18"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://meetingtest.internet2.edu/Shibboleth.sso/Login" index="19"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.perfsonar.net/Shibboleth.sso/Login" index="20"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://webtest.perfsonar.net/Shibboleth.sso/Login" index="21"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://forum.unizin.org/Shibboleth.sso/Login" index="22"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://forum-staging.internet2.edu/Shibboleth.sso/Login" index="23"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://forum-staging.internet2.edu/Shibboleth.sso/Login" index="24"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Internet2 Services</mdui:DisplayName>
+ <mdui:Description xml:lang="en">services.internet2.edu provides Internet2 services in support of our Research and Education Networking mission. Current examples include: e-mail lists, Internet2 meeting registration, and trouble ticketing for administration of Net+ services. Planned additions include Filesender, the Internet2 Member Portal, and wikis.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.internet2.edu/help/federated-services-user-guide/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.internet2.edu/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="91" width="122" xml:lang="en">https://www.internet2.edu/media/medialibrary/2013/10/15/internet2_logo_200pxtrans.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10891611494800289704, expires on Mon Oct 6 12:38:06 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.internet2.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lists.internet2.edu/Shibboleth.sso/SAML2/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://lists.internet2.edu/Shibboleth.sso/SAML/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.internet2.edu/Shibboleth.sso/SAML/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://service3.internet2.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://service3.internet2.edu/Shibboleth.sso/SAML/POST" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lists.incommon.org/Shibboleth.sso/SAML2/POST" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://lists.incommon.org/Shibboleth.sso/SAML/POST" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://lists.usucan.org/Shibboleth.sso/SAML/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lists.usucan.org/Shibboleth.sso/SAML2/POST" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rt.internet2.edu/Shibboleth.sso/SAML2/POST" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rt.internet2.edu/Shibboleth.sso/SAML/POST" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://china.internet2.edu/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webtest.internet2.edu/Shibboleth.sso/SAML2/POST" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saltweb.internet2.edu/Shibboleth.sso/SAML2/POST" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://meetings.internet2.edu/Shibboleth.sso/SAML2/POST" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://meetingtest.internet2.edu/Shibboleth.sso/SAML2/POST" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.perfsonar.net/Shibboleth.sso/SAML2/POST" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webtest.perfsonar.net/Shibboleth.sso/SAML2/POST" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://forum.internet2.edu/Shibboleth.sso/SAML2/POST" index="20"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://forum.unizin.org/Shibboleth.sso/SAML2/POST" index="21"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://forum-staging.internet2.edu/Shibboleth.sso/SAML2/POST" index="22"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://devtracker.internet2.edu/Shibboleth.sso/SAML2/POST" index="23"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://devtracker.internet2.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="24"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://chinatest.internet2.edu/Shibboleth.sso/SAML2/POST" index="25"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://splunk.internet2.edu/Shibboleth.sso/SAML2/POST" index="26"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://splunk.internet2.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="27"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Internet2 Services</ServiceName>
+ <ServiceDescription xml:lang="en">services.internet2.edu provides Internet2 services in support of our Research and Education Networking mission. Current examples include: e-mail lists, Internet2 meeting registration, and trouble ticketing for administration of Net+ services. Planned additions include Filesender, the Internet2 Member Portal, and wikis.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Internet2</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Internet2</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.internet2.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Tech Support</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tech Support</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tech Support</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Tech Support</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://siteadmin.inc.testbed.tier.internet2.edu/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://siteadmin.inc.testbed.tier.internet2.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Internet2 Federation Manager Staging Environment</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.internet2.edu/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="91" width="122" xml:lang="en">https://www.internet2.edu/media/medialibrary/2013/10/15/internet2_logo_200pxtrans.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9382839537940876968, expires on Thu Nov 5 21:15:06 2026 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://siteadmin.inc.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://siteadmin.inc.testbed.tier.internet2.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Internet2</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Internet2</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.internet2.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Christopher Hubing</GivenName>
+ <EmailAddress>chubing@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nick Roy</GivenName>
+ <EmailAddress>nroy@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Nick Lewis</GivenName>
+ <EmailAddress>nlewis@internet2.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://spaces.internet2.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://spaces.internet2.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Internet2 Collaboration Wiki Spaces</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Collaboration spaces to support the activities of Internet2 projects and working groups.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.internet2.edu/about/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.internet2.edu/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="122" width="91" xml:lang="en">https://www.internet2.edu/media/medialibrary/2013/12/02/internet2_logo_colorpos.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14478833909532365781, expires on Mon Mar 29 16:18:53 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://spaces.internet2.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://spaces.internet2.edu/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://spaces.internet2.edu/Shibboleth.sso/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://spaces.internet2.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://spaces.internet2.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://spaces.internet2.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://spaces.internet2.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://spaces.internet2.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://spaces.internet2.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Internet2 Collaboration Wiki Spaces</ServiceName>
+ <ServiceDescription xml:lang="en">Collaboration spaces to support the activities of Internet2 projects and working groups.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Internet2</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Internet2</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.internet2.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://testbed.tier.internet2.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://testbed.tier.internet2.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">TIER Testbed</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Admin UI for the legacy TIER testbed</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.internet2.edu/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="91" width="122" xml:lang="en">https://www.internet2.edu/media/medialibrary/2013/10/15/internet2_logo_200pxtrans.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12766516752611022002, expires on Thu Mar 19 18:38:59 2026 GMT -->
+ <ds:X509Certificate>
+MIIDVjCCAj4CCQCxK8dYunQUsjANBgkqhkiG9w0BAQUFADBtMQswCQYDVQQGEwJV
+UzERMA8GA1UECAwITWljaGlnYW4xEjAQBgNVBAcMCUFubiBBcmJvcjESMBAGA1UE
+CgwJSW50ZXJuZXQyMSMwIQYDVQQDDBp0ZXN0YmVkLnRpZXIuaW50ZXJuZXQyLmVk
+dTAeFw0xNjAzMjExODM4NTlaFw0yNjAzMTkxODM4NTlaMG0xCzAJBgNVBAYTAlVT
+MREwDwYDVQQIDAhNaWNoaWdhbjESMBAGA1UEBwwJQW5uIEFyYm9yMRIwEAYDVQQK
+DAlJbnRlcm5ldDIxIzAhBgNVBAMMGnRlc3RiZWQudGllci5pbnRlcm5ldDIuZWR1
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvu2gbbW1ieYyKqdk5Twp
+uQIxTJ9UpZ2OQaZRaPUv0C63UcOYi8TuHmf5RN9wmJZ8oUimWaX1uzHGOvg2xU/a
+coWk05VUwcCXhC1GnQmAy4AmHgXmRprRkojzwrGAIsQFfKqctuHnIEr8Q9+fxS/Y
+BRO8/KwyZDu52K2BZX6gBZGv9NsF1khGjLvXqrXq+XuJI1uoAvOsZ94C1l0zPPnS
+Yg8YBOIJjf4dROzqxTr67prdFayixLAdPPLOgdNIcT22hHdsvqCAC+vOa5X08cLF
+akj7kjV1Hk1WTz2SCpzworCI8Rt04zmRZnOMqN/Ip1Y0qrptMkul/V7E9aX+y/g0
+oQIDAQABMA0GCSqGSIb3DQEBBQUAA4IBAQAPJ7+ryXzAcG3iXZUESHk6cSYDddw8
+L0/j3v8QB/8O2x8NGMpB+kzn3zWaE+wrDBSvenyewFGWt+zyWz0OGI73oGSUDzu3
+x+7qi9L8TPsPefm5sCYu5K4LvaXSARP157S2iYN+1aaFwFmITkenaINiKUkw8Ggm
+TMirq1O+wkTTt16SND5W54/qCDu3nsk6EL++D5QLyDFHzcksXG84vUHajnhsjVph
+iDF+FXy/yDzafEk3UNjrsFZucB2b+2E6jw4zykVDDWDFD1f5scTM/7AVG5j8iSdQ
+5sCWp8xNzxsYu/ZpKMHIIvF0t84XclaWe2BPIm9RvbZfHYrrjTqrB+kE
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testbed.tier.internet2.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://testbed.tier.internet2.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://testbed.tier.internet2.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://testbed.tier.internet2.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Internet2</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Internet2</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.internet2.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>James Jokl</GivenName>
+ <EmailAddress>jaj@virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>James Jokl</GivenName>
+ <EmailAddress>jaj@virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>James Jokl</GivenName>
+ <EmailAddress>jaj@virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>James Jokl</GivenName>
+ <EmailAddress>jaj@virginia.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://tierprogram.internet2.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://tierprogram.internet2.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Trust and Identity Projects Portal</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This Portal contains all Internet2 Trust and Identity Related projects and timelines. Its primary purpose is to serve as the authoritative repository for all cross-functional, community-facing activities.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.internet2.edu/products-services/trust-identity/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.internet2.edu/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="91" width="122" xml:lang="en">https://www.internet2.edu/media/medialibrary/2013/10/15/internet2_logo_200pxtrans.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10474865475719707246, expires on Fri May 8 20:02:38 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tierprogram.internet2.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tierprogram.internet2.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tierprogram.internet2.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tierprogram.internet2.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Trust and Identity Projects Portal</ServiceName>
+ <ServiceDescription xml:lang="en">This Portal contains all Internet2 Trust and Identity Related projects and timelines. Its primary purpose is to serve as the authoritative repository for all cross-functional, community-facing activities.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Internet2</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Internet2</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.internet2.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Services Group</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Technical Services Group</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Technical Services Group</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Technical Services Group</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:internet2.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idm.internet2.edu/support.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">internet2.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Internet2</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.internet2.edu/about/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.internet2.edu/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="200" xml:lang="en">https://www.internet2.edu/media/medialibrary/2013/10/15/internet2_logo_200pxtrans.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9317561342699188557, expires on Mon May 19 13:23:15 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://origin.internet2.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://origin.internet2.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://origin.internet2.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://origin.internet2.edu/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Internet2</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Internet2</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.internet2.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>techsupport@internet2.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of California-San Diego -->
+<EntityDescriptor entityID="urn:mace:incommon:ucsd.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucsd.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California, San Diego</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://ucsd.edu/about/privacy-policy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="300" xml:lang="en">https://a5.ucsd.edu/ucsd_incommon_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 268, expires on Sun Feb 28 21:18:44 2010 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18012077950548718489, expires on Sun Apr 5 22:47:09 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://a4.ucsd.edu/tritON/HS"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://a5.ucsd.edu/tritON/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://a5.ucsd.edu/tritON/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucsd.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 268, expires on Sun Feb 28 21:18:44 2010 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18012077950548718489, expires on Sun Apr 5 22:47:09 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://a4.ucsd.edu:8443/tritON/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California-San Diego</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California-San Diego</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucsd.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth/IDM Support</GivenName>
+ <EmailAddress>shibsupport@ucsd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>ITS Service Desk</GivenName>
+ <EmailAddress>servicedesk@ucsd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth/IDM Support</GivenName>
+ <EmailAddress>shibsupport@ucsd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS Security</GivenName>
+ <EmailAddress>security@ucsd.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Georgetown University -->
+<EntityDescriptor entityID="https://shibb-idp.georgetown.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">georgetown.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Georgetown University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://georgetown.app.box.com/s/ljizc89qln1ayrymtbus8k3t6v486i9w</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://netid-mgmt.georgetown.edu/esic_images/GU-Transparent-80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 996475995259890511700067540851943440339505586851, expires on Fri Jun 14 16:11:46 2030 GMT -->
+ <ds:X509Certificate>
+MIIDTDCCAjSgAwIBAgIVAK6Lh23lIaSgXAUl1GG/B1nM7SKjMA0GCSqGSIb3DQEB
+BQUAMCMxITAfBgNVBAMTGHNoaWJiLWlkcC5nZW9yZ2V0b3duLmVkdTAeFw0xMDA2
+MTQxNjExNDZaFw0zMDA2MTQxNjExNDZaMCMxITAfBgNVBAMTGHNoaWJiLWlkcC5n
+ZW9yZ2V0b3duLmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJ2M
+e3cdBys92wVfMQTi0oOQ0Uw3ltBc0Z9vDj3QURI0DKUtQ/z12O3pxMVW0U9mW9At
+0S4x1s7DrffOwt0wzVN0bifN8mTYtJDUGw3twOkJDmrq6MXDwhQfkLX54DE1pR85
+8YT3G4WzS6V6+4xxFMH2nj6SijthfuOuIKAPi8oVLBI6CFpiNSJgOeSuQ2Wc2ogn
+8D4b6B0ZyMH/j5h1XZ/pj7qtrFJ5hqnbeJ/DQipOpYlN33r1M03Ei+3/MAIjyi9h
+/VujG67p4fxoTBCwkJPUJH9idLX47oZmLlJZveDIJRhWreJJXXFxchzUNy1PPwla
+k28u8K9mqtwDAvGx4D0CAwEAAaN3MHUwVAYDVR0RBE0wS4IYc2hpYmItaWRwLmdl
+b3JnZXRvd24uZWR1hi9odHRwczovL3NoaWJiLWlkcC5nZW9yZ2V0b3duLmVkdS9p
+ZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQUFW8gLtaVr67EZZmKF4ol5UdfXRQwDQYJ
+KoZIhvcNAQEFBQADggEBAJUOvjBsszXQ79hD+YEUT208kj3bynbRITPVBiXQJZgc
++1MT6wrmZpPCt/oKDHU6H8peXSCIwmwpNs1Ldcgunf0eSr1XGoCAn+KY+IdRJtuN
+hs+KCuNVNehLQzBRtO67HkPlVBVHEpxIoARZDUR6oLixZPNMKiFuAgdsySCz43W0
+cupokw76fdO6ik8BtdIUWzCoN5vpH94hg8QTW4BLg7Gh7ZXy6ymHytKCZqkgaoUk
+qeQASM800x93B3n6jr1GEq3m6r+MLEkVBlDmymZG9CWGBY6UOUsJt9U4Xe/r1DDI
+QN6kfDHIlXFhLmKYCtzxMjBf7TziEOIt2ZYrKM6CRI8=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibb-idp.georgetown.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibb-idp.georgetown.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibb-idp.georgetown.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibb-idp.georgetown.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibb-idp.georgetown.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">georgetown.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 996475995259890511700067540851943440339505586851, expires on Fri Jun 14 16:11:46 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibb-idp.georgetown.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibb-idp.georgetown.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Georgetown University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Georgetown University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.georgetown.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Marty Johnson</GivenName>
+ <EmailAddress>es-collaboration@georgetown.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Suresh Veliveli</GivenName>
+ <EmailAddress>es-collaboration@georgetown.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Service Desk</GivenName>
+ <EmailAddress>help@georgetown.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>University Information Security Officer</GivenName>
+ <EmailAddress>security@georgetown.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- WebAssign -->
+<EntityDescriptor entityID="https://shibboleth.webassign.net/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth.webassign.net/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">WebAssign - PlaceU</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cengage.com/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="46" width="214" xml:lang="en">https://www.webassign.com/wp-content/themes/webassign/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 2003097091632605, expires on Sun Apr 16 16:21:49 2017 GMT -->
+ <ds:X509Certificate>
+MIIGtDCCBZygAwIBAgIHBx3OYpjt3TANBgkqhkiG9w0BAQsFADCBjDELMAkGA1UE
+BhMCSUwxFjAUBgNVBAoTDVN0YXJ0Q29tIEx0ZC4xKzApBgNVBAsTIlNlY3VyZSBE
+aWdpdGFsIENlcnRpZmljYXRlIFNpZ25pbmcxODA2BgNVBAMTL1N0YXJ0Q29tIENs
+YXNzIDIgUHJpbWFyeSBJbnRlcm1lZGlhdGUgU2VydmVyIENBMB4XDTE1MDQxNjE3
+NDIxMFoXDTE3MDQxNjE2MjE0OVowgbYxCzAJBgNVBAYTAlVTMRcwFQYDVQQIEw5O
+b3J0aCBDYXJvbGluYTEQMA4GA1UEBxMHUmFsZWlnaDE5MDcGA1UEChMwV2ViQXNz
+aWduIChBZHZhbmNlZCBJbnN0cnVjdGlvbmFsIFN5c3RlbXMsIEluYy4pMRgwFgYD
+VQQDFA8qLndlYmFzc2lnbi5uZXQxJzAlBgkqhkiG9w0BCQEWGGhvc3RtYXN0ZXJA
+d2ViYXNzaWduLm5ldDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANNE
+7Ne+VRMSh8ofCPMzyi2i1fbSEj7Vob4R5E5gHv0qWgbrPPkogArMfSWMXZjOQCMM
+KjjEtlU+og7ngOG1iqvpjQ1yRZ+0oQGCg/e0dGJHyZTeb6dd8C6uH/Qo41MsyGXH
+68wVYb57Jqu9d146uKBoKI/My3c8aMMayqUjmoB7YVQ9k102x6rO0bMj12Vm7M6N
+pvg+O/LBHtqS3bNLgK5/Y9FCeh3Vmr0SREZuTdJNozl8f0/TksVU7y18uV6jw330
+JVnKDeg89wdMHkviCPD77A4DUWJiJHycxvud1+sTNOkxjV7JLtqYxwOYIgDHjs9L
+cGSwvU3FL6M1EX1kgccCAwEAAaOCAu0wggLpMAkGA1UdEwQCMAAwCwYDVR0PBAQD
+AgOoMB0GA1UdJQQWMBQGCCsGAQUFBwMCBggrBgEFBQcDATAdBgNVHQ4EFgQU4DiG
+pTCQK/nV7v8ZUMEdBQTE0VYwHwYDVR0jBBgwFoAUEdsjRf1UzGpxb4SKA9e+9wEv
+JoYwKQYDVR0RBCIwIIIPKi53ZWJhc3NpZ24ubmV0gg13ZWJhc3NpZ24ubmV0MIIB
+VgYDVR0gBIIBTTCCAUkwCAYGZ4EMAQICMIIBOwYLKwYBBAGBtTcBAgMwggEqMC4G
+CCsGAQUFBwIBFiJodHRwOi8vd3d3LnN0YXJ0c3NsLmNvbS9wb2xpY3kucGRmMIH3
+BggrBgEFBQcCAjCB6jAnFiBTdGFydENvbSBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0
+eTADAgEBGoG+VGhpcyBjZXJ0aWZpY2F0ZSB3YXMgaXNzdWVkIGFjY29yZGluZyB0
+byB0aGUgQ2xhc3MgMiBWYWxpZGF0aW9uIHJlcXVpcmVtZW50cyBvZiB0aGUgU3Rh
+cnRDb20gQ0EgcG9saWN5LCByZWxpYW5jZSBvbmx5IGZvciB0aGUgaW50ZW5kZWQg
+cHVycG9zZSBpbiBjb21wbGlhbmNlIG9mIHRoZSByZWx5aW5nIHBhcnR5IG9ibGln
+YXRpb25zLjA1BgNVHR8ELjAsMCqgKKAmhiRodHRwOi8vY3JsLnN0YXJ0c3NsLmNv
+bS9jcnQyLWNybC5jcmwwgY4GCCsGAQUFBwEBBIGBMH8wOQYIKwYBBQUHMAGGLWh0
+dHA6Ly9vY3NwLnN0YXJ0c3NsLmNvbS9zdWIvY2xhc3MyL3NlcnZlci9jYTBCBggr
+BgEFBQcwAoY2aHR0cDovL2FpYS5zdGFydHNzbC5jb20vY2VydHMvc3ViLmNsYXNz
+Mi5zZXJ2ZXIuY2EuY3J0MCMGA1UdEgQcMBqGGGh0dHA6Ly93d3cuc3RhcnRzc2wu
+Y29tLzANBgkqhkiG9w0BAQsFAAOCAQEAm2zqtGHQpUTpocJaLjS6MDHFIioYYNhE
+Eg6qR8eoDeOCb6lJ7LlHMA/grVQ8rCQM+b7f5pp9NVB9icSmuijflQEYQNVxJdDD
+iKRw/5BNgitAqdzeIGUA3eA9kZDzBm+ZnXkb/gsTiHrAOIsAHpqIVmVkpNG5xLK3
+NZSZ8I6BpxYXuklpQiqYhix7j33BMx9WmXVbxBDyFFCWMEYhVJfhFyOhpUNyLljE
+L1w65SA7X1AgB2x3zTlL3EfrjTnJaAMzz2qCvlTMdmYT+XmgaBNq08un9JnNa8EQ
+3QhMBkpxpdG7DQxhEkDyZUArmdH011y94LJk3W5or4AQna2hVQSs8g==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.webassign.net/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.webassign.net/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.webassign.net/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth.webassign.net/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">WebAssign</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">WebAssign</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.webassign.net/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dodd Jones</GivenName>
+ <EmailAddress>djones@webassign.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Brent Wells</GivenName>
+ <EmailAddress>bwells@webassign.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brent Wells</GivenName>
+ <EmailAddress>brent.wells@cengage.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://shibint.webassign.net/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibint.webassign.net/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Webassign - Integrations</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Shibboleth Integrations</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cengage.com/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="46" width="214" xml:lang="en">https://www.webassign.com/wp-content/themes/webassign/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 2003097091632605, expires on Sun Apr 16 16:21:49 2017 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibint.webassign.net/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibint.webassign.net/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibint.webassign.net/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibint.webassign.net/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">WebAssign</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">WebAssign</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.webassign.net/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brent Wells</GivenName>
+ <EmailAddress>bwells@webassign.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Brent Wells</GivenName>
+ <EmailAddress>bwells@webassign.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brent Wells</GivenName>
+ <EmailAddress>brent.wells@cengage.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://shibstg.webassign.net/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibstg.webassign.net/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Webassign - Staging</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Shibboleth Staging</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cengage.com/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="46" width="214" xml:lang="en">https://www.webassign.com/wp-content/themes/webassign/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 2003097091632605, expires on Sun Apr 16 16:21:49 2017 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibstg.webassign.net/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibstg.webassign.net/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibstg.webassign.net/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibstg.webassign.net/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">WebAssign</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">WebAssign</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.webassign.net/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brent Wells</GivenName>
+ <EmailAddress>bwells@webassign.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Brent Wells</GivenName>
+ <EmailAddress>bwells@webassign.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brent Wells</GivenName>
+ <EmailAddress>brent.wells@cengage.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Case Western Reserve University -->
+<EntityDescriptor entityID="urn:mace:incommon:case.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">case.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">artsci.case.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">dental.case.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">engineering.case.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">law.case.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">management.case.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">med.case.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">nursing.case.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">sass.case.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Case Western Reserve University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Case Western Reserve University Identity Provider</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://idp.case.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://idp.case.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="180" width="180" xml:lang="en">https://idp.case.edu/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 871562408662188070906146760494857084800960193729, expires on Tue Feb 26 01:13:09 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.case.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.case.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.case.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.case.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.case.edu/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Case Western Reserve University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Case Western Reserve University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cwru.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>SSO Administrators</GivenName>
+ <EmailAddress>sso-admin@case.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>SSO Administrators</GivenName>
+ <EmailAddress>sso-admin@case.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Authentication Support</GivenName>
+ <EmailAddress>help@case.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>SSO Administrators</GivenName>
+ <EmailAddress>sso-admin@case.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Virginia -->
+<EntityDescriptor entityID="https://manage.hpc.virginia.edu/registry">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://manage.hpc.virginia.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ACCORD COmanage</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ACCORD Project COmanage</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://accord.cs.virginia.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.virginia.edu/siteinfo/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="125" width="221" xml:lang="en">https://shibidp.its.virginia.edu/images/uva_incommon_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12916330766790850235, expires on Sat Apr 24 15:04:45 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://manage.hpc.virginia.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ACCORD COmanage</ServiceName>
+ <ServiceDescription xml:lang="en">ACCORD Project COmanage</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Virginia</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Virginia</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.virginia.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UVA IT Security</GivenName>
+ <EmailAddress>it-security@virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jim Jokl</GivenName>
+ <EmailAddress>jaj@virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UVA ITS Systems</GivenName>
+ <EmailAddress>systems@virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UVA InCommon Admin</GivenName>
+ <EmailAddress>incommon-admin@virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UVA ITS Systems</GivenName>
+ <EmailAddress>systems@virginia.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://manage.hpc.virginia.edu/satosa">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://manage.hpc.virginia.edu:8000/Saml2/disco" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ACCORD Proxy</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ACCORD Project Proxy</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://accord.cs.virginia.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.virginia.edu/siteinfo/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="125" width="221" xml:lang="en">https://shibidp.its.virginia.edu/images/uva_incommon_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11442414230035439940, expires on Thu Nov 12 15:11:12 2037 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://manage.hpc.virginia.edu:8000/Saml2/acs/post" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ACCORD Proxy</ServiceName>
+ <ServiceDescription xml:lang="en">ACCORD Project Proxy</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Virginia</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Virginia</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.virginia.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UVA IT Security</GivenName>
+ <EmailAddress>it-security@virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Systems</GivenName>
+ <EmailAddress>incommon-admin@virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UVA ITS Systems</GivenName>
+ <EmailAddress>systems@virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UVA InCommon Admin</GivenName>
+ <EmailAddress>incommon-admin@virginia.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uat.ithriv.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uat.ithriv.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">iTHRIV Research Portal</mdui:DisplayName>
+ <mdui:Description xml:lang="en">A research portal for iTHRIV consortium members.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://uat.ithriv.org/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.virginia.edu/siteinfo/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="131" width="250" xml:lang="en">https://s3.amazonaws.com/ithriv-media/ithriv-logo-250x131.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14749787419826913325, expires on Fri Aug 31 14:12:15 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uat.ithriv.org/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uat.ithriv.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uat.ithriv.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uat.ithriv.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uat.ithriv.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">iTHRIV Research Portal</ServiceName>
+ <ServiceDescription xml:lang="en">A research portal for iTHRIV consortium members.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Virginia</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Virginia</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.virginia.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Byoung-Do Kim</GivenName>
+ <EmailAddress>bk7k@hscmail.mcc.virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Neal Magee</GivenName>
+ <EmailAddress>nem2p@hscmail.mcc.virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UVA IT Security</GivenName>
+ <EmailAddress>it-security@virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UVA InCommon Admin</GivenName>
+ <EmailAddress>incommon-admin@virginia.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:virginia.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://shibidp.its.virginia.edu/idp/shibboleth/idp-error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">virginia.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Virginia</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.virginia.edu/siteinfo/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="125" width="221" xml:lang="en">https://shibidp.its.virginia.edu/idp/images/uva_incommon_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1017202616445356568339306853323680706830846621085, expires on Tue Mar 2 15:26:03 2032 GMT -->
+ <ds:X509Certificate>
+MIIDOzCCAiOgAwIBAgIVALIs8V8u06NEcoiPKqBdTWQ5F3WdMA0GCSqGSIb3DQEB
+BQUAMCMxITAfBgNVBAMTGHNoaWJpZHAuaXRzLnZpcmdpbmlhLmVkdTAeFw0xMjAz
+MDIxNTI2MDNaFw0zMjAzMDIxNTI2MDNaMCMxITAfBgNVBAMTGHNoaWJpZHAuaXRz
+LnZpcmdpbmlhLmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMz9
+8k0PGFjm33ceTUVhpw4fWO+oknxcOTL8o+nsnD3jiaF7KIBWs70+M9Ddkl8ih/os
+rXCPzBhmB/ttNgaKGczqGKCq+o1+cjBgrHzxfUOQAr6ne6ZyZgN0VbRNvkNDB9Te
+Gf9BAlByFcLbrM9xYfu5z79deO9m/M5q6FbD5QMY1qN8A5oJhi1IPZo5GuFCoUJz
+mWGRXSujZQHBFr5T+euyMxnC3Gr+yJhP5plm9tET5VEf/tCWmeeWam84e1u9LP2n
+bFYpusfGZ9lA/JgoYOdYTb5gcHb53yIzLxUF/KaUQACMqbIXZxpvg+7qpLZkBJIX
+G/Qipg5ProkW7GqyzrcCAwEAAaNmMGQwQwYDVR0RBDwwOoIYc2hpYmlkcC5pdHMu
+dmlyZ2luaWEuZWR1hh51cm46bWFjZTppbmNvbW1vbjp2aXJnaW5pYS5lZHUwHQYD
+VR0OBBYEFJe4yrDCKYu70HZV9azIdbPqM9KHMA0GCSqGSIb3DQEBBQUAA4IBAQB8
+G07ktM6zaMsydtat8FUHbQsDqMu51vJAg8DTHD63SoJSG/NFar8BNZH0DDb33Zyy
+4KXfVGzE5Jtg5cb/5eRLah42FtkfvXnSMKgn8jAx77jG3kD/okm0iCKP6RRS7L7Q
+l3CESXZORAXC50pPjoacANRdAl729CszcW65zUhoKBV37plZq5uRc7FTtjJujEOL
+0wsZTq9SmdmHtH3E+XabESqWp43vuMTNS2XPBQPIQUyuCldZN+N6jLkOGQI104P3
+3FljH7rKPo43+7MT2XZGS2J+PcALgUfSxewXei0RQNXWXN3l0qXupwsWM8kO6mSA
+zZQUr9YEODP0DFBKKGSo
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibidp.its.virginia.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibidp.its.virginia.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibidp.its.virginia.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibidp.its.virginia.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Virginia</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Virginia</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.virginia.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Systems Support</GivenName>
+ <EmailAddress>systems@virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Systems Support</GivenName>
+ <EmailAddress>systems@virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UVa InCommon Admin</GivenName>
+ <EmailAddress>incommon-admin@virginia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UVa IT Security</GivenName>
+ <EmailAddress>it-security@virginia.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Turnitin -->
+<EntityDescriptor entityID="https://shibboleth.turnitin.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth.turnitin.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Turnitin</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.turnitin.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://guides.turnitin.com/Privacy_and_Security</mdui:PrivacyStatementURL>
+ <mdui:Logo height="140" width="440" xml:lang="en">https://files.mtstatic.com/site_4775/6878/0?Expires=1533846522&amp;Signature=QGGIjqtrFtvdQHmXokS77c6ZORcZEDZPwrV4HsUjHi1I780bOfLr4wZ-6cvOYOZMplon9WJ1LJH~xgyg-kaFeLPNmaI8wRlbevmPWFuWfkSvLWl1mO1AvBQS7WbNkaKDa3KDpprmB0WzzHMnyYYYR0sc-GpXPPNPjZIa2BNxR98_&amp;Key-Pair-Id=APKAJ5Y6AV4GI7A555NA</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12110534761002587291, expires on Tue Aug 3 16:11:42 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.turnitin.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.turnitin.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.turnitin.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth.turnitin.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shibboleth.turnitin.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shibboleth.turnitin.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Turnitin</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Turnitin</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Turnitin</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://turnitin.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>River Lune</GivenName>
+ <EmailAddress>rlune@turnitin.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Administrator</GivenName>
+ <EmailAddress>shibadmin@turnitin.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>River Lune</GivenName>
+ <EmailAddress>rlune@turnitin.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>River Lune</GivenName>
+ <EmailAddress>rlune@turnitin.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Chicago -->
+<EntityDescriptor entityID="https://lawfaculty.uchicago.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lawfaculty.uchicago.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Law Faculty</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Law Faculty</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://its.uchicago.edu/acceptable-use-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="83" width="350" xml:lang="en">https://shibboleth2.uchicago.edu/idp/shib_img/idplogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9530857935146258101243374241881120029, expires on Thu Mar 5 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lawfaculty.uchicago.edu/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lawfaculty.uchicago.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lawfaculty.uchicago.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lawfaculty.uchicago.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lawfaculty.uchicago.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lawfaculty.uchicago.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lawfaculty.uchicago.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://lawfaculty.uchicago.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://lawfaculty.uchicago.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Chicago</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Chicago</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uchicago.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>University of Chicago IT Security</GivenName>
+ <EmailAddress>security@uchicago.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>D. Luke Ramus</GivenName>
+ <EmailAddress>dramus@uchicago.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>D. Luke Ramus</GivenName>
+ <EmailAddress>dramus@uchicago.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://media.chicagobooth.edu/Mediasite6">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Production MediaSite</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://its.uchicago.edu/acceptable-use-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="83" width="350" xml:lang="en">https://shibboleth2.uchicago.edu/idp/shib_img/idplogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 152527241215936783576448035094414646844, expires on Wed Sep 12 14:52:48 2046 GMT -->
+ <ds:X509Certificate>
+MIIC8DCCAdigAwIBAgIQcr+tmTk1/5RG6x6Ptd5ePDANBgkqhkiG9w0BAQUFAD
+A0MTIwMAYDVQQDEylodHRwczovL21lZGlhLmNoaWNhZ29ib290aC5lZHUvTWVk
+aWFzaXRlNjAeFw0xNjA5MTIxNDUyNDhaFw00NjA5MTIxNDUyNDhaMDQxMjAwBg
+NVBAMTKWh0dHBzOi8vbWVkaWEuY2hpY2Fnb2Jvb3RoLmVkdS9NZWRpYXNpdGU2
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAs/hQbOe2RQxxDbxoAW
+M9zcE8/h0ErsMSnU0I7rARM8kL0mp/ljwomsaIRW5qoIXy82LlWsBW+5+H5P+i
+BmRXy0rFrSe1AqdKkWBk/WV7QHRiuPtdW4s9yK7yuCgcPtREtst0xNxIi1yVGd
+qXs6x+yAXwOhcqIyB5SK7GtIQJrFyhD4+BVyTHxZn1IxnBjcrrqM76/wqy09RZ
+1winWT1gD0HPo4pcSv1X7pHuLKjYySPqe6M7FqQTaIo4oUVGOcW3t0IsLV35uL
+Ve/UprCBZYqtTJJgpxGpKv3OMkVcGrwRHWQy4xIe/OIbAUQjWS/LvIVvfZv5nr
+UHJUJz5dl774vwIDAQABMA0GCSqGSIb3DQEBBQUAA4IBAQBHlF17hX9cEkaJof
+QTg9kgak9J2rmtac9fKrTU0uigVNTsOwV1VavYBvnZ7lDbSa8nZicVgmxfBznw
+eW+Va1nqgcvOCqadf0qqFe9H4WEKYazmiuTVBzeFyR2gY4cNZKGbsQL95iTgL7
+kpG18iViwD0K9ZpP2/44X7AjBX7sXZiNnchoNQe/cLxB60+A0cXeyyEY9qjwmV
+idJlztZm1uZ2mpRtLuv5IL6MdP4UdgmWCpaObiuhtcaWAiVwJtSLMV1+ZRMWqI
+vX8EfB+H2rphEgbAJsYxAlQ2jI5lqsBIqYxkUedwX54sEeKE2k5O9GPkshBRzI
+IKuAG/mZ3AeW9yio
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://media.chicagobooth.edu/Mediasite6/Login/SAML/POST" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Chicago</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Chicago</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uchicago.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Booth Systems</GivenName>
+ <EmailAddress>systems@chicagobooth.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Booth Helpdesk</GivenName>
+ <EmailAddress>helpdesk@chicagobooth.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>University of Chicago IT Security</GivenName>
+ <EmailAddress>security@uchicago.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://mediatest.chicagobooth.edu/Mediasite7">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Test MediaSite</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://its.uchicago.edu/acceptable-use-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="83" width="350" xml:lang="en">https://shibboleth2.uchicago.edu/idp/shib_img/idplogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 29193899020202797587514401857934505416, expires on Sat Jun 9 21:15:38 2046 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mediatest.chicagobooth.edu/Mediasite7/Login/SAML/POST" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Chicago</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Chicago</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uchicago.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Booth Systems</GivenName>
+ <EmailAddress>systems@chicagobooth.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Booth Helpdesk</GivenName>
+ <EmailAddress>helpdesk@chicagobooth.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>University of Chicago IT Security</GivenName>
+ <EmailAddress>security@uchicago.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://phs-pc200.bsd.uchicago.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Health bsd dev</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://its.uchicago.edu/acceptable-use-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="83" width="350" xml:lang="en">https://shibboleth2.uchicago.edu/idp/shib_img/idplogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13464710269008600142, expires on Sat Dec 6 20:36:00 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phs-pc200.bsd.uchicago.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://phs-pc200.bsd.uchicago.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phs-pc200.bsd.uchicago.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://phs-pc200.bsd.uchicago.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://phs-pc200.bsd.uchicago.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Chicago</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Chicago</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uchicago.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>ANDREW CONLISK</GivenName>
+ <EmailAddress>aconlisk@health.bsd.uchicago.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>University IT Security</GivenName>
+ <EmailAddress>security@uchicago.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Unix Team</GivenName>
+ <EmailAddress>unix-team@lists.uchicago.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:uchicago.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://itservices.uchicago.edu/page/support" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uchicago.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Chicago</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The University of Chicago Web Single Sign-On servce</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://its.uchicago.edu/acceptable-use-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="83" width="350" xml:lang="en">https://shibboleth2.uchicago.edu/idp/shib_img/idplogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10351443955254309312, expires on Sun Jun 13 14:46:25 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth2.uchicago.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth2.uchicago.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth2.uchicago.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth2.uchicago.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth2.uchicago.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth2.uchicago.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth2.uchicago.edu/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uchicago.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10351443955254309312, expires on Sun Jun 13 14:46:25 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth2.uchicago.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth2.uchicago.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Chicago</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Chicago</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uchicago.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tom Barton</GivenName>
+ <EmailAddress>tbarton@uchicago.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>David Langenberg</GivenName>
+ <EmailAddress>davel@uchicago.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Services Support</GivenName>
+ <EmailAddress>support@uchicago.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Security</GivenName>
+ <EmailAddress>security@uchicago.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Joao Cassamano</GivenName>
+ <EmailAddress>cassamanojc@uchicago.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Esmail Sharafuddin</GivenName>
+ <EmailAddress>esmailsh@uchicago.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Miami University -->
+<EntityDescriptor entityID="urn:mace:incommon:muohio.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://muidp.miamioh.edu/cas/login" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">muohio.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">miamioh.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Miami University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://miamioh.edu/about-miami/pubs-policies/privacy-statement/index.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="66" xml:lang="en">https://www.miamioh.edu/_files/images/ucm/resources/logo/email-M_186K.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 983229970990673196957002408521976893390913726054, expires on Sat Sep 6 18:17:37 2031 GMT -->
+ <ds:X509Certificate>
+MIIDLDCCAhSgAwIBAgIVAKw5joclkRM7v8BoI/l7FWUAWuZmMA0GCSqGSIb3DQEB
+BQUAMBsxGTAXBgNVBAMTEG11aWRwLm11b2hpby5lZHUwHhcNMTEwOTA2MTgxNzM3
+WhcNMzEwOTA2MTgxNzM3WjAbMRkwFwYDVQQDExBtdWlkcC5tdW9oaW8uZWR1MIIB
+IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqb1TAe1bFQ71cuQZz4gP91bT
+Rr8OIr9VA6lAB9L3kO5KQYx5NUBkCbKsWky7M/dbW/+Pt9tj6pkwIEr4GDO0un36
+EZPi3+1Gv0Wmc2WTGA8xQVCPoUP/bd7e5H+gRF7gla5Aj7zvejARFVnw5ajgVvTT
+z5YZAp7Nmw+uJLHMb6IQf+m3xpKGM/tHqZDyhmKIFD18TopyiBLnRGHwKFwxx1Sq
+qfAzkq2OOr5LWb6M6D4FSF0jR0OGKzl6GNi05zvRm40P+nwydCIaC/XduoWodKuU
+l7UkX7JaltsaEVLbpXJBato9Uwyif1vqXMG4oKv0JqMv0I6uzA2J9wbLhQNgjQID
+AQABo2cwZTBEBgNVHREEPTA7ghBtdWlkcC5tdW9oaW8uZWR1hidodHRwczovL211
+aWRwLm11b2hpby5lZHUvaWRwL3NoaWJib2xldGgwHQYDVR0OBBYEFHletfQytS1u
+CV3Q3wC3ObBMfcpPMA0GCSqGSIb3DQEBBQUAA4IBAQAZUdcZLnMUQpH01ZtHKveu
+PhbjFymh5NThn5Djx83uHXJV8duDEn9+DlEBmIkJefT5IIoRtHQZDeJVk5i5DDm6
+MJpaN48/EVYIlsAnJqO1d6u+ccAIRSlWyqeQPTCJ59mEsv6Va9EEO106EPvcAmzk
+PjkOhl1Xv1kTYkhNlUe+lD76xgvaizZqxQNOZSohGB6JKWVgpVmNKXrG70bPFoVD
+W9zHQ1QMn4zgrcdIXAh35hfJ3V11hYNAxbEJR+a6JcLx6w8sYF4hKcNMez89uunC
+YYDYqK0Q9zukmasDWzcclzuqiJdWWMieNGYFgQOru5/17okAMls3dl2RmjoQgEsN
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://muidp.miamioh.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://muidp.miamioh.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://muidp.miamioh.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://muidp.miamioh.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://muidp.miamioh.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://muidp.miamioh.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">muohio.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">miamioh.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 983229970990673196957002408521976893390913726054, expires on Sat Sep 6 18:17:37 2031 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://muidp.miamioh.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://muidp.miamioh.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Miami University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Miami University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.muohio.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Solution Delivery Support</GivenName>
+ <EmailAddress>soldelsupport@miamioh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>infosec@miamioh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Solution Delivery Support</GivenName>
+ <EmailAddress>soldelsupport@miamioh.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Stanford University -->
+<EntityDescriptor entityID="https://itarch.stanford.edu/shibboleth/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stanford UIT Strategy &amp; Architecture</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Strategy &amp; Architecture / Emerging Technology Blog</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://itarch.stanford.edu/emerging-technology</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stanford.edu/site/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="148" width="296" xml:lang="en">https://assets.itlab.stanford.edu/images/bunsen-beaker-2.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15381570615153798086, expires on Fri Apr 24 19:05:04 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://itarch.stanford.edu/simplesamlphp/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Stanford UIT Strategy &amp; Architecture</ServiceName>
+ <ServiceDescription xml:lang="en">Strategy &amp; Architecture / Emerging Technology Blog</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stanford University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stanford University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.stanford.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Emerging Tech Team</GivenName>
+ <EmailAddress>emerging-tech@lists.stanford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Emerging Tech Team</GivenName>
+ <EmailAddress>emerging-tech@lists.stanford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Emerging Tech Team</GivenName>
+ <EmailAddress>emerging-tech@lists.stanford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Emerging Tech Team</GivenName>
+ <EmailAddress>emerging-tech@lists.stanford.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sgp-data.stanford.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SGP Data Download</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Database downloads for participants in the Sedimentary Geochemistry and Paleo environments Project</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://sites.stanford.edu/sgp</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stanford.edu/site/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://idp.stanford.edu/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14927486131333794991, expires on Sat Aug 28 20:55:17 2027 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pangea.stanford.edu/sgp-data/sites/all/libraries/simplesamlphp/www/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://pangea.stanford.edu/sgp-data/sites/all/libraries/simplesamlphp/www/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pangea.stanford.edu/sgp-data/sites/all/libraries/simplesamlphp/www/module.php/saml/sp/saml2-acs.php/default-sp" index="3"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SGP Data Download</ServiceName>
+ <ServiceDescription xml:lang="en">Database downloads for participants in the Sedimentary Geochemistry and Paleo environments Project</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stanford University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stanford University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.stanford.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>SGP Webmaster</GivenName>
+ <EmailAddress>webmaster@se3mail.stanford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kenneth R Sharp</GivenName>
+ <EmailAddress>webmaster@se3mail.stanford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stanford SAML Team</GivenName>
+ <EmailAddress>saml-team@lists.stanford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Office</GivenName>
+ <EmailAddress>securityofficer@stanford.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:stanford.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">stanford.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stanford University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Stanford University's identity provider for Web single sign-on</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://saml.stanford.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stanford.edu/site/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login.stanford.edu/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17984743287550271738, expires on Sat Nov 30 20:51:36 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11060104959520713497, expires on Sun Apr 10 16:31:00 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.stanford.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.stanford.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.stanford.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.stanford.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stanford University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stanford University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.stanford.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>SAML Support</GivenName>
+ <EmailAddress>shibboleth-team@lists.stanford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Office</GivenName>
+ <EmailAddress>securityofficer@stanford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>SAML Support</GivenName>
+ <EmailAddress>shibboleth-team@lists.stanford.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Alabama at Birmingham -->
+<EntityDescriptor entityID="urn:mace:incommon:uab.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uab.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Alabama at Birmingham</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uab.edu/policies/content/Pages/UAB-AD-POL-0000090.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="107" width="320" xml:lang="en">https://apps.idm.uab.edu/images/UABmetadataLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12131395628174235813, expires on Mon May 15 17:33:48 2023 GMT -->
+ <ds:X509Certificate>
+MIIDNTCCAh2gAwIBAgIJAKhbYAyHDVilMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV
+BAMTEHNoaWIuZHBvLnVhYi5lZHUwHhcNMTMwNTA3MTczMzQ4WhcNMjMwNTE1MTcz
+MzQ4WjAbMRkwFwYDVQQDExBzaGliLmRwby51YWIuZWR1MIIBIjANBgkqhkiG9w0B
+AQEFAAOCAQ8AMIIBCgKCAQEAyMC9Q5de3dVyc+TrIsiKuAMo/hB/fOS5ZCBTs/Dg
+KX3bYXa3VBcJCQjZSCAXXcOY+xZjzUr7UZnQh4zsizwahMA2xTCHPV2ioUUvXbBr
+rG/8rTYe130jeP+mcLxfph15JPM2n9zs6/9bn+xjlQM8eKu+Es8JaxjUnG7LzBjb
+ZQxbZrBkec5ppFg1a3bhAHkf4XK71GKWffW+Hyw8HzqXNkOUEUO778TLbEIB4Xmd
+POL88pYgVWp9Li7CAlWN/UsBLwy1y+sCCHfWunbI2Myf+QMLafs4JYFTFeo+00H4
+Uy0MRcatmnDSkq0r0L7ZZosnDE0lJwC3fnvECOqKHLZ5XQIDAQABo3wwejAdBgNV
+HQ4EFgQUbkGLbZqs4yNGXzx2btBzJdrpU3MwSwYDVR0jBEQwQoAUbkGLbZqs4yNG
+Xzx2btBzJdrpU3OhH6QdMBsxGTAXBgNVBAMTEHNoaWIuZHBvLnVhYi5lZHWCCQCo
+W2AMhw1YpTAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQAZAZq6u3DL
+AKOr/dzOaynGI4VmEbgjtOM20nkwpeHYNJUO+fd4gZH3QkxPkATqSVQ3UFMEACJw
+7Hz5LgswpiRiaBTD/27jJxqG/ZOzPJfu08L1Ljx0+j3hMuaNA1KDENvkNOBGulCk
+QI8Qdm3Jj2bfGC0qnmiQ9rZ/IMleVXcjVBdEi9WnIS9Lu960FwJTsaYNvpYTJPGZ
+qsnFmVVeDfVtegKUOtE/p/hZZ0rAqilBeCz0jyqEG7cjW4Zwd3ULfb32F1sv00Zp
++ap/RFh5amo3UF0raAflMUYKy64pgOBlsW4cqYsZ+ou8aqrcJVfPPTlWIQtdPFXS
+FFBTvHwNAQ9P
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.dpo.uab.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.dpo.uab.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.dpo.uab.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.dpo.uab.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.dpo.uab.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.dpo.uab.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uab.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12131395628174235813, expires on Mon May 15 17:33:48 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.dpo.uab.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.dpo.uab.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Alabama at Birmingham</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Alabama at Birmingham</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uab.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Landy Manderson</GivenName>
+ <EmailAddress>landy@uab.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UABIT User Services</GivenName>
+ <EmailAddress>UserServices@uab.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UAB Enterprise Information Security</GivenName>
+ <EmailAddress>infosecurity@uab.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rachel Moorehead</GivenName>
+ <EmailAddress>rmoorehead@uab.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of California-Los Angeles -->
+<EntityDescriptor entityID="urn:mace:incommon:ucla.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucla.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California, Los Angeles</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.ucla.edu/terms-of-use/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="120" width="160" xml:lang="en">https://s3-us-west-2.amazonaws.com/ucomm-content-host/alpha/ucla-logo-80x60-2x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9398250699135976250, expires on Thu Mar 13 16:32:21 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shb.ais.ucla.edu:8443/shibboleth-idp/Artifact" index="1"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shb.ais.ucla.edu/shibboleth-idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shb.ais.ucla.edu/shibboleth-idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shb.ais.ucla.edu/shibboleth-idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucla.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9398250699135976250, expires on Thu Mar 13 16:32:21 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shb.ais.ucla.edu:8443/shibboleth-idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shb.ais.ucla.edu:8443/shibboleth-idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California-Los Angeles</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California-Los Angeles</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucla.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Client Support</GivenName>
+ <EmailAddress>clientsupport@it.ucla.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeffrey Crawford</GivenName>
+ <EmailAddress>jcrawford@it.ucla.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UCLA IT Security</GivenName>
+ <EmailAddress>security@it.ucla.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Van Norman</GivenName>
+ <EmailAddress>mvn@ucla.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Rochester -->
+<EntityDescriptor entityID="https://clic-ctsa.org">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Center for Leading Innovation and Collaboration</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The Center for Leading Innovation and Collaboration (CLIC) is a one-stop-shop for all your clinical and translational research needs.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://clic-ctsa.org/pages/about-clic</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.urmc.rochester.edu/privacy/privacy-statement.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="102" width="104" xml:lang="en">https://shib2.its.rochester.edu/idp/images/ur_logo2.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 28324401775442674440910188529244696718, expires on Thu Sep 24 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://clic-ctsa.org/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://clic-ctsa.org/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clic-ctsa.org/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://clic-ctsa.org/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clic-ctsa.org/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://clic-ctsa.org/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Center for Leading Innovation and Collaboration</ServiceName>
+ <ServiceDescription xml:lang="en">The Center for Leading Innovation and Collaboration (CLIC) is a one-stop-shop for all your clinical and translational research needs.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Rochester</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Rochester</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rochester.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Amanda Davin</GivenName>
+ <EmailAddress>amanda_davin@urmc.rochester.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Amanda Davin</GivenName>
+ <EmailAddress>amanda_davin@urmc.rochester.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Amanda Davin</GivenName>
+ <EmailAddress>amanda_davin@urmc.rochester.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incident Response</GivenName>
+ <EmailAddress>abuse@rochester.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://shib2.its.rochester.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://shib2.its.rochester.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">rochester.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Rochester</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The University of Rochester is one of the country's top-tier research universities. Our 158 buildings house more than 200 academic majors, more than 2,000 faculty and instructional staff, and some 11,300 students—approximately half of whom are women.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.rochester.edu/aboutus/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://tech.rochester.edu/policies/information-technology-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="102" width="104" xml:lang="en">https://shib2.its.rochester.edu/idp/images/ur_logo2.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1182636057744722243385320810084046301593806343420, expires on Fri May 3 17:39:46 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib2.its.rochester.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib2.its.rochester.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib2.its.rochester.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib2.its.rochester.edu/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib2.its.rochester.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib2.its.rochester.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib2.its.rochester.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib2.its.rochester.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">rochester.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1182636057744722243385320810084046301593806343420, expires on Fri May 3 17:39:46 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib2.its.rochester.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib2.its.rochester.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Rochester</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Rochester</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rochester.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Sean Singh</GivenName>
+ <EmailAddress>sean.singh@rochester.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Sean Singh</GivenName>
+ <EmailAddress>sean.singh@rochester.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Lisa Sprague</GivenName>
+ <EmailAddress>lisa.sprague@rochester.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incident Response</GivenName>
+ <EmailAddress>abuse@rochester.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://staging2.clic-ctsa.org">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Center for Leading Innovation and Collaboration</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test Site for The Center for Leading Innovation and Collaboration (CLIC) is a one-stop-shop for all your clinical and translational research needs.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://staging2.clic-ctsa.org/pages/about-clic</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.urmc.rochester.edu/privacy/privacy-statement.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="102" width="104" xml:lang="en">https://shib2.its.rochester.edu/idp/images/ur_logo2.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 76611475017775555666995718080833035039, expires on Fri Jul 17 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://staging2.clic-ctsa.org/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://staging2.clic-ctsa.org/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://staging2.clic-ctsa.org/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://staging2.clic-ctsa.org/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://staging2.clic-ctsa.org/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://staging2.clic-ctsa.org/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Center for Leading Innovation and Collaboration</ServiceName>
+ <ServiceDescription xml:lang="en">Test Site for The Center for Leading Innovation and Collaboration (CLIC) is a one-stop-shop for all your clinical and translational research needs.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Rochester</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Rochester</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rochester.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert J White</GivenName>
+ <EmailAddress>RobertJ_White@URMC.Rochester.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Melissa Trayhan</GivenName>
+ <EmailAddress>melissa_trayhan@urmc.rochester.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incident Response</GivenName>
+ <EmailAddress>abuse@rochester.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of California, Riverside -->
+<EntityDescriptor entityID="urn:mace:incommon:ucr.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucr.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California, Riverside</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucr.edu/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="39" width="203" xml:lang="en">https://www.ucr.edu/profiles/custom/umbrella_acsf/themes/custom/ucr_umbrella/images/ucr-logo-standard.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13603176639802573805, expires on Sat Sep 8 20:05:29 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.ucr.edu:8443/shibboleth-idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.ucr.edu/shibboleth-idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.ucr.edu/shibboleth-idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.ucr.edu/shibboleth-idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.ucr.edu/shibboleth-idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucr.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13603176639802573805, expires on Sat Sep 8 20:05:29 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.ucr.edu:8443/shibboleth-idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California, Riverside</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California, Riverside</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucr.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UCR Shibboleth Administrators</GivenName>
+ <EmailAddress>shibboleth@ucr.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UCR Shibboleth Administrators</GivenName>
+ <EmailAddress>shibboleth@ucr.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UCR Helpdesk</GivenName>
+ <EmailAddress>helpdesk@ucr.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Virden</GivenName>
+ <EmailAddress>john.virden@ucr.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Maryland Baltimore -->
+<EntityDescriptor entityID="https://webauth.umaryland.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umaryland.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Maryland Baltimore</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The University of Maryland, Baltimore (UMB) is the State's public health, law and human services university devoted to excellence in professional and graduate education, research, patient care, and public service. As a diverse community of outstanding faculty, staff and students, and using state-of-the-art technological support, we educate leaders in health care delivery, biomedical science, global health, social work and the law. We emphasize interdisciplinary education and research in an atmosphere that explicitly values civility, diversity, collaboration, teamwork and accountability. By conducting internationally recognized research to cure disease and to improve the health, social functioning and just treatment of the people we serve, we foster economic development in the City, State, and nation. We are committed to ensuring that the knowledge we generate provides maximum benefit to society and directly enhances our various communities.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.umaryland.edu/policies-and-procedures/library/information-technology/policies/x-9915a.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="89" width="340" xml:lang="en">https://directory.umaryland.edu/shibboleth/umblogo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 743860790742209384133105839292855732450644213718, expires on Tue Oct 26 16:49:04 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.umaryland.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webauth.umaryland.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.umaryland.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.umaryland.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webauth.umaryland.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://webauth.umaryland.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umaryland.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 743860790742209384133105839292855732450644213718, expires on Tue Oct 26 16:49:04 2032 GMT -->
+ <ds:X509Certificate>
+MIIDQDCCAiigAwIBAgIVAIJL3xlKBtxM29EgLG3uO45k3D/WMA0GCSqGSIb3DQEB
+BQUAMCAxHjAcBgNVBAMTFXdlYmF1dGgudW1hcnlsYW5kLmVkdTAeFw0xMjEwMjYx
+NjQ5MDRaFw0zMjEwMjYxNjQ5MDRaMCAxHjAcBgNVBAMTFXdlYmF1dGgudW1hcnls
+YW5kLmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKA/GisjATA6
+jTXmT0yDRFjtBBpWz50qYpPpLJ5+QJEt26jTlztQRg3aimomjLyeMaSMrk6NaVd5
+MqUSDwhAW6lmhkkc7SK0DXSVNNmvd8BT60ZlNxYSNF3jAEjsgQu+o3+KWLkVPlY8
+njCUvGh3+Gg7eTULf66UfM5oRgHYaonWBzd2Ayx3sxFD6HTupfC0o/MmXyJsnuOV
+hAzKp1x52fDndYDvA7ki7+z/RCgYYTNsgwjp+1preNQeJfIXwTr9bOpkvLx4v4ij
+8lDTWDtsxvq3WyZNrAHTJoEaKym6AeoloDTtNXIHWl99Z8OIhJVJdBSjQaE8580m
+BuinQ/3GWJECAwEAAaNxMG8wTgYDVR0RBEcwRYIVd2ViYXV0aC51bWFyeWxhbmQu
+ZWR1hixodHRwczovL3dlYmF1dGgudW1hcnlsYW5kLmVkdS9pZHAvc2hpYmJvbGV0
+aDAdBgNVHQ4EFgQUcjvwyPv4suKIR1/ISJTsDvddPYcwDQYJKoZIhvcNAQEFBQAD
+ggEBAEN+MsMdV4cUYWfF8WQTgD5U1wnkB/7Ya11wvsRA2ycFo3XIGXnfiN/nAdd9
+3QVzjeXy5Eck2hL6O4b7jBXhaC6V58HdskSKEQv1pV5g0Uc9umXfeI2qwGgiDG+/
+AYp5sQfEOR2iqm2fFOcg8jHY0rA6x+TaSG4HPxNGyPUMr++lB7/GVveOtApbiUy1
+oy9sjvoB6Q2spGvKL9ztGS7DArQ5vmppu/cW6KLyKxvlex0l2eqSLc6ykbmmsZfS
+C3tP4wi5CZgqM/Ak34O9PntDHTUgXUUmK0TAXJqXwsRffYByDJFXlNgTQWLiYf5e
+pnBcdqtVQcuIV+E+RUNLcxS0b5w=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.umaryland.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webauth.umaryland.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Maryland Baltimore</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Maryland Baltimore</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umaryland.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Brian Coats</GivenName>
+ <EmailAddress>bscoats@umaryland.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Brent Nickles</GivenName>
+ <EmailAddress>brent@umaryland.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brian Coats</GivenName>
+ <EmailAddress>bscoats@umaryland.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Help Desk</GivenName>
+ <EmailAddress>help@umaryland.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Fred Smith</GivenName>
+ <EmailAddress>security-compliance@umaryland.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- New York University -->
+<EntityDescriptor entityID="urn:mace:incommon:nyu.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">nyu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">New York University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://shibboleth.nyu.edu/InCommon/digital-privacy-statement.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="162" width="113" xml:lang="en">https://shibboleth.nyu.edu/InCommon/nyu_stacked_color.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10202320263211693109, expires on Mon Aug 8 21:35:16 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.nyu.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.nyu.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.nyu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.nyu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.nyu.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">New York University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">New York University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nyu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Yavor Yanakiev</GivenName>
+ <EmailAddress>yy27@nyu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Anthony Cetera</GivenName>
+ <EmailAddress>tony.cetera@nyu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Lec Maj</GivenName>
+ <EmailAddress>lec.maj@nyu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>David Basson</GivenName>
+ <EmailAddress>david.basson@nyu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Yavor Yanakiev</GivenName>
+ <EmailAddress>yy27@nyu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Dartmouth College -->
+<EntityDescriptor entityID="https://osprey.dartmouth.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://osprey.dartmouth.edu/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Dartmouth Osprey</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://home.dartmouth.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="33" width="316" xml:lang="en">https://home.dartmouth.edu/sites/all/themes/dartmouth_master/img/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9299827436685839557, expires on Sat Jun 28 13:55:56 2014 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://osprey.dartmouth.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://osprey.dartmouth.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://osprey.dartmouth.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://osprey.dartmouth.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://osprey.dartmouth.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://osprey.dartmouth.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Dartmouth College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Dartmouth College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.dartmouth.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Sean R. McNamara</GivenName>
+ <EmailAddress>sean.r.mcnamara@dartmouth.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John L. Gilman</GivenName>
+ <EmailAddress>john.l.gilman@dartmouth.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sean R. McNamara</GivenName>
+ <EmailAddress>sean.r.mcnamara@dartmouth.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:dartmouth.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://websso.dartmouth.edu/OAMLogin/dartError.jsp?p_error_code=SHIB-1" protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">dartmouth.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Dartmouth College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://home.dartmouth.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="33" width="316" xml:lang="en">https://communications.dartmouth.edu/sites/all/themes/dartmouth_wrapper/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17996376738834099222, expires on Sat Aug 5 19:54:53 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.login.dartmouth.edu/cas/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.login.dartmouth.edu/cas/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.login.dartmouth.edu/cas/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.login.dartmouth.edu/cas/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.login.dartmouth.edu/cas/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">dartmouth.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17996376738834099222, expires on Sat Aug 5 19:54:53 2023 GMT -->
+ <ds:X509Certificate>
+MIIDfjCCAmYCCQD5v/lLik8sFjANBgkqhkiG9w0BAQUFADCBgDELMAkGA1UEBhMC
+VVMxFjAUBgNVBAgTDU5ldyBIYW1wc2hpcmUxEDAOBgNVBAcTB0hhbm92ZXIxGjAY
+BgNVBAoTEURhcnRtb3V0aCBDb2xsZWdlMQ0wCwYDVQQLEwRQS0NTMRwwGgYDVQQD
+ExNsb2dpbi5kYXJ0bW91dGguZWR1MB4XDTEzMDgwNzE5NTQ1M1oXDTIzMDgwNTE5
+NTQ1M1owgYAxCzAJBgNVBAYTAlVTMRYwFAYDVQQIEw1OZXcgSGFtcHNoaXJlMRAw
+DgYDVQQHEwdIYW5vdmVyMRowGAYDVQQKExFEYXJ0bW91dGggQ29sbGVnZTENMAsG
+A1UECxMEUEtDUzEcMBoGA1UEAxMTbG9naW4uZGFydG1vdXRoLmVkdTCCASIwDQYJ
+KoZIhvcNAQEBBQADggEPADCCAQoCggEBALOih99QFOaxBOq2e2MKw0G1p0lpD1xr
+AgAWKc1WGLKOyjPb3ru6tAz9RFJNKQYRS2VeL6BlTRn4nMpaUPGAZk8byhCQE/h+
+VS9w019U5nmeMopWV7o/UviV0sNBhpkobrCF0spiwNtN+twqHcZKB3LHn7Z4lOnN
+pl8CXwQnnBn9xArnSGD9fb62rY6v4d1cAHen9f7sVosLyl3pYATAOe3VWU1Td4W9
+MfWFVb2IXZwDVF4cuFesDehGV6P15MOCYuBoHtPycS66hNFmQIS0Yyo6RSJhU64/
+zSWtwpTDPK++jdIrmr0voi+qyLXf41JGGoAsiVZIPgq/Q/NtzYn8apsCAwEAATAN
+BgkqhkiG9w0BAQUFAAOCAQEAfpVY3snVpp/WT5dZN5cRMowLbJCvvDYO8BEd+r6U
+FRDgTn8WG1NUL45e6yHPRaLF1Mj4g24j8jHEIypy4KJN+DXFJml7FehKl8CY7tJ7
+l1NLX/hNiBXHq5jN+ppWKvnlZLHU1Xs5CEUFIaF+b+FHtBfllCMZPOQUSv0RTJy8
+i3q0skAI/2nPGfA76XiIw88sfuT5bpqqpBfiVKIl/Fi7IV2Mvt8vraULJX/tkot7
+Szxwr2BKS9O9++4J7vv3tfqtPAwKNcyLYAKLnvjWrvVRcZGMarMWKNQsSdWYgdu6
+YCFCMPMXjTEu05ACdSRLThQAnSO5Ml+byI7hpfl0E69FVw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.login.dartmouth.edu/cas/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Dartmouth College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Dartmouth College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.dartmouth.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sean McNamara</GivenName>
+ <EmailAddress>Sean.R.McNamara@dartmouth.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Dartmouth Helpdesk</GivenName>
+ <EmailAddress>help@dartmouth.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dartmouth Helpdesk</GivenName>
+ <EmailAddress>help@dartmouth.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jonathan Crossett</GivenName>
+ <EmailAddress>Jonathan.Crossett@dartmouth.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of California, Merced -->
+<EntityDescriptor entityID="urn:mace:incommon:ucmerced.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucmerced.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California, Merced</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://policy.ucop.edu/doc/7000470/ElectronicCommunications</mdui:PrivacyStatementURL>
+ <mdui:Logo height="66" width="231" xml:lang="en">https://publicrelations.ucmerced.edu/sites/communications.ucmerced.edu/files/images/branding-guidelines/170824_merced_logo_originalfont.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16981114669516269019, expires on Mon Jan 4 21:56:51 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.ucmerced.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.ucmerced.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.ucmerced.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.ucmerced.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.ucmerced.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.ucmerced.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucmerced.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16981114669516269019, expires on Mon Jan 4 21:56:51 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.ucmerced.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.ucmerced.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California, Merced</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California, Merced</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucmerced.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Kamminga</GivenName>
+ <EmailAddress>jkamminga@ucmerced.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Nick Dugan</GivenName>
+ <EmailAddress>infosecurity@ucmerced.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UCM IdM</GivenName>
+ <EmailAddress>idm@ucmerced.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Matt Cato</GivenName>
+ <EmailAddress>mcato@ucmerced.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Southern California -->
+<EntityDescriptor entityID="urn:mace:incommon:usc.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">usc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Southern California</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity Provider for most services of the University of Southern California. This service only recognizes services registered to the Research and Scholarship tag and will not recognize all services registered to InCommon</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.usc.edu/pages/usc-privacy-notice/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="525" width="1800" xml:lang="en">https://shibboleth.usc.edu/ds/images/PrimShield-Word_SmallUseShield_CardOnTrans.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9492467144851652025, expires on Thu Jul 13 18:34:15 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.usc.edu:8444/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.usc.edu:8444/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.usc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.usc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.usc.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.usc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">usc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9492467144851652025, expires on Thu Jul 13 18:34:15 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.usc.edu:8444/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.usc.edu:8444/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Southern California</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Southern California</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.usc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>shib-admin-l@usc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS Security</GivenName>
+ <EmailAddress>security@usc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Darren Yamaki</GivenName>
+ <EmailAddress>dyamaki@usc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- The Pennsylvania State University -->
+<EntityDescriptor entityID="https://comanage.psu.edu/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Penn State prototype COmanage instance</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.psu.edu/web-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="130" xml:lang="en">https://www.dept.psu.edu/ids/public/psulogoforincommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9889499096232674422, expires on Sat Aug 14 15:27:01 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://comanage.psu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://comanage.psu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://comanage.psu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://comanage.psu.edu/Shibboleth.sso/SAML/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://comanage.psu.edu/Shibboleth.sso/SAML/Artifact" index="5"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Penn State prototype COmanage instance</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The Pennsylvania State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Penn State</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.psu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Derek Morr</GivenName>
+ <EmailAddress>dvm105@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Derek Morr</GivenName>
+ <EmailAddress>dvm105@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rich Cropp</GivenName>
+ <EmailAddress>rac@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Office of Information Security</GivenName>
+ <EmailAddress>security@psu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://confluence.et-test.psu.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://confluence-test.vmhost.psu.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Confluence test wiki</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.psu.edu/web-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="130" xml:lang="en">https://www.dept.psu.edu/ids/public/psulogoforincommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9373077755525041710, expires on Thu Nov 6 20:37:40 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://confluence-test.vmhost.psu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://confluence-test.vmhost.psu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://confluence-test.vmhost.psu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://confluence-test.vmhost.psu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://confluence-test.vmhost.psu.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://confluence-test.vmhost.psu.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Confluence test wiki</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The Pennsylvania State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Penn State</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.psu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Derek Morr</GivenName>
+ <EmailAddress>dvm105@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rich Cropp</GivenName>
+ <EmailAddress>rac@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Derek Morr</GivenName>
+ <EmailAddress>dvm105@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security, Office of Information Security</GivenName>
+ <EmailAddress>security@psu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://softreq.test.psu.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://softreq.test.psu.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SoftReqDev</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Dev software request system</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://softreq.test.psu.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.psu.edu/web-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="130" xml:lang="en">https://www.dept.psu.edu/ids/public/psulogoforincommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10616002322399523896, expires on Sun Jun 25 16:54:41 2028 GMT -->
+ <ds:X509Certificate>
+MIIEHjCCAoagAwIBAgIJAJNTnd3BWHQ4MA0GCSqGSIb3DQEBCwUAMCgxJjAkBgNV BAMTHXNvZnRyZXEtd2ViLXQwMS5tdGl0ZXN0LmxvY2FsMB4XDTE4MDYyODE2NTQ0 MVoXDTI4MDYyNTE2NTQ0MVowKDEmMCQGA1UEAxMdc29mdHJlcS13ZWItdDAxLm10 aXRlc3QubG9jYWwwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDm1Hne ISQbj/g6AGfHTv4jHOFa6WdqHx741ko+reNDI74fnsZtEgS6K2HLDSDLZeA96qVS 0sIB//C1GT6wOuMA84xcIgenvwsVq98+vvthu85wr9/rY/e3meqbzvyQaBedupdq fivvKFEw0xbR01cECmB4J86egueRzWdjvne7PJl7FazLfSdPFz1R5/2tHYGdji2k +5lXiqwZK0ZOqzS5RuleAtaAgx4TWfPtqx7cArJFXbcHppyW2bJ8Wz5bR31WN+U5 /Q6R/xMifi6N5ypEdbDvjs+dcmPNA9BM7sFiLFyi6TIrvurnjdqb43mfJR0gAMhi 5WEyyX2GE31G1mUGrh3iIovmrhkUZoSuBkuq+K0WRxQHuV71sELfCGF/qYMoWsT0 uGlNo4AiAHTIueILA2E4Oo7QqqJ0sYzNILPywOdooa2iimjmDCxP3iFMXcnzDYpE 5Wqe7wWCT6J85xRqKHHlj7gVp9dPDUj18hh/w7mpmIcNNIDegfdvNp8R888CAwEA AaNLMEkwKAYDVR0RBCEwH4Idc29mdHJlcS13ZWItdDAxLm10aXRlc3QubG9jYWww HQYDVR0OBBYEFBRXEZU1fQ3rCw5vBBh4jZQLD+JzMA0GCSqGSIb3DQEBCwUAA4IB gQBKMfHje2kGB9SCYDgF9bwXlXi0pfGZYeQkEsdKh4ldipCqCqRlJ+uFxv9Ssh81 qgTmS541641fMk86FcWbwJ8mKyDmP+yMYGM667MYtcOv39JfuHjOboozXeybeJ11 PK65LauoZjRptk9tqD0CgtvDBIiNFsONJy5fk1nND0mlEv6DCu/fGiWoTZ5xYzY3 d93YuhxSJ5t5Cr3RjUPc7guoS92aHtTNF6V3zLJhzrOwMyqFv1e2sN+5Tx0MCUZy qSC5oCKHTpxYdeSBHagIu9iAJqfm3tQ33rcc6GhAft3AHvW3WiKfbuTIQPe5Gw2B odZUNX9ZNSHj1CsRVSH6zN3TnRROZOhj+dojUdprt0FiOX6FmNIVUh+hpIIo6O// jLUb6ziIPcvHHsgC/kO6ZylDIz91ReoFaQW+mA9GhjgBV/BSRlQxNnPhMJTgJyit XH0lKs4QEhXjI0alV/Rr3GxZzlie+tSHzs4eUNX1oVhmK++w7cFbNGqdsSxmauLr UcQ=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://softreq.test.psu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://softreq.test.psu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://softreq.test.psu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://softreq.test.psu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SoftReqDev</ServiceName>
+ <ServiceDescription xml:lang="en">Dev software request system</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The Pennsylvania State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Penn State</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.psu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Larry Kolbe</GivenName>
+ <EmailAddress>ldk107@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Larry Kolbe</GivenName>
+ <EmailAddress>ldk107@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Larry Kolbe</GivenName>
+ <EmailAddress>ldk107@psu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://softwarerequestaccept.blue.psu.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://softwarerequestaccept.blue.psu.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SoftwareRequestAccept</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Acceptance Software Request</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://softwarerequestaccept.blue.psu.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.psu.edu/web-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="130" xml:lang="en">https://www.dept.psu.edu/ids/public/psulogoforincommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18066261133840613356, expires on Fri Jul 7 13:10:11 2028 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://softwarerequestaccept.blue.psu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://softwarerequestaccept.blue.psu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://softwarerequestaccept.blue.psu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://softwarerequestaccept.blue.psu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SoftwareRequestAccept</ServiceName>
+ <ServiceDescription xml:lang="en">Acceptance Software Request</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The Pennsylvania State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Penn State</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.psu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Will Kerr</GivenName>
+ <EmailAddress>wbk2@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Will Kerr</GivenName>
+ <EmailAddress>wbk2@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>SecurityOffice</GivenName>
+ <EmailAddress>security@psu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://softwarerequest.psu.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://softwarerequest.psu.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SoftwareRequestProd</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Production Software Request System</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://softwarerequest.psu.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.psu.edu/web-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="130" xml:lang="en">https://www.dept.psu.edu/ids/public/psulogoforincommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15329303773714019162, expires on Sat Jul 8 17:27:31 2028 GMT -->
+ <ds:X509Certificate>
+MIIEGDCCAoCgAwIBAgIJANS8oJBmR3NaMA0GCSqGSIb3DQEBCwUAMCYxJDAiBgNV
+BAMTG3NvZnRyZXEtd2ViLXAwMS5saW9ucy5sb2NhbDAeFw0xODA3MTExNzI3MzFa
+Fw0yODA3MDgxNzI3MzFaMCYxJDAiBgNVBAMTG3NvZnRyZXEtd2ViLXAwMS5saW9u
+cy5sb2NhbDCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBALiNid39tuo3
+3XK0P1pH/36T97yvnhmq6jlK2/Puj/mv8T1h0sXJWj6Xy2VMk/f4XDMcQSSAvZak
+sr2NGmfJIe/YRg7L79XbsApLQattDBivAcfympSo5OL6n/zYK7Nh+h81JsGlQk8u
+SOwvmZYVZ7Y0txQBc8pEZMhHDJMy7wmyO4nxWnwVFvDq96usYvEoSztFow/Np7wk
+rhJ3kdG7MHhEpfPEiDBcPESOCCyXWm3NnCZMmfBNLGIYm4bmcOFbncEn0C6rqFg0
+lOiTUlLcNqkZ2YZWnJNGW+xDOAD0GARNhB63nBLHIkGSTTYfmXYmYnmQISLMOTUn
+RaRgqNfmzTPP3ke671y3wbJ0FJNZOH3aNj0uny+O6u0UWq5a9DbMZq54iRc/h1kn
+qHkiGHfSWQXjfYFfcZddDjWL4XuV6CcgLqpLG1c+IRVdrwBxTHApa+pK6e3RAWTq
+doCnnjaSbMOdSwBTKEiL+8Cgrw1w3MK+DOblfO2+kZeYce9n6d7gIQIDAQABo0kw
+RzAmBgNVHREEHzAdghtzb2Z0cmVxLXdlYi1wMDEubGlvbnMubG9jYWwwHQYDVR0O
+BBYEFGhg+ndKNdDv9hgCN02D/lH5DUlrMA0GCSqGSIb3DQEBCwUAA4IBgQAlTZtC
+CFtYrrnP0Tlf3QXwVlDc0fuk97or961gIZhkXum5MzC1l88mI1blkHe89WWFr2fh
+FbC5+M2t2XBBHJPzEJYRYmPuHlafaIiVy8pTuWjLOgh82KAgZgPyPdBWZVYGu1dh
+RLOUYZFEja2GdKxQOUeCiH6KtxSTgKhOMZ47NxDPitpF1awJnT0BXXUCw3wVbZP8
+1jeLLVOG6lZAyAB2RNRRtrvzizhihWnQdncWpIOLdoFqKCF+580HdK9dtdwcRu8H
+kfETX79Y5j4DRIgpV0xKbVQ9WeQ5ZXs1drxFFHeHGMi1iaJlWuXdoQngo2QPezJW
+Msq77dXa5VKrIni6BUvJceaELtKaVD6vDgNEUBdN0g22E5u9uQxq42rbPDISxa43
+H2bXY4vEejbwab5CyP4U+pGE7FrPbvzBH5alPChT/9m4XdKYEncFMudoVJxeRbyF
+5DuCOOeSwlqrsDAb1qdO1umaGBLHgUKeTcfBSoUpiUp/rXyp7j7YmiMMeiw=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://softwarerequest.psu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://softwarerequest.psu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://softwarerequest.psu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://softwarerequest.psu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SoftwareRequestProd</ServiceName>
+ <ServiceDescription xml:lang="en">Production Software Request System</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The Pennsylvania State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Penn State</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.psu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Will Kerr</GivenName>
+ <EmailAddress>wbk2@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Will Kerr</GivenName>
+ <EmailAddress>wbk2@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>SecurityOffice</GivenName>
+ <EmailAddress>security@psu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wikispaces.psu.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wikispaces.psu.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Penn State WikiSpaces</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://wikispaces.psu.edu/dashboard.action</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.psu.edu/web-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="130" xml:lang="en">https://www.dept.psu.edu/ids/public/psulogoforincommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13989244209574080399, expires on Tue Apr 4 15:37:40 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wikispaces.psu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wikispaces.psu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wikispaces.psu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wikispaces.psu.edu/Shibboleth.sso/SAML/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wikispaces.psu.edu/Shibboleth.sso/SAML/Artifact" index="5"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Penn State WikiSpaces</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The Pennsylvania State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Penn State</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.psu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Derek Morr</GivenName>
+ <EmailAddress>dvm105@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rich Cropp</GivenName>
+ <EmailAddress>rac@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Derek Morr</GivenName>
+ <EmailAddress>dvm105@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Office of Information Security</GivenName>
+ <EmailAddress>security@psu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:psu.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">psu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Penn State</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.psu.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.psu.edu/web-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="456" xml:lang="en">https://www.dept.psu.edu/ids/public/psulogoforincommon-456x150.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13766769943599346942, expires on Tue Apr 6 19:23:34 2032 GMT -->
+ <ds:X509Certificate>
+MIIE+jCCA+KgAwIBAgIJAL8NZFMAw3T+MA0GCSqGSIb3DQEBBQUAMIGuMQswCQYD
+VQQGEwJVUzEVMBMGA1UECBMMUGVubnN5bHZhbmlhMRgwFgYDVQQHEw9Vbml2ZXJz
+aXR5IFBhcmsxKjAoBgNVBAoTIVRoZSBQZW5uc3lsdmFuaWEgU3RhdGUgVW5pdmVy
+c2l0eTEoMCYGA1UECxMfSW5mb3JtYXRpb24gVGVjaG5vbG9neSBTZXJ2aWNlczEY
+MBYGA1UEAxMPYXMxLmZpbS5wc3UuZWR1MB4XDTEyMDQxMTE5MjMzNFoXDTMyMDQw
+NjE5MjMzNFowga4xCzAJBgNVBAYTAlVTMRUwEwYDVQQIEwxQZW5uc3lsdmFuaWEx
+GDAWBgNVBAcTD1VuaXZlcnNpdHkgUGFyazEqMCgGA1UEChMhVGhlIFBlbm5zeWx2
+YW5pYSBTdGF0ZSBVbml2ZXJzaXR5MSgwJgYDVQQLEx9JbmZvcm1hdGlvbiBUZWNo
+bm9sb2d5IFNlcnZpY2VzMRgwFgYDVQQDEw9hczEuZmltLnBzdS5lZHUwggEiMA0G
+CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDgDw/HyxwqLZGLR1s6ewzwji0fx1dq
+Y4GoNycD8brxxnA11BgL0cSIM0WYyfOJBUxBhmkrlWccZDPPOmAC5qlPfLO8GjIS
+yFQrMFyhCynYKlP0Clm/59FkM/Jw2GPFmVXgM+dczk75f0sOaQzmay8pZdnOX3SX
+CX4aiOU+PFUqSuF94Ug/DkSeVHf9x6aV6A/e2iWHsigHTXNL5T5n29iNPRjdQ7NT
+JBnMGMpzjoZkFvmlVsplt6bTT7v81khDQItvTXVz1l9b3P3scYU2a3tRHFuyHRr8
+AHaqRDwIeDP4EaQcMHkD5EktM8RkOiPFYZQwSSrhM5F7gk/rFOXg+ZOvAgMBAAGj
+ggEXMIIBEzAdBgNVHQ4EFgQU5I99+kOGxYuGIeGYPeB8BdbR0GUwgeMGA1UdIwSB
+2zCB2IAU5I99+kOGxYuGIeGYPeB8BdbR0GWhgbSkgbEwga4xCzAJBgNVBAYTAlVT
+MRUwEwYDVQQIEwxQZW5uc3lsdmFuaWExGDAWBgNVBAcTD1VuaXZlcnNpdHkgUGFy
+azEqMCgGA1UEChMhVGhlIFBlbm5zeWx2YW5pYSBTdGF0ZSBVbml2ZXJzaXR5MSgw
+JgYDVQQLEx9JbmZvcm1hdGlvbiBUZWNobm9sb2d5IFNlcnZpY2VzMRgwFgYDVQQD
+Ew9hczEuZmltLnBzdS5lZHWCCQC/DWRTAMN0/jAMBgNVHRMEBTADAQH/MA0GCSqG
+SIb3DQEBBQUAA4IBAQCE5rt7hCbcrtwqaR6e9Z4nRfWdkQYtGTWi9UaBFhS7MLJB
+t4FyP+ohfRshQGAwJjekQW28GhuoDWngcdZFhE0ktYwct2zKhUDe8ggPWJWPLnlD
+UMiSX6BIn6tgpkpqpwduCoceQqLD2XnT33X7Fur0qohGW2EFPKxKHEVHXtfcHEsZ
+sBGSEC21XV/796AI8JQ4rb8ASWaLSjoGGwlZjsDogIzUJAuMdBPuG/CkbTJDjsii
+u9cF1oLJGzUEXx6B1ugWfWxVeUumOE0PGX3uPijrOd3Ak1gRevg//iyMw+zvL9xL
+4e+XA3Dtyu/I5Riwwv3AF7MFfNpiFhs0ay1ARC8y
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://as1.fim.psu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://as1.fim.psu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://as1.fim.psu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://as1.fim.psu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://as1.fim.psu.edu/idp/profile/SAML2/SOAP/ECP"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://as1.fim.psu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://as1.fim.psu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The Pennsylvania State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Penn State</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.psu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Penn State Identity Services</GivenName>
+ <EmailAddress>identity@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Office of Information Security</GivenName>
+ <EmailAddress>security@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Office of Information Security</GivenName>
+ <EmailAddress>security@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>identity@psu.edu</GivenName>
+ <EmailAddress>identity@psu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Maryland Baltimore County -->
+<EntityDescriptor entityID="https://retrieverstories-dev.umbc.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://retrieverstories-dev.umbc.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Retriever Stories (development)</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://retrieverstories-dev.umbc.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://my.umbc.edu/go/web-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="133" width="345" xml:lang="en">https://webauth.umbc.edu/umbclogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10164995157124875772, expires on Thu Oct 7 20:36:10 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://retrieverstories-dev.umbc.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://retrieverstories-dev.umbc.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://retrieverstories-dev.umbc.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://retrieverstories-dev.umbc.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Retriever Stories (development)</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Maryland Baltimore County</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Maryland Baltimore County</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umbc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>B. Collier Jones</GivenName>
+ <EmailAddress>collier@umbc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Ed Rude</GivenName>
+ <EmailAddress>erude1@umbc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Billy Schneider</GivenName>
+ <EmailAddress>will3@umbc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UMBC Security Office</GivenName>
+ <EmailAddress>security@umbc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://retrieverstories.umbc.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://retrieverstories.umbc.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Retriever Stories</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://retrieverstories.umbc.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://my.umbc.edu/go/web-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="133" width="345" xml:lang="en">https://webauth.umbc.edu/umbclogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10164995157124875772, expires on Thu Oct 7 20:36:10 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://retrieverstories.umbc.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://retrieverstories.umbc.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://retrieverstories.umbc.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://retrieverstories.umbc.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Retriever Stories</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Maryland Baltimore County</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Maryland Baltimore County</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umbc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>B. Collier Jones</GivenName>
+ <EmailAddress>collier@umbc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Ed Rude</GivenName>
+ <EmailAddress>erude1@umbc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Billy Schneider</GivenName>
+ <EmailAddress>will3@umbc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UMBC Security Office</GivenName>
+ <EmailAddress>security@umbc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:umbc.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://my.umbc.edu/go/idperrors" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umbc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Maryland Baltimore County</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The University of Maryland Baltimore County IdP enables standards-based federation for the UMBC community.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://wiki.umbc.edu/display/MW/Shibboleth+Identity+Provider</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.umbc.edu/policies/pdfs/UMBC%20X1.00.06%20UMBC%20Policy%20on%20Web%20Site%20Privacy%20Statement.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="133" width="345" xml:lang="en">https://webauth.umbc.edu/umbclogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13861919996882713129, expires on Thu Nov 18 21:09:02 2021 GMT -->
+ <ds:X509Certificate>
+MIIDNTCCAh2gAwIBAgIJAMBfbssnE/opMA0GCSqGSIb3DQEBBAUAMBsxGTAXBgNV
+BAMTEHdlYmF1dGgudW1iYy5lZHUwHhcNMTExMTIxMjEwOTAyWhcNMjExMTE4MjEw
+OTAyWjAbMRkwFwYDVQQDExB3ZWJhdXRoLnVtYmMuZWR1MIIBIjANBgkqhkiG9w0B
+AQEFAAOCAQ8AMIIBCgKCAQEA8pneHoaFwkaenWXUuoP/Cp2Mf+KNdy7TegsTiC18
+yHMcGQ3sdzztAGicjqNf4N8wqSH9Ysqug72eHpopJbN+Rz9rmqUCujh8fzUgDb6G
+cyH0YpCt2sXDbjHxEzDyq/Acr7J0Q65DJUuqQPEm8WLyZhtT/trGLTM/UYFGIi16
+uYsM+N/GloqhznjcEQ1hEa9Vg5fZ3jl+VbEtzxMsCmou0LkFC+0xaMukPzAkhbeP
+KJG15OhuFFMdIS8oKBop45s7iOAc7CaDGE+1kkULCQzH/kB4K2bjDfyyE9TEMqy7
+WtIjyYUKGil3F1F85kzbQZSG+sVS5QDlGlvLhBnP3WTJIwIDAQABo3wwejAdBgNV
+HQ4EFgQUtGEIa05oxIWEnljb5yVlRL+GkMcwSwYDVR0jBEQwQoAUtGEIa05oxIWE
+nljb5yVlRL+GkMehH6QdMBsxGTAXBgNVBAMTEHdlYmF1dGgudW1iYy5lZHWCCQDA
+X27LJxP6KTAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBAUAA4IBAQAjPscifXwc
+Oms0MgBdgCdf6MtIELBoB2tmcpJ6ugVELMbOJZsvzF4w+PXzpCoEzitA5sK3455R
+/C0u94+QDxnejLnxRVz6I3Tg+hfcwE5/px+l53hJHblj/m7SeRj8oRku94Jqgpdd
+NsdP7zLepbr/1T4QnTaYSD+GcGbD+k26Dykq7g7lPcQrJMilaQbV3ojjuu5GBsk4
+utTwI71lUwiib56EZek95qUHDvAA9IbReMn+/El6OrtT2uvp2XrqMCyw+2mSEt5E
+ZtXClyNP5VtdFaH5a+ghepre+P3T66MP8VoDKAdFlAQ8ZvLWLKd4kqzUy0i76tSW
+TyINBRx/UZdk
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.umbc.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webauth.umbc.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://webauth.umbc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.umbc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.umbc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webauth.umbc.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umbc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13861919996882713129, expires on Thu Nov 18 21:09:02 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.umbc.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webauth.umbc.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Maryland Baltimore County</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Maryland Baltimore County</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umbc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jason Griego</GivenName>
+ <EmailAddress>jcgriego@umbc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Paul Riddle</GivenName>
+ <EmailAddress>paulr@umbc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Paul Riddle</GivenName>
+ <EmailAddress>paulr@umbc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Technology Support Center</GivenName>
+ <EmailAddress>incommon-help@umbc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark Cather</GivenName>
+ <EmailAddress>mark.cather@umbc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Duke University -->
+<EntityDescriptor entityID="https://sdn-openstack.oit.duke.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sdn-openstack-dev-01.oit.duke.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">OpenStack for Research</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://oarc.duke.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="225" width="225" xml:lang="en">https://shib.oit.duke.edu/incommon_duke_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16311930708159148346, expires on Fri Jan 9 18:12:16 2026 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sdn-openstack-dev-01.oit.duke.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sdn-openstack.oit.duke.edu/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">OpenStack for Research</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Duke University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Duke University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.duke.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Rob Carter</GivenName>
+ <EmailAddress>rob@duke.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shilen Patel</GivenName>
+ <EmailAddress>shilen@duke.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rob Carter</GivenName>
+ <EmailAddress>rob@duke.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Rob Carter</GivenName>
+ <EmailAddress>rob@duke.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sonicdictionary.duke.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Sonicdictionary</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://sonicdictionary.duke.edu/about</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://oarc.duke.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="71" width="150" xml:lang="en">https://sonicdictionary.duke.edu/sites/sonicdictionary.duke.edu/files/logo_sondictionary_incommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1210, expires on Thu Aug 19 12:09:59 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sonicdictionary.duke.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Sonicdictionary</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Duke University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Duke University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.duke.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brian Norberg</GivenName>
+ <EmailAddress>brian.norberg@duke.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Trinity Technology Services</GivenName>
+ <EmailAddress>trinitywebsupport@duke.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Trinity Technology Services</GivenName>
+ <EmailAddress>trinitywebsupport@duke.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:duke.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">duke.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Duke University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://oarc.duke.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="225" width="225" xml:lang="en">https://shib.oit.duke.edu/incommon_duke_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18260697847437855930, expires on Mon Sep 4 12:44:55 2028 GMT -->
+ <ds:X509Certificate>
+MIIEWjCCA0KgAwIBAgIJAP1rB/FjRgy6MA0GCSqGSIb3DQEBBQUAMHsxCzAJBgNV
+BAYTAlVTMRcwFQYDVQQIEw5Ob3J0aCBDYXJvbGluYTEPMA0GA1UEBxMGRHVyaGFt
+MRgwFgYDVQQKEw9EdWtlIFVuaXZlcnNpdHkxDDAKBgNVBAsTA09JVDEaMBgGA1UE
+AxMRc2hpYi5vaXQuZHVrZS5lZHUwHhcNMTAwOTA5MTI0NDU1WhcNMjgwOTA0MTI0
+NDU1WjB7MQswCQYDVQQGEwJVUzEXMBUGA1UECBMOTm9ydGggQ2Fyb2xpbmExDzAN
+BgNVBAcTBkR1cmhhbTEYMBYGA1UEChMPRHVrZSBVbml2ZXJzaXR5MQwwCgYDVQQL
+EwNPSVQxGjAYBgNVBAMTEXNoaWIub2l0LmR1a2UuZWR1MIIBIjANBgkqhkiG9w0B
+AQEFAAOCAQ8AMIIBCgKCAQEAt+hnl6gSRi0Y8VuNl6PCPYejj7VfVs/y8bRa5zAY
+RHwb75+vBSs2j1yeUcSore9Ba5Ni7v947V34afRMGRPOqr4TEDZxU+1Bg0zAvSrR
+n4Y8B+zyJuhtOpmOZzTwE9o/Oc+CB4kYV/K0woKZdcoxHJm8TbqBqdxU4fFYUlNU
+o4Dr5jRdCSr9MHBOqGWXtQMg16qYNB7StNk4twY29FNnpZwkVTfsE76uVsRMkG8i
+6/RiHpXZ/ioOOqndptbEGdsOIE3ivAJOZdvYwnDe5NnTH06P01HsxH3OOnYqhuG2
+J6qdhqoelGeHRG+jfl8YkYXCcKQvja2tJ5G+6iqSN7DP6QIDAQABo4HgMIHdMB0G
+A1UdDgQWBBQHYXwB6otkfyMOmUI59j8823hFRDCBrQYDVR0jBIGlMIGigBQHYXwB
+6otkfyMOmUI59j8823hFRKF/pH0wezELMAkGA1UEBhMCVVMxFzAVBgNVBAgTDk5v
+cnRoIENhcm9saW5hMQ8wDQYDVQQHEwZEdXJoYW0xGDAWBgNVBAoTD0R1a2UgVW5p
+dmVyc2l0eTEMMAoGA1UECxMDT0lUMRowGAYDVQQDExFzaGliLm9pdC5kdWtlLmVk
+dYIJAP1rB/FjRgy6MAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQEFBQADggEBAG7q
+wJpiSLJbx2gj/cGDYeuBW/CeRGNghjQ/mb076P3WXsRNPAimcXulSUbQkS6eDH4t
+Ifvsa0jf4FRsEOwH/x8354/0wyv4RwuavX25kjpmoFn3O+eKokyzsc7/Q2gsm0mv
+V8XQo+5b+4we8AFYlAVp26nLeIqAiJM8xZJ9yHuzVL1O4yxIWIKECWHLqY5+1nas
+XNiLURrHhsK5pZUPLuhzJFgZuJT62TtnrjJXlrRhJ389VSkh6R64C6ncjNkg6/Cu
+tA6SX0infqNRyPRNJK+bnQd1yOP4++tjD/lAPE+5tiD/waI3fArt43ZE/qp7pYMS
+9TEfyQ5QpfRYAUFWXBc=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.oit.duke.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.oit.duke.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.oit.duke.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.oit.duke.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">duke.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18260697847437855930, expires on Mon Sep 4 12:44:55 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.oit.duke.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.oit.duke.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Duke University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Duke University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.duke.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shilen Patel</GivenName>
+ <EmailAddress>idmstech@duke.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shilen Patel</GivenName>
+ <EmailAddress>idmstech@duke.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Duke IT Security Office</GivenName>
+ <EmailAddress>security@duke.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Ohio University Main Campus -->
+<EntityDescriptor entityID="urn:mace:incommon:ohio.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.ohio.edu/oit/help/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ohio.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ohio University Main Campus</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Ohio University Main Campus IdP</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ohio.edu/registrar/privacy.cfm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="81" width="300" xml:lang="en">https://www.ohio.edu/ucm/brand-center/toolkit/images/ohioLogo_green_1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11564507083267868773, expires on Sat Feb 4 21:27:14 2023 GMT -->
+ <ds:X509Certificate>
+MIIDRjCCAi4CCQCgfWHrvKuIZTANBgkqhkiG9w0BAQUFADBlMQswCQYDVQQGEwJV
+UzENMAsGA1UECAwET2hpbzEPMA0GA1UEBwwGQXRoZW5zMRgwFgYDVQQKDA9PaGlv
+IFVuaXZlcnNpdHkxHDAaBgNVBAMME3NoaWJib2xldGgub2hpby5lZHUwHhcNMTMw
+MjA2MjEyNzE0WhcNMjMwMjA0MjEyNzE0WjBlMQswCQYDVQQGEwJVUzENMAsGA1UE
+CAwET2hpbzEPMA0GA1UEBwwGQXRoZW5zMRgwFgYDVQQKDA9PaGlvIFVuaXZlcnNp
+dHkxHDAaBgNVBAMME3NoaWJib2xldGgub2hpby5lZHUwggEiMA0GCSqGSIb3DQEB
+AQUAA4IBDwAwggEKAoIBAQC5BIf3fnVPpBJPRlTTjV09zcP16wvGELcPy2KQyZWC
+5joeL6Jex3IpotX41DM5OqKr+35+hg1+969VCHucxsjWW0fRbszVqf6UrNt+Sgps
+3wHEtgtvm/7F3Za0L02mDNCBA0WeBRb8Ua6mDyA1q/TWVM/wen5bv31P4uCZk2J1
+nsZwX/f2UtOTItIPuHIPRPM2IOLbHSA+Pf9X5Riw3JM6dQI/RzYW7+4LE7arZyZf
+0V8R3gAKfYjhtpqciwfxohgn8MM/0ufvd8aymN7RsfH3vBIUlGKCUPwcx3lMvoo8
+8A6+2bfXZ7+cVNWCJuFxeMVND2Y+ZtmRGxvQ63fmCD5vAgMBAAEwDQYJKoZIhvcN
+AQEFBQADggEBAJPwIvSh6ram1NrmDcNG0aNJAmHR6+4X6r5TAVPQw+vDvE9WlI0g
+0uGn6wBHY2gcxoseNUkVLGRbgXywyohkP+pcoIjDn9XO2OWk0U4eYMApfe/8eO9z
+RcmWQqfefV/iEmk3TGbIXF7uJn+Pske66sFmJWDDrY/XyIk5/iMyZiYAgzXwHqYH
+6OIwKw3ZEO8bGqZzDTEBzi+lzM48GR2wkorji1XxUZvWxS9PF1QVsFW4sRiD124A
+DjvqccpUQMfjj63LtaJ/7651xVpno2blVL7KWjDs5mNTWMTz/b6pPYZyOhoEZe6E
+zogcZq8NtZ20nYx1Wx1u1vhCdNdZvXcpvOM=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.ohio.edu/simplesaml/saml2/idp/SSOService.php" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.ohio.edu/simplesaml/saml2/idp/SingleLogoutService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.ohio.edu/simplesaml/saml2/idp/SSOService.php"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.ohio.edu/simplesaml/shib13/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ohio University Main Campus</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ohio University Main Campus</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ohiou.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mikio Olin</GivenName>
+ <EmailAddress>olin@ohio.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Chris Hayes</GivenName>
+ <EmailAddress>hayesc@ohio.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Renee Perry</GivenName>
+ <EmailAddress>perryr1@ohio.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>OIT Security</GivenName>
+ <EmailAddress>security@ohio.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Chinmaya Naguri</GivenName>
+ <EmailAddress>chinmaya@ohio.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Stony Brook University -->
+<EntityDescriptor entityID="https://3d.labs.stonybrook.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://3d.labs.stonybrook.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">3D Labs at Stony Brook</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stonybrook.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="98" width="572" xml:lang="en">https://it.stonybrook.edu/sites/it.stonybrook.edu/files/sbu-logo-sso.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14391286361835708835, expires on Sun Jan 19 16:59:20 2025 GMT -->
+ <ds:X509Certificate>
+MIIDEjCCAfqgAwIBAgIJAMe4HrKiJCGjMA0GCSqGSIb3DQEBBQUAMCQxIjAgBgNV
+BAMTGWFtcHdlYjIuY2Muc3Rvbnlicm9vay5lZHUwHhcNMTUwMTIyMTY1OTIwWhcN
+MjUwMTE5MTY1OTIwWjAkMSIwIAYDVQQDExlhbXB3ZWIyLmNjLnN0b255YnJvb2su
+ZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArckv2j4FXnjcMu2P
+kcEBFNfZdwVzPHW5RPBzyam42lcwnWW+HSjKNySLoRixN8wiDBIdvNcfSffe8Va6
+GslD0bnj1bQtNj1ef2OTMU06OiUr6sH9yS5qO+bI3GBT2uPqky7ImKJ1QjC/pwbx
+FfoixfD7ufKIG27uRFwDHyBqQmUo73pNsvp6Gs16EBtigKNS/l08DTeHma4ci1h4
+PfAJyCRKlVI8PTmaiuu9KPw/4ZJWscKNlKBlo2ED8KUIgmmggHQ8/xvyI14VIuB6
+wJ4UuG22e1alFSJiLLQgGzlHZfrqYEcOya/rN6VX+JH4J2BukrL9CW+Gg68P5e+L
+XFzc4wIDAQABo0cwRTAkBgNVHREEHTAbghlhbXB3ZWIyLmNjLnN0b255YnJvb2su
+ZWR1MB0GA1UdDgQWBBSQewqRvOyGF0G6sP2z1EBRdeu5CjANBgkqhkiG9w0BAQUF
+AAOCAQEAQwMb+DlBl4aALJDl2rtaMst9RsFDxoHq9TqbmjviewmEoo7jtjH8Z2ZS
+bO1YjEAbgfg1m/fg3Z7FbL7rIRoWhKqjMdm9ftk/t9F7sjYl6lvEFciHx8eGt0bd
+yMCo/IUVj9c4gLHTmnj+wjvze4aBlgEZ8ouPHTlSR8YArGZUms6bxiasFL1V/fC9
+9+E0RY5Ij2KfkFXjLXbrkpZ9nTqsGE+GZqkCbfDui54xAWZ+jqGG/eCMjQeych+a
+jxwT5Z0yNi6TvoqWM+Jtu2mla0EEFari5NeATIdxDDDn9tCBsbLZvQ56PwK3KKqS
+/hsLPdKJiguAMXvqxhAlSsS/wYzKpQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://3d.labs.stonybrook.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://3d.labs.stonybrook.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://3d.labs.stonybrook.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://3d.labs.stonybrook.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">3D Labs at Stony Brook</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stony Brook University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stony Brook University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sunysb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Paul St. Denis</GivenName>
+ <EmailAddress>paul.st.denis@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gary Halada</GivenName>
+ <EmailAddress>gary.halada@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>DoIT Information Security</GivenName>
+ <EmailAddress>DoIT_Security@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://agreements.myresearch.stonybrook.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://agreements.myresearch.stonybrook.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Huron Click (Agreements Prod)</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stonybrook.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="98" width="572" xml:lang="en">https://it.stonybrook.edu/sites/it.stonybrook.edu/files/sbu-logo-sso.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11783340578870087367, expires on Sun May 28 19:42:12 2028 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://agreements.myresearch.stonybrook.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://agreements.myresearch.stonybrook.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://agreements.myresearch.stonybrook.edu/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://agreements.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://agreements.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://agreements.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://agreements.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Huron Click (Agreements Prod)</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stony Brook University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stony Brook University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sunysb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>DoIT EAI-OVPR</GivenName>
+ <EmailAddress>ovpr-it@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>DoIT EAI-OVPR</GivenName>
+ <EmailAddress>ovpr-it@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>DoIT Information Security</GivenName>
+ <EmailAddress>DoIT_Security@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://apps.tlt.stonybrook.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://apps.tlt.stonybrook.edu/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">https://apps.tlt.stonybrook.edu/shibboleth</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stonybrook.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="98" width="572" xml:lang="en">https://it.stonybrook.edu/sites/it.stonybrook.edu/files/sbu-logo-sso.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13644018567617826470, expires on Sun Jan 17 20:25:26 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://apps.tlt.stonybrook.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://apps.tlt.stonybrook.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://apps.tlt.stonybrook.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://apps.tlt.stonybrook.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">https://apps.tlt.stonybrook.edu/shibboleth</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stony Brook University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stony Brook University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sunysb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Paul St. Denis</GivenName>
+ <EmailAddress>Paul.St.Denis@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Paul St. Denis</GivenName>
+ <EmailAddress>Paul.St.Denis@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>DoIT Information Security</GivenName>
+ <EmailAddress>DoIT_Security@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://bmegames.labs.stonybrook.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://bmegames.labs.stonybrook.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Lab Games for Biomedical Engineering, Stony Brook</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stonybrook.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="98" width="572" xml:lang="en">https://it.stonybrook.edu/sites/it.stonybrook.edu/files/sbu-logo-sso.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14391286361835708835, expires on Sun Jan 19 16:59:20 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bmegames.labs.stonybrook.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://bmegames.labs.stonybrook.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bmegames.labs.stonybrook.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bmegames.labs.stonybrook.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Lab Games for Biomedical Engineering, Stony Brook</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stony Brook University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stony Brook University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sunysb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Paul St. Denis</GivenName>
+ <EmailAddress>paul.st.denis@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mei Lin Chan</GivenName>
+ <EmailAddress>meilin.chan@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>DoIT Information Security</GivenName>
+ <EmailAddress>DoIT_Security@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://coi.myresearch.stonybrook.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://coi.myresearch.stonybrook.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">MyResearch (COI)</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stonybrook.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="98" width="572" xml:lang="en">https://it.stonybrook.edu/sites/it.stonybrook.edu/files/sbu-logo-sso.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16254778998437617798, expires on Sun Apr 4 19:43:50 2027 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://coi.myresearch.stonybrook.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://coi.myresearch.stonybrook.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://coi.myresearch.stonybrook.edu/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://coi.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://coi.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://coi.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://coi.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">MyResearch (COI)</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stony Brook University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stony Brook University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sunysb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>DoIT EAI-OVPR</GivenName>
+ <EmailAddress>ovpr-it@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>DoIT EAI-OVPR</GivenName>
+ <EmailAddress>ovpr-it@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>DoIT Information Security</GivenName>
+ <EmailAddress>DoIT_Security@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://grants.myresearch.stonybrook.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://grants.myresearch.stonybrook.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Huron Click (Grants Prod)</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stonybrook.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="98" width="572" xml:lang="en">https://it.stonybrook.edu/sites/it.stonybrook.edu/files/sbu-logo-sso.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18077882980889738823, expires on Sat Dec 11 19:30:16 2027 GMT -->
+ <ds:X509Certificate>
+MIIEGzCCAoOgAwIBAgIJAPrhispXAz5HMA0GCSqGSIb3DQEBCwUAMCcxJTAjBgNV
+BAMTHGhjYXBwMy5jYW1wdXMuc3Rvbnlicm9vay5lZHUwHhcNMTcxMjEzMTkzMDE2
+WhcNMjcxMjExMTkzMDE2WjAnMSUwIwYDVQQDExxoY2FwcDMuY2FtcHVzLnN0b255
+YnJvb2suZWR1MIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAzLpHjZ95
+reOpKPfT7OtKRFF6yt/wvtgdGRZMWDfEptH9o4ghHzp6jhNeiwRShPtN72T14GUf
+TQNi66St493gCGdw1mDMJs9oZ3brcJR03S3sLYgqJa4oJH6+1DSEdPSlanxpMwoO
+2kE+zWmh/fVF31gQIIeB1UG5HNY9avy2K3AchUHJ4V1+AqPfRMgI/39cK4UYGR/P
+0ZR+KJ7AsyNVRH9snNPRPgMWXV2SAvEDBURf1PWW15MkryzFIRaqmRnxDI1xudi5
+VVmY7+pbYL8AzC6bd/gUwP5ieiK0vkjtkP5Bb4K3zmMFOlPTQs2dW40+ueZj0fDr
+J9YFXCElgPbfmEGYErUUcsRz6lhBr4x+cuIsvf+fDO9o3Kdjnjik2KJiJuSc9lyI
+Sbthaj2UytQZUd+py9W8pQhT0C1SEN/iS4gLipYOIHzXTFg1ad7G//GRhipL8GDj
+Iy+JNJnz8hd14C4a8XxGtXH0ohlJymp6grf688uSdhH84xR605OW2/6bAgMBAAGj
+SjBIMCcGA1UdEQQgMB6CHGhjYXBwMy5jYW1wdXMuc3Rvbnlicm9vay5lZHUwHQYD
+VR0OBBYEFJLaeBHb3VLkdaPXtFdALvOV/I/PMA0GCSqGSIb3DQEBCwUAA4IBgQA4
+rUq2uxC4LFRMJqjyjmSeya+ScHSU/oNSwchtfGv+B6KclWjOXYiV4SzFXTmglbVl
+qPQX7boNM0t/NcgnwBQXg20DRV43n3LoE+4A1XjXivmsrMjYFFP4dSsWuorKET/p
+pXRizwKLkEtGW+sifufHvf7n1MKirKpSIX20oWwtt5bkP4wnrHng/eLDDUukiXkn
+bLotB6XKKw4PlUCChkNRVf7Az8Tf2wz1O9xwt60yANGceYkueF3IoSE/wNX9Vsh8
+ShgVbxmkiQ37WOaGCrOcFyFlkE3yyDoN44ibgMTLPcII4d4VagSpa/zvnmCv8GoY
++TcDD81fIb5+j3hsI/HsFcxsTWz3rtFnSy4jlWbGX49bbDU/618mVM8puB7BabQa
+Cs69Kt9f8d0EruoWw6Lofz902Go8zlLyzyEul5L2nY3dd5xKMuWQaKGBSKu3G1Kr
+7egFkA83YORwLc/mhbFLWFT0wwNF4aFKIFbj2ej6zBwydizZom4rwiQpKF8oxcU=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grants.myresearch.stonybrook.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://grants.myresearch.stonybrook.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://grants.myresearch.stonybrook.edu/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grants.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://grants.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grants.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://grants.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Huron Click (Grants Prod)</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stony Brook University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stony Brook University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sunysb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>DoIT EAI-OVPR</GivenName>
+ <EmailAddress>ovpr-it@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>DoIT EAI-OVPR</GivenName>
+ <EmailAddress>ovpr-it@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>DoIT Information Security</GivenName>
+ <EmailAddress>DoIT_Security@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://irb.myresearch.stonybrook.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://irb.myresearch.stonybrook.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Huron Click (IRB Prod)</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stonybrook.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="98" width="572" xml:lang="en">https://it.stonybrook.edu/sites/it.stonybrook.edu/files/sbu-logo-sso.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12521930647243701082, expires on Sun Aug 15 16:21:02 2027 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://irb.myresearch.stonybrook.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://irb.myresearch.stonybrook.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://irb.myresearch.stonybrook.edu/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://irb.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://irb.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://irb.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://irb.myresearch.stonybrook.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Huron Click (IRB Prod)</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stony Brook University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stony Brook University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sunysb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>DoIT EAI-OVPR</GivenName>
+ <EmailAddress>ovpr-it@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>DoIT EAI-OVPR</GivenName>
+ <EmailAddress>ovpr-it@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>DoIT Information Security</GivenName>
+ <EmailAddress>DoIT_Security@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://korean.studies.stonybrook.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://korean.studies.stonybrook.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SBU Korean Studies</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stonybrook.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="98" width="572" xml:lang="en">https://it.stonybrook.edu/sites/it.stonybrook.edu/files/sbu-logo-sso.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14391286361835708835, expires on Sun Jan 19 16:59:20 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://korean.studies.stonybrook.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://korean.studies.stonybrook.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://korean.studies.stonybrook.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://korean.studies.stonybrook.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SBU Korean Studies</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stony Brook University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stony Brook University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sunysb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Paul St. Denis</GivenName>
+ <EmailAddress>paul.st.denis@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Heejeong Sohn</GivenName>
+ <EmailAddress>heejeong.sohn@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>DoIT Information Security</GivenName>
+ <EmailAddress>DoIT_Security@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://och.stonybrook.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://och.stonybrook.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SBU Off Campus Housing</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stonybrook.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="98" width="572" xml:lang="en">https://it.stonybrook.edu/sites/it.stonybrook.edu/files/sbu-logo-sso.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14391286361835708835, expires on Sun Jan 19 16:59:20 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://och.stonybrook.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://och.stonybrook.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://och.stonybrook.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://och.stonybrook.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SBU Off Campus Housing</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stony Brook University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stony Brook University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sunysb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Paul St. Denis</GivenName>
+ <EmailAddress>paul.st.denis@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Gasparino</GivenName>
+ <EmailAddress>michael.gasparino@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>DoIT Information Security</GivenName>
+ <EmailAddress>DoIT_Security@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://organic.cc.stonybrook.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://organic.cc.stonybrook.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">OSCER</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Organic Seawolf Center for Education and Research</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stonybrook.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="98" width="572" xml:lang="en">https://it.stonybrook.edu/sites/it.stonybrook.edu/files/sbu-logo-sso.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13644018567617826470, expires on Sun Jan 17 20:25:26 2021 GMT -->
+ <ds:X509Certificate>
+MIIDDDCCAfSgAwIBAgIJAL1ZSpkfsc6mMA0GCSqGSIb3DQEBBQUAMCIxIDAeBgNV
+BAMTF2RyYWMyLmNjLnN0b255YnJvb2suZWR1MB4XDTExMDEyMDIwMjUyNloXDTIx
+MDExNzIwMjUyNlowIjEgMB4GA1UEAxMXZHJhYzIuY2Muc3Rvbnlicm9vay5lZHUw
+ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDD7JwA+4mavVk0aCU1GGIP
+lvqILa5h9fIg1wRfFgKoV+HYpDUCKDohWylhj07Y2HKvyi1faB9qPQ+XF/Hd0+OT
+NZMJNuIvr9U+8xB/z1D8q8flCotiFkGRzKga0Zmur4U8csElz5eaGo8iSwzw/yJe
+Fbd3Z1nVvgzujcj5yfDPRBg5KRUPugJNwCy02VzgZZosxLJ3k3SCKJsKf3s65Xlm
+YfNNCcHL/rc3jZQIrLlY+MfDJPAe/z2hnd8Gm5N1DCM/rH+FdxIvgnV7FOrjCNCO
+kvlAehLKmMGlsIfflACnHYwpS5NZ9VY+6dMXIDVgWcvbfRylj/CMsfU7IBcBI1VB
+AgMBAAGjRTBDMCIGA1UdEQQbMBmCF2RyYWMyLmNjLnN0b255YnJvb2suZWR1MB0G
+A1UdDgQWBBRHPpFF9+Bo+L7+J4oxEkbbsjE+JjANBgkqhkiG9w0BAQUFAAOCAQEA
+W1xVWCj1v+Csp934xZDvs5P+uoHvxx5cFUWCPWjoIqk5tjCb/mXckvpR9/0Eg4Yq
+gTA8uiRopbIwYTj6Kl9VaZ944TptkmFDOnQ9Tmu0nXIzncgaOvS8iA5Yrrfy3rwl
+UIOhCcqwvry1C7QwtXy4AsH9HQfmparX4axAJvSj+O2FJcqHI1VAhiOFwWT451um
+6o+iEt1kJy41Q6+in6E5+SroYysARaz7vE9duaq0Maa1z/VXF/GnnUV66310zLpI
+CwACqyI0wRqoNIJvUcZPFq8bXxy/reVeK1bGWV4Jka7/UviCa7kGloJTU8bG1Ril
+QU8kfCejbE97k0njfD398w==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://organic.cc.stonybrook.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://organic.cc.stonybrook.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://organic.cc.stonybrook.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://organic.cc.stonybrook.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">OSCER</ServiceName>
+ <ServiceDescription xml:lang="en">Organic Seawolf Center for Education and Research</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stony Brook University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stony Brook University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sunysb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Paul St. Denis</GivenName>
+ <EmailAddress>paul.st.denis@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Joseph Lauher</GivenName>
+ <EmailAddress>joseph.lauher@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>DoIT Information Security</GivenName>
+ <EmailAddress>DoIT_Security@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:stonybrook.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://it.stonybrook.edu/services/single-sign-on-sso/error" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">stonybrook.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stony Brook University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The State University of New York at Stony Brook</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stonybrook.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="98" width="572" xml:lang="en">https://it.stonybrook.edu/sites/it.stonybrook.edu/files/sbu-logo-sso.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1180058160365630001226703150213353123685723913514, expires on Tue Mar 30 21:28:10 2032 GMT -->
+ <ds:X509Certificate>
+MIIDQDCCAiigAwIBAgIVAM6zo1Tg/Cni0U1ZiS9qUjHwTb0qMA0GCSqGSIb3DQEB
+BQUAMCAxHjAcBgNVBAMTFXNzby5jYy5zdG9ueWJyb29rLmVkdTAeFw0xMjAzMzAy
+MTI4MTBaFw0zMjAzMzAyMTI4MTBaMCAxHjAcBgNVBAMTFXNzby5jYy5zdG9ueWJy
+b29rLmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAIZH1YAL8Nsb
+ZP7r1ZCfT0iXKNeVMUoes4lotQGna8lfAkwbBAOIi8z6Ck1pHtTwZBnRf0HalU2r
++INFd/U2MQMUl63YrdhjXwkM7LepxMqj1nBRRS7W1qnS4B9N1Gx8h4RwaYVlW7YR
+EFSZjuqVTz3aJqr4IY6OjxHlXKCYy9q0x2QGgJm7z0/0K0K1w1LymoL8smE+7X4T
+foEKIZohNHxTPoM8tLU3XZhuMQL8TAtbUIz18+gyq0ug8Nf5mXkBPDSIQ92VWTKN
+CbFuu1meG18OXGNQwDsjj3D6WzoV8/h7wsVhf1tyBXfJ6GFfkhdJPJZTCgJzsGEk
+wVmSKNwTwzkCAwEAAaNxMG8wTgYDVR0RBEcwRYIVc3NvLmNjLnN0b255YnJvb2su
+ZWR1hixodHRwczovL3Nzby5jYy5zdG9ueWJyb29rLmVkdS9pZHAvc2hpYmJvbGV0
+aDAdBgNVHQ4EFgQUoH3ycV3oftfj3WFA33xtpoaRyUYwDQYJKoZIhvcNAQEFBQAD
+ggEBAE2vfQbGmZWnFMWylYeLqj7lvX5P1Se9i8DBJjy3tdCTIHdHTSRPLnnroFEb
+Au55cnXU3SeJ4jzHj3k4tOXQQfE+BGER47DtPuJ5Ey2Ug33DCrMoP0yjpwp3uTcy
+NRSzJT6FikcvJbGxzswA6chGOHWtGwe4dq+5Om0q8QQsQMX5o3TUrkL/9e4cSyHV
+beoZeLMhDf4M7wf971qx6tV+qVQqqSdDbQOPx+IKKXGuHCwKXwi1V1KjmYFqnOm6
+vjLJq/ZYknekwIgXDYdL99d5kwqV6W7vHm5V7j2fv0o+mNu46sL9Y+TVZPAnyw8b
+P5kJpNl6SkvUOjZ4nvr9i9FgmHc=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sso.cc.stonybrook.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.cc.stonybrook.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.cc.stonybrook.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.cc.stonybrook.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stony Brook University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stony Brook University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sunysb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Research Infrastructure</GivenName>
+ <EmailAddress>Cloud_Research_Infrastructure@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>DoIT Core Services Infrastructure</GivenName>
+ <EmailAddress>DoIT_CSI@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>DoIT Information Security</GivenName>
+ <EmailAddress>DoIT_Security@stonybrook.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Maryland College Park -->
+<EntityDescriptor entityID="urn:mace:incommon:umd.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://umd.service-now.com" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umd.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Maryland College Park</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The University of Maryland, College Park is a public research university, the flagship campus of the University System of Maryland, and the original 1862 land-grant institution in the State.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.umd.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://president.umd.edu/administration/policies/section-x-miscellaneous-policies/x-100a</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="152" xml:lang="en">https://login.umd.edu/images/informal-150.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10974282219642002294, expires on Mon Mar 2 14:51:22 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.idm.umd.edu/shibboleth-idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.idm.umd.edu/shibboleth-idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.idm.umd.edu/shibboleth-idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.idm.umd.edu/shibboleth-idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.idm.umd.edu/shibboleth-idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Maryland College Park</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Maryland College Park</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umd.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>William Gomes</GivenName>
+ <EmailAddress>wgomes@umd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Pfeifer</GivenName>
+ <EmailAddress>shibboleth@umd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jyoti Sawhney</GivenName>
+ <EmailAddress>shibboleth@umd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Shibboleth Team</GivenName>
+ <EmailAddress>shibboleth@umd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Gerry Sneeringer</GivenName>
+ <EmailAddress>itspo-irt@umd.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Clemson University -->
+<EntityDescriptor entityID="urn:mace:incommon:clemson.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.clemson.edu/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">clemson.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Clemson University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The Identity Provider for Clemson University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.clemson.edu/ccit/help_support/safe_computing/resources/best_practices.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.clemson.edu/ccit/about/policies/index.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="130" width="449" xml:lang="en">https://www.clemson.edu/images/wordmark.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9625157077946524638, expires on Sat Jan 20 19:24:50 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.clemson.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.clemson.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.clemson.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.clemson.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.clemson.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.clemson.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">clemson.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9625157077946524638, expires on Sat Jan 20 19:24:50 2024 GMT -->
+ <ds:X509Certificate>
+MIIDMjCCAhqgAwIBAgIJAIWTbV26VuPeMA0GCSqGSIb3DQEBBQUAMBoxGDAWBgNV
+BAMTD2lkcC5jbGVtc29uLmVkdTAeFw0xNDAxMjIxOTI0NTBaFw0yNDAxMjAxOTI0
+NTBaMBoxGDAWBgNVBAMTD2lkcC5jbGVtc29uLmVkdTCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBAKh970CMYkhnBWn4flEVBZxZyx6OjF9Y5TzcsAQPEqb+
+J8e0f8+eoi/SjCH62J3wkycb637xVGcpOe8gxheqb/yAoO/1XkQcQqGGDFwe5i2C
+acfNy2GzEjXoTuwPZv1rBMeeTJ5GWeuO7kP0xJMUz6EwgnEPky/KO4jTLmQElD0O
+nr2LUe3r6RNh/iQdVuR7OU6aNIGoRB0TDoth7Gvb11Y/ztkVss9Be/9B7ILKVrF5
+EQqt6rXb1Uam0wNcFRt1UWnzwvWqTOD3ndsIP3/okWpKezk90gJmQ31jIUqPUWAB
+3Jq8rASoKBtm4v6m8/PVxqaiDVUP3pMoDn/kuC2tdgECAwEAAaN7MHkwHQYDVR0O
+BBYEFGRIag6EZ77qa33zp5/pHiGTYl15MEoGA1UdIwRDMEGAFGRIag6EZ77qa33z
+p5/pHiGTYl15oR6kHDAaMRgwFgYDVQQDEw9pZHAuY2xlbXNvbi5lZHWCCQCFk21d
+ulbj3jAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQB/PeqBB+qaogdv
+7IqcXrz7mgftKI8mUFae76rzVGnIPIYMyManRceCRfVnvPFrNKOjoUuqQRg3dQsE
+SzUMzFWD4IHcbUP1xI+o8o1FtyM6KYMQE1DIV0GbsZ5FAlGEhWjrYGhJ/SqIeakg
+MiLtXO/Y+b8Ys4mAtdJS3Bx/qM+hfYWc8oJMaJZeHcEzqC/MaBxvkxz5VTkq9hN4
+EGUdMHmqx12yrMmweKwJ2thh2DOEebiJeJ8DBvj44kmSGMoEWw7HCC3wQOUsTrjv
+KmFS8uC55wmP9wsWXa8g5S7eim10poro2UW5dSOGYhET3GVG7rywL//9eP9bH6nG
+gf9X1kGw
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.clemson.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.clemson.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Clemson University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Clemson University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.clemson.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Barry Johnson</GivenName>
+ <EmailAddress>hbj@clemson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Craig Baker</GivenName>
+ <EmailAddress>craigb@clemson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kathy E. Wright</GivenName>
+ <EmailAddress>kewrig@clemson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Clemson ShibOps</GivenName>
+ <EmailAddress>shibbbolethOps@lists.clemson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Clemson CSIO</GivenName>
+ <EmailAddress>security@clemson.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- JSTOR -->
+<EntityDescriptor entityID="https://shibbolethsp.jstor.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibbolethsp.jstor.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ITHAKA Service Provider</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Service provider for JSTOR, Artstor and JSTOR Forum.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.artstor.org/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="65" xml:lang="en">https://www.jstor.org/assets/global_20171113T2045/build/images/jstor-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13970267424898341850, expires on Mon Nov 30 15:42:07 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibbolethsp.jstor.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibbolethsp.jstor.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibbolethsp.jstor.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibbolethsp.jstor.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ITHAKA Service Provider</ServiceName>
+ <ServiceDescription xml:lang="en">Service provider for JSTOR, Artstor and JSTOR Forum.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">JSTOR</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">JSTOR</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.jstor.org</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>ITHAKA Support</GivenName>
+ <EmailAddress>support@jstor.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>ITHAKA Authentication Team</GivenName>
+ <EmailAddress>GRP_ITHAKA_Auth@Ithaka.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Spencer Thomas</GivenName>
+ <EmailAddress>spencer.thomas@ithaka.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITHAKA Authentication Team</GivenName>
+ <EmailAddress>GRP_ITHAKA_Auth@Ithaka.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Florida State University -->
+<EntityDescriptor entityID="https://idp-staging.fsu.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fsu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Florida State University - Staging</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Florida State University - Staging</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://its.fsu.edu/ispo/policy/information-privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="160" width="160" xml:lang="en">https://www.fsu.edu/_/s3/img/fsu-seals/fsu-seal-3d-160x160.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1348200536402989085848762068179507702199652376252, expires on Mon Apr 12 17:46:21 2038 GMT -->
+ <ds:X509Certificate>
+MIIDDjCCAfagAwIBAgIVAOwnZyXLEQgZNEaYB8I9nT4VYt68MA0GCSqGSIb3DQEB CwUAMBYxFDASBgNVBAMMC2Nhcy5mc3UuZWR1MB4XDTE4MDQxMjE3NDYyMVoXDTM4 MDQxMjE3NDYyMVowFjEUMBIGA1UEAwwLY2FzLmZzdS5lZHUwggEiMA0GCSqGSIb3 DQEBAQUAA4IBDwAwggEKAoIBAQC1jnzFf5UkJqLVqo6GKs5Wry9KBN+KIh/9a5tw ODtjykCQ8apWRGN3dYXPr3BKgAdvCB7Q2mzFouPdNeZpK1C4109VMxs5ebYCDTAq Rc3DtLlV+z5P0CqoQ4Vyt50VoiBEgkXTcrgZCzbSTrVghHs4bJkS135eLxQtBZWM IJU5RMoJty5vYeP8RCDVSwSeHyK+o/f5kwaqT2DVfFrz7WC0GyFolF456vem2xZP SmFaZRdxSnMyEVQ7u4DpveEyCADq9Zmp3E+At+uTJOwBvjiqD4j2CRBGZtYGAMbG Rx/oPRKS9CLCsMcBFmwfcx0ayP6Eg8112CB5jJuJFJwiJmFZAgMBAAGjUzBRMB0G A1UdDgQWBBTzip0B1vX7mmPuHXxbcb3MxOBMiDAwBgNVHREEKTAnggtjYXMuZnN1 LmVkdYYYY2FzLmZzdS5lZHUvaWRwL21ldGFkYXRhMA0GCSqGSIb3DQEBCwUAA4IB AQCKfNL7AGsLoAkzRMJzlRGD+LPk0RmrvrQcdizZaHU2PDA7ooTXVTchDofGxg+M 4R/kP67JVyy2jM4fk3DF+sWacqL4Xm05sv2/1Pk9jvHII3H/JQE09DWGxeCMC1Gd Ya8/iV/eyCdi84jBV6iLRnv09WDVeosNXbZB/YZQP8J11Mkv6SNVAruYtdPAi39p rLLIGsmcrAusjFcB8zt9sl3NxSa750IF/MYQ9v0T5RDEpzUlZdCe4b6HWVZNxhYn CKdTbb+oknh5JwCLOUgaOG0TL5Af2NoVw0itaq/ApFPq0enpeOB90AYEWC4JfX9k uujCi/EbiFB160ROYX4bn+wm
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://casqna.fsu.edu/cas/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://casqna.fsu.edu/cas/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://casqna.fsu.edu/cas/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://casqna.fsu.edu/cas/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://casqna.fsu.edu/cas/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://casqna.fsu.edu/cas/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fsu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1348200536402989085848762068179507702199652376252, expires on Mon Apr 12 17:46:21 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://casqna.fsu.edu/cas/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://casqna.fsu.edu/cas/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Florida State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Florida State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.fsu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Diane Higgins</GivenName>
+ <EmailAddress>dhiggins@fsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Olivier Begon</GivenName>
+ <EmailAddress>obegon@fsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jose Rodriguez</GivenName>
+ <EmailAddress>jarodriguez@fsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Rez Haque</GivenName>
+ <EmailAddress>rhaque@fsu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- OhioLink -->
+<EntityDescriptor entityID="urn:mace:incommon:ohiolink.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://authdb.ohiolink.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ohiolink.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">OhioLink</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Federated login server for OhioLINK staff</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.oh-tech.org/content/privacy_notice</mdui:PrivacyStatementURL>
+ <mdui:Logo height="36" width="425" xml:lang="en">https://authdb.ohiolink.edu/images/full_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 524732226737622333716383051419489378441427595024, expires on Tue Feb 1 17:43:33 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://authdb.ohiolink.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://authdb.ohiolink.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://authdb.ohiolink.edu/shibboleth/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://authdb.ohiolink.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://authdb.ohiolink.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://authdb.ohiolink.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ohiolink.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 524732226737622333716383051419489378441427595024, expires on Tue Feb 1 17:43:33 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://authdb.ohiolink.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://authdb.ohiolink.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">OhioLink</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">OhioLink</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ohiolink.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>OhioLINK Support</GivenName>
+ <EmailAddress>support@ohiolink.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Alan Edmonds</GivenName>
+ <EmailAddress>edmonds@oar.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mark Beadles</GivenName>
+ <EmailAddress>mbeadles@oar.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Matthew Soter</GivenName>
+ <EmailAddress>msoter@oh-tech.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>OhioLINK Security &amp; Abuse</GivenName>
+ <EmailAddress>abuse@ohiolink.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Johns Hopkins University -->
+<EntityDescriptor entityID="https://www.familialpancreaticcancer.org/simplesaml/www/module.php/saml/sp/metadata.php/default-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Familial Pancreatic Cancer</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.jhu.edu/university-policies/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="544" width="1167" xml:lang="en">https://incommon.johnshopkins.edu/jhlogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17765466051880947477, expires on Mon Sep 25 17:51:52 2023 GMT -->
+ <ds:X509Certificate>
+MIID9TCCAt2gAwIBAgIJAPaLnT+roA8VMA0GCSqGSIb3DQEBBQUAMIGQMQswCQYDVQQGEwJVUzERMA8GA1UECAwITWFyeWxhbmQxEjAQBgNVBAcMCUJhbHRpbW9yZTEMMAoGA1UECgwDSkhVMSkwJwYDVQQDDCB3d3cuZmFtaWxpYWxwYW5jcmVhdGljY2FuY2VyLm9yZzEhMB8GCSqGSIb3DQEJARYSYW5pbmRvLmJAZ21haWwuY29tMB4XDTE4MDkyNTE3NTE1MloXDTIzMDkyNTE3NTE1MlowgZAxCzAJBgNVBAYTAlVTMREwDwYDVQQIDAhNYXJ5bGFuZDESMBAGA1UEBwwJQmFsdGltb3JlMQwwCgYDVQQKDANKSFUxKTAnBgNVBAMMIHd3dy5mYW1pbGlhbHBhbmNyZWF0aWNjYW5jZXIub3JnMSEwHwYJKoZIhvcNAQkBFhJhbmluZG8uYkBnbWFpbC5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDB1UdM+nIK7MrSIy/leuL7XH14cX95ryvg7BJdfu31I5g75ZYEJfojBMcltbBqIG1YBqRgGbw2uxBpXXW5HJJ2O35oDCCbM/V5J/woFclE2ES6UqjjM0neM9Mn56oBrZKxDWer1h7Sjyoku7HmZ8WH+hAmPpwAww1rS8/rE49YqU5uqK5QgjJ6XslQ9PTWojM3xs2uu03SNh9wC9FTEHc5rjolqg3zDX8olmW/VxswEMKx1kt+xvJfRQP/1lLQQm8gn7emIF0PhevqGGu3dosu21PmDBytAoEnqYTp/x/P+x81YCWYDjvbmBJ6HJ8/x864SzDYSbrOAyehzxM9QN2NAgMBAAGjUDBOMB0GA1UdDgQWBBRHCXuQdrMx6eWeQ4EQ1n/jbk1tUjAfBgNVHSMEGDAWgBRHCXuQdrMx6eWeQ4EQ1n/jbk1tUjAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQBzQlhuwDkZC7gUs7rY6WfrLedQsueLeIvMNivXwkByPzYIBAan5sZ7pB/dmotypH8QYLKHtqwC9VwLjUaJoZg9Q/ADtg+fbqYryqMeeoh1sh31/N23bTQGNndNl/xcn9MFXkM4QeoqwT1eCwF9a2mgMsOX8ry97CdpjAcfXECRRS9oiIiHH32zQ7QkuuZfWjBwk8YqZSTK5TkmV1UJyJNqxtDlKQ316oMsuzKgfqplf42699QrWKQjAXV9tCMdQ+6RzvhnfMGOsNlM9URKj4QC1KKZUJ1421MdZX4h5DLKgQHlalykPvI/X/FRYL7AvXJqrR1VjdizOsTDMBV2CYem
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.familialpancreaticcancer.org/simplesaml/www/module.php/saml/sp/saml2-logout.php/default-sp"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.familialpancreaticcancer.org/simplesaml/www/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.familialpancreaticcancer.org/simplesaml/www/module.php/saml/sp/saml1-acs.php/default-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.familialpancreaticcancer.org/simplesaml/www/module.php/saml/sp/saml2-acs.php/default-sp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.familialpancreaticcancer.org/simplesaml/www/module.php/saml/sp/saml2-acs.php/default-sp" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Johns Hopkins University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Johns Hopkins</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.jhu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Anindo Bandyopadhyay</GivenName>
+ <EmailAddress>anindo.b@gmail.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ralph Hruban</GivenName>
+ <EmailAddress>rhruban@jhmi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Enterprise Authentication Team</GivenName>
+ <EmailAddress>enterpriseauth@jhmi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Etan Weintraub</GivenName>
+ <EmailAddress>eweintra@jhmi.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:johnshopkins.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">johnshopkins.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Johns Hopkins</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.jhu.edu/university-policies/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="544" width="1167" xml:lang="en">https://incommon.johnshopkins.edu/jhlogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 45397527755683704907991456291836045159705580784, expires on Fri May 10 18:45:59 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://incommon.johnshopkins.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://incommon.johnshopkins.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://incommon.johnshopkins.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://incommon.johnshopkins.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://incommon.johnshopkins.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://incommon.johnshopkins.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">johnshopkins.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 45397527755683704907991456291836045159705580784, expires on Fri May 10 18:45:59 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://incommon.johnshopkins.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://incommon.johnshopkins.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Johns Hopkins University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Johns Hopkins</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.jhu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Andrew Baldwin</GivenName>
+ <EmailAddress>andrew.baldwin@jhu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Daniel Carter</GivenName>
+ <EmailAddress>daniel.carter@jhu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Enterprise Authentication Team</GivenName>
+ <EmailAddress>enterpriseauth@jhmi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Etan Weintraub</GivenName>
+ <EmailAddress>eweintra@jhmi.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- RefWorks, LLC -->
+<EntityDescriptor entityID="https://rwtm.refworks.com/shibboleth/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">RefWorks</mdui:DisplayName>
+ <mdui:Description xml:lang="en">rwtm</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.refworks-cos.com/refworks/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://refworks.proquest.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="85" width="250" xml:lang="en">https://refworks.proquest.com/public/img/xrw-pq-logo-250x85,402x.png.pagespeed.ic._mltHHdhHa.webp</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15758024355856407776, expires on Fri Nov 17 19:47:14 2028 GMT -->
+ <ds:X509Certificate>
+MIIEHzCCAoegAwIBAgIJANqvv6l8xlzgMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV
+BAMTEHd3dy5yZWZ3b3Jrcy5jb20wHhcNMTgxMTIwMTk0NzE0WhcNMjgxMTE3MTk0
+NzE0WjAbMRkwFwYDVQQDExB3d3cucmVmd29ya3MuY29tMIIBojANBgkqhkiG9w0B
+AQEFAAOCAY8AMIIBigKCAYEAz+sqdt9QtSKNsBG0PQPI33ZFdxwzB5OLYIZdRz3f
+1IVEiC4lS/G3cRrWVfnrvawnlcr0V8PNUkGQf0HeOoKp6WCRpDUoVVnUoclrNru1
+diG60paoH0SWOfUYYXc9D4s7Netnce5Wsj+k9XsSnwqLrM/bOb+s0yQh/dQ/jrAI
+Ay1TQWZ2bHmq6I0q0kRsS0vlf7VQx3XNLPpxD06qNfoZENJxCTykm9efsyuHKthT
+cVRtKIKpUdVnOHlDh4KNMpPThPEpFPjN1fAae2NWkX7k0ynLOpvQ84jNFenHnJG6
+Ppip2swLRKVL2sYAjtZ0vOs2h1gDvUxaxwhVBZWs5bU8PIWvdDJmmqKSv/Qz31ID
+FKJ/lEmALkPYU1LB1OS8FTx7ejHjr19+W/M1IVBuFJAH8gOr+VcHzcfKcShDvoFx
+NWOITvVgezyyuQQu+D/5qZGOrbDgTZhh8BGB1Cuigen8o7FAOF9n+eWFV9RK3w4E
+FKcSnxk3WVFYHzoXCifhHugpAgMBAAGjZjBkMEMGA1UdEQQ8MDqCEHd3dy5yZWZ3
+b3Jrcy5jb22GJmh0dHBzOi8vd3d3LnJlZndvcmtzLmNvbS9zaGliYm9sZXRoL3Nw
+MB0GA1UdDgQWBBR5FYIjDGhEO/zrcZ9Nysz8jMZ+sDANBgkqhkiG9w0BAQsFAAOC
+AYEArBgxC7nCVuDuN+k4z0CLWL/+rvWsVoGVri5x+ZAHxPZizcmlv6rmqtGvgqcU
+VShOUtLvOjqT7Jo6uzf/YueTwv8V1ZZ5emTHHmsKyNa0Q9T5hzFLNil8opOKa/uc
+Ap2hKdjzoBy5v5tsqMH4ucNSNF0PiMiIRw6XEAo/cDRyDefhPtTOnm+FLu7UHur+
+Y7NPvf1kh//uEtkIkTZ4698HXu6g87McO8tOT5I5i4IAyjRq7nGsuN7tlb2Y9maP
+1ZiGPD3r63EaLak5N++WNQvahf23L9BeSimWj4kGY3iLWFG52K4aUnkXU9DdtyDN
+eyAZ8H8ccOFxWKkC3kJ12NaPEgtjZ9hZHGue0UrKhJ74ds/yZW9jMeTKNNjQv1Ez
+Qt5FK2b8EzlB+qdZj2NRZMeIhtuhBqHLDj5yqn7qA8LtMmqbS6BoBfXTdcK64DbK
+pqPJtqELKQbG4lszf8C7dWZzputZVWBnyXkIDvk4JzY8xQXmfbFgznxrkNERsuiL
+8f7C
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://prep.refworks.com/Shibboleth.sso/SAML/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://prep.refworks.com/Shibboleth.sso/SAML/Artifact" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://prep.refworks.com/Shibboleth.sso/SAML2/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://prep.refworks.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RefWorks, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RefWorks, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://refworks.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>RefWorks Support</GivenName>
+ <EmailAddress>refworks.support@exlibrisgroup.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>RefWorks Support</GivenName>
+ <EmailAddress>refworks.support@exlibrisgroup.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>RefWorks Support</GivenName>
+ <EmailAddress>refworks.support@exlibrisgroup.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://rwt.refworks.com/shibboleth/testshib/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">RefWorks</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Refworks rwt</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.refworks-cos.com/refworks/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://refworks.proquest.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="85" width="250" xml:lang="en">https://refworks.proquest.com/public/img/xrw-pq-logo-250x85,402x.png.pagespeed.ic._mltHHdhHa.webp</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15758024355856407776, expires on Fri Nov 17 19:47:14 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rwt.refworks.com/Shibboleth.sso/SAML/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rwt.refworks.com/Shibboleth.sso/SAML/Artifact" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rwt.refworks.com/Shibboleth.sso/SAML2/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rwt.refworks.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rwt.refworks.com/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rwt.refworks.com/Shibboleth.sso/SAML2/ECP" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RefWorks, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RefWorks, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://refworks.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>RefWorks Support</GivenName>
+ <EmailAddress>refworks.support@exlibrisgroup.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>RefWorks Support</GivenName>
+ <EmailAddress>refworks.support@exlibrisgroup.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>RefWorks Support</GivenName>
+ <EmailAddress>refworks.support@exlibrisgroup.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://www.refworks.com/shibboleth/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">RefWorks</mdui:DisplayName>
+ <mdui:Description xml:lang="en">RefWorks allows users to create personal bibliographic databases and use them for a variety of research activities.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.refworks-cos.com/refworks/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://refworks.proquest.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="85" width="250" xml:lang="en">https://refworks.proquest.com/public/img/xrw-pq-logo-250x85,402x.png.pagespeed.ic._mltHHdhHa.webp</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15758024355856407776, expires on Fri Nov 17 19:47:14 2028 GMT -->
+ <ds:X509Certificate>
+MIIEHzCCAoegAwIBAgIJANqvv6l8xlzgMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV
+BAMTEHd3dy5yZWZ3b3Jrcy5jb20wHhcNMTgxMTIwMTk0NzE0WhcNMjgxMTE3MTk0
+NzE0WjAbMRkwFwYDVQQDExB3d3cucmVmd29ya3MuY29tMIIBojANBgkqhkiG9w0B
+AQEFAAOCAY8AMIIBigKCAYEAz+sqdt9QtSKNsBG0PQPI33ZFdxwzB5OLYIZdRz3f
+1IVEiC4lS/G3cRrWVfnrvawnlcr0V8PNUkGQf0HeOoKp6WCRpDUoVVnUoclrNru1
+diG60paoH0SWOfUYYXc9D4s7Netnce5Wsj+k9XsSnwqLrM/bOb+s0yQh/dQ/jrAI
+Ay1TQWZ2bHmq6I0q0kRsS0vlf7VQx3XNLPpxD06qNfoZENJxCTykm9efsyuHKthT
+cVRtKIKpUdVnOHlDh4KNMpPThPEpFPjN1fAae2NWkX7k0ynLOpvQ84jNFenHnJG6
+Ppip2swLRKVL2sYAjtZ0vOs2h1gDvUxaxwhVBZWs5bU8PIWvdDJmmqKSv/Qz31ID
+FKJ/lEmALkPYU1LB1OS8FTx7ejHjr19+W/M1IVBuFJAH8gOr+VcHzcfKcShDvoFx
+NWOITvVgezyyuQQu+D/5qZGOrbDgTZhh8BGB1Cuigen8o7FAOF9n+eWFV9RK3w4E
+FKcSnxk3WVFYHzoXCifhHugpAgMBAAGjZjBkMEMGA1UdEQQ8MDqCEHd3dy5yZWZ3
+b3Jrcy5jb22GJmh0dHBzOi8vd3d3LnJlZndvcmtzLmNvbS9zaGliYm9sZXRoL3Nw
+MB0GA1UdDgQWBBR5FYIjDGhEO/zrcZ9Nysz8jMZ+sDANBgkqhkiG9w0BAQsFAAOC
+AYEArBgxC7nCVuDuN+k4z0CLWL/+rvWsVoGVri5x+ZAHxPZizcmlv6rmqtGvgqcU
+VShOUtLvOjqT7Jo6uzf/YueTwv8V1ZZ5emTHHmsKyNa0Q9T5hzFLNil8opOKa/uc
+Ap2hKdjzoBy5v5tsqMH4ucNSNF0PiMiIRw6XEAo/cDRyDefhPtTOnm+FLu7UHur+
+Y7NPvf1kh//uEtkIkTZ4698HXu6g87McO8tOT5I5i4IAyjRq7nGsuN7tlb2Y9maP
+1ZiGPD3r63EaLak5N++WNQvahf23L9BeSimWj4kGY3iLWFG52K4aUnkXU9DdtyDN
+eyAZ8H8ccOFxWKkC3kJ12NaPEgtjZ9hZHGue0UrKhJ74ds/yZW9jMeTKNNjQv1Ez
+Qt5FK2b8EzlB+qdZj2NRZMeIhtuhBqHLDj5yqn7qA8LtMmqbS6BoBfXTdcK64DbK
+pqPJtqELKQbG4lszf8C7dWZzputZVWBnyXkIDvk4JzY8xQXmfbFgznxrkNERsuiL
+8f7C
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.refworks.com/Shibboleth.sso/SAML/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.refworks.com/Shibboleth.sso/SAML/Artifact" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.refworks.com/Shibboleth.sso/SAML2/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.refworks.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RefWorks, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RefWorks, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://refworks.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>RefWorks Support</GivenName>
+ <EmailAddress>refworks.support@exlibrisgroup.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>RefWorks Support</GivenName>
+ <EmailAddress>refworks.support@exlibrisgroup.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>RefWorks Support</GivenName>
+ <EmailAddress>refworks.support@exlibrisgroup.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of California, Davis -->
+<EntityDescriptor entityID="urn:mace:incommon:ucdavis.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucdavis.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California, Davis</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://privacy.ucdavis.edu</mdui:PrivacyStatementURL>
+ <mdui:Logo height="101" width="396" xml:lang="en">https://shibboleth.ucdavis.edu/icons/ucd_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17571969099058729468, expires on Tue May 3 20:14:16 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.ucdavis.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.ucdavis.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.ucdavis.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.ucdavis.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.ucdavis.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.ucdavis.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California, Davis</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California, Davis</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucdavis.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>UC Davis IT Express</GivenName>
+ <EmailAddress>ithelp@ucdavis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>EIS Shibboleth Group</GivenName>
+ <EmailAddress>shibadmin@ucdavis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IET Information Security</GivenName>
+ <EmailAddress>abuse@ucdavis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IET Infrastructure Systems Management</GivenName>
+ <EmailAddress>sysadmin@ucdavis.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Texas A & M University -->
+<EntityDescriptor entityID="urn:mace:incommon:tamu.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://hdc.tamu.edu" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">tamu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Texas A &amp; M University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://infrastructure.tamu.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.tamu.edu/statements/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="146" width="63" xml:lang="en">https://idp.tamu.edu/images/TAM-PrimaryMarkA.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9684005897057623721, expires on Thu Jan 21 14:51:17 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.tamu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.tamu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.tamu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Texas A &amp; M University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Texas A &amp; M University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.tamu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admins</GivenName>
+ <EmailAddress>shib-admin@tamu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity Management Office</GivenName>
+ <EmailAddress>idm-support@tamu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Support</GivenName>
+ <EmailAddress>helpdesk@tamu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Response Team</GivenName>
+ <EmailAddress>security@tamu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Indiana University -->
+<EntityDescriptor entityID="http://slfed.uits.iu.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Kumo Login</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://kumo.iu.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://it.iu.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://go.iu.edu/img/iclogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 69794995666803637318532941335327691519, expires on Sat Jul 27 09:42:24 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://slfed.uits.iu.edu/adfs/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slfed.uits.iu.edu/adfs/ls/"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slfed.uits.iu.edu/adfs/ls/" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slfed.uits.iu.edu/adfs/ls/" index="2"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Indiana University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Indiana University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.indiana.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Lynch</GivenName>
+ <EmailAddress>lynch@iu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Satish Garneni</GivenName>
+ <EmailAddress>sgarneni@iu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UISO</GivenName>
+ <EmailAddress>uiso@iu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://slfs-test.uits.indiana.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Kumo Login (Test)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Cloud Storage Connector</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://kumo.iu.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://it.iu.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://go.iu.edu/img/iclogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 21797375183084407586815369056102714460, expires on Fri Jul 26 11:57:58 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://slfs-test.uits.indiana.edu/adfs/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slfs-test.uits.indiana.edu/adfs/ls/"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slfs-test.uits.indiana.edu/adfs/ls/" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slfs-test.uits.indiana.edu/adfs/ls/" index="2"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Indiana University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Indiana University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.indiana.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Lynch</GivenName>
+ <EmailAddress>lynch@iu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Satish Garneni</GivenName>
+ <EmailAddress>sgarneni@iu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UISO</GivenName>
+ <EmailAddress>uiso@iu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:iu.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://kb.iu.edu/data/abxl.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">iu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Indiana University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The Identity Provider for Indiana University.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://kb.iu.edu/data/bdbk.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://go.iu.edu/authprivacypolicy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://idp.iu.edu/shibboleth-idp/images/iu-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12878425373254038628, expires on Mon Feb 28 21:07:28 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.iu.edu:8443/shibboleth-idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.iu.edu/shibboleth-idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.iu.edu/shibboleth-idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.iu.edu/shibboleth-idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.iu.edu/shibboleth-idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.iu.edu/shibboleth-idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">iu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12878425373254038628, expires on Mon Feb 28 21:07:28 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.iu.edu:8443/shibboleth-idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.iu.edu/shibboleth-idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Indiana University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Indiana University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.indiana.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Support Center</GivenName>
+ <EmailAddress>ithelp@iu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Support Center</GivenName>
+ <EmailAddress>ithelp@iu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support Center</GivenName>
+ <EmailAddress>ithelp@iu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IU Incident Response Team</GivenName>
+ <EmailAddress>sirtifi@iu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Northwestern University -->
+<EntityDescriptor entityID="urn:mace:incommon:northwestern.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">northwestern.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Northwestern University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.it.northwestern.edu/policies/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="299" width="2390" xml:lang="en">https://idsprod.ci.northwestern.edu/images/common/Northwestern_horizontal_purple.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13334128863870785413, expires on Fri Dec 25 17:07:52 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fed.it.northwestern.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fed.it.northwestern.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fed.it.northwestern.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">northwestern.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13334128863870785413, expires on Fri Dec 25 17:07:52 2037 GMT -->
+ <ds:X509Certificate>
+MIIDojCCAooCCQC5DFeN8E0XhTANBgkqhkiG9w0BAQsFADCBkjELMAkGA1UEBhMC
+VVMxCzAJBgNVBAgTAklMMREwDwYDVQQHEwhFdmFuc3RvbjEgMB4GA1UEChMXTm9y
+dGh3ZXN0ZXJuIFVuaXZlcnNpdHkxHzAdBgNVBAsTFkluZm9ybWF0aW9uIFRlY2hu
+b2xvZ3kxIDAeBgNVBAMTF2ZlZC5pdC5ub3J0aHdlc3Rlcm4uZWR1MB4XDTE1MDEy
+MDE3MDc1MloXDTM3MTIyNTE3MDc1MlowgZIxCzAJBgNVBAYTAlVTMQswCQYDVQQI
+EwJJTDERMA8GA1UEBxMIRXZhbnN0b24xIDAeBgNVBAoTF05vcnRod2VzdGVybiBV
+bml2ZXJzaXR5MR8wHQYDVQQLExZJbmZvcm1hdGlvbiBUZWNobm9sb2d5MSAwHgYD
+VQQDExdmZWQuaXQubm9ydGh3ZXN0ZXJuLmVkdTCCASIwDQYJKoZIhvcNAQEBBQAD
+ggEPADCCAQoCggEBAJ3HqCrHxVUUf/urBZ9rwID91elzI1jipUdv2HX+LOBqCAap
+3vKpDC7mfpKutO70bpOIXhjIqLWIKh80GzeLUyRt4gFgCRjfr/YzrClF7oveXyi+
+QMUXkIYa7fp5hp5bfSO2XNuJXbMud8GnErPn593jmSi8as5NsljWzNxa19gyHYIS
+sLtkrFM62OCj/S+yiS+xlD94/qkywXrKySKp496ZaJ0hD9YGpg8Lh2Kb/HvtAeOt
+ySGZadmQx163JA8/Yj5Ahyp3/5x3mD3bMyORUnrEvn2d+nqXEQ/9/22nJEq5UcOU
+1L+CTQRKse8ST8fkpN9pf3vIuRX4su2j/7vPPJsCAwEAATANBgkqhkiG9w0BAQsF
+AAOCAQEAltAJkX/WvrNp1weTB9t1XGdxPYG11nWTsbhnm6Y+pBEcOqfM98ZeOAyK
+hgICu3xCEt/q/yh2jzpmLTHwGMiVqWIryoQOBmrMmTLCpRMYxtCTs0F3cFmmPzNJ
+KeWS9pgWg0oZrAasCTIERT+g6u4kgUQMVQhCC4nppl/nPwLM+/oIPKwJ4acrdZwL
+xH100oQ2pDktlENbgaqSkf5Na4iSXCikSWlHXWrvLOitRUdMNatq5SBPNTg2KAH7
+d+Bjxku5FEnS07bFaN5TluB5dXvXjO974EsTgE0IERVG3Ctt627NQRWsgoliqsck
+nC6JxENe05T4sdut9pYxad/9deFNAQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fed.it.northwestern.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Northwestern University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Northwestern University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.northwestern.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Xiaoxia Dong</GivenName>
+ <EmailAddress>x-dong@northwestern.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Phil Tracy</GivenName>
+ <EmailAddress>ptracy@northwestern.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Northwestern Information Security</GivenName>
+ <EmailAddress>security@northwestern.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Phil Tracy</GivenName>
+ <EmailAddress>ptracy@northwestern.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Harry Samuels</GivenName>
+ <EmailAddress>harry.samuels@northwestern.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Michigan State University -->
+<EntityDescriptor entityID="urn:mace:incommon:msu.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">msu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Michigan State University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://msu.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="34" width="298" xml:lang="en">https://brand.msu.edu/_files/images/masthead-helmet-green.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 688563857346301240303787121084353142029494529232, expires on Fri Aug 23 18:46:04 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.idm.msu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.idm.msu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.idm.msu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.idm.msu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">msu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 688563857346301240303787121084353142029494529232, expires on Fri Aug 23 18:46:04 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.idm.msu.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.idm.msu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Michigan State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Michigan State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.msu.edu/home/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity and Access Management</GivenName>
+ <EmailAddress>identity@msu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity and Access Management</GivenName>
+ <EmailAddress>identity@msu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Service Desk</GivenName>
+ <EmailAddress>ithelp@msu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incident Response</GivenName>
+ <EmailAddress>ir@msu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Lafayette College -->
+<EntityDescriptor entityID="urn:mace:incommon:lafayette.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://help.lafayette.edu/federatediderror" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lafayette.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Lafayette College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Shibboleth Identity Provider for Lafayette College, Easton, PA</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://its.lafayette.edu/policies/accounts/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://its.lafayette.edu/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="125" width="327" xml:lang="en">https://cdn.lafayette.edu/images/mediakit/LAF_Logo_Stacked_Red-327x125.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 857455392912945616021925522867788053188405492957, expires on Fri Apr 19 16:07:48 2030 GMT -->
+ <ds:X509Certificate>
+MIIDNDCCAhygAwIBAgIVAJYxoS4g0HtVGMnXI6lqUky18fzdMA0GCSqGSIb3DQEB
+BQUAMB0xGzAZBgNVBAMTEmlkcDEubGFmYXlldHRlLmVkdTAeFw0xMDA0MTkxNjA3
+NDhaFw0zMDA0MTkxNjA3NDhaMB0xGzAZBgNVBAMTEmlkcDEubGFmYXlldHRlLmVk
+dTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAIfAZOL7zDCIZIazXYRD
+Q1HuBhaHBAxRk7lGyCbl7OhdRN4JWgeyYF3ZwXnX1TZ1A6PoynS0Ax/52nU/oCoA
+ZNP9rCKLpbNPRIbIa8weqpfUH6Z/FYz4K0/UxtaXkxVZS01aXoTYpbKaTPT0iK8i
+r3LeDJwYHP9cMDpQOv0YBaf8gxtxcO+rmhDMgtP5UUpn6Aht4HZr1wJs3dXXiMii
+OWMeW/D0vAG4im4ImXHVyxfR1wb3AYbQ3g2/k3g6KlqbLPhYiDTPUbmDo1aJKhNI
+m2Cdn1puIhy2iPT/EErOb03vD8Zmnqu9npILEXNpitkJQ0S9AOXghz1DLIyf/crz
+XHkCAwEAAaNrMGkwSAYDVR0RBEEwP4ISaWRwMS5sYWZheWV0dGUuZWR1hilodHRw
+czovL2lkcDEubGFmYXlldHRlLmVkdS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU
+NXfHvwg2u2UxRysyIvg9YEOimOowDQYJKoZIhvcNAQEFBQADggEBAA4YgrGDyz+5
+KjDchK55/DJvcpHIy8g845JgaUVuqwQuoUMNQ7X33jv+60BZ3SwZ2IeQ2Ob7H0Tg
+d4tVfBNVLIb35Eg5hzI7L+eAeP6GzaB65fBVzMxq2yFd2hBjjtAHny4gJS7ezPK6
+V9HFdoVQ90t9+HlfBJWs1tMf5+smMTGROTuN+nxHnEjr6nJPozofaZKXMDsZuuKd
+L95JVYfApoA4H6a/w1cxF9lMl2Bs+dlFOP4C9kvZNekgpOYWC1EmA5L4SLglywSw
+IxZ8wXmYPwB3rJluzCbFDPImBSY51mZTzT2AZnTjUPTY/7VhVFpk5jcBhxMVK/3z
+kmYrzZJG/UM=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp1.lafayette.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp1.lafayette.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp1.lafayette.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp1.lafayette.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp1.lafayette.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp1.lafayette.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lafayette.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 857455392912945616021925522867788053188405492957, expires on Fri Apr 19 16:07:48 2030 GMT -->
+ <ds:X509Certificate>
+MIIDNDCCAhygAwIBAgIVAJYxoS4g0HtVGMnXI6lqUky18fzdMA0GCSqGSIb3DQEB
+BQUAMB0xGzAZBgNVBAMTEmlkcDEubGFmYXlldHRlLmVkdTAeFw0xMDA0MTkxNjA3
+NDhaFw0zMDA0MTkxNjA3NDhaMB0xGzAZBgNVBAMTEmlkcDEubGFmYXlldHRlLmVk
+dTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAIfAZOL7zDCIZIazXYRD
+Q1HuBhaHBAxRk7lGyCbl7OhdRN4JWgeyYF3ZwXnX1TZ1A6PoynS0Ax/52nU/oCoA
+ZNP9rCKLpbNPRIbIa8weqpfUH6Z/FYz4K0/UxtaXkxVZS01aXoTYpbKaTPT0iK8i
+r3LeDJwYHP9cMDpQOv0YBaf8gxtxcO+rmhDMgtP5UUpn6Aht4HZr1wJs3dXXiMii
+OWMeW/D0vAG4im4ImXHVyxfR1wb3AYbQ3g2/k3g6KlqbLPhYiDTPUbmDo1aJKhNI
+m2Cdn1puIhy2iPT/EErOb03vD8Zmnqu9npILEXNpitkJQ0S9AOXghz1DLIyf/crz
+XHkCAwEAAaNrMGkwSAYDVR0RBEEwP4ISaWRwMS5sYWZheWV0dGUuZWR1hilodHRw
+czovL2lkcDEubGFmYXlldHRlLmVkdS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU
+NXfHvwg2u2UxRysyIvg9YEOimOowDQYJKoZIhvcNAQEFBQADggEBAA4YgrGDyz+5
+KjDchK55/DJvcpHIy8g845JgaUVuqwQuoUMNQ7X33jv+60BZ3SwZ2IeQ2Ob7H0Tg
+d4tVfBNVLIb35Eg5hzI7L+eAeP6GzaB65fBVzMxq2yFd2hBjjtAHny4gJS7ezPK6
+V9HFdoVQ90t9+HlfBJWs1tMf5+smMTGROTuN+nxHnEjr6nJPozofaZKXMDsZuuKd
+L95JVYfApoA4H6a/w1cxF9lMl2Bs+dlFOP4C9kvZNekgpOYWC1EmA5L4SLglywSw
+IxZ8wXmYPwB3rJluzCbFDPImBSY51mZTzT2AZnTjUPTY/7VhVFpk5jcBhxMVK/3z
+kmYrzZJG/UM=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp1.lafayette.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp1.lafayette.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lafayette College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lafayette College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lafayette.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bill Thompson</GivenName>
+ <EmailAddress>thompsow@lafayette.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Identity and Access Managment</GivenName>
+ <EmailAddress>iam@lafayette.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Janemarie Duh</GivenName>
+ <EmailAddress>duhj@lafayette.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>security@lafayette.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Symplicity Corporation -->
+<EntityDescriptor entityID="https://idp.symplicity.com/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">symplicity.com</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Symplicity Corporation</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.symplicity.com/support/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="54" width="446" xml:lang="en">https://static.symplicity.com/images/symplicity_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 330856152046440779955004700131777155536432927608, expires on Mon Sep 11 11:54:12 2017 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.symplicity.com:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.symplicity.com:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.symplicity.com/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.symplicity.com/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.symplicity.com/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">symplicity.com</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 695832428962513748625431319567494917507046767619, expires on Fri Jul 14 20:27:04 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.symplicity.com:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Symplicity Corporation</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Symplicity Corporation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.symplicity.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>shib@symplicity.com</GivenName>
+ <EmailAddress>shib@symplicity.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Symplicity NOC</GivenName>
+ <EmailAddress>shib@symplicity.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Symplicity NOC</GivenName>
+ <EmailAddress>shib@symplicity.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Richmond -->
+<EntityDescriptor entityID="urn:mace:incommon:richmond.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">richmond.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Richmond</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.richmond.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://is.richmond.edu/policies/technology/general/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="184" width="151" xml:lang="en">https://idp.richmond.edu/idp/images/urlogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9322868400271824733, expires on Thu Nov 14 18:45:26 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.richmond.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.richmond.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.richmond.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">richmond.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9322868400271824733, expires on Thu Nov 14 18:45:26 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.richmond.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Richmond</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Richmond</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.richmond.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Network Services</GivenName>
+ <EmailAddress>network@richmond.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@richmond.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Security</GivenName>
+ <EmailAddress>infosec@richmond.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Troy Boroughs</GivenName>
+ <EmailAddress>tborough@richmond.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Wisconsin-Madison -->
+<EntityDescriptor entityID="https://login.wisc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.wisc.edu/redirect/help-login" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wisc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Wisconsin-Madison</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://login.wisc.edu/redirect/docs</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://it.wisc.edu/it-community/governance/information-technology-committee-itc/it-policies/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="224" xml:lang="en">https://login.wisc.edu/static/img/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 100631902102760431121232365387718338537027338492, expires on Fri Jan 18 02:07:41 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.wisc.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.wisc.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.wisc.edu/logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.wisc.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.wisc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.wisc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.wisc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.wisc.edu/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wisc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 100631902102760431121232365387718338537027338492, expires on Fri Jan 18 02:07:41 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.wisc.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.wisc.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin-Madison</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin-Madison</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wisc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>NetID Login Service</GivenName>
+ <EmailAddress>help@login.wisc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>NetID Login Service</GivenName>
+ <EmailAddress>tech@login.wisc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>NetID Login Service</GivenName>
+ <EmailAddress>admin@login.wisc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>NetID Login Service</GivenName>
+ <EmailAddress>security@login.wisc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jon Miner</GivenName>
+ <EmailAddress>jon.miner@wisc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tom Jordan</GivenName>
+ <EmailAddress>tom.jordan@wisc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- National Institutes of Health -->
+<EntityDescriptor entityID="https://federationdev.nih.gov/FederationGateway">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://federationdev.nih.gov/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NIH Dev SP</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.nih.gov/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nih.gov/web-policies-notices</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://auth.nih.gov/images/nih-logo-thumbnail.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11023463827008997720, expires on Mon May 11 19:40:46 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://federationdev.nih.gov/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://federationdev.nih.gov/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://federationdev.nih.gov/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://federationdev.nih.gov/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://federationstage.nih.gov/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://authproxytest.nih.gov/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NIH Dev SP</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">National Institutes of Health</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">National Institutes of Health</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nih.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>NIH Login Support</GivenName>
+ <EmailAddress>NIHLoginSupport@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>NIH Login Support</GivenName>
+ <EmailAddress>NIHLoginSupport@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>CIT OPS TOC</GivenName>
+ <EmailAddress>CITOPSTOC@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>NIH Login Support</GivenName>
+ <EmailAddress>NIHLoginSupport@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://federation.icer.niaid.nih.gov/satosa">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://federation.scienceforum.sc/Saml2/disco" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NIAID Science Forum Federation Gateway</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This provides access to resources shared among NIAID and its scientific collaborators at multiple institutions across international boundaries.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.scienceforum.sc/SitePages/Service%20Provider%20Information%20for%20federation.scienceforum.sc.aspx</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.scienceforum.sc/SitePages/Privacy%20Act%20Statement.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="135" width="180" xml:lang="en">https://www.scienceforum.sc/SiteAssets/biyoenformatik-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10330977650350859243, expires on Thu Apr 1 11:14:58 2027 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://federation.scienceforum.sc/Saml2/acs/post" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NIAID Science Forum Federation Gateway</ServiceName>
+ <ServiceDescription xml:lang="en">This provides access to resources shared among NIAID and its scientific collaborators at multiple institutions across international boundaries.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">National Institutes of Health</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">National Institutes of Health</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nih.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>NIAID ICER VRO Technical Support</GivenName>
+ <EmailAddress>icer-vro-support@list.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>NIAID ICER VRO Technical Support</GivenName>
+ <EmailAddress>icer-vro-support@list.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>NIAID ICER VRO Technical Support</GivenName>
+ <EmailAddress>icer-vro-support@list.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>NIAID ICER VRO Administrative Support</GivenName>
+ <EmailAddress>icer-vro-admin@list.nih.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://federation.nih.gov/FederationGateway">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NIH SP</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.nih.gov/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nih.gov/web-policies-notices</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://auth.nih.gov/images/nih-logo-thumbnail.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1537758875, expires on Thu May 20 16:31:42 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.nih.gov/affwebservices/public/saml2assertionconsumer" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://auth.nih.gov/affwebservices/public/samlcc" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://federation.nih.gov/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NIH SP</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">National Institutes of Health</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">National Institutes of Health</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nih.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>NIH Login Support</GivenName>
+ <EmailAddress>NIHLoginSupport@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>NIH Login Support</GivenName>
+ <EmailAddress>NIHLoginSupport@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>NIH Login Request</GivenName>
+ <EmailAddress>NIHLoginSupport@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>CIT OPS TOC</GivenName>
+ <EmailAddress>CITOPSTOC@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://federationstage.nih.gov/FederationGateway">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://federationstage.nih.gov/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NIH STAGE SP</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.nih.gov/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nih.gov/web-policies-notices</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://auth.nih.gov/images/nih-logo-thumbnail.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11023463827008997720, expires on Mon May 11 19:40:46 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://federationstage.nih.gov/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://federationstage.nih.gov/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://federationstage.nih.gov/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://federationstage.nih.gov/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://authproxytest.nih.gov/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NIH STAGE SP</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">National Institutes of Health</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">National Institutes of Health</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nih.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>NIH Login Support</GivenName>
+ <EmailAddress>NIHLoginSupport@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>NIH Login Support</GivenName>
+ <EmailAddress>NIHLoginSupport@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>CIT OPS TOC</GivenName>
+ <EmailAddress>CITOPSTOC@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>NIH Login Support</GivenName>
+ <EmailAddress>NIHLoginSupport@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:nih.gov">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">nih.gov</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">National Institutes of Health (NIH)</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nih.gov/web-policies-notices</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://auth.nih.gov/images/nih-logo-thumbnail.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1537758875, expires on Thu May 20 16:31:42 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1321565270952363320218126179861912749061697214198, expires on Sat Mar 19 20:25:17 2039 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://authproxy.nih.gov/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://authproxy.nih.gov/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">National Institutes of Health</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">National Institutes of Health</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nih.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>NIH Login Team</GivenName>
+ <EmailAddress>CITIAMNIHLoginTeam@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>NIH Login Support</GivenName>
+ <EmailAddress>NIHLoginSupport@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>NIH Login Support</GivenName>
+ <EmailAddress>NIHLoginSupport@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>CIT OPS TOC</GivenName>
+ <EmailAddress>CITOPSTOC@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>NIH Login Support</GivenName>
+ <EmailAddress>NIHLoginSupport@mail.nih.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Massachusetts Amherst -->
+<EntityDescriptor entityID="https://unity.rc.umass.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://unity.rc.umass.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Unity Shibboleth</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Unity Cluster at UMass Amherst</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://unity.rc.umass.edu/about.php</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://unity.rc.umass.edu/priv.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="131" width="629" xml:lang="en">https://www.umass.edu/brand/sites/default/files/UMassAmherst_horiz.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17069404394664763016, expires on Thu Jun 14 15:05:46 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unity.rc.umass.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://unity.rc.umass.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://unity.rc.umass.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://unity.rc.umass.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Unity Shibboleth</ServiceName>
+ <ServiceDescription xml:lang="en">Unity Cluster at UMass Amherst</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Massachusetts Amherst</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Massachusetts Amherst</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umass.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Griffin</GivenName>
+ <EmailAddress>jgriffin@umass.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Griffin</GivenName>
+ <EmailAddress>jgriffin@umass.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Griffin</GivenName>
+ <EmailAddress>jgriffin@umass.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://webauth.umass.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umass.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Massachusetts Amherst</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.umass.edu/it/policies/informationsecuritypolicy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="18" width="140" xml:lang="en">https://webauth.umass.edu/idp/res/images/umass_amherst.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16811425045483705400, expires on Sun Jun 8 14:41:20 2025 GMT -->
+ <ds:X509Certificate>
+MIIDCzCCAfOgAwIBAgIJAOlOLgIUKVQ4MA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV
+BAMMEXdlYmF1dGgudW1hc3MuZWR1MB4XDTE1MDYxMTE0NDEyMFoXDTI1MDYwODE0
+NDEyMFowHDEaMBgGA1UEAwwRd2ViYXV0aC51bWFzcy5lZHUwggEiMA0GCSqGSIb3
+DQEBAQUAA4IBDwAwggEKAoIBAQCoMhmyJmOehl8dQmhXu8S2rA63negrnXxeLhYQ
+s9pxn1TN0o30r3VrSTKFKlUXa0Tl3igEYs4tcwh1WDejxFVHdHEE7yu5wiuLAtNE
+FBLrh4bbcNNKUI7piHq94/pY9yBdUU1WxAPrILmdQMwP9eodqxpwQe6qyU9yXpEO
+B8g9iO+lx+9vQTZ1T1dkxSHYPepkpt9fveAw77MM7sup0XeUOC4W60gw5Ij87u70
+jeBd0lAInU7qF0hqrzBlwJwxnPJg70TFxh9Ziok5+VhoVTHKi+c/tnJVllpyr6y2
+V6qcxyL4oLCl9w3luRyNMzgDlYnaDSGBwu+VYt4q0fFiuiwjAgMBAAGjUDBOMB0G
+A1UdDgQWBBQH4v/lIJActQtxTkeSBwEc+9/tpzAfBgNVHSMEGDAWgBQH4v/lIJAc
+tQtxTkeSBwEc+9/tpzAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQBb
+qhjPIEtB4sAT+O6lbItB4lz1OSnHowfSGIlPUKwS2JSktwEYsP4Ib54inQXooIr/
+UCAwIyWGe3gN0zPDMAg8/vZcwSkW3Aw24WKbe27uNHVc4EXnghMSbwro9LagNhcm
+NPBh63Pk9Gv7Re6v8GhKdzwgcWvYMuuB0sTT4sAnnBCk5cWKbq82MjhE6j8cFtft
+3VH91yvbHwgsHYlmfHdpcDmQD562uy6rfjnLGjfHAfBStCChBaKrdeH+zTeIjay4
+aS+HBnPJbqy6mvY0QGjDBsjELvRUs2UgCgq+/SItQAK3pT2aWh5xlD29Z3vxSPZB
+boJsiAVVlmU6bfxOdpHv
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.umass.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webauth.umass.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.umass.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.umass.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://webauth.umass.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umass.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16811425045483705400, expires on Sun Jun 8 14:41:20 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.umass.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Massachusetts Amherst</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Massachusetts Amherst</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umass.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity Management</GivenName>
+ <EmailAddress>shibboleth@oit.umass.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity Management</GivenName>
+ <EmailAddress>shibboleth@oit.umass.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Identity Management</GivenName>
+ <EmailAddress>shibboleth@oit.umass.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Response Team</GivenName>
+ <EmailAddress>security@oit.umass.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Columbia University -->
+<EntityDescriptor entityID="urn:mace:incommon:columbia.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://shibboleth.columbia.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">columbia.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Columbia University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Columbia University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.columbia.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://policylibrary.columbia.edu/acceptable-usage-information-resources-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="1011" xml:lang="en">https://shibboleth.columbia.edu/idp/images/cu.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9983389435171303885549527630630326759534168312, expires on Mon Aug 22 14:53:53 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.columbia.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.columbia.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.columbia.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.columbia.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.columbia.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.columbia.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">columbia.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9983389435171303885549527630630326759534168312, expires on Mon Aug 22 14:53:53 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.columbia.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.columbia.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Columbia University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Columbia University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.columbia.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Andrew Johnston</GivenName>
+ <EmailAddress>andrew@columbia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity and Access Management Group</GivenName>
+ <EmailAddress>iam-group@columbia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Columbia Security Team</GivenName>
+ <EmailAddress>security@columbia.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>CUIT Shibboleth Support</GivenName>
+ <EmailAddress>shibboleth@columbia.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, Office of the Chancellor -->
+<EntityDescriptor entityID="https://idp-co.calstate.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">co.calstate.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, Office of the Chancellor</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SAML Identity Provider for the California State University, Office of the Chancellor.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.calstate.edu/icsuam/documents/Section8000.pdf#%5B%7B%22num%22%3A70%2C%22gen%22%3A0%7D%2C%7B%22name%22%3A%22XYZ%22%7D%2C52%2C756%2C0%5D</mdui:PrivacyStatementURL>
+ <mdui:Logo height="51" width="240" xml:lang="en">https://www2.calstate.edu/_catalogs/masterpage/assets/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17315842199254974248, expires on Thu Mar 18 16:01:23 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp-co.calstate.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp-co.calstate.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp-co.calstate.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp-co.calstate.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">co.calstate.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17315842199254974248, expires on Thu Mar 18 16:01:23 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp-co.calstate.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-co.calstate.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, Office of the Chancellor</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, Office of the Chancellor</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.calstate.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Marcus Mizushima</GivenName>
+ <EmailAddress>iamadmin@calstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mike Trullinger</GivenName>
+ <EmailAddress>iamadmin@calstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ed Hudson</GivenName>
+ <EmailAddress>infosec@calstate.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- James Madison University -->
+<EntityDescriptor entityID="urn:mace:incommon:jmu.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">jmu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">James Madison University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.jmu.edu/policies/web-privacy-statement.shtml</mdui:PrivacyStatementURL>
+ <mdui:Logo height="125" width="230" xml:lang="en">https://itfederation.jmu.edu/idp/images/James_Madison_logo_black.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14710890975898293135, expires on Sun Jun 5 15:11:14 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://itfederation.jmu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://itfederation.jmu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://itfederation.jmu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">James Madison University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">James Madison University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.jmu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Helpdesk</GivenName>
+ <EmailAddress>helpdesk@jmu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Team</GivenName>
+ <EmailAddress>it-shib-team@jmu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Team</GivenName>
+ <EmailAddress>it-shib-team@jmu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Team</GivenName>
+ <EmailAddress>it-security@jmu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Lawrence Berkeley National Laboratory -->
+<EntityDescriptor entityID="https://commons.lbl.gov/sp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://commons.lbl.gov/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Berkeley Lab Commons</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Berkeley Lab Commons is the Lawrence Berkeley National Laboratory's enterprise wiki (Confluence)</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://commons.lbl.gov/display/itdivision/Commons</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.lbl.gov/disclaimers/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="111" width="130" xml:lang="en">https://commons.lbl.gov/download/attachments/58393603/lbl-logo-scaled.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13938500746039897569, expires on Sun Nov 1 00:22:49 2020 GMT -->
+ <ds:X509Certificate>
+MIIC9zCCAd+gAwIBAgIJAMFvgJRFOa3hMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV
+BAMTEGNvbW1vbnMyLmxibC5nb3YwHhcNMTAxMTA0MDAyMjQ5WhcNMjAxMTAxMDAy
+MjQ5WjAbMRkwFwYDVQQDExBjb21tb25zMi5sYmwuZ292MIIBIjANBgkqhkiG9w0B
+AQEFAAOCAQ8AMIIBCgKCAQEAwRm530qhkb6e09J3QHgu7OuhnOeJ3VHN6DGXfmNc
+2b2/5ql79th6kpugJF5/Bxm1OYjK3bdEPGaG8yJ1utWZ14cPqFeHIh951cRkWU7L
+FJQ+yJPFKvMwmXmcGEqy1NFfFmCRQRC3WRkH7/Hp7WGRPkXWiLh4rUBPNKNzAXr4
+GhvQrQ2AN9bhChNa1zY08PvYucM2y78yQ7+FdMVXET2cDIPW6FzSBpHVBLwJ6Irh
+d2cdRUDSBVak+ZhnzpvLlf9LfsdUftHNyak6wCjnK8RjaTwFYrBGUZCE8BcD/yV1
+DGlpBhVNEq9e2EoKf2LBfwyDaMIZ72Eeu0mBdFZQjpWKWQIDAQABoz4wPDAbBgNV
+HREEFDASghBjb21tb25zMi5sYmwuZ292MB0GA1UdDgQWBBQd8cXLi8vWArhLTP46
+W9mLkn2wtTANBgkqhkiG9w0BAQUFAAOCAQEAVKXVe1GfD2rFtVhgA4rveGs6uwqs
+8O0JGBGvmd9FYVjaRQDaOTvqjiszasu+UWi2vFV5EGZxaqTYqjJ4Lhp2wUj2QO5i
+q7EJsdUsN4tLJITWjslojXyRJSWEpZLtV8zwfK+jQSL3x83Hw0odz4rFm0dOSpeP
+YJpo1KfvO/6SkHOHgNILhH7hgl+a0GxaeLslNfdKBrhShuO2biVvr7Z4gJvG+V0A
+8zm3+1KQvoPGwJQpRH1w9JWsereq+l6RO8mL07n3KOf+R18aD1z27hgrB2xnXRvJ
+y5ro/o5ZL+nrpKyCIDL0mIb1ZgA7Zu+R0m1wrHPSQrQjjw1R7aA/7XL8jg==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://commons.lbl.gov/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://commons.lbl.gov/Shibboleth.sso/SAML2/ECP" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Berkeley Lab Commons</ServiceName>
+ <ServiceDescription xml:lang="en">Berkeley Lab Commons is the Lawrence Berkeley National Laboratory's enterprise wiki (Confluence)</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lbl.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>LBL IT IdM Team</GivenName>
+ <EmailAddress>idm@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>LBL Collaboration Services Group</GivenName>
+ <EmailAddress>collaborate@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LBL Cybersecurity</GivenName>
+ <EmailAddress>security@lbl.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://identity.lbl.gov/prod/identitylinking">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://identity.lbl.gov/linking/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LBL Identity Linking Service</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used to link LBL identities to federated identities, including InCommon entities and social providers.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://commons.lbl.gov/x/WRmiBw</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.lbl.gov/disclaimers/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="111" width="130" xml:lang="en">https://commons.lbl.gov/download/attachments/58393603/lbl-logo-scaled.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11538472884721321711, expires on Fri May 10 12:18:35 2019 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://identity.lbl.gov/linking/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://identity.lbl.gov/linking/auth/callback/saml" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">LBL Identity Linking Service</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used to link LBL identities to federated identities, including InCommon entities and social providers.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lbl.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>LBL Identity Management Team</GivenName>
+ <EmailAddress>idm@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Help Desk</GivenName>
+ <EmailAddress>help@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LBL Cybersecurity Group</GivenName>
+ <EmailAddress>security@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>LBL Identity Management Team</GivenName>
+ <EmailAddress>idm@lbl.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://identity.lbl.gov/prod/tokenmanagement">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://identity.lbl.gov/otptokens/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LBL MFA Token Management Application</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Users of LBL's systems that require multifactor authentication use this application to manage their MFA tokens.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://commons.lbl.gov/x/8ARmBQ</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.lbl.gov/disclaimers/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="111" width="130" xml:lang="en">https://commons.lbl.gov/download/attachments/58393603/lbl-logo-scaled.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11538472884721321711, expires on Fri May 10 12:18:35 2019 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://identity.lbl.gov/otptokens/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://identity.lbl.gov/otptokens-staging/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">LBL MFA Token Management Application</ServiceName>
+ <ServiceDescription xml:lang="en">Users of LBL's systems that require multifactor authentication use this application to manage their MFA tokens.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lbl.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>LBL Identity Management Team</GivenName>
+ <EmailAddress>idm@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LBL IT Help Desk</GivenName>
+ <EmailAddress>help@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LBL Cybersecurity Group</GivenName>
+ <EmailAddress>security@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>LBL Identity Management Team</GivenName>
+ <EmailAddress>idm@lbl.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://lists.lbl.gov/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lists.lbl.gov/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LBL Lists</mdui:DisplayName>
+ <mdui:Description xml:lang="en">LBL Self-Service mailing list manager</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://commons.lbl.gov/x/TQFdAw</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.lbl.gov/disclaimers/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="111" width="130" xml:lang="en">https://commons.lbl.gov/download/attachments/58393603/lbl-logo-scaled.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12629649348324451326, expires on Fri Dec 16 04:22:37 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lists.lbl.gov/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lists.lbl.gov/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lists.lbl.gov/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lists.lbl.gov/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">LBL Lists</ServiceName>
+ <ServiceDescription xml:lang="en">LBL Self-Service mailing list manager</ServiceDescription>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lbl.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>LBL Collaboration Services Group</GivenName>
+ <EmailAddress>collaborate@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>LBL Listmaster</GivenName>
+ <EmailAddress>listmaster@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LBL IT Help Desk</GivenName>
+ <EmailAddress>help@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LBL Cybersecurity</GivenName>
+ <EmailAddress>security@lbl.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://lists.test.lbl.gov/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lists.test2.lbl.gov/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LBL Lists Test Server</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://commons.lbl.gov/x/TQFdAw</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.lbl.gov/disclaimers/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="111" width="130" xml:lang="en">https://commons.lbl.gov/download/attachments/58393603/lbl-logo-scaled.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11487411857409621370, expires on Sat Feb 14 22:43:39 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12629649348324451326, expires on Fri Dec 16 04:22:37 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lists.test2.lbl.gov/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lists.test2.lbl.gov/Shibboleth.sso/SAML2/ECP" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lists.test.lbl.gov/Shibboleth.sso/SAML2/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lists.test.lbl.gov/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">LBL Lists Test Server</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lbl.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>LBL Listmaster</GivenName>
+ <EmailAddress>listmaster@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LBL IT Help Desk</GivenName>
+ <EmailAddress>help@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LBL Cybersecurity</GivenName>
+ <EmailAddress>security@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>LBL IT IdM Team</GivenName>
+ <EmailAddress>idm@lbl.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sjha2.dev.lbl.gov/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sjha2.dev.lbl.gov/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SJHA Dev Site</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SJHA with Cirrus Integration Development Site</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.lbl.gov/disclaimers/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="111" width="130" xml:lang="en">https://commons.lbl.gov/download/attachments/58393603/lbl-logo-scaled.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15083239059671488243, expires on Thu May 1 17:26:48 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sjha2.dev.lbl.gov/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SJHA Dev Site</ServiceName>
+ <ServiceDescription xml:lang="en">SJHA with Cirrus Integration Development Site</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lbl.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>LBL IT Systems and Middleware Support</GivenName>
+ <EmailAddress>sams@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Help Desk</GivenName>
+ <EmailAddress>help@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Identity Management Team</GivenName>
+ <EmailAddress>idm@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LBL Cybersecurity</GivenName>
+ <EmailAddress>security@lbl.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sjha.qa.lbl.gov/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sjha.qa.lbl.gov/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SJHA QA Site</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SJHA with Cirrus Integration QA Site </mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.lbl.gov/disclaimers/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="111" width="130" xml:lang="en">https://commons.lbl.gov/download/attachments/58393603/lbl-logo-scaled.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16059976907096021309, expires on Mon Jul 7 20:24:30 2025 GMT -->
+ <ds:X509Certificate>
+MIIC8TCCAdmgAwIBAgIJAN7gf+hYb1k9MA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMTDmJhbHRpYy5sYmwuZ292MB4XDTE1MDcxMDIwMjQzMFoXDTI1MDcwNzIwMjQz
+MFowGTEXMBUGA1UEAxMOYmFsdGljLmxibC5nb3YwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQC1kxHPXU+zgANNvtHXP0gyQb38MkSPagEoggV7uEVWlXQR
+Ibjilu9Bq2ObPTt8WTXq3vii3i4oqgkzQUGS02JyreqGmQoCfdtsNE2HvIyJqGU+
+LjNIbNSGix8WEbPMtHparBpb68ZqVyuFeo4W8ibdZSfPYXftLSSA9rYiwI9ckwMc
+ENh4dfDLPPpdD4UDdeMP8gJJYSDq7qDcsODBwcvKdd24n3AkE75UNdYJGeVRgK7g
+SV5ylAqb9UYAGeA+pc23B3H2qGqiZ53Sey3NqNY06TNCZ/eYHB1CSTUI2GePbpTp
+PQ5HjZbSB7QBNf+EAqtgyaMaHhXxGY4N4UzLcLP9AgMBAAGjPDA6MBkGA1UdEQQS
+MBCCDmJhbHRpYy5sYmwuZ292MB0GA1UdDgQWBBRvLQ6fzSWLfXSE8WuZ9+9DL2IC
+dDANBgkqhkiG9w0BAQUFAAOCAQEAkqNu9fKKGpBEqmZhHEA4skHWXFdbms/pleT+
+qADyjK77rEJjakKqg4X2PUf8aBtJr1CmvrqnpeJ6W8WWfrd+G//zn9BzHHW/eraR
+okPjhXMfeDUTeSkmRwJN2Mw6U5l813LlUjJhxsn5C813NxAxQy3jX5PHFGtP6tDq
+KYOym6YcsAh4N8KJv2EZ6RWxYbVCdcVRLQLo/7bNHRGxlsFjqJ2p7vxlp0VAEDg1
+ucw5qXHfOPNhi5M5gpRSMUCl8sFUzE9sneON0T4Vg6xoKXQMHrebPHuLvoT+ylbu
+VrBv/ZiJV2rzub+w/8xP/9u3xrXSmnB++zy9V/Oy28l54KoN6w==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sjha.qa.lbl.gov/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SJHA QA Site</ServiceName>
+ <ServiceDescription xml:lang="en">SJHA with Cirrus Integration QA Site </ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lbl.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>LBL IT Systems and Middleware Support</GivenName>
+ <EmailAddress>sams@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Help Desk</GivenName>
+ <EmailAddress>help@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Identity Management Team</GivenName>
+ <EmailAddress>idm@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LBL Cybersecurity</GivenName>
+ <EmailAddress>security@lbl.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:lbl.gov">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lbl.gov</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Lawrence Berkeley National Laboratory</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://commons.lbl.gov/display/IDMgmt/Web+Single+Sign+On+at+LBNL</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.lbl.gov/disclaimers/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="111" width="130" xml:lang="en">https://commons.lbl.gov/download/attachments/58393603/lbl-logo-scaled.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 511780972927817123465789827277952086187216384955, expires on Tue Oct 31 23:36:25 2028 GMT -->
+ <ds:X509Certificate>
+MIIDHzCCAgegAwIBAgIUWaUNclZjoQfm4ab+ttJmW3Oqs7swDQYJKoZIhvcNAQEF
+BQAwGDEWMBQGA1UEAxMNbG9naW4ubGJsLmdvdjAeFw0wODEwMzEyMzM2MjVaFw0y
+ODEwMzEyMzM2MjVaMBgxFjAUBgNVBAMTDWxvZ2luLmxibC5nb3YwggEiMA0GCSqG
+SIb3DQEBAQUAA4IBDwAwggEKAoIBAQCUWmS996rDiCDoR0+O6MM5ufJlH6JYK9vv
+1AHR29TrZXIv4xkddf8KdTEgXfS7nimbrqKO+rNnt4dvYGfG/BH2jyFhZH48EZMA
+7xzBqp9OTr4uG0J1b286ychnlZAkgqtich4FCQOkhSKWbt9XSudcsWNqSG/VRN9r
+WfqI16q74IFLm8ATUJDkTn+sG29rJcDTqADDlbA8gP3qBHXrPypfmEZChCnEpoUJ
+82w8KjwbyrRIUtOnFBkZsj8XD1Hlv6vASHXxgc7nAYP9zxXSlBFfg1oSMuyWZSXC
+vRmXb32H9I8wO+/8KvzmndzZzU1yw+KZcaMhxfTFUAwxfCDfHyZjAgMBAAGjYTBf
+MD4GA1UdEQQ3MDWCDWxvZ2luLmxibC5nb3aGJGh0dHBzOi8vbG9naW4ubGJsLmdv
+di9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQUm7bprLeALfsJXQkGskKJIbn7o00w
+DQYJKoZIhvcNAQEFBQADggEBAC7pPx/biv1uaWXHd77M0HS03VP5oazpjD8yt9TO
+kFST/Q3Jtsg3anxCfqaP/R2vcad8H722vFDZwGflImbZg3DNhF6Mj/pt3CuGpnIg
+7+6mXRTDNzaTKya4wX8RZdNMZ129n4LO+IVgjXZBBpGyNkPbu5D1dXuvsOdWH81B
+//GRSpTRrm0DB2rN6refGeRfHB7ZMVeWQVJFwr+51X+6OitKHLG6/xPqURI+x3mA
+jMIMRq4HkXJG3HRnSAxxmy5CPoslaIvJEXvV1WGUe/1jSqCKfdVSf1SeN2KqfQyj
+XHl1TMy82/4cFm7JOZXiJx32LIlICdpcBIGU7dFwHmiVYJc=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.lbl.gov/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.lbl.gov/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.lbl.gov/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.lbl.gov/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lawrence Berkeley National Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lbl.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Greg Haverkamp</GivenName>
+ <EmailAddress>gahaverkamp@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity Management Team</GivenName>
+ <EmailAddress>idm@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Help Desk</GivenName>
+ <EmailAddress>help@lb.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LBL Cybersecurity</GivenName>
+ <EmailAddress>security@lbl.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Moss Landing Marine Laboratories -->
+<EntityDescriptor entityID="urn:mace:incommon:mlml.calstate.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mlml.calstate.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Moss Landing Marine Laboratories</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.calstate.edu/icsuam/documents/Section8000.pdf#%5B%7B%22num%22%3A70%2C%22gen%22%3A0%7D%2C%7B%22name%22%3A%22XYZ%22%7D%2C52%2C756%2C0%5D</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="100" xml:lang="en">https://www.mlml.calstate.edu/wp-content/uploads/2017/04/logo_100.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15126788694846121591, expires on Fri Jul 15 16:21:17 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.mlml.calstate.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mlml.calstate.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.mlml.calstate.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.mlml.calstate.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.mlml.calstate.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.mlml.calstate.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mlml.calstate.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15126788694846121591, expires on Fri Jul 15 16:21:17 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.mlml.calstate.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mlml.calstate.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Moss Landing Marine Laboratories</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Moss Landing Marine Laboratories</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.mlml.calstate.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Marcus M. Mizushima</GivenName>
+ <EmailAddress>iamadmin@calstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rhett Frantz</GivenName>
+ <EmailAddress>rfrantz@mlml.calstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Hien Huynh</GivenName>
+ <EmailAddress>security@sjsu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Virginia Commonwealth University -->
+<EntityDescriptor entityID="https://shibboleth.vcu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">vcu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Virginia Commonwealth University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://ts.vcu.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.vcu.edu/privacy-statement/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="92" width="296" xml:lang="en">https://branding.vcu.edu/bar/academic/images/vcu-seal--gold.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14741319770481858330, expires on Fri Sep 30 15:26:38 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 658579317888223075802183556032738921266368153443, expires on Sun Mar 8 15:00:44 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.vcu.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.vcu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.vcu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.vcu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">vcu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14741319770481858330, expires on Fri Sep 30 15:26:38 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 658579317888223075802183556032738921266368153443, expires on Sun Mar 8 15:00:44 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.vcu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Virginia Commonwealth University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Virginia Commonwealth University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.vcu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>VCU Shibboleth</GivenName>
+ <EmailAddress>shibboleth@vcu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>VCU Shibboleth</GivenName>
+ <EmailAddress>shibboleth@vcu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>VCU Shibboleth</GivenName>
+ <EmailAddress>shibboleth@vcu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>VCU Infosec</GivenName>
+ <EmailAddress>infosec@vcu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Virginia Polytechnic Institute and State University -->
+<EntityDescriptor entityID="https://code.vt.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://code.vt.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Virginia Tech Source Code Hosting</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Source code hosting and software development tools for Hokies and their collaborators.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://code.vt.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://vt.edu/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="54" width="102" xml:lang="en">https://www.assets.cms.vt.edu/images/Standard/Standard_RGB.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17251758137884419077, expires on Thu Mar 27 20:05:01 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://code.vt.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://code.vt.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://code.vt.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Virginia Tech Source Code Hosting</ServiceName>
+ <ServiceDescription xml:lang="en">Source code hosting and software development tools for Hokies and their collaborators.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Virginia Polytechnic Institute and State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Virginia Polytechnic Institute and State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.vt.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>David Hawes</GivenName>
+ <EmailAddress>dhawes@vt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>David Hawes</GivenName>
+ <EmailAddress>dhawes@vt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ryan McDaniel</GivenName>
+ <EmailAddress>rmcdaniel@vt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Marvin Addison</GivenName>
+ <EmailAddress>serac@vt.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:vt.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/assurance/bronze</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.vt.edu/support.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">vt.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Virginia Tech</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Virginia Polytechnic Institute and State University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://vt.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://vt.edu/about/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="54" width="102" xml:lang="en">https://www.assets.cms.vt.edu/images/Standard/Standard_RGB.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15086888514837038015, expires on Thu May 14 12:36:52 2020 GMT -->
+ <ds:X509Certificate>
+MIIEETCCAvmgAwIBAgIJANFfZSukyEO/MA0GCSqGSIb3DQEBBQUAMIGeMQswCQYD
+VQQGEwJVUzERMA8GA1UECAwIVmlyZ2luaWExEzARBgNVBAcMCkJsYWNrc2J1cmcx
+PDA6BgNVBAoMM1ZpcmdpbmlhIFBvbHl0ZWNobmljIEluc3RpdHV0ZSBhbmQgU3Rh
+dGUgVW5pdmVyc2l0eTETMBEGA1UECwwKTWlkZGxld2FyZTEUMBIGA1UEAwwLc2hp
+Yi52dC5lZHUwHhcNMTUwNTE1MTIzNjUyWhcNMjAwNTE0MTIzNjUyWjCBnjELMAkG
+A1UEBhMCVVMxETAPBgNVBAgMCFZpcmdpbmlhMRMwEQYDVQQHDApCbGFja3NidXJn
+MTwwOgYDVQQKDDNWaXJnaW5pYSBQb2x5dGVjaG5pYyBJbnN0aXR1dGUgYW5kIFN0
+YXRlIFVuaXZlcnNpdHkxEzARBgNVBAsMCk1pZGRsZXdhcmUxFDASBgNVBAMMC3No
+aWIudnQuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA7NT6bMir
+XETWSQhI1Fr1Ppva6E/ZUfAlV0RLQ78cgGW5//JNoER3TwxpSVFkYupPOoatnC3k
++6cfJmuib7JjtFizyqgXLNrLlEembZbECXHGR/+P9oUEWQhrAPjRz2ZugWpQRiFD
+dddD4uaJhigkeayFe7VNERg8QTaS+avQisuMOnHlnmpXOQi19PdY7+5auHwIgQ0y
+eSUKFaIwpwL8wx93r5JtHvIajJ4RjmWgtN1o4v0YR3RX3I4lspEXlmIPlOBv8d6k
+wicOB2WszBrVw6zTYEdXQ9j1IRKXqwmWCCYREFnHYzGjhcpptZPEYJJX90ke6ffF
+defssBhk/oc2bwIDAQABo1AwTjAdBgNVHQ4EFgQUzFhBa3OBEjb9liQHKAuWoUwo
+5McwHwYDVR0jBBgwFoAUzFhBa3OBEjb9liQHKAuWoUwo5McwDAYDVR0TBAUwAwEB
+/zANBgkqhkiG9w0BAQUFAAOCAQEARVsLDVRz6xPx2hzIgNy7ro49tLERHmGyzK14
+AkezGKhJA3q8371FgUpSTFu0pAcl6X6v2xJRb4CFhRxIpe+/xbEP2CznPUKybE3A
+I5NINQy6jlWXad5fYRohDI4m9ON39BO3MEIHKLm2FLHUXE0NmEWoyNeg+4cjZMK/
+eTd7/azVGGJNAVKLfNaHHm1K1MVWtTK1Jt5QuG0iy2PZnKQOJ4c7RUrAHOqfg8TE
+6Cq66ObNkIKPmivcU0uUy27IT9eM9Y/WyNfYY3isQqvLareyEiHQTeZniIwlq734
+QYvy/+Jxoro0d/n+VkiOjSlrLIrprl9zVmvWjjPvpth13a2m1Q==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.vt.edu:10443/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.vt.edu:10443/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.vt.edu/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.vt.edu/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.vt.edu:10443/profile/SAML2/SOAP/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.vt.edu/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.vt.edu/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.vt.edu/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.vt.edu/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.vt.edu:10443/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">vt.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13454925679060377742, expires on Thu May 14 14:42:18 2020 GMT -->
+ <ds:X509Certificate>
+MIIEETCCAvmgAwIBAgIJALq5f54rrOCOMA0GCSqGSIb3DQEBBQUAMIGeMQswCQYD
+VQQGEwJVUzERMA8GA1UECAwIVmlyZ2luaWExEzARBgNVBAcMCkJsYWNrc2J1cmcx
+PDA6BgNVBAoMM1ZpcmdpbmlhIFBvbHl0ZWNobmljIEluc3RpdHV0ZSBhbmQgU3Rh
+dGUgVW5pdmVyc2l0eTETMBEGA1UECwwKTWlkZGxld2FyZTEUMBIGA1UEAwwLc2hp
+Yi52dC5lZHUwHhcNMTUwNTE1MTQ0MjE4WhcNMjAwNTE0MTQ0MjE4WjCBnjELMAkG
+A1UEBhMCVVMxETAPBgNVBAgMCFZpcmdpbmlhMRMwEQYDVQQHDApCbGFja3NidXJn
+MTwwOgYDVQQKDDNWaXJnaW5pYSBQb2x5dGVjaG5pYyBJbnN0aXR1dGUgYW5kIFN0
+YXRlIFVuaXZlcnNpdHkxEzARBgNVBAsMCk1pZGRsZXdhcmUxFDASBgNVBAMMC3No
+aWIudnQuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAznIn2tzm
+1KG1C6RkcrNhvmDb/LOpbviDkMAo/8p9rLvcOusFwMwOzcUO7SZt5s8wWG4R2ra1
+mFueJ+C3u9kjry/38asr5TLuOCpc0/CXIINXrRFV9yfL57i5HlloQh6JqLG0XKjS
+FFPF96Aorsnwhr4QFD1ETaRzB/i4q+ACiX5tthEvQOSNUvN/ZhJM6Xgsp4FR9PdR
+rLEi2WfW/Y1uuUqWooAlpeUjFrVesa2bZo10xu3K4ydeH8mj6d+YjYxz9UZ+PTJ7
+GmC7TWwes+n5Ew8c2V8dBJH/atgPCJDqv7XNeNvYyqpOO4iWxftVk7shWjzCAawL
+jaMOrxbQipLImQIDAQABo1AwTjAdBgNVHQ4EFgQUUdtot3rbZJPARIqWDA3NFsK6
+rHMwHwYDVR0jBBgwFoAUUdtot3rbZJPARIqWDA3NFsK6rHMwDAYDVR0TBAUwAwEB
+/zANBgkqhkiG9w0BAQUFAAOCAQEALqSmtVWS8MZIAekwDIIV8/MX16XbJIf4qj/Z
+NmM+UXtAzOZ6Tg9ZnWOmAI138wILyQ1sBLJDBreOP0dvHLtI7GamMIlpJ+EjQ/mI
+o9/2ceLTKyE8RDa3Ge2Fa37cN70psum+aSIqWW8AD4t86H0omQHJ5b4JSDTGK92X
+rDvxTL8YHBDra9btpkTgpLg4FbjfBUCBOwR4ufHMFxqvPhCf4Bd4PaG2z+cYufj2
+Nx4mXDispAMSseaMORrEqkmePOfKS2dKO0CsEtfKtELhQ7FrXTVW8O5nm7+9ej+F
++jZpcemMJOiPy8U9eb3yq+vRduFXh4Ddw6yyhWUWPuyVdZcrGw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.vt.edu:10443/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Virginia Polytechnic Institute and State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Virginia Polytechnic Institute and State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.vt.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Marvin Addison</GivenName>
+ <EmailAddress>shib-admin@vt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ryan McDaniel</GivenName>
+ <EmailAddress>rmcdaniel@vt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Marvin Addison</GivenName>
+ <EmailAddress>shib-admin@vt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>4Help</GivenName>
+ <EmailAddress>4help@vt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Security Office</GivenName>
+ <EmailAddress>itso@vt.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Old Dominion University -->
+<EntityDescriptor entityID="urn:mace:incommon:odu.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://shibboleth.odu.edu/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">odu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Old Dominion University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Old Dominion University Monarch-Key</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://shibboleth.odu.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.odu.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="128" xml:lang="en">https://shibboleth.odu.edu/images/mkwl-logo-sm.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9417455314448156661, expires on Fri Oct 8 14:33:04 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.odu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.odu.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.odu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.odu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.odu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.odu.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">odu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9417455314448156661, expires on Fri Oct 8 14:33:04 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.odu.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Old Dominion University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Old Dominion University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://web.odu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Todd Dergenski</GivenName>
+ <EmailAddress>tdergens@odu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Todd Dergenski</GivenName>
+ <EmailAddress>tdergens@odu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Technical Support Center</GivenName>
+ <EmailAddress>itshelp@odu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS Security</GivenName>
+ <EmailAddress>abuse@odu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- SumTotal Systems, Inc. -->
+<EntityDescriptor entityID="https://myperformanceucsdhealth.stage.sumtotal.host/Broker:ucsd">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal Talent UCSD Health</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx 3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB 0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5 SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok +mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3 fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2 RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myperformanceucsdhealth.stage.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fmyperformanceucsdhealth.stage.sumtotal.host%2fCore%2f&amp;whr=ucsd" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>lmsproblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>lmsproblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>lmsproblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.stage.sumtotal.host/Broker:lbnl">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Stage LBNL SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="2" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.stage.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.stage.sumtotal.host%2fCore%2f&amp;whr=lbnl" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.stage.sumtotal.host/Broker:ucanr">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal UCANR Stage SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.stage.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.stage.sumtotal.host%2fCore%2f&amp;whr=ucanr" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>lmsproblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>lmsproblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>lmsproblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.stage.sumtotal.host/Broker:ucb">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Stage UCB SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.stage.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.stage.sumtotal.host%2fCore%2f&amp;whr=ucb" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.stage.sumtotal.host/Broker:ucd">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Stage UCD SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.stage.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.stage.sumtotal.host%2fCore%2f&amp;whr=ucd" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.stage.sumtotal.host/Broker:uci">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Stage UCI SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.stage.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.stage.sumtotal.host%2fCore%2f&amp;whr=uci" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.stage.sumtotal.host/Broker:ucla">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Stage UCLA SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.stage.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.stage.sumtotal.host%2fCore%2f&amp;whr=ucla" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.stage.sumtotal.host/Broker:ucm">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Stage UCM SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.stage.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.stage.sumtotal.host%2fCore%2f&amp;whr=ucm" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.stage.sumtotal.host/Broker-ucop">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Stage UCOP SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.stage.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.stage.sumtotal.host%2fCore%2f&amp;whr=ucop" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.stage.sumtotal.host/Broker:ucr">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Stage UCR SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.stage.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.stage.sumtotal.host%2fCore%2f&amp;whr=ucr" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.stage.sumtotal.host/Broker:ucsb">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Stage UCSB SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.stage.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.stage.sumtotal.host%2fCore%2f&amp;whr=ucsb" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.stage.sumtotal.host/Broker:ucsc">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Stage UCSC SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.stage.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.stage.sumtotal.host%2fCore%2f&amp;whr=ucsc" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.stage.sumtotal.host/Broker:ucsd">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Stage UCSD SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.stage.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.stage.sumtotal.host%2fCore%2f&amp;whr=ucsd" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.stage.sumtotal.host/Broker:ucsf">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Stage UCSF SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.stage.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.stage.sumtotal.host%2fCore%2f&amp;whr=ucsf" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.sumtotal.host/Broker:lbnl">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Live lbnl SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.sumtotal.host%2fCore%2f&amp;whr=lbnl" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.sumtotal.host/Broker:ucb">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Live ucb SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.sumtotal.host%2fCore%2f&amp;whr=ucb" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.sumtotal.host/Broker:ucd">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Live ucd SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.sumtotal.host%2fCore%2f&amp;whr=ucd" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.sumtotal.host/Broker:uci">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Live uci SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.sumtotal.host%2fCore%2f&amp;whr=uci" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.sumtotal.host/Broker:ucla">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Live ucla SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.sumtotal.host%2fCore%2f&amp;whr=ucla" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.sumtotal.host/Broker:ucm">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Live ucm SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.sumtotal.host%2fCore%2f&amp;whr=ucm" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.sumtotal.host/Broker:ucop">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Live ucop SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.sumtotal.host%2fCore%2f&amp;whr=ucop" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.sumtotal.host/Broker:ucr">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Live ucr SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.sumtotal.host%2fCore%2f&amp;whr=ucr" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.sumtotal.host/Broker:ucsb">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Live ucsb SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="5" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.sumtotal.host%2fCore%2f&amp;whr=ucsb" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.sumtotal.host/Broker:ucsc">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">the UC Learning Center</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.sumtotal.host%2fCore%2f&amp;whr=ucsc" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.sumtotal.host/Broker:ucsd">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Live ucsd SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.sumtotal.host%2fCore%2f&amp;whr=ucsd" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uc.sumtotal.host/Broker:ucsf">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SumTotal 2017 Live ucsf SP Metadata</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skillsoft.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="3" width="6" xml:lang="en">https://uc.sumtotal.host/Core/logonlogo.sumttheme?img&amp;themekey=UCtheme&amp;v=-318010420</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -56146097664138050984977536444321490037, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQ1cKnqScUK7JN5vGOy5gbizANBgkqhkiG9w0BAQsFADAVMRMwEQYDVQQD
+EwpQb3J0YWxTSEEyMB4XDTE1MDMyMzIxMjcxMFoXDTM5MTIzMTIzNTk1OVowFTETMBEGA1UEAxMK
+UG9ydGFsU0hBMjCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAObY5TXO/rfmFJfsWpTx
+3nWWE00zpEKTZEAJt3GbIHXJR37WnArZQrzK1v5cNmgbG5tT7ocdwO3jcyaGmFU9xJP7qQ+D3jcB
+0NHwtlCYKYGf0OoBzAy8knOj1i5T+r47Pf+gTB6bFLejMj9bGaSqwXoOUQsincAtgK71tTl3+En5
+SHO0pPSFapsKGDB/r5zsqVJFFnQb+J7paaZimmNC2cGHOUwKl5PuiUxOgbIl3ylLKD1a99lXvqok
++mfFvuy2j28o71TQzji6PHWglFez2hKhbpJmfGlisAmzMoHaxrW+aYV0VxVK3VAI3Tw3BEoJumyC
+erHGm0T2B6wneoVL/HMCAwEAAaNKMEgwRgYDVR0BBD8wPYAQTPsccjUBh0yEk+IFLXV4D6EXMBUx
+EzARBgNVBAMTClBvcnRhbFNIQTKCENXCp6knFCuyTebxjsuYG4swDQYJKoZIhvcNAQELBQADggEB
+ANBd/SMGvxt0BkBKHoGWbB7EIoijo64o+VD8UcSaz/cIxyUDVPDaeJOqqjH9V0GEVaRisSErhAe3
+fqKjLYgPtRZMUmL+LA5hamaiVR2WjJr3eYSASpZjaQldi5ryzh23Dc+JvOeiGARQngQxPP6sSDL2
+RRIM1qtC5sm+BfoOSfxo7dPVUnAtxN1phyfAb55RSpSAmaVbYqHOEBGe4PNNHGU3Y77FtLVlfkdE
+P4bB7wXp+CShLHlYnohPsVk51SnMmImwqVXRr6fFwQ8VDxi0UHZCreODXdkaCwBfZuUyUIelJ/lP
+KH48RKkd73/Fp+ddofs0hBZTTHrPBCtCohHbvKs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uc.sumtotal.host/Broker/Token/generictokenhandler.ashx?wtrealm=https%3a%2f%2fuc.sumtotal.host%2fCore%2f&amp;whr=ucsf" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SumTotal Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SumTotal Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sumtotalsystems.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Systemwide LMS</GivenName>
+ <EmailAddress>LMSProblem-l@listserv.ucop.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Michigan -->
+<EntityDescriptor entityID="https://comanage.osris.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://comanage.osris.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">OSiRIS Portal</mdui:DisplayName>
+ <mdui:Description xml:lang="en">OSiRIS project authentication portal. OSiRIS is a distributed research data storage platform.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.osris.org</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.osris.org/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="115" width="84" xml:lang="en">https://www.osris.org/assets/images/logos/logo_notext_transparent.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12486491801895710085, expires on Mon Oct 5 14:59:30 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://comanage.osris.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://comanage.osris.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://comanage.osris.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://comanage.osris.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">OSiRIS Portal</ServiceName>
+ <ServiceDescription xml:lang="en">OSiRIS project authentication portal. OSiRIS is a distributed research data storage platform.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Michigan</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Michigan</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umich.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Ben Meekhof</GivenName>
+ <EmailAddress>bmeekhof@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Ben Meekhof</GivenName>
+ <EmailAddress>bmeekhof@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS Security</GivenName>
+ <EmailAddress>security@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shawn McKee</GivenName>
+ <EmailAddress>smckee@umich.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://connect.arc-ts.umich.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://connect.arc-ts.umich.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://connect.arc-ts.umich.edu/Shibboleth.sso/TimeSyncTokenLogin" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ARC Connect</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ARC Connect allows researchers to access the computing power of U-M High Performance Computing (HPC) resources interactively and graphically using a web browser or a Virtual Network Computing (VNC) client. This graphical user interface enables easy use of desktop versions of popular software programs like Matlab and R, backed by the high performance and large memory capabilities of the Univeristy of Michigan clusters.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://connect.arc-ts.umich.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://arc-ts.umich.edu/arc-connect/privacy-notice/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://pbs.twimg.com/profile_images/577486649929543680/6S1x2E-J_400x400.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15641297891222921240, expires on Fri Apr 10 19:49:26 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://connect.arc-ts.umich.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://connect.arc-ts.umich.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://connect.arc-ts.umich.edu/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ARC Connect</ServiceName>
+ <ServiceDescription xml:lang="en">ARC Connect allows researchers to access the computing power of U-M High Performance Computing (HPC) resources interactively and graphically using a web browser or a Virtual Network Computing (VNC) client. This graphical user interface enables easy use of desktop versions of popular software programs like Matlab and R, backed by the high performance and large memory capabilities of the Univeristy of Michigan clusters.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Michigan</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Michigan</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umich.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Flux Support Staff</GivenName>
+ <EmailAddress>flux-support-staff@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>ARC-TS</GivenName>
+ <EmailAddress>hpc-support@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS Security</GivenName>
+ <EmailAddress>security@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Flux Working Group</GivenName>
+ <EmailAddress>flux-support-wg@umich.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://fulcrum.org/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fulcrum Scholarly Publishing Platform</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Fulcrum is a publishing platform by the University of Michigan Library and Press that provides hosting for partner scholarly publishers.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.fulcrum.org/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.fulcrum.org/terms/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="559" xml:lang="en">https://www.fulcrum.org/img/fulcrum-logo-shibboleth.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12591383546309539454, expires on Sun Jun 11 22:04:26 2028 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://heliotrope-testing.hydra.lib.umich.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://heliotrope-preview.hydra.lib.umich.edu/Shibboleth.sso/SAML2/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://heliotrope-staging.hydra.lib.umich.edu/Shibboleth.sso/SAML2/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://swapmeet.www.lib.umich.edu/Shibboleth.sso/SAML2/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.fulcrum.org/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Fulcrum Scholarly Publishing Platform</ServiceName>
+ <ServiceDescription xml:lang="en">Fulcrum is a publishing platform by the University of Michigan Library and Press that provides hosting for partner scholarly publishers.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Michigan</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Michigan</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umich.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Fulcrum Support</GivenName>
+ <EmailAddress>fulcrum-dev@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>U-M Library IT Architecture and Engineering</GivenName>
+ <EmailAddress>lit-ae-systems@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>U-M Library IT Architecture and Engineering</GivenName>
+ <EmailAddress>lit-ae-systems@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Fulcrum Support</GivenName>
+ <EmailAddress>fulcrum-dev@umich.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://michrapps.med.umich.edu/Shibboleth.sso/Metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://michrapps.med.umich.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">TATUM</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This application allows clinical researchers to create randomization lists for trials.
+</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://spg.umich.edu/policy/601.11</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="100" xml:lang="en">https://static1.squarespace.com/static/55ba3377e4b065cd994470b8/t/5613fa8ce4b08b4affbda5da/1535638427328/?format=1500w</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10346531458425093911, expires on Sat Jul 29 18:35:00 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://michrapps.med.umich.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://michrapps.med.umich.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://michrapps.med.umich.edu/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://michrapps.med.umich.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://michrapps.med.umich.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://michrapps.med.umich.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://michrapps.med.umich.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Michigan</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Michigan</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umich.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Domenick Silvio</GivenName>
+ <EmailAddress>silviod@med.umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Domenick Silvio</GivenName>
+ <EmailAddress>silviod@med.umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Domenick Silvio</GivenName>
+ <EmailAddress>silviod@med.umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Domenick Silvio</GivenName>
+ <EmailAddress>silviod@med.umich.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://shibboleth.umich.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.its.umich.edu/help/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umich.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umd.umich.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">flint.umich.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">annarbor.umich.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">dearborn.umich.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Michigan</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The University of Michigan</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.umich.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://documentation.its.umich.edu/node/262/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="300" xml:lang="en">https://shibboleth.umich.edu/images/StackedBlockM-InC.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 941551153206972237757484369414477723939724313907, expires on Sun Mar 25 14:37:01 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.umich.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.umich.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.umich.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.umich.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.umich.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.umich.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.umich.edu/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umich.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umd.umich.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">flint.umich.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">annarbor.umich.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">dearborn.umich.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 941551153206972237757484369414477723939724313907, expires on Sun Mar 25 14:37:01 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.umich.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.umich.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Michigan</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Michigan</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umich.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>ITS Infrastructure Services Identity and Access Management</GivenName>
+ <EmailAddress>shibboleth@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>ITS Infrastructure Services Identity and Access Management</GivenName>
+ <EmailAddress>shibboleth@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS Security</GivenName>
+ <EmailAddress>security@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>DePriest Dockins</GivenName>
+ <EmailAddress>shibboleth@umich.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://support.osris.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">OSIRIS User Issue Tracking</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.osris.org/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="120" width="336" xml:lang="en">https://support.osris.org/ds/osiris-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10662665178098166542, expires on Fri Aug 27 16:25:36 2027 GMT -->
+ <ds:X509Certificate>
+MIID9zCCAl+gAwIBAgIJAJP5ZXx7d+sOMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV
+BAMTEG1zdS1ydC5vc3Jpcy5vcmcwHhcNMTcwODI5MTYyNTM2WhcNMjcwODI3MTYy
+NTM2WjAbMRkwFwYDVQQDExBtc3UtcnQub3NyaXMub3JnMIIBojANBgkqhkiG9w0B
+AQEFAAOCAY8AMIIBigKCAYEAutgnu47fI4ygbWEN0FyPuot16LOsKZykPtxFeIVg
+6M1duLHXZsbm95UTQk/YrLL1jlecxqkcEKroLzqdj1J13Vk15adm55wXIJEXqolv
+1mEKfkvt3Bgv56P3q0NplQOCgmmKYSVj4lj8Nybc1KetRoXmNUPkkk98DbRyrIIX
+aFPuFe8bnjQmGWGVwkOdC67i2nI0KCJ0YJOZ0/916BJWNTA7wDmeNylJkXxSa99t
+brF4OGkX2robNCLBgMHhnR3iYwUHToUMDwNCAfUQbDO0bVfltiZ4ORmu+JEFnd+i
+0f4QlZq82UGq1d6kVcfySA7ewG1fV4khPcpcgEKMKzuontpX/6wUFE54exyDFDUk
+uoM4885krt87hyEdLYC9a5wSCjPXNHddyBTLwO5jnKP7qd7kDkR2vgM4RBqZ9YDO
+fFVpDJKzmJJhWJKV6EhI5lu6rJcRRPLLV5Q+mBGcVurrQ3ZgIirxXPfuvMpkKSVB
+n7VPeqsq2RPoFnRhYNeP1PPHAgMBAAGjPjA8MBsGA1UdEQQUMBKCEG1zdS1ydC5v
+c3Jpcy5vcmcwHQYDVR0OBBYEFIWAhkgktqMBR8ZDBZ7TLq7O34f5MA0GCSqGSIb3
+DQEBCwUAA4IBgQAZTM56JAkYVcyC271H9GFwiiknboA8PbOW/id+X9vD6YhCSYJt
+R/TVyA1WiSV1Cej8XGbrwl5jJM+FNidrotxrywzEvdmSbLaWGdxUENl2YJ3dxLkl
+MPpOoGpwEBA8ZXT+59BJJNYERye1qKCjhFcSo+Fknp86cXgeeF6dg7nS/hOjb/gx
+KiZ2+H3mcQmREZuNS8ns0UyTKumpg57wTXzvHaAFqakDjtuMzd9KQvdP6rvQhZHQ
+/eExF8+8rNsnPAZ0SOhE4vUJe68S/d1EoEyoyF8z4FtLzkeE5bWKNDcefBqBgE8v
+nd90I3ix1w34TpBAC9yLbx+m+dlmh0p6KhZvyWQDm1e9JKIOVpa16bQ3l/Gp8s5J
+K5GibAiijFLiX/AYCdM7Nh1jNoG+wD2bl489L7jk1D3I4S2OKtrnd+v2EWrQ4KfF
+Nrz/x0N4W3Vzb0uE1MGxdldjwn/J8dZs6yNjST1z6zAoZcmtEq9+LrQ1/stKm8x5
+da5rYL5bWTImqY8=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://support.osris.org/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://support.osris.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Michigan</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Michigan</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umich.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Benjeman Meekhof</GivenName>
+ <EmailAddress>bmeekhof@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>OSiRIS Sys Admins</GivenName>
+ <EmailAddress>osrs-sysadmins@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shawn McKee</GivenName>
+ <EmailAddress>smckee@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS Security</GivenName>
+ <EmailAddress>security@umich.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://vis-dev.arc-ts.umich.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vis-dev.arc-ts.umich.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vis-dev.arc-ts.umich.edu/Shibboleth.sso/TimeSyncTokenLogin" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ARC Connect (development instance)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Provides simple, remote, interactive access to Flux, the University of Michigan's High Performance Computer cluster. Also provides Jupyter notebook integration, R integration, job submission and monitoring, and allocation availability and usage information on U-M ARC-TS clusters.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://vis-dev.arc-ts.umich.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://arc-ts.umich.edu/arc-connect/privacy-notice/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://pbs.twimg.com/profile_images/577486649929543680/6S1x2E-J_400x400.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9886161196022021884, expires on Sat Nov 1 17:55:25 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vis-dev.arc-ts.umich.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://vis-dev.arc-ts.umich.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://vis-dev.arc-ts.umich.edu/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ARC Connect (development instance)</ServiceName>
+ <ServiceDescription xml:lang="en">Provides simple, remote, interactive access to Flux, the University of Michigan's High Performance Computer cluster. Also provides Jupyter notebook integration, R integration, job submission and monitoring, and allocation availability and usage information on U-M ARC-TS clusters.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Michigan</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Michigan</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umich.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Flux Support Staff</GivenName>
+ <EmailAddress>flux-support-staff@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>ARC-TS</GivenName>
+ <EmailAddress>hpc-support@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS Security</GivenName>
+ <EmailAddress>security@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Flux Working Group</GivenName>
+ <EmailAddress>flux-support-wg@umich.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wiki.osris.org">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wiki.osris.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">OSiRIS Wiki</mdui:DisplayName>
+ <mdui:Description xml:lang="en">OSiRIS project wiki. OSiRIS is a distributed
+research data storage platform.
+</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.osris.org</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.osris.org/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="115" width="84" xml:lang="en">https://www.osris.org/assets/images/logos/logo_notext_transparent.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17576794098994277758, expires on Mon Jan 12 20:04:57 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiki.osris.org/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wiki.osris.org/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://wiki.osris.org/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiki.osris.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wiki.osris.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wiki.osris.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wiki.osris.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">OSiRIS Wiki</ServiceName>
+ <ServiceDescription xml:lang="en">OSiRIS project wiki. OSiRIS is a distributed
+research data storage platform.
+</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Michigan</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Michigan</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umich.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Benjeman Meekhof</GivenName>
+ <EmailAddress>bmeekhof@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Benjeman Meekhof</GivenName>
+ <EmailAddress>bmeekhof@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shawn McKee</GivenName>
+ <EmailAddress>smckee@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS Security</GivenName>
+ <EmailAddress>security@umich.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://www.hathitrust.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">HathiTrust</mdui:DisplayName>
+ <mdui:Description xml:lang="en">HathiTrust is an international partnership of academic and research institutions working together to ensure the long-term preservation and accessibility of the cultural record.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.hathitrust.org/about</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.hathitrust.org/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="47" width="321" xml:lang="en">https://babel.hathitrust.org/common/HathiTrustDL_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11846072788195526775, expires on Mon Mar 9 21:15:20 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://babel.hathitrust.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://babel.hathitrust.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://babel.hathitrust.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://babel.hathitrust.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://babel.hathitrust.org/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://babel.hathitrust.org/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://beta-1.babel.hathitrust.org/Shibboleth.sso/SAML2/POST" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://beta-1.babel.hathitrust.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://beta-1.babel.hathitrust.org/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://beta-1.babel.hathitrust.org/Shibboleth.sso/SAML2/ECP" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://beta-1.babel.hathitrust.org/Shibboleth.sso/SAML/POST" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://beta-1.babel.hathitrust.org/Shibboleth.sso/SAML/Artifact" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://beta-2.babel.hathitrust.org/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://beta-2.babel.hathitrust.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://beta-2.babel.hathitrust.org/Shibboleth.sso/SAML2/Artifact" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://beta-2.babel.hathitrust.org/Shibboleth.sso/SAML2/ECP" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://beta-2.babel.hathitrust.org/Shibboleth.sso/SAML/POST" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://beta-2.babel.hathitrust.org/Shibboleth.sso/SAML/Artifact" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://beta-3.babel.hathitrust.org/Shibboleth.sso/SAML2/POST" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://beta-3.babel.hathitrust.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="20"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://beta-3.babel.hathitrust.org/Shibboleth.sso/SAML2/Artifact" index="21"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://beta-3.babel.hathitrust.org/Shibboleth.sso/SAML2/ECP" index="22"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://beta-3.babel.hathitrust.org/Shibboleth.sso/SAML/POST" index="23"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://beta-3.babel.hathitrust.org/Shibboleth.sso/SAML/Artifact" index="24"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.babel.hathitrust.org/Shibboleth.sso/SAML2/POST" index="25"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://test.babel.hathitrust.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="26"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test.babel.hathitrust.org/Shibboleth.sso/SAML2/Artifact" index="27"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test.babel.hathitrust.org/Shibboleth.sso/SAML2/ECP" index="28"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://test.babel.hathitrust.org/Shibboleth.sso/SAML/POST" index="29"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://test.babel.hathitrust.org/Shibboleth.sso/SAML/Artifact" index="30"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://scollett.babel.hathitrust.org/Shibboleth.sso/SAML2/POST" index="31"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://scollett.babel.hathitrust.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="32"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://scollett.babel.hathitrust.org/Shibboleth.sso/SAML2/Artifact" index="33"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://scollett.babel.hathitrust.org/Shibboleth.sso/SAML2/ECP" index="34"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://scollett.babel.hathitrust.org/Shibboleth.sso/SAML/POST" index="35"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://scollett.babel.hathitrust.org/Shibboleth.sso/SAML/Artifact" index="36"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://roger.babel.hathitrust.org/Shibboleth.sso/SAML2/POST" index="37"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://roger.babel.hathitrust.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="38"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://roger.babel.hathitrust.org/Shibboleth.sso/SAML2/Artifact" index="39"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://roger.babel.hathitrust.org/Shibboleth.sso/SAML2/ECP" index="40"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://roger.babel.hathitrust.org/Shibboleth.sso/SAML/POST" index="41"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://roger.babel.hathitrust.org/Shibboleth.sso/SAML/Artifact" index="42"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://roger-full.babel.hathitrust.org/Shibboleth.sso/SAML2/POST" index="43"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://roger-full.babel.hathitrust.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="44"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://roger-full.babel.hathitrust.org/Shibboleth.sso/SAML2/Artifact" index="45"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://roger-full.babel.hathitrust.org/Shibboleth.sso/SAML2/ECP" index="46"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://roger-full.babel.hathitrust.org/Shibboleth.sso/SAML/POST" index="47"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://roger-full.babel.hathitrust.org/Shibboleth.sso/SAML/Artifact" index="48"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tburtonw.babel.hathitrust.org/Shibboleth.sso/SAML2/POST" index="49"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tburtonw.babel.hathitrust.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="50"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tburtonw.babel.hathitrust.org/Shibboleth.sso/SAML2/Artifact" index="51"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tburtonw.babel.hathitrust.org/Shibboleth.sso/SAML2/ECP" index="52"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tburtonw.babel.hathitrust.org/Shibboleth.sso/SAML/POST" index="53"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tburtonw.babel.hathitrust.org/Shibboleth.sso/SAML/Artifact" index="54"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tburtonw-full.babel.hathitrust.org/Shibboleth.sso/SAML2/POST" index="55"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tburtonw-full.babel.hathitrust.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="56"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tburtonw-full.babel.hathitrust.org/Shibboleth.sso/SAML2/Artifact" index="57"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tburtonw-full.babel.hathitrust.org/Shibboleth.sso/SAML2/ECP" index="58"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tburtonw-full.babel.hathitrust.org/Shibboleth.sso/SAML/POST" index="59"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tburtonw-full.babel.hathitrust.org/Shibboleth.sso/SAML/Artifact" index="60"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rrotter.babel.hathitrust.org/Shibboleth.sso/SAML2/POST" index="61"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rrotter.babel.hathitrust.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="62"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rrotter.babel.hathitrust.org/Shibboleth.sso/SAML2/Artifact" index="63"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rrotter.babel.hathitrust.org/Shibboleth.sso/SAML2/ECP" index="64"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rrotter.babel.hathitrust.org/Shibboleth.sso/SAML/POST" index="65"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rrotter.babel.hathitrust.org/Shibboleth.sso/SAML/Artifact" index="66"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rrotter-full.babel.hathitrust.org/Shibboleth.sso/SAML2/POST" index="67"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rrotter-full.babel.hathitrust.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="68"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rrotter-full.babel.hathitrust.org/Shibboleth.sso/SAML2/Artifact" index="69"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rrotter-full.babel.hathitrust.org/Shibboleth.sso/SAML2/ECP" index="70"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rrotter-full.babel.hathitrust.org/Shibboleth.sso/SAML/POST" index="71"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rrotter-full.babel.hathitrust.org/Shibboleth.sso/SAML/Artifact" index="72"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moseshll.babel.hathitrust.org/Shibboleth.sso/SAML2/POST" index="73"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moseshll-full.babel.hathitrust.org/Shibboleth.sso/SAML2/POST" index="74"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://crms-training.babel.hathitrust.org/Shibboleth.sso/SAML2/POST" index="75"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">HathiTrust</ServiceName>
+ <ServiceDescription xml:lang="en">HathiTrust is an international partnership of academic and research institutions working together to ensure the long-term preservation and accessibility of the cultural record.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Michigan</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Michigan</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umich.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>University of Michigan Library IT</GivenName>
+ <EmailAddress>lit-ae-systems@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>HathiTrust Support</GivenName>
+ <EmailAddress>feedback@issues.hathitrust.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS Security</GivenName>
+ <EmailAddress>security@umich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>HathiTrust Support</GivenName>
+ <EmailAddress>feedback@issues.hathitrust.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of California, Berkeley -->
+<EntityDescriptor entityID="urn:mace:incommon:berkeley.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">berkeley.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California, Berkeley</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.berkeley.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://security.berkeley.edu/website-privacy-statement-berkeley-security</mdui:PrivacyStatementURL>
+ <mdui:Logo height="250" width="800" xml:lang="en">https://brand.berkeley.edu/wp-content/uploads/2016/11/primarylogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17887266808885639746, expires on Mon Sep 1 05:55:34 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.berkeley.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.berkeley.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.berkeley.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.berkeley.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California, Berkeley</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California, Berkeley</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.berkeley.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeff McCullough</GivenName>
+ <EmailAddress>calnet-admin@berkeley.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jonathon Taylor</GivenName>
+ <EmailAddress>calnet-admin@berkeley.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Contact</GivenName>
+ <EmailAddress>calnet-admin@berkeley.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Administrative Contact</GivenName>
+ <EmailAddress>calnet-admin@berkeley.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Utah -->
+<EntityDescriptor entityID="https://devirb.research.utah.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://devirb.research.utah.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Dev Erica UofU</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Dev Erica UofU</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utah.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="100" xml:lang="en">https://www.utah.edu/_images/logo_block_u.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14608553174871825219, expires on Fri Jan 23 18:36:23 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://devirb.research.utah.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://devirb.research.utah.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://devirb.research.utah.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://devirb.research.utah.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Utah</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Utah</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.utah.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Vaibhav Narula</GivenName>
+ <EmailAddress>vaibhav.narula@utah.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bob Larsen</GivenName>
+ <EmailAddress>Bob.Larsen@hsc.utah.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bryan Wooten</GivenName>
+ <EmailAddress>bryan.wooten@utah.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Support</GivenName>
+ <EmailAddress>hostmaster@utah.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://erica.research.utah.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://erica.research.utah.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Erica - University of Utah</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Erica - University of Utah</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://erica.research.utah.edu/erica/sd/Rooms/DisplayPages/LayoutInitial?Container=com.webridge.entity.Entity%5BOID%5BA7B943AC89D13943B590730080CB5117%5D%5D</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utah.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="100" xml:lang="en">https://www.utah.edu/_images/logo_block_u.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11572070771445800755, expires on Tue Mar 3 01:18:29 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://erica.research.utah.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://erica.research.utah.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://erica.research.utah.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://erica.research.utah.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Utah</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Utah</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.utah.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Vaibhav Narula</GivenName>
+ <EmailAddress>vaibhav.narula@utah.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Bryan Wooten</GivenName>
+ <EmailAddress>bryan.wooten@utah.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bob Larsen</GivenName>
+ <EmailAddress>bob.larsen@hsc.utah.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Support</GivenName>
+ <EmailAddress>hostmaster@utah.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://testirb.research.utah.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://testirb.research.utah.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Test Erica - University of Utah</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test Erica - University of Utah</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utah.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="100" xml:lang="en">https://www.utah.edu/_images/logo_block_u.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10596702048221408537, expires on Mon Mar 2 18:23:29 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testirb.research.utah.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://testirb.research.utah.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://testirb.research.utah.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://testirb.research.utah.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Utah</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Utah</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.utah.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Vaibhav Narula</GivenName>
+ <EmailAddress>vaibhav.narula@utah.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bob Larsen</GivenName>
+ <EmailAddress>Bob.Larsen@hsc.utah.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Bryan Wooten</GivenName>
+ <EmailAddress>bryan.wooten@utah.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Support</GivenName>
+ <EmailAddress>hostmaster@utah.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:utah.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utah.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Utah</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utah.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="100" xml:lang="en">https://www.utah.edu/_images/logo_block_u.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 300473180290853584082366089237776654660063692219, expires on Sun Feb 22 14:16:20 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://incommon2.sso.utah.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://incommon2.sso.utah.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://incommon2.sso.utah.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://incommon2.sso.utah.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://incommon2.sso.utah.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://incommon2.sso.utah.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utah.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 300473180290853584082366089237776654660063692219, expires on Sun Feb 22 14:16:20 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://incommon2.sso.utah.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://incommon2.sso.utah.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Utah</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Utah</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.utah.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Caprice Post</GivenName>
+ <EmailAddress>Caprice.Post@Utah.Edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Robert Roll</GivenName>
+ <EmailAddress>Robert.Roll@Utah.Edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Bryan Wooten</GivenName>
+ <EmailAddress>bryan.wooten@utah.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tim Richardson</GivenName>
+ <EmailAddress>tim.richardson@utah.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Vaibhav</GivenName>
+ <EmailAddress>Vaibhav.Narula@utah.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Support</GivenName>
+ <EmailAddress>hostmaster@utah.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- William and Mary -->
+<EntityDescriptor entityID="https://idp.wm.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wm.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">William &amp; Mary</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SSO for William &amp; Mary.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.wm.edu/offices/it/security/securitypolicy/index.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://static.wm.edu/it/iam/wm_incommon_wayf.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1155848253393633029790680663259354422586300924715, expires on Sat Mar 30 13:41:39 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.wm.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.wm.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.wm.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en"> William and Mary</OrganizationName>
+ <OrganizationDisplayName xml:lang="en"> William and Mary</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wm.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Authentication Systems</GivenName>
+ <EmailAddress>it-authentication@wm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Accounts Management</GivenName>
+ <EmailAddress>accounts@wm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Security Office</GivenName>
+ <EmailAddress>abuse@wm.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Rutgers, The State University of New Jersey -->
+<EntityDescriptor entityID="https://test-idps.rutgers.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://test-idps.rutgers.edu/idp/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">rutgers.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Test IDP - Rutgers, The State University of New Jersey</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test IdP for Rutgers, The State University of New Jersey</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.rutgers.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://eas.rutgers.edu/?ht_kb=information-technology-privacy-policy-information</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://test-idps.rutgers.edu/images/rutgers_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17235810561542750759, expires on Sun Apr 5 20:20:20 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://test-idps.rutgers.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://test-idps.rutgers.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://test-idps.rutgers.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test-idps.rutgers.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://test-idps.rutgers.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://test-idps.rutgers.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">rutgers.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17235810561542750759, expires on Sun Apr 5 20:20:20 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://test-idps.rutgers.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://test-idps.rutgers.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Rutgers, The State University of New Jersey</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Rutgers, The State University of New Jersey</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rutgers.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Rutgers Identity Management Technical Contact</GivenName>
+ <EmailAddress>idp_operations@email.rutgers.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Rutgers Identity Management Support Contact</GivenName>
+ <EmailAddress>idp_operations@email.rutgers.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Rutgers Information Protection and Security</GivenName>
+ <EmailAddress>abuse@rutgers.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rutgers Identity Management Administrative Contact</GivenName>
+ <EmailAddress>idp_operations@email.rutgers.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:rutgers.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idps.rutgers.edu/idp/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">rutgers.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Rutgers, The State University of New Jersey</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity Provider for Rutgers, The State University of New Jersey.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.rutgers.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://eas.rutgers.edu/?ht_kb=information-technology-privacy-policy-information</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://idps.rutgers.edu/images/rutgers_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11930365073103487389, expires on Thu Jul 24 16:37:16 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idps.rutgers.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idps.rutgers.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idps.rutgers.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idps.rutgers.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idps.rutgers.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idps.rutgers.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">rutgers.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11930365073103487389, expires on Thu Jul 24 16:37:16 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idps.rutgers.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idps.rutgers.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Rutgers, The State University of New Jersey</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Rutgers, The State University of New Jersey</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rutgers.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Rutgers Identity Management Technical Contact</GivenName>
+ <EmailAddress>idp_operations@email.rutgers.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Rutgers Identity Management Support Contact</GivenName>
+ <EmailAddress>idp_operations@email.rutgers.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rutgers Identity Management Administrative Contact</GivenName>
+ <EmailAddress>idp_operations@email.rutgers.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Rutgers Information Protection and Security</GivenName>
+ <EmailAddress>abuse@rutgers.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Emory University -->
+<EntityDescriptor entityID="https://login.emory.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.emory.edu/federatederror.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">emory.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Emory University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://it.emory.edu/policy/datapolicy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="578" xml:lang="en">https://login.emory.edu/logo/emoryuniv.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 710302830828570390652315058137215782639683389823, expires on Fri Mar 29 16:20:05 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.emory.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.emory.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.emory.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.emory.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.emory.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.emory.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">emory.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 710302830828570390652315058137215782639683389823, expires on Fri Mar 29 16:20:05 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.emory.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.emory.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Emory University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Emory University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.emory.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Anne Marie Alexander</GivenName>
+ <EmailAddress>amalexander@emory.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>LITS WebGroup</GivenName>
+ <EmailAddress>webgroup@emory.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LITS WebGroup</GivenName>
+ <EmailAddress>webgroup@emory.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LITS Enterprise IT Security</GivenName>
+ <EmailAddress>security@emory.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Illinois at Urbana-Champaign -->
+<EntityDescriptor entityID="https://fae.illinois.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fae.illinois.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fae-shibboleth-staging.disability.illinois.edu/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fae-shibboleth-dev.disability.illinois.edu/Shibboleth.sso/Login" index="3"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://webedit.disability.illinois.edu/Shibboleth.sso/Login" index="4"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://webedit-dev.disability.illinois.edu/Shibboleth.sso/Login" index="5"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://webedit-staging.disability.illinois.edu/Shibboleth.sso/Login" index="6"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Functional Accessibility Evaluator</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Evaluates web pages for WCAG 2.0 web accessibility requirements and generates a report</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://fae.illinois.edu/abouts/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://fae.illinois.edu/abouts/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="300" width="300" xml:lang="en">https://fae.disability.illinois.edu/static/images/fae-icon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11417268174454707229, expires on Sun Feb 8 16:17:22 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fae.illinois.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fae.illinois.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fae.illinois.edu/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fae.illinois.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fae.illinois.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fae.illinois.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fae.illinois.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fae-shibboleth-staging.disability.illinois.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fae-shibboleth-staging.disability.illinois.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fae-shibboleth-staging.disability.illinois.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fae-shibboleth-staging.disability.illinois.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fae-shibboleth-dev.disability.illinois.edu/Shibboleth.sso/SAML2/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fae-shibboleth-dev.disability.illinois.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fae-shibboleth-dev.disability.illinois.edu/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fae-shibboleth-dev.disability.illinois.edu/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webedit.disability.illinois.edu/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webedit.disability.illinois.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webedit.disability.illinois.edu/Shibboleth.sso/SAML2/Artifact" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webedit.disability.illinois.edu/Shibboleth.sso/SAML2/ECP" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webedit-dev.disability.illinois.edu/Shibboleth.sso/SAML2/POST" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webedit-dev.disability.illinois.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webedit-dev.disability.illinois.edu/Shibboleth.sso/SAML2/Artifact" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webedit-dev.disability.illinois.edu/Shibboleth.sso/SAML2/ECP" index="20"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webedit-staging.disability.illinois.edu/Shibboleth.sso/SAML2/POST" index="21"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webedit-staging.disability.illinois.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="22"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webedit-staging.disability.illinois.edu/Shibboleth.sso/SAML2/Artifact" index="23"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webedit-staging.disability.illinois.edu/Shibboleth.sso/SAML2/ECP" index="24"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Functional Accessibility Evaluator</ServiceName>
+ <ServiceDescription xml:lang="en">Evaluates web pages for WCAG 2.0 web accessibility requirements and generates a report</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Illinois at Urbana-Champaign</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Illinois at Urbana-Champaign</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://illinois.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jon Gunderson</GivenName>
+ <EmailAddress>jongund@illinois.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jon Gunderson</GivenName>
+ <EmailAddress>jongund@illinois.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Office</GivenName>
+ <EmailAddress>security@illinois.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:uiuc.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://answers.uillinois.edu/illinois/shibboleth-error-message" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">illinois.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Illinois at Urbana-Champaign</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.vpaa.uillinois.edu/resources/web_privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="287" width="609" xml:lang="en">https://shibboleth.illinois.edu/images/ilogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18387962516012579605, expires on Thu Apr 6 15:40:15 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.illinois.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.illinois.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.illinois.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.illinois.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.illinois.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.illinois.edu/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Illinois at Urbana-Champaign</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Illinois at Urbana-Champaign</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://illinois.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Identity Provider Service Management Team</GivenName>
+ <EmailAddress>shibboleth-mgr@illinois.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Identity Provider Service Management Team</GivenName>
+ <EmailAddress>shibboleth-mgr@illinois.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Shibboleth Identity Provider Service Management Team</GivenName>
+ <EmailAddress>shibboleth-mgr@illinois.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Office</GivenName>
+ <EmailAddress>security@illinois.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- UniversityTickets -->
+<EntityDescriptor entityID="https://alabama.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://alabama.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Univ. of Alabama // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://alabama.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://alabama.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://alabama.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://alabama.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Univ. of Alabama // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://alaska.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://alaska.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UAA / UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>
+MIIEFzCCAv+gAwIBAgIJAOKNYZKTkGOxMA0GCSqGSIb3DQEBBQUAMIGhMQswCQYD
+VQQGEwJVUzELMAkGA1UECAwCTlkxETAPBgNVBAcMCE5ldyBZb3JrMSAwHgYDVQQK
+DBdVbml2ZXJzaXR5VGlja2V0cywgSW5jLjEiMCAGA1UEAwwZVW5pdmVyc2l0eVRp
+Y2tldHMgU3VwcG9ydDEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5
+dGlja2V0cy5jb20wHhcNMTAwODI3MTQzNDMwWhcNMTMwODI2MTQzNDMwWjCBoTEL
+MAkGA1UEBhMCVVMxCzAJBgNVBAgMAk5ZMREwDwYDVQQHDAhOZXcgWW9yazEgMB4G
+A1UECgwXVW5pdmVyc2l0eVRpY2tldHMsIEluYy4xIjAgBgNVBAMMGVVuaXZlcnNp
+dHlUaWNrZXRzIFN1cHBvcnQxLDAqBgkqhkiG9w0BCQEWHXN1cHBvcnRAdW5pdmVy
+c2l0eXRpY2tldHMuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+tuDuyswVfkWKroBS9oOpm2QqRJecNIyZ7DMf9m7jwFFaQiPN3NYTe9C35I3rsmqp
+UvSK075z34uNrBddsz29CnVurUv6geM+mBUZB11oFG6rGxuT3wfYTpA54kbVQps1
+GHL8HV95fB5xEagZd888i7CFmXZMJ3xF4R9h8UDe09ZlQ5sjY/E6Ff0bIaAP6phj
+l0IsIBYRPUeIGMYPqw7azmFy7XS4FPTrQmya1E7wxf/6CXot5EYhyYLr7RKdOjp5
+foIkedY1ZhjuWZFa6EPaIYqqz8v9nGJx3uW3dZeuXfNrSjvj0RasHNXU84y0FP1S
+ex6ywCFhLIVS5ewXXm6b9QIDAQABo1AwTjAdBgNVHQ4EFgQUDCeDghnKlaF2rAwJ
+rB0DSvAOpfwwHwYDVR0jBBgwFoAUDCeDghnKlaF2rAwJrB0DSvAOpfwwDAYDVR0T
+BAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEAEBt2aRlN01fZYYXwid/k/QaVlJUF
+RjFJouAFyC0N4sjZDEZxnOrLV8QxVABNGwJ78HDeQ7Z2xOeOEvKzORB9RJvsz4ac
+FuEmARQX8QDiSzeCvjiq0VBd46KVYlU0hSXRM99VEexB+V/S5/h4xRHaaRwcWD0k
+rcx+OJkf4WTNRm6t2+LOFcOZ1VV4C3DnPbd0nCJlJSzHYUKGfeoJJJ7ew4KZF4le
+2fdSm7mihM6r2O047IbPr9qkVRDXfaIkXfFvCBPKogZ0pv41ctocTbVvTKoAbe6i
+npy6/mAHObt21m69If4I8DgLUvCuVIIbt/4TZVqeiN7mHIPk2XtftnMpSw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://alaska.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://alaska.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://alaska.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://alaska.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UAA / UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://apugraduationtickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://apugraduationtickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Azusa Pacific University // UGRAD</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://apugraduationtickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://apugraduationtickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://apugraduationtickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://apugraduationtickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Azusa Pacific University // UGRAD</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://aputickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://aputickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Azusa Pacific University // UTIX</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aputickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aputickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aputickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://aputickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Azusa Pacific University // UTIX</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://auartstix.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://auartstix.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">American University // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auartstix.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://auartstix.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://auartstix.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://auartstix.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://auartstix.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://auartstix.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">American University // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://augsburgcommencement.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://augsburgcommencement.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Augsburg University // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://augsburgcommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://augsburgcommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://augsburgcommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://augsburgcommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Augsburg University // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://augsburg.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://augsburg.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Augsburg / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://augsburg.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://augsburg.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://augsburg.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://augsburg.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://augsburg.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://augsburg.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Augsburg / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://baileytickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://baileytickets.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">BaileyTickets - UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>
+MIIEFzCCAv+gAwIBAgIJAOKNYZKTkGOxMA0GCSqGSIb3DQEBBQUAMIGhMQswCQYD
+VQQGEwJVUzELMAkGA1UECAwCTlkxETAPBgNVBAcMCE5ldyBZb3JrMSAwHgYDVQQK
+DBdVbml2ZXJzaXR5VGlja2V0cywgSW5jLjEiMCAGA1UEAwwZVW5pdmVyc2l0eVRp
+Y2tldHMgU3VwcG9ydDEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5
+dGlja2V0cy5jb20wHhcNMTAwODI3MTQzNDMwWhcNMTMwODI2MTQzNDMwWjCBoTEL
+MAkGA1UEBhMCVVMxCzAJBgNVBAgMAk5ZMREwDwYDVQQHDAhOZXcgWW9yazEgMB4G
+A1UECgwXVW5pdmVyc2l0eVRpY2tldHMsIEluYy4xIjAgBgNVBAMMGVVuaXZlcnNp
+dHlUaWNrZXRzIFN1cHBvcnQxLDAqBgkqhkiG9w0BCQEWHXN1cHBvcnRAdW5pdmVy
+c2l0eXRpY2tldHMuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+tuDuyswVfkWKroBS9oOpm2QqRJecNIyZ7DMf9m7jwFFaQiPN3NYTe9C35I3rsmqp
+UvSK075z34uNrBddsz29CnVurUv6geM+mBUZB11oFG6rGxuT3wfYTpA54kbVQps1
+GHL8HV95fB5xEagZd888i7CFmXZMJ3xF4R9h8UDe09ZlQ5sjY/E6Ff0bIaAP6phj
+l0IsIBYRPUeIGMYPqw7azmFy7XS4FPTrQmya1E7wxf/6CXot5EYhyYLr7RKdOjp5
+foIkedY1ZhjuWZFa6EPaIYqqz8v9nGJx3uW3dZeuXfNrSjvj0RasHNXU84y0FP1S
+ex6ywCFhLIVS5ewXXm6b9QIDAQABo1AwTjAdBgNVHQ4EFgQUDCeDghnKlaF2rAwJ
+rB0DSvAOpfwwHwYDVR0jBBgwFoAUDCeDghnKlaF2rAwJrB0DSvAOpfwwDAYDVR0T
+BAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEAEBt2aRlN01fZYYXwid/k/QaVlJUF
+RjFJouAFyC0N4sjZDEZxnOrLV8QxVABNGwJ78HDeQ7Z2xOeOEvKzORB9RJvsz4ac
+FuEmARQX8QDiSzeCvjiq0VBd46KVYlU0hSXRM99VEexB+V/S5/h4xRHaaRwcWD0k
+rcx+OJkf4WTNRm6t2+LOFcOZ1VV4C3DnPbd0nCJlJSzHYUKGfeoJJJ7ew4KZF4le
+2fdSm7mihM6r2O047IbPr9qkVRDXfaIkXfFvCBPKogZ0pv41ctocTbVvTKoAbe6i
+npy6/mAHObt21m69If4I8DgLUvCuVIIbt/4TZVqeiN7mHIPk2XtftnMpSw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://baileytickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://baileytickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://baileytickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://baileytickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://baileytickets.UniversityTickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://baileytickets.UniversityTickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">BaileyTickets - UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://bucknell.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://bucknell.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Bucknell // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bucknell.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://bucknell.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bucknell.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bucknell.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://bucknell.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://bucknell.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Bucknell // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://buffalo.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://buffalo.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University at Buffalo UTIX Authentication</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://buffalo.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://buffalo.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://buffalo.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://buffalo.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University at Buffalo UTIX Authentication</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://campuslife.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://campuslife.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Virginia Tech // UTIX Authentication</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://campuslife.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://campuslife.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://campuslife.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://campuslife.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Virginia Tech // UTIX Authentication</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://carnegiemellontickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://carnegiemellontickets.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://carnegiemellontickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://carnegiemellontickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://carnegiemellontickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://carnegiemellontickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://carnegiemellontickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://carnegiemellontickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://case.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://case.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Case Western // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://case.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://case.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://case.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://case.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://case.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://case.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Case Western // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ccmonstage.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ccmonstage.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Univ. of Cincinnati // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ccmonstage.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ccmonstage.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ccmonstage.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ccmonstage.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Univ. of Cincinnati // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cornellbigredtickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cornellbigredtickets.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CornellBigRedTickets - UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>
+MIIEFzCCAv+gAwIBAgIJAOKNYZKTkGOxMA0GCSqGSIb3DQEBBQUAMIGhMQswCQYD
+VQQGEwJVUzELMAkGA1UECAwCTlkxETAPBgNVBAcMCE5ldyBZb3JrMSAwHgYDVQQK
+DBdVbml2ZXJzaXR5VGlja2V0cywgSW5jLjEiMCAGA1UEAwwZVW5pdmVyc2l0eVRp
+Y2tldHMgU3VwcG9ydDEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5
+dGlja2V0cy5jb20wHhcNMTAwODI3MTQzNDMwWhcNMTMwODI2MTQzNDMwWjCBoTEL
+MAkGA1UEBhMCVVMxCzAJBgNVBAgMAk5ZMREwDwYDVQQHDAhOZXcgWW9yazEgMB4G
+A1UECgwXVW5pdmVyc2l0eVRpY2tldHMsIEluYy4xIjAgBgNVBAMMGVVuaXZlcnNp
+dHlUaWNrZXRzIFN1cHBvcnQxLDAqBgkqhkiG9w0BCQEWHXN1cHBvcnRAdW5pdmVy
+c2l0eXRpY2tldHMuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+tuDuyswVfkWKroBS9oOpm2QqRJecNIyZ7DMf9m7jwFFaQiPN3NYTe9C35I3rsmqp
+UvSK075z34uNrBddsz29CnVurUv6geM+mBUZB11oFG6rGxuT3wfYTpA54kbVQps1
+GHL8HV95fB5xEagZd888i7CFmXZMJ3xF4R9h8UDe09ZlQ5sjY/E6Ff0bIaAP6phj
+l0IsIBYRPUeIGMYPqw7azmFy7XS4FPTrQmya1E7wxf/6CXot5EYhyYLr7RKdOjp5
+foIkedY1ZhjuWZFa6EPaIYqqz8v9nGJx3uW3dZeuXfNrSjvj0RasHNXU84y0FP1S
+ex6ywCFhLIVS5ewXXm6b9QIDAQABo1AwTjAdBgNVHQ4EFgQUDCeDghnKlaF2rAwJ
+rB0DSvAOpfwwHwYDVR0jBBgwFoAUDCeDghnKlaF2rAwJrB0DSvAOpfwwDAYDVR0T
+BAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEAEBt2aRlN01fZYYXwid/k/QaVlJUF
+RjFJouAFyC0N4sjZDEZxnOrLV8QxVABNGwJ78HDeQ7Z2xOeOEvKzORB9RJvsz4ac
+FuEmARQX8QDiSzeCvjiq0VBd46KVYlU0hSXRM99VEexB+V/S5/h4xRHaaRwcWD0k
+rcx+OJkf4WTNRm6t2+LOFcOZ1VV4C3DnPbd0nCJlJSzHYUKGfeoJJJ7ew4KZF4le
+2fdSm7mihM6r2O047IbPr9qkVRDXfaIkXfFvCBPKogZ0pv41ctocTbVvTKoAbe6i
+npy6/mAHObt21m69If4I8DgLUvCuVIIbt/4TZVqeiN7mHIPk2XtftnMpSw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cornellbigredtickets.UniversityTickets.com/Shibboleth.sso/SAML/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cornellbigredtickets.UniversityTickets.com/Shibboleth.sso/SAML/Artifact"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cornellbigredtickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cornellbigredtickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cornellbigredtickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cornellbigredtickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CornellBigRedTickets - UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cornellcinematickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cornellcinematickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UTIX and Cornell Cinema</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cornellcinematickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cornellcinematickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cornellcinematickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cornellcinematickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UTIX and Cornell Cinema</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cornellconcertseries.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cornellconcertseries.universitytickets.com/shibboleth-sp/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CCS + UTIX Login</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cornellconcertseries.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cornellconcertseries.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cornellconcertseries.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cornellconcertseries.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cornellconcerts.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cornellconcerts.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CornellConcerts - UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>
+MIIEFzCCAv+gAwIBAgIJAOKNYZKTkGOxMA0GCSqGSIb3DQEBBQUAMIGhMQswCQYD
+VQQGEwJVUzELMAkGA1UECAwCTlkxETAPBgNVBAcMCE5ldyBZb3JrMSAwHgYDVQQK
+DBdVbml2ZXJzaXR5VGlja2V0cywgSW5jLjEiMCAGA1UEAwwZVW5pdmVyc2l0eVRp
+Y2tldHMgU3VwcG9ydDEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5
+dGlja2V0cy5jb20wHhcNMTAwODI3MTQzNDMwWhcNMTMwODI2MTQzNDMwWjCBoTEL
+MAkGA1UEBhMCVVMxCzAJBgNVBAgMAk5ZMREwDwYDVQQHDAhOZXcgWW9yazEgMB4G
+A1UECgwXVW5pdmVyc2l0eVRpY2tldHMsIEluYy4xIjAgBgNVBAMMGVVuaXZlcnNp
+dHlUaWNrZXRzIFN1cHBvcnQxLDAqBgkqhkiG9w0BCQEWHXN1cHBvcnRAdW5pdmVy
+c2l0eXRpY2tldHMuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+tuDuyswVfkWKroBS9oOpm2QqRJecNIyZ7DMf9m7jwFFaQiPN3NYTe9C35I3rsmqp
+UvSK075z34uNrBddsz29CnVurUv6geM+mBUZB11oFG6rGxuT3wfYTpA54kbVQps1
+GHL8HV95fB5xEagZd888i7CFmXZMJ3xF4R9h8UDe09ZlQ5sjY/E6Ff0bIaAP6phj
+l0IsIBYRPUeIGMYPqw7azmFy7XS4FPTrQmya1E7wxf/6CXot5EYhyYLr7RKdOjp5
+foIkedY1ZhjuWZFa6EPaIYqqz8v9nGJx3uW3dZeuXfNrSjvj0RasHNXU84y0FP1S
+ex6ywCFhLIVS5ewXXm6b9QIDAQABo1AwTjAdBgNVHQ4EFgQUDCeDghnKlaF2rAwJ
+rB0DSvAOpfwwHwYDVR0jBBgwFoAUDCeDghnKlaF2rAwJrB0DSvAOpfwwDAYDVR0T
+BAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEAEBt2aRlN01fZYYXwid/k/QaVlJUF
+RjFJouAFyC0N4sjZDEZxnOrLV8QxVABNGwJ78HDeQ7Z2xOeOEvKzORB9RJvsz4ac
+FuEmARQX8QDiSzeCvjiq0VBd46KVYlU0hSXRM99VEexB+V/S5/h4xRHaaRwcWD0k
+rcx+OJkf4WTNRm6t2+LOFcOZ1VV4C3DnPbd0nCJlJSzHYUKGfeoJJJ7ew4KZF4le
+2fdSm7mihM6r2O047IbPr9qkVRDXfaIkXfFvCBPKogZ0pv41ctocTbVvTKoAbe6i
+npy6/mAHObt21m69If4I8DgLUvCuVIIbt/4TZVqeiN7mHIPk2XtftnMpSw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cornellconcerts.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cornellconcerts.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cornellconcerts.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cornellconcerts.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cornellconcerts.UniversityTickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cornellconcerts.UniversityTickets.com/Shibboleth.sso/SAML/ARTIFACT" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CornellConcerts - UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cornelltickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cornelltickets.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CornellTickets.com - UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cornelltickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cornelltickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cornelltickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cornelltickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cornelltickets.UniversityTickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cornelltickets.UniversityTickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CornellTickets.com - UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://csuartstickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://csuartstickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CSU Arts + UTIX SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csuartstickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://csuartstickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csuartstickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://csuartstickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CSU Arts + UTIX SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://csulacommencement.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://csulacommencement.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, Los Angeles // UGRAD</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csulacommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://csulacommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csulacommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://csulacommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">California State University, Los Angeles // UGRAD</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://csusmcougars.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://csusmcougars.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CSUSM / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csusmcougars.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://csusmcougars.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csusmcougars.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://csusmcougars.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://csusmcougars.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://csusmcougars.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CSUSM / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://csutix.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://csutix.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CSU + UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csutix.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://csutix.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csutix.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://csutix.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CSU + UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://drewtickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://drewtickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Drew University / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://drewtickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://drewtickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://drewtickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://drewtickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://drewtickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://drewtickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Drew University / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://elcaminotickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://elcaminotickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">El Camino / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://elcaminotickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://elcaminotickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://elcaminotickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://elcaminotickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://elcaminotickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://elcaminotickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">El Camino / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://emersoncommencement.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://emersoncommencement.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Emerson // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://emersoncommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://emersoncommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://emersoncommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://emersoncommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Emerson // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://fairfieldtickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fairfieldtickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fairfield University / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>
+MIIEFzCCAv+gAwIBAgIJAOKNYZKTkGOxMA0GCSqGSIb3DQEBBQUAMIGhMQswCQYD
+VQQGEwJVUzELMAkGA1UECAwCTlkxETAPBgNVBAcMCE5ldyBZb3JrMSAwHgYDVQQK
+DBdVbml2ZXJzaXR5VGlja2V0cywgSW5jLjEiMCAGA1UEAwwZVW5pdmVyc2l0eVRp
+Y2tldHMgU3VwcG9ydDEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5
+dGlja2V0cy5jb20wHhcNMTAwODI3MTQzNDMwWhcNMTMwODI2MTQzNDMwWjCBoTEL
+MAkGA1UEBhMCVVMxCzAJBgNVBAgMAk5ZMREwDwYDVQQHDAhOZXcgWW9yazEgMB4G
+A1UECgwXVW5pdmVyc2l0eVRpY2tldHMsIEluYy4xIjAgBgNVBAMMGVVuaXZlcnNp
+dHlUaWNrZXRzIFN1cHBvcnQxLDAqBgkqhkiG9w0BCQEWHXN1cHBvcnRAdW5pdmVy
+c2l0eXRpY2tldHMuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+tuDuyswVfkWKroBS9oOpm2QqRJecNIyZ7DMf9m7jwFFaQiPN3NYTe9C35I3rsmqp
+UvSK075z34uNrBddsz29CnVurUv6geM+mBUZB11oFG6rGxuT3wfYTpA54kbVQps1
+GHL8HV95fB5xEagZd888i7CFmXZMJ3xF4R9h8UDe09ZlQ5sjY/E6Ff0bIaAP6phj
+l0IsIBYRPUeIGMYPqw7azmFy7XS4FPTrQmya1E7wxf/6CXot5EYhyYLr7RKdOjp5
+foIkedY1ZhjuWZFa6EPaIYqqz8v9nGJx3uW3dZeuXfNrSjvj0RasHNXU84y0FP1S
+ex6ywCFhLIVS5ewXXm6b9QIDAQABo1AwTjAdBgNVHQ4EFgQUDCeDghnKlaF2rAwJ
+rB0DSvAOpfwwHwYDVR0jBBgwFoAUDCeDghnKlaF2rAwJrB0DSvAOpfwwDAYDVR0T
+BAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEAEBt2aRlN01fZYYXwid/k/QaVlJUF
+RjFJouAFyC0N4sjZDEZxnOrLV8QxVABNGwJ78HDeQ7Z2xOeOEvKzORB9RJvsz4ac
+FuEmARQX8QDiSzeCvjiq0VBd46KVYlU0hSXRM99VEexB+V/S5/h4xRHaaRwcWD0k
+rcx+OJkf4WTNRm6t2+LOFcOZ1VV4C3DnPbd0nCJlJSzHYUKGfeoJJJ7ew4KZF4le
+2fdSm7mihM6r2O047IbPr9qkVRDXfaIkXfFvCBPKogZ0pv41ctocTbVvTKoAbe6i
+npy6/mAHObt21m69If4I8DgLUvCuVIIbt/4TZVqeiN7mHIPk2XtftnMpSw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fairfieldtickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fairfieldtickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fairfieldtickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fairfieldtickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://fairfieldtickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://fairfieldtickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Fairfield University / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://faucommencementtickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://faucommencementtickets.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">FAU UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://faucommencementtickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://faucommencementtickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://faucommencementtickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://faucommencementtickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://faucommencementtickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://faucommencementtickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">FAU UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://fauevents.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fauevents.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">FAU Events // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fauevents.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fauevents.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fauevents.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fauevents.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">FAU Events // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://gatech.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gatech.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Georgia Tech // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gatech.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gatech.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gatech.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gatech.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Georgia Tech // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://georgetowncommencement.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://georgetowncommencement.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Georgetown // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://georgetowncommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://georgetowncommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://georgetowncommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://georgetowncommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://georgetowncommencement.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://georgetowncommencement.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Georgetown // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Suport</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://globallearning.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://globallearning.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Cornell Global Learning - UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://globallearning.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://globallearning.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://globallearning.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://globallearning.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://globallearning.UniversityTickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://globallearning.UniversityTickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Cornell Global Learning - UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://gobroncstix.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gobroncstix.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Rider University // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gobroncstix.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gobroncstix.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gobroncstix.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gobroncstix.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Rider University // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://goleopardstickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://goleopardstickets.universitytickets.com/shibboleth-sp/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Lafayette Athletics // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://goleopardstickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://goleopardstickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://goleopardstickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://goleopardstickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Lafayette Athletics // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://gsutickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gsutickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Georgia State // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gsutickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gsutickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gsutickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gsutickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://gsutickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://gsutickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Georgia State // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://gustavustickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gustavustickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Gustavus Adolphus College // UTIX</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gustavustickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gustavustickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gustavustickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gustavustickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Gustavus Adolphus College // UTIX</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://highlanderstickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://highlanderstickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCR Athletics // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://highlanderstickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://highlanderstickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://highlanderstickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://highlanderstickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCR Athletics // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://hopoutdoors.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://hopoutdoors.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">https://hopoutdoors.universitytickets.com/shibboleth-sp</mdui:DisplayName>
+ <mdui:Description xml:lang="en">JHU Single Sign On for Universitytickets</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hopoutdoors.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hopoutdoors.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hopoutdoors.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://hopoutdoors.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://hopoutdoors.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://hopoutdoors.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://issotickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://issotickets.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ISSOTickets - UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://issotickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://issotickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://issotickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://issotickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://issotickets.UniversityTickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://issotickets.UniversityTickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ISSOTickets - UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://jhutickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://jhutickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">JHU / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://jhutickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jhutickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://jhutickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://jhutickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://jhutickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">JHU / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://keene.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://keene.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Keene State // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://keene.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://keene.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://keene.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://keene.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Keene State // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ksu.universitytickets.com/shibboleth-sp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ksu.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">K-State UniversityTickets Login</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SSO for UniversityTickets </mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ksu.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ksu.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ksu.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ksu.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">K-State UniversityTickets Login</ServiceName>
+ <ServiceDescription xml:lang="en">SSO for UniversityTickets </ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://kutztown.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://kutztown.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Kutztown University // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kutztown.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kutztown.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kutztown.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kutztown.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Kutztown University // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://lafayetteticketsonline.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lafayetteticketsonline.universitytickets.com/Shibboleth.sso/SAML/POST" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Lafayette Tickets Online // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lafayetteticketsonline.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lafayetteticketsonline.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lafayetteticketsonline.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lafayetteticketsonline.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Lafayette Tickets Online // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://lafayette.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lafayette.universitytickets.com/Shibboleth.sso/SAML/POST" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Lafayette Arts / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lafayette.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lafayette.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lafayette.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lafayette.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://lafayette.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://lafayette.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Lafayette Arts / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://laurieractivities.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://laurieractivities.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">WLU Student Union // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://laurieractivities.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://laurieractivities.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://laurieractivities.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://laurieractivities.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">WLU Student Union // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://memphis.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://memphis.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Memphis // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://memphis.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://memphis.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://memphis.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://memphis.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Memphis // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://minertix.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://minertix.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://minertix.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://minertix.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://minertix.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://minertix.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://minertix.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://minertix.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://minescommencement.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://minescommencement.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Mines Commencement // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://minescommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://minescommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://minescommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://minescommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Mines Commencement // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://mines.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mines.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Colorado School of Mines // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mines.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mines.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mines.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mines.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Colorado School of Mines // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://mitac.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mitac.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">MITAC UTIX SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mitac.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mitac.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mitac.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mitac.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mitac.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://mitac.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://mit.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mit.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">MIT // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mit.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mit.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mit.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mit.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">MIT // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nbo-new.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nbo-new.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Northwestern Univ. // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nbo-new.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nbo-new.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nbo-new.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nbo-new.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Northwestern Univ. // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nbo.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nbo.universitytickets.com/Shibboleth.sso/SAML/POST" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Norris Box Office + UniveristyTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nbo.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nbo.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nbo.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nbo.universitytickets.com/Shibboleth.sso/SAML2/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nbo.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://neucommencementtickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://neucommencementtickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Northeastern Commencement // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://neucommencementtickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://neucommencementtickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://neucommencementtickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://neucommencementtickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://neucommencementtickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://neucommencementtickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Northeastern Commencement // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://niu.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://niu.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://niu.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://niu.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://niu.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://niu.UniversityTickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://niu.UniversityTickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://niu.UniversityTickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://njitcommencement.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://njitcommencement.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NJIT Commencement // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://njitcommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://njitcommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://njitcommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://njitcommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://njitcommencement.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://njitcommencement.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NJIT Commencement // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://njitevents.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://njitevents.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NJIT Events // UTIX Authentication</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://njitevents.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://njitevents.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://njitevents.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://njitevents.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NJIT Events // UTIX Authentication</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://njithighlanderstickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://njithighlanderstickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NJIT // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://njithighlanderstickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://njithighlanderstickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://njithighlanderstickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://njithighlanderstickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://njithighlanderstickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://njithighlanderstickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NJIT // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nucommencement.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nucommencement.universitytickets.com/Shibboleth.sso/SAML/POST" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NU / UTIX SSO</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Single sign-on for NU Commencement Ticketing</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nucommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nucommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nucommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nucommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nucommencement.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nucommencement.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NU / UTIX SSO</ServiceName>
+ <ServiceDescription xml:lang="en">Single sign-on for NU Commencement Ticketing</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nyusteinhardttickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nyusteinhardttickets.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NYU Steinhardt Commencement Tickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nyusteinhardttickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nyusteinhardttickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nyusteinhardttickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nyusteinhardttickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nyusteinhardttickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nyusteinhardttickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NYU Steinhardt Commencement Tickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nyu.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nyu.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NYU Commencement Tickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nyu.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nyu.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nyu.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nyu.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nyu.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nyu.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NYU Commencement Tickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://oduartstix.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://oduartstix.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ODU // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oduartstix.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://oduartstix.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://oduartstix.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://oduartstix.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ODU // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://okstate.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://okstate.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Oklahoma State // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://okstate.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://okstate.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://okstate.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://okstate.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://okstate.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://okstate.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Oklahoma State // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://olemissboxoffice.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://olemissboxoffice.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets // Ole Miss Box Office</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://olemissboxoffice.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://olemissboxoffice.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://olemissboxoffice.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://olemissboxoffice.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets // Ole Miss Box Office</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ouabtickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ouabtickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">The Ohio State University // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ouabtickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ouabtickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ouabtickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ouabtickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">The Ohio State University // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://paceathletics.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://paceathletics.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Pace University Athletics // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12341920784551648620, expires on Sat Jul 14 14:15:51 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://paceathletics.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://paceathletics.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://paceathletics.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://paceathletics.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://paceathletics.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://paceathletics.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Pace University Athletics // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://pace.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pace.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pace.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pace.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pace.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pace.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://pace.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://pace.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://pcconcert.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pcconcert.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SMU Program Council // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pcconcert.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pcconcert.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pcconcert.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pcconcert.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://pcconcert.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://pcconcert.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SMU Program Council // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://peabody.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://peabody.universitytickets.com/Shibboleth.sso/SAML/POST" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">JHU Peabody / UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>
+MIIEFzCCAv+gAwIBAgIJAOKNYZKTkGOxMA0GCSqGSIb3DQEBBQUAMIGhMQswCQYD
+VQQGEwJVUzELMAkGA1UECAwCTlkxETAPBgNVBAcMCE5ldyBZb3JrMSAwHgYDVQQK
+DBdVbml2ZXJzaXR5VGlja2V0cywgSW5jLjEiMCAGA1UEAwwZVW5pdmVyc2l0eVRp
+Y2tldHMgU3VwcG9ydDEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5
+dGlja2V0cy5jb20wHhcNMTAwODI3MTQzNDMwWhcNMTMwODI2MTQzNDMwWjCBoTEL
+MAkGA1UEBhMCVVMxCzAJBgNVBAgMAk5ZMREwDwYDVQQHDAhOZXcgWW9yazEgMB4G
+A1UECgwXVW5pdmVyc2l0eVRpY2tldHMsIEluYy4xIjAgBgNVBAMMGVVuaXZlcnNp
+dHlUaWNrZXRzIFN1cHBvcnQxLDAqBgkqhkiG9w0BCQEWHXN1cHBvcnRAdW5pdmVy
+c2l0eXRpY2tldHMuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+tuDuyswVfkWKroBS9oOpm2QqRJecNIyZ7DMf9m7jwFFaQiPN3NYTe9C35I3rsmqp
+UvSK075z34uNrBddsz29CnVurUv6geM+mBUZB11oFG6rGxuT3wfYTpA54kbVQps1
+GHL8HV95fB5xEagZd888i7CFmXZMJ3xF4R9h8UDe09ZlQ5sjY/E6Ff0bIaAP6phj
+l0IsIBYRPUeIGMYPqw7azmFy7XS4FPTrQmya1E7wxf/6CXot5EYhyYLr7RKdOjp5
+foIkedY1ZhjuWZFa6EPaIYqqz8v9nGJx3uW3dZeuXfNrSjvj0RasHNXU84y0FP1S
+ex6ywCFhLIVS5ewXXm6b9QIDAQABo1AwTjAdBgNVHQ4EFgQUDCeDghnKlaF2rAwJ
+rB0DSvAOpfwwHwYDVR0jBBgwFoAUDCeDghnKlaF2rAwJrB0DSvAOpfwwDAYDVR0T
+BAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEAEBt2aRlN01fZYYXwid/k/QaVlJUF
+RjFJouAFyC0N4sjZDEZxnOrLV8QxVABNGwJ78HDeQ7Z2xOeOEvKzORB9RJvsz4ac
+FuEmARQX8QDiSzeCvjiq0VBd46KVYlU0hSXRM99VEexB+V/S5/h4xRHaaRwcWD0k
+rcx+OJkf4WTNRm6t2+LOFcOZ1VV4C3DnPbd0nCJlJSzHYUKGfeoJJJ7ew4KZF4le
+2fdSm7mihM6r2O047IbPr9qkVRDXfaIkXfFvCBPKogZ0pv41ctocTbVvTKoAbe6i
+npy6/mAHObt21m69If4I8DgLUvCuVIIbt/4TZVqeiN7mHIPk2XtftnMpSw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://peabody.universitytickets.com/Shibboleth.sso/SAML/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://peabody.universitytickets.com/Shibboleth.sso/SAML2/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://peabody.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://peabody.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://peabody.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">JHU Peabody / UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://portlandcommencement.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portlandcommencement.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Portland State University / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portlandcommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portlandcommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portlandcommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portlandcommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://portlandcommencement.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://portlandcommencement.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Portland State University / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://portlandstate-new.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portlandstate-new.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets // Portland State SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portlandstate-new.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portlandstate-new.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portlandstate-new.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portlandstate-new.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://portlandstate-new.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://portlandstate-new.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets // Portland State SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://portlandstate.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portlandstate.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Portland State University / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portlandstate.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portlandstate.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portlandstate.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portlandstate.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://portlandstate.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://portlandstate.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Portland State University / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://psoatickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://psoatickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Peck School of the Arts // UTIX Login</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://psoatickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://psoatickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://psoatickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://psoatickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Peck School of the Arts // UTIX Login</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://radfordactivities.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://radfordactivities.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Radford Activities / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://radfordactivities.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://radfordactivities.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://radfordactivities.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://radfordactivities.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://radfordactivities.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://radfordactivities.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Radford Activities / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://radfordtickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://radfordtickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Radford Athletics / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 465, expires on Thu Nov 18 20:27:51 2010 GMT -->
+ <ds:X509Certificate>
+MIIFyTCCBLGgAwIBAgICAdEwDQYJKoZIhvcNAQEFBQAwVjELMAkGA1UEBhMCVVMx
+HDAaBgNVBAoTE0luQ29tbW9uIEZlZGVyYXRpb24xKTAnBgNVBAMTIEluQ29tbW9u
+IENlcnRpZmljYXRpb24gQXV0aG9yaXR5MB4XDTA4MTExNzIwMjc1MVoXDTEwMTEx
+ODIwMjc1MVowNzE1MDMGA1UEAxMsbGFmYXlldHRldGlja2V0c29ubGluZS51bml2
+ZXJzaXR5dGlja2V0cy5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
+AQDUjz8rf4wXX47CBdxJU4+sJ9SohhMLvtxwH/HeePBBDcHwfKzdAVICA46fOqvb
+qf6vBr3Yf446Ml2/ic25ZYTWZr2PBeqKuI3K1NRInRV/N+8f6xCkA3aV3QJZ9/yf
+N3Is5RxMi2O7tMhoOtxszLBViW0gEhHRbQNpyBryxJzSPyb3gDrIcSna4vSSyyRu
+1BT+LnyzgHBattUsLKb6UH0sJ3yZG/G5TNr4NhCOmHMCmLbBLNZOHYlS73gLDEoE
++BxwEDs6rViJKhS4CzIIFEfxfDPpdTKbb3j7Iay1Mu+kt7XskxR74pTHa5/8a99M
+eBaXiac+QXLP8M45ILKkEzNbAgMBAAGjggK+MIICujAOBgNVHQ8BAf8EBAMCBaAw
+DAYDVR0TAQH/BAIwADAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwHQYD
+VR0OBBYEFEkaASR1WxRpxfePmuKwIOlvlejMMH4GA1UdIwR3MHWAFJMtyGEYrWPj
+m2Wznd2Nk7rnymNFoVqkWDBWMQswCQYDVQQGEwJVUzEcMBoGA1UEChMTSW5Db21t
+b24gRmVkZXJhdGlvbjEpMCcGA1UEAxMgSW5Db21tb24gQ2VydGlmaWNhdGlvbiBB
+dXRob3JpdHmCAQAwgbIGCCsGAQUFBwEBBIGlMIGiME8GCCsGAQUFBzAChkNodHRw
+Oi8vaW5jb21tb25jYTEuaW5jb21tb25mZWRlcmF0aW9uLm9yZy9icmlkZ2UvY2Vy
+dHMvY2EtY2VydHMucDdiME8GCCsGAQUFBzAChkNodHRwOi8vaW5jb21tb25jYTIu
+aW5jb21tb25mZWRlcmF0aW9uLm9yZy9icmlkZ2UvY2VydHMvY2EtY2VydHMucDdi
+MIGNBgNVHR8EgYUwgYIwP6A9oDuGOWh0dHA6Ly9pbmNvbW1vbmNybDEuaW5jb21t
+b25mZWRlcmF0aW9uLm9yZy9jcmwvZWVjcmxzLmNybDA/oD2gO4Y5aHR0cDovL2lu
+Y29tbW9uY3JsMi5pbmNvbW1vbmZlZGVyYXRpb24ub3JnL2NybC9lZWNybHMuY3Js
+MF4GA1UdIARXMFUwUwYLKwYBBAGuIwEEAQEwRDBCBggrBgEFBQcCARY2aHR0cDov
+L2luY29tbW9uY2EuaW5jb21tb25mZWRlcmF0aW9uLm9yZy9wcmFjdGljZXMucGRm
+MDcGA1UdEQQwMC6CLGxhZmF5ZXR0ZXRpY2tldHNvbmxpbmUudW5pdmVyc2l0eXRp
+Y2tldHMuY29tMA0GCSqGSIb3DQEBBQUAA4IBAQB3I1L1UN+N3qDDb0UTY6ggg+2+
+Pgx9ZBK2tJgI49RkBfsX8c4voHs7GWTN28cos6FPP+3U/WIbqN1Qs0I8/kdwuPtI
+Q3L5z5yefJq276M/MZC9e9dGcCDGh1b6HhkKCgn1jb004YSVnuE216xxe11MyAfM
+ilpXF+3kHH//JHew4RUk6XjH2ia5Rpl8zCTmtN818bCKLgNtVGzGXEWupcsDjw8H
+FevaWhDhF5JGoQ0G5Kd9APjRBwMnXSlZoTXcuwE0Z7u0e8DnvPAlDOVE7mTjzlxb
+8DvfcO4DYAkkNNYr3k8w+QLSFFPA5csJmB0bPggPTbOFiefvB53f0TsZTF9V
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://radfordtickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://radfordtickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://radfordtickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://radfordtickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://radfordtickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://radfordtickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Radford Athletics / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://rideruniversityathletictickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rideruniversityathletictickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Rider University / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>
+MIIEFzCCAv+gAwIBAgIJAOKNYZKTkGOxMA0GCSqGSIb3DQEBBQUAMIGhMQswCQYD
+VQQGEwJVUzELMAkGA1UECAwCTlkxETAPBgNVBAcMCE5ldyBZb3JrMSAwHgYDVQQK
+DBdVbml2ZXJzaXR5VGlja2V0cywgSW5jLjEiMCAGA1UEAwwZVW5pdmVyc2l0eVRp
+Y2tldHMgU3VwcG9ydDEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5
+dGlja2V0cy5jb20wHhcNMTAwODI3MTQzNDMwWhcNMTMwODI2MTQzNDMwWjCBoTEL
+MAkGA1UEBhMCVVMxCzAJBgNVBAgMAk5ZMREwDwYDVQQHDAhOZXcgWW9yazEgMB4G
+A1UECgwXVW5pdmVyc2l0eVRpY2tldHMsIEluYy4xIjAgBgNVBAMMGVVuaXZlcnNp
+dHlUaWNrZXRzIFN1cHBvcnQxLDAqBgkqhkiG9w0BCQEWHXN1cHBvcnRAdW5pdmVy
+c2l0eXRpY2tldHMuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+tuDuyswVfkWKroBS9oOpm2QqRJecNIyZ7DMf9m7jwFFaQiPN3NYTe9C35I3rsmqp
+UvSK075z34uNrBddsz29CnVurUv6geM+mBUZB11oFG6rGxuT3wfYTpA54kbVQps1
+GHL8HV95fB5xEagZd888i7CFmXZMJ3xF4R9h8UDe09ZlQ5sjY/E6Ff0bIaAP6phj
+l0IsIBYRPUeIGMYPqw7azmFy7XS4FPTrQmya1E7wxf/6CXot5EYhyYLr7RKdOjp5
+foIkedY1ZhjuWZFa6EPaIYqqz8v9nGJx3uW3dZeuXfNrSjvj0RasHNXU84y0FP1S
+ex6ywCFhLIVS5ewXXm6b9QIDAQABo1AwTjAdBgNVHQ4EFgQUDCeDghnKlaF2rAwJ
+rB0DSvAOpfwwHwYDVR0jBBgwFoAUDCeDghnKlaF2rAwJrB0DSvAOpfwwDAYDVR0T
+BAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEAEBt2aRlN01fZYYXwid/k/QaVlJUF
+RjFJouAFyC0N4sjZDEZxnOrLV8QxVABNGwJ78HDeQ7Z2xOeOEvKzORB9RJvsz4ac
+FuEmARQX8QDiSzeCvjiq0VBd46KVYlU0hSXRM99VEexB+V/S5/h4xRHaaRwcWD0k
+rcx+OJkf4WTNRm6t2+LOFcOZ1VV4C3DnPbd0nCJlJSzHYUKGfeoJJJ7ew4KZF4le
+2fdSm7mihM6r2O047IbPr9qkVRDXfaIkXfFvCBPKogZ0pv41ctocTbVvTKoAbe6i
+npy6/mAHObt21m69If4I8DgLUvCuVIIbt/4TZVqeiN7mHIPk2XtftnMpSw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rideruniversityathletictickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rideruniversityathletictickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rideruniversityathletictickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rideruniversityathletictickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rideruniversityathletictickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rideruniversityathletictickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Rider University / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://rutheatretickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://radfordactivities.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Radford Theatre / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rutheatretickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rutheatretickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rutheatretickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rutheatretickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rutheatretickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rutheatretickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Radford Theatre / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://salisbury.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://salisbury.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Salisbury /// UTIX</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://salisbury.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://salisbury.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://salisbury.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://salisbury.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Salisbury /// UTIX</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sbusgtickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sbusgtickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stony Brook Student Government // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sbusgtickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sbusgtickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sbusgtickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sbusgtickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Stony Brook Student Government // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://schwartztickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://schwartztickets.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SchwartzTickets - UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://schwartztickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://schwartztickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://schwartztickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://schwartztickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://schwartztickets.UniversityTickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://schwartztickets.UniversityTickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SchwartzTickets - UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sgapurchaseportals.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sgapurchaseportals.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UVM SGA Purchase // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sgapurchaseportals.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sgapurchaseportals.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sgapurchaseportals.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sgapurchaseportals.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UVM SGA Purchase // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://shsu.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shsu.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shsu.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shsu.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shsu.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shsu.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shsu.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shsu.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://smucommencement.universitytickets.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://smucommencement.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SMU Commencement - UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://smucommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://smucommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://smucommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://smucommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://smucommencement.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://smucommencement.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SMU Commencement - UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://smu.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://smu.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SMU // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://smu.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://smu.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://smu.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://smu.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SMU // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://stevenscommencement.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://stevenscommencement.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stevenscommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stevenscommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stevenscommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stevenscommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://testpsu.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://testpsu.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Portland State University / UniversityTickets SSO TEST</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testpsu.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://testpsu.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://testpsu.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://testpsu.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://testpsu.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://testpsu.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Portland State University / UniversityTickets SSO TEST</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://thehubtix.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://thehubtix.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets SSO</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Single Sign On for University of Washington</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://thehubtix.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://thehubtix.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://thehubtix.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://thehubtix.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://thehubtix.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://thehubtix.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets SSO</ServiceName>
+ <ServiceDescription xml:lang="en">Single Sign On for University of Washington</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://tuftsdramadancetickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://tuftsdramadancetickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Tufts University / UniversityTickets SSO - Tufts Drama</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>
+MIIEFzCCAv+gAwIBAgIJAOKNYZKTkGOxMA0GCSqGSIb3DQEBBQUAMIGhMQswCQYD
+VQQGEwJVUzELMAkGA1UECAwCTlkxETAPBgNVBAcMCE5ldyBZb3JrMSAwHgYDVQQK
+DBdVbml2ZXJzaXR5VGlja2V0cywgSW5jLjEiMCAGA1UEAwwZVW5pdmVyc2l0eVRp
+Y2tldHMgU3VwcG9ydDEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5
+dGlja2V0cy5jb20wHhcNMTAwODI3MTQzNDMwWhcNMTMwODI2MTQzNDMwWjCBoTEL
+MAkGA1UEBhMCVVMxCzAJBgNVBAgMAk5ZMREwDwYDVQQHDAhOZXcgWW9yazEgMB4G
+A1UECgwXVW5pdmVyc2l0eVRpY2tldHMsIEluYy4xIjAgBgNVBAMMGVVuaXZlcnNp
+dHlUaWNrZXRzIFN1cHBvcnQxLDAqBgkqhkiG9w0BCQEWHXN1cHBvcnRAdW5pdmVy
+c2l0eXRpY2tldHMuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+tuDuyswVfkWKroBS9oOpm2QqRJecNIyZ7DMf9m7jwFFaQiPN3NYTe9C35I3rsmqp
+UvSK075z34uNrBddsz29CnVurUv6geM+mBUZB11oFG6rGxuT3wfYTpA54kbVQps1
+GHL8HV95fB5xEagZd888i7CFmXZMJ3xF4R9h8UDe09ZlQ5sjY/E6Ff0bIaAP6phj
+l0IsIBYRPUeIGMYPqw7azmFy7XS4FPTrQmya1E7wxf/6CXot5EYhyYLr7RKdOjp5
+foIkedY1ZhjuWZFa6EPaIYqqz8v9nGJx3uW3dZeuXfNrSjvj0RasHNXU84y0FP1S
+ex6ywCFhLIVS5ewXXm6b9QIDAQABo1AwTjAdBgNVHQ4EFgQUDCeDghnKlaF2rAwJ
+rB0DSvAOpfwwHwYDVR0jBBgwFoAUDCeDghnKlaF2rAwJrB0DSvAOpfwwDAYDVR0T
+BAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEAEBt2aRlN01fZYYXwid/k/QaVlJUF
+RjFJouAFyC0N4sjZDEZxnOrLV8QxVABNGwJ78HDeQ7Z2xOeOEvKzORB9RJvsz4ac
+FuEmARQX8QDiSzeCvjiq0VBd46KVYlU0hSXRM99VEexB+V/S5/h4xRHaaRwcWD0k
+rcx+OJkf4WTNRm6t2+LOFcOZ1VV4C3DnPbd0nCJlJSzHYUKGfeoJJJ7ew4KZF4le
+2fdSm7mihM6r2O047IbPr9qkVRDXfaIkXfFvCBPKogZ0pv41ctocTbVvTKoAbe6i
+npy6/mAHObt21m69If4I8DgLUvCuVIIbt/4TZVqeiN7mHIPk2XtftnMpSw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tuftsdramadancetickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tuftsdramadancetickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tuftsdramadancetickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tuftsdramadancetickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tuftsdramadancetickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tuftsdramadancetickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Tufts University / UniversityTickets SSO - Tufts Drama</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://tuftstickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://tuftstickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Tufts University / UniversityTickets SSO - TuftsTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tuftstickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tuftstickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tuftstickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tuftstickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tuftstickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tuftstickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Tufts University / UniversityTickets SSO - TuftsTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://tulaneactivities.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://tulaneactivities.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets SSO</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Sign-on for UniversityTickets</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tulaneactivities.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tulaneactivities.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tulaneactivities.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tulaneactivities.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tulaneactivities.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tulaneactivities.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets SSO</ServiceName>
+ <ServiceDescription xml:lang="en">Sign-on for UniversityTickets</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://txstatepresents.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://txstatepresents.universitytickets.com/shibboleth-sp/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets / Texas State SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://txstatepresents.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://txstatepresents.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://txstatepresents.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://txstatepresents.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://txstatepresents.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://txstatepresents.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets / Texas State SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uaatix.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uaatix.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uaatix.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uaatix.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uaatix.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uaatix.UniversityTickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uaatix.UniversityTickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uaatix.UniversityTickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ualabama.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ualabama.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Univ. of Alabama // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ualabama.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ualabama.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ualabama.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ualabama.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Univ. of Alabama // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ualbany.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ualbany.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UAlbany / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ualbany.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ualbany.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ualbany.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ualbany.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ualbany.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ualbany.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UAlbany / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ua.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ua.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Univ. of Alabama // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ua.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ua.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ua.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ua.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Univ. of Alabama // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ubalt.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ubalt.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Baltimore // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ubalt.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ubalt.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ubalt.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ubalt.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ubalt.universitytickets.com/Shibboleth.sso/SAML/POSTubalt" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ubalt.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Baltimore // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucftickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucftickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCF / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucftickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucftickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucftickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucftickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ucftickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ucftickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCF / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uchilawgraduation.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uchilawgraduation.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uchilawgraduation.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uchilawgraduation.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uchilawgraduation.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uchilawgraduation.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uchilawgraduation.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uchilawgraduation.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucrartstickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucrartstickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCR Arts // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucrartstickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucrartstickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucrartstickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucrartstickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCR Arts // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Suppor</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucrbarnevents.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucrbarnevents.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCR Barn Events // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucrbarnevents.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucrbarnevents.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucrbarnevents.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucrbarnevents.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCR Barn Events // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucrbarntickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucrbarntickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCR Barn Tickets // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucrbarntickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucrbarntickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucrbarntickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucrbarntickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCR Barn Tickets // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucrfineartstickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucrfineartstickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCR Fine Arts // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucrfineartstickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucrfineartstickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucrfineartstickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucrfineartstickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCR Fine Arts // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucsccommencement.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucsccommencement.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCSC Commencement // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucsccommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucsccommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucsccommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucsccommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCSC Commencement // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucsctickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucsctickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCSC + UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucsctickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucsctickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucsctickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucsctickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCSC + UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uiowatickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uiowatickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Iowa // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uiowatickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uiowatickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uiowatickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uiowatickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uiowatickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uiowatickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Iowa // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ukytickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ukytickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UKY // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ukytickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ukytickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ukytickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ukytickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ukytickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ukytickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UKY // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umassd.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://umassd.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UMass Dartmouth // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umassd.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://umassd.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umassd.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://umassd.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://umassd.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://umassd.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UMass Dartmouth // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umass.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://umass.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UMASS / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umass.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://umass.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umass.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://umass.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://umass.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://umass.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UMASS / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umbc.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://umbc.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umbc.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://umbc.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umbc.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://umbc.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://umbc.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://umbc.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umdtickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://umdtickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UMD + UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>
+MIIEFzCCAv+gAwIBAgIJAOKNYZKTkGOxMA0GCSqGSIb3DQEBBQUAMIGhMQswCQYD
+VQQGEwJVUzELMAkGA1UECAwCTlkxETAPBgNVBAcMCE5ldyBZb3JrMSAwHgYDVQQK
+DBdVbml2ZXJzaXR5VGlja2V0cywgSW5jLjEiMCAGA1UEAwwZVW5pdmVyc2l0eVRp
+Y2tldHMgU3VwcG9ydDEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5
+dGlja2V0cy5jb20wHhcNMTAwODI3MTQzNDMwWhcNMTMwODI2MTQzNDMwWjCBoTEL
+MAkGA1UEBhMCVVMxCzAJBgNVBAgMAk5ZMREwDwYDVQQHDAhOZXcgWW9yazEgMB4G
+A1UECgwXVW5pdmVyc2l0eVRpY2tldHMsIEluYy4xIjAgBgNVBAMMGVVuaXZlcnNp
+dHlUaWNrZXRzIFN1cHBvcnQxLDAqBgkqhkiG9w0BCQEWHXN1cHBvcnRAdW5pdmVy
+c2l0eXRpY2tldHMuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+tuDuyswVfkWKroBS9oOpm2QqRJecNIyZ7DMf9m7jwFFaQiPN3NYTe9C35I3rsmqp
+UvSK075z34uNrBddsz29CnVurUv6geM+mBUZB11oFG6rGxuT3wfYTpA54kbVQps1
+GHL8HV95fB5xEagZd888i7CFmXZMJ3xF4R9h8UDe09ZlQ5sjY/E6Ff0bIaAP6phj
+l0IsIBYRPUeIGMYPqw7azmFy7XS4FPTrQmya1E7wxf/6CXot5EYhyYLr7RKdOjp5
+foIkedY1ZhjuWZFa6EPaIYqqz8v9nGJx3uW3dZeuXfNrSjvj0RasHNXU84y0FP1S
+ex6ywCFhLIVS5ewXXm6b9QIDAQABo1AwTjAdBgNVHQ4EFgQUDCeDghnKlaF2rAwJ
+rB0DSvAOpfwwHwYDVR0jBBgwFoAUDCeDghnKlaF2rAwJrB0DSvAOpfwwDAYDVR0T
+BAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEAEBt2aRlN01fZYYXwid/k/QaVlJUF
+RjFJouAFyC0N4sjZDEZxnOrLV8QxVABNGwJ78HDeQ7Z2xOeOEvKzORB9RJvsz4ac
+FuEmARQX8QDiSzeCvjiq0VBd46KVYlU0hSXRM99VEexB+V/S5/h4xRHaaRwcWD0k
+rcx+OJkf4WTNRm6t2+LOFcOZ1VV4C3DnPbd0nCJlJSzHYUKGfeoJJJ7ew4KZF4le
+2fdSm7mihM6r2O047IbPr9qkVRDXfaIkXfFvCBPKogZ0pv41ctocTbVvTKoAbe6i
+npy6/mAHObt21m69If4I8DgLUvCuVIIbt/4TZVqeiN7mHIPk2XtftnMpSw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umdtickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://umdtickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umdtickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://umdtickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://umdtickets.universitytickets.com/Shibboleth.sso/SAML/POS" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://umdtickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UMD + UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umuccommencement.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://umuccommencement.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umuccommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://umuccommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umuccommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://umuccommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://umuccommencement.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://umuccommencement.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://unccboxoffice.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://unccboxoffice.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UNCC - UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unccboxoffice.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://unccboxoffice.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://unccboxoffice.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://unccboxoffice.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://unccboxoffice.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://unccboxoffice.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ungcommencement.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ungcommencement.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UNG Commencement / UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ungcommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ungcommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ungcommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ungcommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UNG Commencement / UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ungtickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ungtickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UNG // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ungtickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ungtickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ungtickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ungtickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UNG // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://unltheatretickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://unltheatretickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UNL // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unltheatretickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://unltheatretickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://unltheatretickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://unltheatretickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://unltheatretickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://unltheatretickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UNL // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://untuniontickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://untuniontickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UNT Union // UniversityTickets sso</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://untuniontickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://untuniontickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://untuniontickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://untuniontickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UNT Union // UniversityTickets sso</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://unt.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://unt.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets / UNT SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12341920784551648620, expires on Sat Jul 14 14:15:51 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unt.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://unt.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://unt.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://unt.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets / UNT SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uottawa.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uottawa.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UOttawa // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uottawa.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uottawa.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uottawa.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uottawa.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UOttawa // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ups.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ups.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Puget Sound // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>
+MIIEFzCCAv+gAwIBAgIJAOKNYZKTkGOxMA0GCSqGSIb3DQEBBQUAMIGhMQswCQYD
+VQQGEwJVUzELMAkGA1UECAwCTlkxETAPBgNVBAcMCE5ldyBZb3JrMSAwHgYDVQQK
+DBdVbml2ZXJzaXR5VGlja2V0cywgSW5jLjEiMCAGA1UEAwwZVW5pdmVyc2l0eVRp
+Y2tldHMgU3VwcG9ydDEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5
+dGlja2V0cy5jb20wHhcNMTAwODI3MTQzNDMwWhcNMTMwODI2MTQzNDMwWjCBoTEL
+MAkGA1UEBhMCVVMxCzAJBgNVBAgMAk5ZMREwDwYDVQQHDAhOZXcgWW9yazEgMB4G
+A1UECgwXVW5pdmVyc2l0eVRpY2tldHMsIEluYy4xIjAgBgNVBAMMGVVuaXZlcnNp
+dHlUaWNrZXRzIFN1cHBvcnQxLDAqBgkqhkiG9w0BCQEWHXN1cHBvcnRAdW5pdmVy
+c2l0eXRpY2tldHMuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+tuDuyswVfkWKroBS9oOpm2QqRJecNIyZ7DMf9m7jwFFaQiPN3NYTe9C35I3rsmqp
+UvSK075z34uNrBddsz29CnVurUv6geM+mBUZB11oFG6rGxuT3wfYTpA54kbVQps1
+GHL8HV95fB5xEagZd888i7CFmXZMJ3xF4R9h8UDe09ZlQ5sjY/E6Ff0bIaAP6phj
+l0IsIBYRPUeIGMYPqw7azmFy7XS4FPTrQmya1E7wxf/6CXot5EYhyYLr7RKdOjp5
+foIkedY1ZhjuWZFa6EPaIYqqz8v9nGJx3uW3dZeuXfNrSjvj0RasHNXU84y0FP1S
+ex6ywCFhLIVS5ewXXm6b9QIDAQABo1AwTjAdBgNVHQ4EFgQUDCeDghnKlaF2rAwJ
+rB0DSvAOpfwwHwYDVR0jBBgwFoAUDCeDghnKlaF2rAwJrB0DSvAOpfwwDAYDVR0T
+BAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEAEBt2aRlN01fZYYXwid/k/QaVlJUF
+RjFJouAFyC0N4sjZDEZxnOrLV8QxVABNGwJ78HDeQ7Z2xOeOEvKzORB9RJvsz4ac
+FuEmARQX8QDiSzeCvjiq0VBd46KVYlU0hSXRM99VEexB+V/S5/h4xRHaaRwcWD0k
+rcx+OJkf4WTNRm6t2+LOFcOZ1VV4C3DnPbd0nCJlJSzHYUKGfeoJJJ7ew4KZF4le
+2fdSm7mihM6r2O047IbPr9qkVRDXfaIkXfFvCBPKogZ0pv41ctocTbVvTKoAbe6i
+npy6/mAHObt21m69If4I8DgLUvCuVIIbt/4TZVqeiN7mHIPk2XtftnMpSw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ups.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ups.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ups.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ups.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ups.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ups.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Puget Sound // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://usfcommencement.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://usfcommencement.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">USF Commencement Ticket Access</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://usfcommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://usfcommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://usfcommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://usfcommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">USF Commencement Ticket Access</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://utdallastickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://utdtickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UT Dallas + UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://utdallastickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://utdallastickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://utdallastickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://utdtickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://utdallastickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://utdallastickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UT Dallas + UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://utdgraduationtickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://utdgraduationtickets.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://utdgraduationtickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://utdgraduationtickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://utdgraduationtickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://utdgraduationtickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://utdgraduationtickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://utdgraduationtickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uvmcommencement.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uvmcommencement.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uvmcommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uvmcommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uvmcommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uvmcommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uvmcommencement.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uvmcommencement.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uvmsgatickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uvmsgatickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UVM SGA // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uvmsgatickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uvmsgatickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uvmsgatickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uvmsgatickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uvmsgatickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uvmsgatickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UVM SGA // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uvmtickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uvmtickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UVMTickets // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uvmtickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uvmtickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uvmtickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uvmtickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uvmtickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uvmtickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UVMTickets // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uvu.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uvu.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Utah Valley // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uvu.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uvu.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uvu.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uvu.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uvu.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uvu.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Utah Valley // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uwm.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uwm.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UWM // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uwm.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uwm.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uwm.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uwm.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UWM // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uwosh.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uwosh.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UW Oshkosh // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uwosh.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uwosh.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uwosh.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uwosh.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UW Oshkosh // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uwttickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uwttickets.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uwttickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uwttickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uwttickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uwttickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uwttickets.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uwttickets.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Gordon Capreol</GivenName>
+ <EmailAddress>gcapreol@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://vikestickets.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vikestickets.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">VikesTickets Service</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The online ticketing service for all Vikes! University of Victoria.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://govikesgo.com/sports/2016/10/4/privacy-policy.aspx</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="110" width="216" xml:lang="en">https://www.uvic.ca/brand/assets/images/graphics/logos/uvic_logo-horizontal.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vikestickets.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://vikestickets.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vikestickets.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://vikestickets.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">VikesTickets Service</ServiceName>
+ <ServiceDescription xml:lang="en">The online ticketing service for all Vikes! University of Victoria.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://viterbicommencement.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://viterbicommencement.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">USC Viterbi // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://viterbicommencement.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://viterbicommencement.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://viterbicommencement.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://viterbicommencement.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://viterbicommencement.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">USC Viterbi // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://waterloowarriors.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://waterloowarriors.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Waterloo // UniversityTickets</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://waterloowarriors.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://waterloowarriors.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://waterloowarriors.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://waterloowarriors.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Waterloo // UniversityTickets</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wesleyan.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wesleyan.universitytickets.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Wesleyan // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>
+MIIEFzCCAv+gAwIBAgIJAOKNYZKTkGOxMA0GCSqGSIb3DQEBBQUAMIGhMQswCQYD
+VQQGEwJVUzELMAkGA1UECAwCTlkxETAPBgNVBAcMCE5ldyBZb3JrMSAwHgYDVQQK
+DBdVbml2ZXJzaXR5VGlja2V0cywgSW5jLjEiMCAGA1UEAwwZVW5pdmVyc2l0eVRp
+Y2tldHMgU3VwcG9ydDEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5
+dGlja2V0cy5jb20wHhcNMTAwODI3MTQzNDMwWhcNMTMwODI2MTQzNDMwWjCBoTEL
+MAkGA1UEBhMCVVMxCzAJBgNVBAgMAk5ZMREwDwYDVQQHDAhOZXcgWW9yazEgMB4G
+A1UECgwXVW5pdmVyc2l0eVRpY2tldHMsIEluYy4xIjAgBgNVBAMMGVVuaXZlcnNp
+dHlUaWNrZXRzIFN1cHBvcnQxLDAqBgkqhkiG9w0BCQEWHXN1cHBvcnRAdW5pdmVy
+c2l0eXRpY2tldHMuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+tuDuyswVfkWKroBS9oOpm2QqRJecNIyZ7DMf9m7jwFFaQiPN3NYTe9C35I3rsmqp
+UvSK075z34uNrBddsz29CnVurUv6geM+mBUZB11oFG6rGxuT3wfYTpA54kbVQps1
+GHL8HV95fB5xEagZd888i7CFmXZMJ3xF4R9h8UDe09ZlQ5sjY/E6Ff0bIaAP6phj
+l0IsIBYRPUeIGMYPqw7azmFy7XS4FPTrQmya1E7wxf/6CXot5EYhyYLr7RKdOjp5
+foIkedY1ZhjuWZFa6EPaIYqqz8v9nGJx3uW3dZeuXfNrSjvj0RasHNXU84y0FP1S
+ex6ywCFhLIVS5ewXXm6b9QIDAQABo1AwTjAdBgNVHQ4EFgQUDCeDghnKlaF2rAwJ
+rB0DSvAOpfwwHwYDVR0jBBgwFoAUDCeDghnKlaF2rAwJrB0DSvAOpfwwDAYDVR0T
+BAUwAwEB/zANBgkqhkiG9w0BAQUFAAOCAQEAEBt2aRlN01fZYYXwid/k/QaVlJUF
+RjFJouAFyC0N4sjZDEZxnOrLV8QxVABNGwJ78HDeQ7Z2xOeOEvKzORB9RJvsz4ac
+FuEmARQX8QDiSzeCvjiq0VBd46KVYlU0hSXRM99VEexB+V/S5/h4xRHaaRwcWD0k
+rcx+OJkf4WTNRm6t2+LOFcOZ1VV4C3DnPbd0nCJlJSzHYUKGfeoJJJ7ew4KZF4le
+2fdSm7mihM6r2O047IbPr9qkVRDXfaIkXfFvCBPKogZ0pv41ctocTbVvTKoAbe6i
+npy6/mAHObt21m69If4I8DgLUvCuVIIbt/4TZVqeiN7mHIPk2XtftnMpSw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wesleyan.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wesleyan.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wesleyan.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wesleyan.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wesleyan.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wesleyan.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Wesleyan // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://witgradtix.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://witgradtix.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">WIT // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://witgradtix.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://witgradtix.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://witgradtix.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://witgradtix.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">WIT // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wpunj.universitytickets.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wpunj.universitytickets.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">WPUNJ // UniversityTickets SSO</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.universitytickets.com/downloads/privacypolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://www.universitytickets.com/application/files/8314/4501/8006/footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12171786611833879729, expires on Thu Jul 13 16:55:21 2028 GMT -->
+ <ds:X509Certificate>
+MIIFuDCCA6ACCQCo6t9vQDa8sTANBgkqhkiG9w0BAQUFADCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wHhcNMTgwNzE2MTY1NTIxWhcNMjgwNzEzMTY1NTIxWjCBnTELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE5ldy1Zb3JrMREwDwYDVQQHDAhXYWxsa2lsbDEaMBgGA1UE
+CgwRVW5pdmVyc2l0eVRpY2tldHMxHjAcBgNVBAMMFVVuaXZlcnNpdHlUaWNrZXRz
+LmNvbTEsMCoGCSqGSIb3DQEJARYdc3VwcG9ydEB1bml2ZXJzaXR5dGlja2V0cy5j
+b20wggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQDfVI9Z1ZL45gqrR5jJ
+vFpADrHd1WE1wdu17pPbMVFTCkSeZ6OFK0dhDSVMk+PWnQ2Cx6Nh7L5bFAhW/gx6
+0fe6E2Fw0LG3Ln1TlJo3sqGcF4y8DkRquYHxYwtxY1Y0r3ObRAF7WaRX7Rc/ssDR
+eyJerr/JKJ0TKAOPKpH2TNOBgGh+20xD/svma9QujKQpo0KkwGSJC8pq561xAYcQ
+j08Jfkv8Bg/B0AyAaQe4tjF9SVgi0OQ8864KR53VEIH5z9/8OyCCv34k4+7cyd+v
+4D0nG6ieR1sYwiagwNsl94Bea94Z4CBSwzPOWcgsgoGzlnU+MIAMTy+Lo/5DhBYa
+9be3lrtUdS1PMjew4dz6sYp4rugnmW/A0y2z7Y36LQGbOeaHxwicSfjJ/5UekzoK
+lTEkjzYNB5f2bzzt+UwvgDW/41Ck6tTk+Aa5TMPhJ1FF4CuevVwW4VYDvQHZAo4z
+hyUmjySdDwJmecDHVwpXsqPdWqFGfKo0b+kwJ74xzSzJWvIeSrI/MmQiV7SqBBcp
+yqdEE6LJJTtPipKTxnma8whX2oxiLBY7pH3UbDEDuQSE9HDC61BJH76LO+T2o1UX
+JwBfdjjmZEKy5AUaqwykt3ZrEyN3+Fd+JA5PuZcShJtVtmi186EoRtyJQXy/HONd
+i1g/i9W6P0LANij73mo4GVN8yQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAzpBao
+8PDyLCZ1FJ3jvZIUl8439c+bpGI7ggbkQtz6kP1Uy3F5viBtoTPMUvuGTn0Wgr1e
+3hyxQEPyW5Yv5gxLfk8LMkpFLwucSix/caohjvRDiD/F2Pa25d97yMweTv+6asai
+A0mkFxRcJbqowsta4Oz/nlHzdczkWAYXjXO7EIA/fLf55MiMPhaF2mXSZjzYxk1I
+dOwV1PjNK0BJIKEpRvPDqznVchA8qItHJ0qFLyMFn6+4ydWSAJsDZiyFMp9DGwFb
+9qPirfLhbfH0ire3BAHrZoAVBCCOtmKjhLjtiI+jFzIKgg/LDa5+pl5va9s+AAMm
+0hXEJXEyLETEmhFKW2t7i0yhkV2sXEie79EMpvChzSTnWTZvC52rHoNKcCb3VSFj
+S3lNfcmvSC5qdYWfO8W/63kVZDSK1tmyQKFDzmiAMOaxLUacS5hbDRNFFL6GBnIT
+q6N7/3bh8fbX1Og5Z9rjvsHl5/dmurkZ6QL4wjAWe1SB/RdlZFvG0knSSGbHcfJ7
+yvxXUb/784HLu4pyzw1HZgi2lMab0aPzjf6pq4s8QFBkXMRbTxTXANmfs2zCZtbI
+c7Wy1Gy4M50tUNvLDLktiWLExySR0tj61svOZwhON6DUTicdNR8N3M9PwBADLnSD
+7tCbAY9q4DkCNaFzbpJWusafnbfcOlHRJwVQfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16324811506456748977, expires on Mon Aug 26 14:34:30 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wpunj.universitytickets.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wpunj.universitytickets.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wpunj.universitytickets.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wpunj.universitytickets.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wpunj.universitytickets.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wpunj.universitytickets.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">WPUNJ // UniversityTickets SSO</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">UniversityTickets</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">UniversityTickets</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://universitytickets.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UniversityTickets Support</GivenName>
+ <EmailAddress>support@universitytickets.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- George Mason University -->
+<EntityDescriptor entityID="https://shibboleth.gmu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">gmu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">George Mason University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://shibboleth.gmu.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www2.gmu.edu/about-mason/internet-privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="140" width="190" xml:lang="en">https://shibboleth.gmu.edu/logo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 699712436536888258528015386026639632144962148129, expires on Mon Jun 24 14:53:21 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.gmu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.gmu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.gmu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.gmu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">gmu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 699712436536888258528015386026639632144962148129, expires on Mon Jun 24 14:53:21 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.gmu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">George Mason University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">George Mason University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.gmu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Tracy Holt</GivenName>
+ <EmailAddress>holt@gmu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tracy Holt</GivenName>
+ <EmailAddress>holt@gmu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Brian Davidson</GivenName>
+ <EmailAddress>bdavids1@gmu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>George Mason Support Center</GivenName>
+ <EmailAddress>support@gmu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Security Office</GivenName>
+ <EmailAddress>itsoinfo@gmu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- ProQuest LLC -->
+<EntityDescriptor entityID="https://shibboleth-sp.pre.proquest.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth-sp.pre.proquest.com/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth-sp2.pre.proquest.com/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ProQuest Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ProQuest provides subscription access to numerous premium technical journals, dissertations and other information databases.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.proquest.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.proquest.com/about/privacy-statement.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="45" width="95" xml:lang="en">https://search.proquest.com/images/pagelayout/pq_logo_sml.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9647699680373439273, expires on Sat Apr 25 21:08:05 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth-sp.pre.proquest.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth-sp.pre.proquest.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth-sp.pre.proquest.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth-sp.pre.proquest.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shibboleth-sp.pre.proquest.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shibboleth-sp.pre.proquest.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth-sp2.pre.proquest.com/Shibboleth.sso/SAML2/POST" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth-sp2.pre.proquest.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth-sp2.pre.proquest.com/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth-sp2.pre.proquest.com/Shibboleth.sso/SAML2/ECP" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shibboleth-sp2.pre.proquest.com/Shibboleth.sso/SAML/POST" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shibboleth-sp2.pre.proquest.com/Shibboleth.sso/SAML/Artifact" index="12"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ProQuest Test</ServiceName>
+ <ServiceDescription xml:lang="en">ProQuest provides subscription access to numerous premium technical journals, dissertations and other information databases.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">ProQuest LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">ProQuest LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.proquest.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>PQ-ShibbolethAdminContact</GivenName>
+ <EmailAddress>pqshibbolethadmin@proquest.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>PQ-ShibbolethTechContact</GivenName>
+ <EmailAddress>pqshibbolethtech@proquest.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>PQ-Information Security Office</GivenName>
+ <EmailAddress>ISOtempAddress@proquest.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://shibboleth-sp.prod.proquest.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth-sp.prod.proquest.com/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth-sp2.prod.proquest.com/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ProQuest PROD SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ProQuest provides subscription access to numerous premium technical journals, dissertations and other information databases.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.proquest.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.proquest.com/about/privacy-statement.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="45" width="95" xml:lang="en">https://search.proquest.com/images/pagelayout/pq_logo_sml.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11106426168254437993, expires on Fri May 8 18:50:19 2020 GMT -->
+ <ds:X509Certificate>
+MIIDWTCCAkGgAwIBAgIJAJoh88Fy6JppMA0GCSqGSIb3DQEBCwUAMCoxKDAmBgNV
+BAMTH3NoaWJib2xldGgtc3AucHJvZC5wcm9xdWVzdC5jb20wHhcNMTcwNTA4MTg1
+MDE5WhcNMjAwNTA4MTg1MDE5WjAqMSgwJgYDVQQDEx9zaGliYm9sZXRoLXNwLnBy
+b2QucHJvcXVlc3QuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+tqEcJ4+sLjU0S8t2uhnaTzyQ3YX94WRAyZWSiE0FeKgzev3nE/ebXVVlh0lkaff9
+eGpksHTbEQUSWCjM+KlRkppaADCiHLbLC6aRx8BiGilYShq/emvRIKa+VW8tyUqz
+BCOch1omhZ2Fv5WnhFpJodL3F3qgyKkuhHEUOJW8QRUZSZV13NzewFjWSipGJlxu
+jJvMjUJUkTV9J4tDDXBZU3PWYDh8FrEh7qzyADXGHkdg0z7esAbbzCmlKjJ9a392
+1hL0J7F7rWySsLEkD0ylsqbU2TKsEDjDkuixDv2enUa6HM7iYZB36svOoS+tCsMR
+gS4duGEKyyKGznP9uMdq7QIDAQABo4GBMH8wXgYDVR0RBFcwVYIfc2hpYmJvbGV0
+aC1zcC5wcm9kLnByb3F1ZXN0LmNvbYYyaHR0cHM6Ly9zaGliYm9sZXRoLXNwLnBy
+b2QucHJvcXVlc3QuY29tL3NoaWJib2xldGgwHQYDVR0OBBYEFK+IwoWwh5IacCEb
+FyWvoIm+iJZdMA0GCSqGSIb3DQEBCwUAA4IBAQBwq+oYL0MQPCUTp12fZi4sfdJm
+eRuD0N8SaOG035oAX9lR+u7zIXC9VibTQi4z10U+Dosk0Rl0zdOaJ2zWDJatWgqT
+DzTiTPALYHfIRtCN/djAjNJFAJfd1Nc61ZnB60Vyz1aziycsI69xrXxej1Rb0YCN
+/MGwUKhksXE1yJdkWt72EFo4stP8S7/7Tq5v9xbyNXAYbklt4ENHe6Q3tzpOSS15
+3fTGrk4XBnsVn15ia4fASH8lN+09CVtQ17OHvtcf+09UhDj7cV2MHCDYeD1GLsE9
+XYF2OjUfFCwz1obpJds4DcxUuJq6RIzM5dqETvRwpXJHPlKjtoTSdmHxU1ei
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth-sp.prod.proquest.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth-sp.prod.proquest.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth-sp.prod.proquest.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth-sp.prod.proquest.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shibboleth-sp.prod.proquest.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shibboleth-sp.prod.proquest.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth-sp2.prod.proquest.com/Shibboleth.sso/SAML2/POST" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth-sp2.prod.proquest.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth-sp2.prod.proquest.com/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth-sp2.prod.proquest.com/Shibboleth.sso/SAML2/ECP" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shibboleth-sp2.prod.proquest.com/Shibboleth.sso/SAML/POST" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shibboleth-sp2.prod.proquest.com/Shibboleth.sso/SAML/Artifact" index="12"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ProQuest PROD SP</ServiceName>
+ <ServiceDescription xml:lang="en">ProQuest provides subscription access to numerous premium technical journals, dissertations and other information databases.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">ProQuest LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">ProQuest LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.proquest.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>PQ-ShibbolethAdminContact</GivenName>
+ <EmailAddress>pqshibbolethadmin@proquest.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>PQ-ShibbolethTechContact</GivenName>
+ <EmailAddress>pqshibbolethtech@proquest.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>ProQuest Support</GivenName>
+ <EmailAddress>tsupport@proquest.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>PQ-Information Security Office</GivenName>
+ <EmailAddress>ISOtempAddress@proquest.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- EverFi, Inc. -->
+<EntityDescriptor entityID="https://admin.fifoundry.net/arizona_state_university/saml/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">EverFi Foundry - Arizona State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">EverFi is on the front lines of education’s evolution, connecting learning to the real world by equipping users with the skills they need for success beyond the classroom through our online education programs.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.everfi.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17551613342642061756, expires on Thu Jan 7 15:11:35 2021 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://admin.fifoundry.net/arizona_state_university/saml/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://admin.fifoundry.net/arizona_state_university/saml/acs" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">EverFi, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">EverFi, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.everfi.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://admin.fifoundry.net/cornell_university/saml/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">EverFi Foundry - Cornell University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">EverFi is on the front lines of education’s evolution, connecting learning to the real world by equipping users with the skills they need for success beyond the classroom through our online education programs.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.everfi.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17551613342642061756, expires on Thu Jan 7 15:11:35 2021 GMT -->
+ <ds:X509Certificate>
+MIIDWDCCAkACCQDzk9tXuy/BvDANBgkqhkiG9w0BAQUFADBuMQswCQYDVQQGEwJV
+UzELMAkGA1UECAwCREMxEzARBgNVBAcMCldhc2hpbmd0b24xDzANBgNVBAoMBkV2
+ZXJGaTEUMBIGA1UECwwLRW5naW5lZXJpbmcxFjAUBgNVBAMMDWZpZm91bmRyeS5u
+ZXQwHhcNMTkwMTA4MTUxMTM1WhcNMjEwMTA3MTUxMTM1WjBuMQswCQYDVQQGEwJV
+UzELMAkGA1UECAwCREMxEzARBgNVBAcMCldhc2hpbmd0b24xDzANBgNVBAoMBkV2
+ZXJGaTEUMBIGA1UECwwLRW5naW5lZXJpbmcxFjAUBgNVBAMMDWZpZm91bmRyeS5u
+ZXQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDJEhTFv3G4ca8o3FkP
+FHV7z4Qr9s0x7Wqf4rm+UK1UFPkPArJHSYaFY8tIz5/ZcuRszDblJDnrpGOKrUFq
+Ho0Y/dMdnSaoG5y5NAi4VRFQa8gZrgQ8JYeI8sK/lqFw+ldkuhQLkRZDB+SyJG1U
+2BX9II7f0SYtlvJ9b4f73stjhVrxRTyYcTKKFg93V37EM1J5sExGI57znIwuy8Ih
+RbTrph5zdudjY5LmB6URCpBRnZm1034WIleqaR9MUg4YM+c0Qj4w3YZ8LSeU785/
+wg1eFGxYV/lXNyDt4S65GmBdXNOKbflTl/NBNsiM+5PdUQhVs64MCqIlUQRNJMDJ
+wkd9AgMBAAEwDQYJKoZIhvcNAQEFBQADggEBAJyN+esUsMmN71l8L74WQB8tvcKP
+pK9dOev7RHUvh7tNSiRLZAiiXOaVJe6n37SvI8oigVWom0t2a+zUR6ou/B4lteey
+LJurQ8NiO/AynRPqkE6lYfZd12yeqr3Put3PvcgIfBAUGAm3LeDubPhadM+2cV8Y
+z9oMbr8F9sFoURXeOYTryT52seBMUQuYmrQ7lFOEXwoWjjnl+rWG/97Y3G6tcX2W
+kxxBO7DnwQRS9gRF6aN2HU1dUNxFE+fCTnKfNkOnmGi2LRPuWRMBIsdLHaXWHthk
+XsOLTRCQWCa0unJU5RvzbC4Pi0NMH+Z3m+ReGdSztn7N3V9zU93uGxmN2ZU=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://admin.fifoundry.net/cornell_university/saml/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://admin.fifoundry.net/cornell_university/saml/acs" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">EverFi, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">EverFi, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.everfi.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://admin.fifoundry.net/lehigh_university/saml/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">EverFi Foundry - Lehigh University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">EverFi is on the front lines of education’s evolution, connecting learning to the real world by equipping users with the skills they need for success beyond the classroom through our online education programs.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.everfi.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17551613342642061756, expires on Thu Jan 7 15:11:35 2021 GMT -->
+ <ds:X509Certificate>
+MIIDWDCCAkACCQDzk9tXuy/BvDANBgkqhkiG9w0BAQUFADBuMQswCQYDVQQGEwJV
+UzELMAkGA1UECAwCREMxEzARBgNVBAcMCldhc2hpbmd0b24xDzANBgNVBAoMBkV2
+ZXJGaTEUMBIGA1UECwwLRW5naW5lZXJpbmcxFjAUBgNVBAMMDWZpZm91bmRyeS5u
+ZXQwHhcNMTkwMTA4MTUxMTM1WhcNMjEwMTA3MTUxMTM1WjBuMQswCQYDVQQGEwJV
+UzELMAkGA1UECAwCREMxEzARBgNVBAcMCldhc2hpbmd0b24xDzANBgNVBAoMBkV2
+ZXJGaTEUMBIGA1UECwwLRW5naW5lZXJpbmcxFjAUBgNVBAMMDWZpZm91bmRyeS5u
+ZXQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDJEhTFv3G4ca8o3FkP
+FHV7z4Qr9s0x7Wqf4rm+UK1UFPkPArJHSYaFY8tIz5/ZcuRszDblJDnrpGOKrUFq
+Ho0Y/dMdnSaoG5y5NAi4VRFQa8gZrgQ8JYeI8sK/lqFw+ldkuhQLkRZDB+SyJG1U
+2BX9II7f0SYtlvJ9b4f73stjhVrxRTyYcTKKFg93V37EM1J5sExGI57znIwuy8Ih
+RbTrph5zdudjY5LmB6URCpBRnZm1034WIleqaR9MUg4YM+c0Qj4w3YZ8LSeU785/
+wg1eFGxYV/lXNyDt4S65GmBdXNOKbflTl/NBNsiM+5PdUQhVs64MCqIlUQRNJMDJ
+wkd9AgMBAAEwDQYJKoZIhvcNAQEFBQADggEBAJyN+esUsMmN71l8L74WQB8tvcKP
+pK9dOev7RHUvh7tNSiRLZAiiXOaVJe6n37SvI8oigVWom0t2a+zUR6ou/B4lteey
+LJurQ8NiO/AynRPqkE6lYfZd12yeqr3Put3PvcgIfBAUGAm3LeDubPhadM+2cV8Y
+z9oMbr8F9sFoURXeOYTryT52seBMUQuYmrQ7lFOEXwoWjjnl+rWG/97Y3G6tcX2W
+kxxBO7DnwQRS9gRF6aN2HU1dUNxFE+fCTnKfNkOnmGi2LRPuWRMBIsdLHaXWHthk
+XsOLTRCQWCa0unJU5RvzbC4Pi0NMH+Z3m+ReGdSztn7N3V9zU93uGxmN2ZU=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://admin.fifoundry.net/lehigh_university/saml/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://admin.fifoundry.net/lehigh_university/saml/acs" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">EverFi, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">EverFi, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.everfi.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://admin.fifoundry.net/loyola_university_maryland/saml/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">EverFi Foundry - Loyola University Maryland</mdui:DisplayName>
+ <mdui:Description xml:lang="en">EverFi is on the front lines of education’s evolution, connecting learning to the real world by equipping users with the skills they need for success beyond the classroom through our online education programs.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.everfi.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17551613342642061756, expires on Thu Jan 7 15:11:35 2021 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://admin.fifoundry.net/loyola_university_maryland/saml/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://admin.fifoundry.net/loyola_university_maryland/saml/acs" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">EverFi, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">EverFi, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.everfi.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://admin.fifoundry.net/rutgers_university_camden/saml/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">EverFi Foundry - Rutgers University-Camden</mdui:DisplayName>
+ <mdui:Description xml:lang="en">EverFi is on the front lines of education’s evolution, connecting learning to the real world by equipping users with the skills they need for success beyond the classroom through our online education programs.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.everfi.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17551613342642061756, expires on Thu Jan 7 15:11:35 2021 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://admin.fifoundry.net/rutgers_university_camden/saml/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://admin.fifoundry.net/rutgers_university_camden/saml/acs" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">EverFi, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">EverFi, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.everfi.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://admin.fifoundry.net/uab/saml/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">EverFi Foundry - University of Alabama at Birmingham</mdui:DisplayName>
+ <mdui:Description xml:lang="en">EverFi is on the front lines of education’s evolution, connecting learning to the real world by equipping users with the skills they need for success beyond the classroom through our online education programs.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.everfi.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17551613342642061756, expires on Thu Jan 7 15:11:35 2021 GMT -->
+ <ds:X509Certificate>
+MIIDWDCCAkACCQDzk9tXuy/BvDANBgkqhkiG9w0BAQUFADBuMQswCQYDVQQGEwJV
+UzELMAkGA1UECAwCREMxEzARBgNVBAcMCldhc2hpbmd0b24xDzANBgNVBAoMBkV2
+ZXJGaTEUMBIGA1UECwwLRW5naW5lZXJpbmcxFjAUBgNVBAMMDWZpZm91bmRyeS5u
+ZXQwHhcNMTkwMTA4MTUxMTM1WhcNMjEwMTA3MTUxMTM1WjBuMQswCQYDVQQGEwJV
+UzELMAkGA1UECAwCREMxEzARBgNVBAcMCldhc2hpbmd0b24xDzANBgNVBAoMBkV2
+ZXJGaTEUMBIGA1UECwwLRW5naW5lZXJpbmcxFjAUBgNVBAMMDWZpZm91bmRyeS5u
+ZXQwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDJEhTFv3G4ca8o3FkP
+FHV7z4Qr9s0x7Wqf4rm+UK1UFPkPArJHSYaFY8tIz5/ZcuRszDblJDnrpGOKrUFq
+Ho0Y/dMdnSaoG5y5NAi4VRFQa8gZrgQ8JYeI8sK/lqFw+ldkuhQLkRZDB+SyJG1U
+2BX9II7f0SYtlvJ9b4f73stjhVrxRTyYcTKKFg93V37EM1J5sExGI57znIwuy8Ih
+RbTrph5zdudjY5LmB6URCpBRnZm1034WIleqaR9MUg4YM+c0Qj4w3YZ8LSeU785/
+wg1eFGxYV/lXNyDt4S65GmBdXNOKbflTl/NBNsiM+5PdUQhVs64MCqIlUQRNJMDJ
+wkd9AgMBAAEwDQYJKoZIhvcNAQEFBQADggEBAJyN+esUsMmN71l8L74WQB8tvcKP
+pK9dOev7RHUvh7tNSiRLZAiiXOaVJe6n37SvI8oigVWom0t2a+zUR6ou/B4lteey
+LJurQ8NiO/AynRPqkE6lYfZd12yeqr3Put3PvcgIfBAUGAm3LeDubPhadM+2cV8Y
+z9oMbr8F9sFoURXeOYTryT52seBMUQuYmrQ7lFOEXwoWjjnl+rWG/97Y3G6tcX2W
+kxxBO7DnwQRS9gRF6aN2HU1dUNxFE+fCTnKfNkOnmGi2LRPuWRMBIsdLHaXWHthk
+XsOLTRCQWCa0unJU5RvzbC4Pi0NMH+Z3m+ReGdSztn7N3V9zU93uGxmN2ZU=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://admin.fifoundry.net/uab/saml/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://admin.fifoundry.net/uab/saml/acs" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">EverFi, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">EverFi, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.everfi.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://admin.fifoundry.net/uc_irvine_athletics/saml/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">EverFi Foundry - UCI - Athletics</mdui:DisplayName>
+ <mdui:Description xml:lang="en">EverFi is on the front lines of education’s evolution, connecting learning to the real world by equipping users with the skills they need for success beyond the classroom through our online education programs.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.everfi.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17551613342642061756, expires on Thu Jan 7 15:11:35 2021 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://admin.fifoundry.net/uc_irvine_athletics/saml/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://admin.fifoundry.net/uc_irvine_athletics/saml/acs" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">EverFi, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">EverFi, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.everfi.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://admin.fifoundry.net/university_at_buffalo/saml/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">EverFi Foundry - University At Buffalo</mdui:DisplayName>
+ <mdui:Description xml:lang="en">EverFi is on the front lines of education’s evolution, connecting learning to the real world by equipping users with the skills they need for success beyond the classroom through our online education programs.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.everfi.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17551613342642061756, expires on Thu Jan 7 15:11:35 2021 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://admin.fifoundry.net/university_at_buffalo/saml/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://admin.fifoundry.net/university_at_buffalo/saml/acs" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">EverFi, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">EverFi, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.everfi.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://admin.fifoundry.net/university_of_california_davis/saml/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">EverFi Foundry - UC Davis</mdui:DisplayName>
+ <mdui:Description xml:lang="en">EverFi is on the front lines of education’s evolution, connecting learning to the real world by equipping users with the skills they need for success beyond the classroom through our online education programs.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.everfi.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17551613342642061756, expires on Thu Jan 7 15:11:35 2021 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://admin.fifoundry.net/university_of_california_davis/saml/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://admin.fifoundry.net/university_of_california_davis/saml/acs" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">EverFi, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">EverFi, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.everfi.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://admin.fifoundry.net/university_of_california_irvine/saml/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">EverFi Foundry - UCI</mdui:DisplayName>
+ <mdui:Description xml:lang="en">EverFi is on the front lines of education’s evolution, connecting learning to the real world by equipping users with the skills they need for success beyond the classroom through our online education programs.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.everfi.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17551613342642061756, expires on Thu Jan 7 15:11:35 2021 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://admin.fifoundry.net/university_of_california_irvine/saml/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://admin.fifoundry.net/university_of_california_irvine/saml/acs" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">EverFi, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">EverFi, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.everfi.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://admin.fifoundry.net/university_of_connecticut/saml/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">EverFi Foundry - University of Connecticut</mdui:DisplayName>
+ <mdui:Description xml:lang="en">EverFi is on the front lines of education’s evolution, connecting learning to the real world by equipping users with the skills they need for success beyond the classroom through our online education programs.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.everfi.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17551613342642061756, expires on Thu Jan 7 15:11:35 2021 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://admin.fifoundry.net/university_of_connecticut/saml/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://admin.fifoundry.net/university_of_connecticut/saml/acs" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">EverFi, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">EverFi, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.everfi.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>EverFi Engineering</GivenName>
+ <EmailAddress>engineering@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Carleton College -->
+<EntityDescriptor entityID="urn:mace:incommon:carleton.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.carleton.edu/error.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">carleton.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Carleton College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Carleton College</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://apps.carleton.edu/campus/its/policies/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="53" width="321" xml:lang="en">https://apps.carleton.edu/reason_package/reason_4.0/www/images_local/1527854.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10333684316084036024, expires on Sun Feb 19 21:51:22 2023 GMT -->
+ <ds:X509Certificate>
+MIIDujCCAqICCQCPaJ8ioTbhuDANBgkqhkiG9w0BAQUFADCBnjELMAkGA1UEBhMC
+VVMxEjAQBgNVBAgTCU1pbm5lc290YTETMBEGA1UEBxMKTm9ydGhmaWVsZDEZMBcG
+A1UEChMQQ2FybGV0b24gQ29sbGVnZTEMMAoGA1UECxMDSVRTMRswGQYDVQQDExJs
+b2dpbi5jYXJsZXRvbi5lZHUxIDAeBgkqhkiG9w0BCQEWEXdsZWVAY2FybGV0b24u
+ZWR1MB4XDTEzMDIyMTIxNTEyMloXDTIzMDIxOTIxNTEyMlowgZ4xCzAJBgNVBAYT
+AlVTMRIwEAYDVQQIEwlNaW5uZXNvdGExEzARBgNVBAcTCk5vcnRoZmllbGQxGTAX
+BgNVBAoTEENhcmxldG9uIENvbGxlZ2UxDDAKBgNVBAsTA0lUUzEbMBkGA1UEAxMS
+bG9naW4uY2FybGV0b24uZWR1MSAwHgYJKoZIhvcNAQkBFhF3bGVlQGNhcmxldG9u
+LmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJJR4aGU0T4Rs+ra
+iaCBqBp75XUZ+W0rnXVuP4oainijV8oepLVo0trGRjYgIHhNKufhtuFtvxkgsq/Q
+qaSR6mmCgKU8YH32gGggjwLBRbMn7aNiJu2PNi03g+NxFW+k3iz/qcuyrkb9CGO5
+QcqMlWznphotRXXXscm94+SBmJ9aeTL4XIUXfEIOdeDdNqZRjjvuKck83Mbqn/4t
+69uZcrOM0BFQFhJOE5vgJ9kOEBnsS+3dYbEndfK1dXnxp88gLaWY/4GvvOUwQTub
+suvy9/hlyLUpNz/sZFNM7KekQUjKv2/qu3hi+gvl4Dl5LuEbug38XKZDQ75pZOm5
+PROnhKMCAwEAATANBgkqhkiG9w0BAQUFAAOCAQEAdTupllJ0sDvllI+4Jgn+DwPT
+lzOM5I7Y2MVkHtodZCyrT6qRaP4oX369LVG0S3vQbChVi1gW0CljeUl9e616nkaN
+J89UhUhN3r9t5412qQ8/Lyq+LX1912yUyCuW8JMQXFbVlMS0b/FvJmXPYlLpFIf1
+DGbJW/HYJ07x+5V7hONXUmEvh8SZo+JXmTO37hLOBGSyteXbWJv7VptIm/fD6411
+cYLejujXijfbVj38Ijcucjrel7dJ2Zl8nnmkn3VlRFdEuRScuWudI+7rS6Ux+Dwc
+25Ls34lI9+W9mXyA7ix0qDjNmpRccdkzLcvfTgYC7q5VGzyToU4S2u7AZvcxeA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.carleton.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.carleton.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.carleton.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.carleton.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.carleton.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Carleton College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Carleton College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.carleton.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Carleton College InCommon Administrative Contacts</GivenName>
+ <EmailAddress>incommon-admin@carleton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Carleton College Information Security</GivenName>
+ <EmailAddress>infosec@carleton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Carleton College Help Desk</GivenName>
+ <EmailAddress>helpdesk@carleton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Carleton College InCommon Technical Contacts</GivenName>
+ <EmailAddress>incommon-tech@carleton.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of South Carolina -->
+<EntityDescriptor entityID="urn:mace:incommon:sc.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.uts.sc.edu/authentication/shibboleth/shibberror.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of South Carolina</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://mead.uts.sc.edu/authentication/shibboleth</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://sc.edu/about/notices/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="118" width="353" xml:lang="en">https://shibboleth.sc.edu/idp/images/dummylogo-mobile.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11964134177875026038, expires on Mon Mar 2 16:25:00 2026 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.sc.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.sc.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.sc.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.sc.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.sc.edu:8443/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.sc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.sc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.sc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.sc.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11964134177875026038, expires on Mon Mar 2 16:25:00 2026 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.sc.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.sc.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of South Carolina</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of South Carolina</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Randy Shelley</GivenName>
+ <EmailAddress>shelleyi@mailbox.sc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Randy Shelley</GivenName>
+ <EmailAddress>shelleyi@mailbox.sc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nikhil Naini</GivenName>
+ <EmailAddress>naini@mailbox.sc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nikhil Naini</GivenName>
+ <EmailAddress>naini@mailbox.sc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Naveen Perkit</GivenName>
+ <EmailAddress>perkit@mailbox.sc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Naveen Perkit</GivenName>
+ <EmailAddress>perkit@mailbox.sc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Karla Pool</GivenName>
+ <EmailAddress>karla@mailbox.sc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>RANDY SHELLEY JR.</GivenName>
+ <EmailAddress>security@sc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Stark State College of Technology -->
+<EntityDescriptor entityID="urn:mace:incommon:starkstate.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">starkstate.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stark State College of Technology</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starkstate.edu/about/policies/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="501" xml:lang="en">https://www.starkstate.edu/wp-content/uploads/2017/01/SSC-web-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 455740860839934228234700425164475891451455487964, expires on Sun Aug 15 15:37:30 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.starkstate.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webauth.starkstate.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://webauth.starkstate.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.starkstate.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.starkstate.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webauth.starkstate.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">starkstate.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 455740860839934228234700425164475891451455487964, expires on Sun Aug 15 15:37:30 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.starkstate.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webauth.starkstate.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stark State College of Technology</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stark State College of Technology</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.starkstate.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Geoff Starnes</GivenName>
+ <EmailAddress>gstarnes@starkstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mike Rochford</GivenName>
+ <EmailAddress>mrochford@starkstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mike Rochford</GivenName>
+ <EmailAddress>mrochford@starkstate.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- ESnet -->
+<EntityDescriptor entityID="https://demo-sp.es.net/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://esnetdev.service-now.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ESnet Demo SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Demo Shib Service Provider from ESnet</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.lbl.gov/disclaimers/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="339" xml:lang="en">https://my.es.net/static/media/esnet-logo.1ae3ec10.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16106566108161986226, expires on Mon Mar 12 21:04:44 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://esnetdev.service-now.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://esnetdev.service-now.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://esnetdev.service-now.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://esnetdev.service-now.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ESnet Demo SP</ServiceName>
+ <ServiceDescription xml:lang="en">Demo Shib Service Provider from ESnet</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">ESnet</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">ESnet</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.es.net/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brooklin Gore</GivenName>
+ <EmailAddress>bjgore@es.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dhiva Muruganantham</GivenName>
+ <EmailAddress>dhiva@es.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ESnet Security Team</GivenName>
+ <EmailAddress>security@es.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>ESnet INF Team</GivenName>
+ <EmailAddress>infrastructure@es.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://idp.es.net/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.es.net/about/contact-us/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">es.net</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ESnet</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Energy Sciences Network </mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.lbl.gov/disclaimers/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="22" width="72" xml:lang="en">https://www.es.net/assets/Logos/ESnetFinalRGB.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1359361557011556276231608666889855656925373919848, expires on Sat Dec 13 23:05:38 2031 GMT -->
+ <ds:X509Certificate>
+MIIDFDCCAfygAwIBAgIVAO4b4WF67Uq3LsXyIhUEBd7dB/JoMA0GCSqGSIb3DQEB
+BQUAMBUxEzARBgNVBAMTCmlkcC5lcy5uZXQwHhcNMTExMjEzMjMwNTM4WhcNMzEx
+MjEzMjMwNTM4WjAVMRMwEQYDVQQDEwppZHAuZXMubmV0MIIBIjANBgkqhkiG9w0B
+AQEFAAOCAQ8AMIIBCgKCAQEAi2esIvvexX85muTD8yzJF9InJ8NwysxfxyWDDLco
+1G4ypEPN6121TbKotdF83keigjRsK/+jsq1VyMJeUW6kXlZ9N6Xzet8Zt/uxBamB
+Q2iipdNwDJtLty3zEtGbsQywYkZSfBm7Dse2cB8+GZTBeJUXN3BGetKFUX/IM7RE
+3y5j0c/Oem+Gd7HvZLVSNsy4CvBnPhs3w2mhJkh4FFbOdPMnQSP2/hQt0hAVfhzr
+bA8IKI2dv/f5nlOJd/6X1uM2IfgSG3M1dp+AIcD4Frdl65T9eyTKHBIxh8Sng1Lf
+lf6C4yiFq4KvKOYB0byGGEo4SGQKsXnxWPzw9te02K5xuwIDAQABo1swWTA4BgNV
+HREEMTAvggppZHAuZXMubmV0hiFodHRwczovL2lkcC5lcy5uZXQvaWRwL3NoaWJi
+b2xldGgwHQYDVR0OBBYEFKWAyXCw7X2OjsdUocqtpHTLbasKMA0GCSqGSIb3DQEB
+BQUAA4IBAQBPsEx37NAmxr6zUpMCu7SKdVaf8r9ppieqQxbHBVVxVsQ5IX7IY1AB
+qcUzMVY0m5Hnp4GbU0xkuiRqUNrlsp+n52MosJwPiWkO0m9ljN0Dn8kkRExJq/bS
+d6W45OX283biF1VpolxwQKvNNJdIliLexfiFnwxTGMT5OzQzQ8qX/Jr31DmT5y91
+lVH5KPTu0rxTbbtx75SaPJ9FXmiHFe25kZd+hyZs/XB8ExN58jukXygMUOUgIuRP
+sb1TR90+G0WLUJlIxr1SeRpeHFUWcHkEmss3FIwgJrRVwfSQxwQgTRFRELJInRQI
+nciX8msJNoIgdL+nElSBTZ1kUT569c8d
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.es.net/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.es.net/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.es.net/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.es.net/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.es.net/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">es.net</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1359361557011556276231608666889855656925373919848, expires on Sat Dec 13 23:05:38 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.es.net/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">ESnet</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">ESnet</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.es.net/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Dhiva Muruganantham</GivenName>
+ <EmailAddress>dhiva@es.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>ESnet Operations</GivenName>
+ <EmailAddress>trouble@es.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brooklin Gore</GivenName>
+ <EmailAddress>bjgore@es.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ESnet Security Team</GivenName>
+ <EmailAddress>security@es.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Minnesota -->
+<EntityDescriptor entityID="urn:mace:incommon:umn.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umn.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Minnesota</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Minnesota, All Campuses</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://it.umn.edu/about-university-identity-provider</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy.umn.edu</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login.umn.edu/m-logo-maroon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 605812394376457361562807806118958924797242532412, expires on Sun Jun 29 17:48:14 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.umn.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.umn.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.umn.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.umn.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Minnesota</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Minnesota</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www1.umn.edu/twincities/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kevin O'Rourke</GivenName>
+ <EmailAddress>kor@umn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>University of Minnesota Identity Management</GivenName>
+ <EmailAddress>idm@umn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Christopher Bongaarts</GivenName>
+ <EmailAddress>cab@umn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>University of Minnesota IT Helpdesk (1-HELP)</GivenName>
+ <EmailAddress>help@umn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>University of Minnesota IT Security</GivenName>
+ <EmailAddress>abuse@umn.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Iowa -->
+<EntityDescriptor entityID="urn:mace:incommon:uiowa.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://its.uiowa.edu/support/article/106451" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uiowa.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Iowa</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The University of Iowa</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://its.uiowa.edu/shibboleth</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://opsmanual.uiowa.edu/community-policies/acceptable-use-information-technology-resources#19.3</mdui:PrivacyStatementURL>
+ <mdui:Logo height="262" width="286" xml:lang="en">https://idp.uiowa.edu/static/ui-incommon-metadata-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1191565698869071146029104040938210961487249679049, expires on Tue Jun 21 16:46:42 2033 GMT -->
+ <ds:X509Certificate>
+MIIDIDCCAgigAwIBAgIVANC3p2UisM0yO/80OL67JqcqNiLJMA0GCSqGSIb3DQEB
+BQUAMBgxFjAUBgNVBAMTDWlkcC51aW93YS5lZHUwHhcNMTMwNjIxMTY0NjQyWhcN
+MzMwNjIxMTY0NjQyWjAYMRYwFAYDVQQDEw1pZHAudWlvd2EuZWR1MIIBIjANBgkq
+hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAinCXyhRt/vS/7aVBFKE2GWx7Au/+QQ1j
+/6+VQWEP5ONaJGfgNoRsd9dLT6nNpClQb2h8ExHpHFA+41NPyvt53Y/A3XHWfmMc
+MXMMdFzijA5OkPehyigxp43pS5BJf6BOJAYIsffilPPGj4TdUNVokd1I7FvbKVIH
+rnd15ob9lIAoJdBUsiMwvky0wByNKpmiRiEU2n/gCP1owr3RVLePMOvgoU3cS0Tm
+PQsr/r4UZffEDKxCwp7YyM3jteXiPgr6IdZtAm7tKw/9GE00SQbDZehuBK5xfSSR
+LO5pL598B9Cj+NTE3tZD8GTYyl4UzZSQuBMwSrmAeJdVYyqsgD3wLwIDAQABo2Ew
+XzA+BgNVHREENzA1gg1pZHAudWlvd2EuZWR1hiRodHRwczovL2lkcC51aW93YS5l
+ZHUvaWRwL3NoaWJib2xldGgwHQYDVR0OBBYEFN3ESwhqgFQoUXJWKHeu6Y4Nn4OF
+MA0GCSqGSIb3DQEBBQUAA4IBAQCEgd5dT1fxCXGtiV4mS4bNBoKzS2909vFEmnt8
+rUBp5wLmFF+K71cm0XJzlD/faYgGo1d6COT2vbklzPnOziQZVh3RUeYqmbltOFY/
+8sW2NNQ6htsDb2JDH1X2oFucXuSzAcPjNgs7//IqvDw7H3gbtYLMyIrhEA7Q9qy/
++5j/nvhza9LKyDXiugdWEevMTb20FcAvFZcR5v/kMHRjgQlMwPg2yIngxi5vC0E3
+6qD50/b9pCOR30EbZxLv/oxhpKXKv2nVZBcG4IhEhXdXH1rd0JPug4nhrslRdx4N
+fU6A4c+0Aj/vLEIjWne+wPdi+1bIhUAtEMg/CPBZSrokX2N0
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uiowa.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uiowa.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.uiowa.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uiowa.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.uiowa.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uiowa.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Iowa</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Iowa</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uiowa.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>ITS DNA Identity Services</GivenName>
+ <EmailAddress>its-dna-identity-services@uiowa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>University of Iowa Federation Requests</GivenName>
+ <EmailAddress>iowa-federation-requests@uiowa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>University of Iowa Federation Requests</GivenName>
+ <EmailAddress>iowa-federation-requests@uiowa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security and Policy Office</GivenName>
+ <EmailAddress>security@uiowa.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Nevada, Reno -->
+<EntityDescriptor entityID="https://idp2.unr.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unr.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Nevada, Reno</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Founded in 1874 as the Silver State's fist university. Nevada is a tier 1 land-grant research institution.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.unr.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.unr.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="134" width="400" xml:lang="en">https://idp2.unr.edu/idp/images/unr-n-400.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 585383889928832834648853298389615373829861231843, expires on Sat Aug 7 20:22:02 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp2.unr.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp2.unr.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp2.unr.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp2.unr.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Nevada, Reno</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Nevada, Reno</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unr.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jeff Springer</GivenName>
+ <EmailAddress>jeffs@unr.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Cole Griggs</GivenName>
+ <EmailAddress>csgriggs@unr.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>University of Nevada, Reno Help Desk</GivenName>
+ <EmailAddress>help@unr.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UNR Abuse</GivenName>
+ <EmailAddress>abuse@unr.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- PeopleAdmin, Inc. -->
+<EntityDescriptor entityID="https://pa2836.peopleadmin.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PeopleAdmin 7 Baylor University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.peopleadmin.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.peopleadmin.com/wp-content/uploads/2018/05/80x60_white.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12640021451372391307, expires on Fri Aug 4 04:11:22 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jobs.baylor.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://baylor-training.peopleadmin.com/Shibboleth.sso/SAML2/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://baylor-sb.peopleadmin.com/Shibboleth.sso/SAML2/POST" index="3"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">PeopleAdmin, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">PeopleAdmin, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.peopleadmin.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Praveen Pinto</GivenName>
+ <EmailAddress>praveen.pinto@peopleadmin.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Amanda Merritt</GivenName>
+ <EmailAddress>amanda.merritt@peopleadmin.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>PeopleAdmin Security</GivenName>
+ <EmailAddress>security@peopleadmin.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of South Florida -->
+<EntityDescriptor entityID="urn:mace:incommon:usf.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">usf.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of South Florida</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This is the Shibboleth Identity Provider for the University of South Florida</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.usf.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.usf.edu/about-usf/about-this-site.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="47" width="316" xml:lang="en">https://cdn.usf.edu/themes/sun-globe/global/1.0.0/images/header/banner/banner-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15031065843576328468, expires on Fri Jul 23 14:41:11 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.usf.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.usf.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.usf.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of South Florida</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of South Florida</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.usf.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Chance Gray</GivenName>
+ <EmailAddress>chance@usf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stoney Gan</GivenName>
+ <EmailAddress>sgan@usf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>USF IT HelpDesk</GivenName>
+ <EmailAddress>help@usf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Office of Information Security</GivenName>
+ <EmailAddress>security@usf.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Dayton -->
+<EntityDescriptor entityID="urn:mace:incommon:udayton.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://udayton.edu/udit/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">udayton.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Dayton</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Dayton Shibboleth IdP</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://udayton.edu/udit/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://udayton.edu/terms/privacy.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://udayton.edu/0/_2019/images/ud-logo-vertical-80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 296629436457681217764604513621814153912866950681, expires on Sat Sep 10 19:15:59 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9956013830609823642, expires on Fri Sep 20 15:10:52 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibidp.udayton.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibidp.udayton.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibidp.udayton.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibidp.udayton.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibidp.udayton.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibidp.udayton.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">udayton.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 296629436457681217764604513621814153912866950681, expires on Sat Sep 10 19:15:59 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9956013830609823642, expires on Fri Sep 20 15:10:52 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibidp.udayton.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Dayton</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Dayton</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.udayton.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth IdP Support</GivenName>
+ <EmailAddress>shibadmin@udayton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth IdP Support</GivenName>
+ <EmailAddress>shibadmin@udayton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Risk Management Officer</GivenName>
+ <EmailAddress>itriskmgmt@udayton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UDit Help Desk</GivenName>
+ <EmailAddress>itservicecenter@udayton.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- The University of Arizona -->
+<EntityDescriptor entityID="urn:mace:incommon:arizona.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://it.arizona.edu/service/247-it-support" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">arizona.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">The University of Arizona</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://policy.arizona.edu/information-technology/electronic-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="633" xml:lang="en">https://s3-us-west-2.amazonaws.com/ua-uits-iam-prod-shib-idp-config/ua_horiz.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12073307931801601058, expires on Fri Sep 8 01:11:05 2023 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.arizona.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.arizona.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The University of Arizona</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">The University of Arizona</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.arizona.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gary Windham</GivenName>
+ <EmailAddress>gary.windham@arizona.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UITS 24/7 IT Support Center</GivenName>
+ <EmailAddress>support@email.arizona.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UITS Systems Integration &amp; Architecture</GivenName>
+ <EmailAddress>uits-sia@list.arizona.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UA Information Security Office</GivenName>
+ <EmailAddress>infosec@email.arizona.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Massachusetts Institute of Technology -->
+<EntityDescriptor entityID="urn:mace:incommon:mit.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.mit.edu/help.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mit.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Massachusetts Institute of Technology</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://idp.mit.edu/privacy-statement.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://idp.mit.edu/images/mdui-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16406162142401691043, expires on Sun Oct 16 19:47:36 2033 GMT -->
+ <ds:X509Certificate>
+MIIC6DCCAdCgAwIBAgIJAOOuZYuBUH2jMA0GCSqGSIb3DQEBBQUAMBYxFDASBgNV
+BAMTC2lkcC5taXQuZWR1MB4XDTEzMTAyMTE5NDczNloXDTMzMTAxNjE5NDczNlow
+FjEUMBIGA1UEAxMLaWRwLm1pdC5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAw
+ggEKAoIBAQDD3t7oBvx5KMmA4+EEQWK421Jt8HsBYMsaUWAiIQVldTlre3rt51Jg
+dN93adYAMvo6LUr3v7jpT8tUsgV0bDD4MsoK5SAlOWh6tQuR172do1KbDi4VT3Gp
+ILJjTqRUjlLEtfCa4/NNQy+ZFXEXIYWoFsfK0J3Q8xCVNdSfNpd3KjlkKshkGsjY
+OMoHJLt8GQB9n7yJX+qZvxJGhiPQJZB5uNx/9omNbvqAF2Hl6b06u7NTPh/Jkvf4
+GGtttjNaWRfcQm1xVbYCCOlpCiTVI6AxCtCy2XqhZmcnY2zk9h2Q/W9lcJ+if1xV
+vMkaId+EBTJW3DI/zvBm0Q/OJTxIwUfzAgMBAAGjOTA3MBYGA1UdEQQPMA2CC2lk
+cC5taXQuZWR1MB0GA1UdDgQWBBRK6tEdA/6T67CMwyWlBEE7cvYaFjANBgkqhkiG
+9w0BAQUFAAOCAQEAUVOL/W1RRrRDm6k4Wtf39jCtHa7gyutt5fHguXUa6nrThRhu
+ISEmiQLqK4hVCiIiarZMuyxosdAwFKSGKaunpBFmqI7NcqzskpdRnMIZ0FLQsRJF
+vY6F6S2ou2Yl0UYonX2eVqzWtIR6jd4CqsQdixf5ZE2eQ6o6QICEpjDgMPK/EAKA
+CsVjcBbQw+YbSkmf30ebRTSzIYMhaGETQuf75xD/Ww0mM3njm79Ophg5Y7I9Ryud
+MdDQwsxAS7ECH7vLyu8V/HIfaPkOWYzKKKW5d4E1/X67J2XmTICT7PdxSd5ZKoB5
+jdqBxPVYM+C1V02QZFDb7TkTDEICzUnr/VBZ+A==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.mit.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.mit.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.mit.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mit.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16406162142401691043, expires on Sun Oct 16 19:47:36 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.mit.edu:8444/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mit.edu:8444/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Massachusetts Institute of Technology</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Massachusetts Institute of Technology</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://web.mit.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Touchstone Support</GivenName>
+ <EmailAddress>touchstone-support@mit.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@mit.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Touchstone Support</GivenName>
+ <EmailAddress>touchstone-support@mit.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Service Desk</GivenName>
+ <EmailAddress>servicedesk@mit.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Vanderbilt University -->
+<EntityDescriptor entityID="https://sso-login-uat.vanderbilt.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">vanderbilt.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ZZZ- Vanderbilt University- Test Only</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This is for Vanderbilt University for testing only. This is not to be used for production or Vanderbilt University Medical Center</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.vanderbilt.edu/about/privacy.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="200" xml:lang="en">https://news.vanderbilt.edu/files/vu06b.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1534518841791, expires on Mon Aug 16 15:14:01 2021 GMT -->
+ <ds:X509Certificate>
+MIIDiDCCAnCgAwIBAgIGAWVIc1G/MA0GCSqGSIb3DQEBCwUAMIGEMQswCQYDVQQGEwJVUzELMAkG
+A1UECBMCVE4xEjAQBgNVBAcTCU5hc2h2aWxsZTEeMBwGA1UEChMVVmFuZGVyYmlsdCBVbml2ZXJz
+aXR5MQ0wCwYDVQQLEwRWVUlUMSUwIwYDVQQDExxzc28tbG9naW4tdWF0LnZhbmRlcmJpbHQuZWR1
+MB4XDTE4MDgxNzE1MTQwMVoXDTIxMDgxNjE1MTQwMVowgYQxCzAJBgNVBAYTAlVTMQswCQYDVQQI
+EwJUTjESMBAGA1UEBxMJTmFzaHZpbGxlMR4wHAYDVQQKExVWYW5kZXJiaWx0IFVuaXZlcnNpdHkx
+DTALBgNVBAsTBFZVSVQxJTAjBgNVBAMTHHNzby1sb2dpbi11YXQudmFuZGVyYmlsdC5lZHUwggEi
+MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCLnit1OZ1jNLD65G07iex+LUfFho5qOtGPKCSR
+1fGusHKfueYzAMBIJLCKWn1s0ZF9tKxUZZlxf4nb21ZTBxKSLi2JDv00ycEcmDQrlqL80P+lZOx1
+SlE6htS5k64kdb5Uw/5nP/MinIL6dcouGN9yDBWWl843erPuYu6QqOQGrv7l135ihzG8BhhyHZRO
+qO4CmL+oSjrrdwClZEIKXmgNwOt93OY0GjMpbUzF17lALaHH5LtTU+9saJbd4QoVqs4uYl5UVEAw
+dpcMecWl6PoF/UFVpsQ00mM3e56eFMEd7jpzLoFlfSLgUdhg2ELRHK/282PHFMJMoEzvfcBvYNJZ
+AgMBAAEwDQYJKoZIhvcNAQELBQADggEBACFWmxFiUSZRxRd8Ddk+VyDiM2UTevCtxjFZy8k33ddb
+w/fS3pyUuxAV44Sk/066D2T42C2kbhufB+VFtK6v7cFKrqulFBPRP2UG/EO1jwIZg77gpfZUOSVm
+sRZc6ZKDquwQyBD/m2mG2Ci1TUNcL8xiJuqP3V61dNc5EMRat2uijDLKgMxvqoWI0mX1WhLO8xoM
+exxoLsAJIevqvITHSTdz8F57H+7NoAXc6lLWA3lM0b2KoIcyBBFzT6qpZtLI/e9L57p5ffM9lrVM
+dirFVdORFYJvY5OEIVJQMtPzhYGiQ0ixqXkCoHWDzPBTSYr1jjRTN49dqPNog9ykTqnz6U0=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso-login-uat.vanderbilt.edu/idp/SSO.saml2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso-login-uat.vanderbilt.edu/idp/SSO.saml2"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Vanderbilt University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Vanderbilt University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.vanderbilt.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>VUIT Cloud Team</GivenName>
+ <EmailAddress>vuit.cloud@vanderbilt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>VUIT Cloud Team</GivenName>
+ <EmailAddress>vuit.cloud@vanderbilt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>VUIT Cloud Team</GivenName>
+ <EmailAddress>vuit.cloud@vanderbilt.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://vushib-idp.vanderbilt.edu/idp/Shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://vushib-idp.vanderbilt.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">vanderbilt.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Vanderbilt University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.vanderbilt.edu/about/privacy.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="200" xml:lang="en">https://news.vanderbilt.edu/files/vu06b.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9412192089387129599, expires on Sat Mar 9 13:55:43 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12811924735634020831, expires on Thu Feb 17 19:34:02 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vushib-idp.vanderbilt.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://vushib-idp.vanderbilt.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vushib-idp.vanderbilt.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vushib-idp.vanderbilt.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vushib-idp.vanderbilt.edu:8443/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vushib-idp.vanderbilt.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vushib-idp.vanderbilt.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://vushib-idp.vanderbilt.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">vanderbilt.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9412192089387129599, expires on Sat Mar 9 13:55:43 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12811924735634020831, expires on Thu Feb 17 19:34:02 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vushib-idp.vanderbilt.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://vushib-idp.vanderbilt.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Vanderbilt University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Vanderbilt University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.vanderbilt.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Lee Brewer</GivenName>
+ <EmailAddress>Lee.Brewer@vanderbilt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>VUIT Cloud Services</GivenName>
+ <EmailAddress>vuit.cloud@vanderbilt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>VUIT Cloud Services</GivenName>
+ <EmailAddress>vuit.cloud@vanderbilt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>VUIT Cloud Services</GivenName>
+ <EmailAddress>vuit.cloud@vanderbilt.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of California, San Francisco -->
+<EntityDescriptor entityID="https://wiki.library.ucsf.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wiki.library.ucsf.edu/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Log in to Wiki@UCSF</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://wiki.library.ucsf.edu/display/Training/Terms+and+Conditions</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.library.ucsf.edu/about/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="107" width="130" xml:lang="en">https://identity.ucsf.edu/sites/g/files/tkssra266/f/wysiwyg/logo_0.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15713617356350994604, expires on Fri Dec 4 20:05:57 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiki.library.ucsf.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wiki.library.ucsf.edu/Shibboleth.sso/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiki.library.ucsf.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wiki.library.ucsf.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wiki.library.ucsf.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wiki.library.ucsf.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wiki.library.ucsf.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wiki.library.ucsf.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California, San Francisco</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California, San Francisco</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucsf.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UCSF Library Systems</GivenName>
+ <EmailAddress>LibrarySystems@ucsf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UCSF Library Systems</GivenName>
+ <EmailAddress>LibrarySystems@ucsf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UCSF Library Systems</GivenName>
+ <EmailAddress>LibrarySystems@ucsf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Albert Jew</GivenName>
+ <EmailAddress>Albert.Jew@ucsf.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="urn:mace:incommon:ucsf.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucsf.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California, San Francisco</mdui:DisplayName>
+ <mdui:Description xml:lang="en">MyAccess login for the University of California, San Francisco</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://wiki.library.ucsf.edu/display/IAM/MyAccess</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://it.ucsf.edu/sites/it.ucsf.edu/files/ucsf_campus_security_and_privacy_attestation_statement.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="107" width="130" xml:lang="en">https://identity.ucsf.edu/sites/g/files/tkssra266/f/wysiwyg/logo_0.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 521843994722769626125675590332345574388923753142, expires on Wed Aug 29 04:03:59 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://dp.ucsf.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dp.ucsf.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dp.ucsf.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dp.ucsf.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://dp.ucsf.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dp.ucsf.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dp.ucsf.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dp.ucsf.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucsf.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 521843994722769626125675590332345574388923753142, expires on Wed Aug 29 04:03:59 2029 GMT -->
+ <ds:X509Certificate>
+MIIDFzCCAf+gAwIBAgIUW2hLRYSTq6yflHpRZ5ZBXty14rYwDQYJKoZIhvcNAQEF
+BQAwFjEUMBIGA1UEAxMLZHAudWNzZi5lZHUwHhcNMDkwODI5MDQwMzU5WhcNMjkw
+ODI5MDQwMzU5WjAWMRQwEgYDVQQDEwtkcC51Y3NmLmVkdTCCASIwDQYJKoZIhvcN
+AQEBBQADggEPADCCAQoCggEBAK+WY9j/fuMEQ2u4mKKeU5LXO+mi7BKKkJP3PUN0
+Iz4whL/M9uTR+C7x6DCVbi4CXNia8hmoNbWIKCKto9UJT/e+Y4y+dZjC4TLcIvdU
+og7x4/3qlcwI76jkomyL5uy2/7Ow+l/pmX99wph+K4/d8EpwE3NTXcFOVv1D8M3p
+UrVEfT1aoAm7p4SXS3uohM7KDXTljqtxImt/Q+cRFBImNyp7YTFp37024eMwtNfL
+JxEajodIFOCCYP6DmN5I1RWTF808BPPbkt7agjuz50pCdXHxfgnCfUmHeeUz4yLI
+6cgOWkB9JISN567vAH68IInM9with782aIsVLf2Fs5pQqxECAwEAAaNdMFswOgYD
+VR0RBDMwMYILZHAudWNzZi5lZHWGImh0dHBzOi8vZHAudWNzZi5lZHUvaWRwL3No
+aWJib2xldGgwHQYDVR0OBBYEFDfsmZZFJeq4xHogyRDy+1N69EEKMA0GCSqGSIb3
+DQEBBQUAA4IBAQBiK5W3RyQc/LL+FOy9mQIFzmobtJCGYUHwn/jMzZ+FdiV688MO
+A94AHGnxlvjjlVE7sjI83XgUK80IpLWz1QtCN9Pcwo5M0tNCxOFAkIe1xRadZmN4
+LpFOenH8vd5TF7DjrozFivFC4+l/mTTW4hfl+RaR34zgrzBAv+fUNrq7cNrid11w
+0h17HNqD964TR4QphmFyIrFR9skSs+41ScRMa4c7Svel8p4f+ptoATHSlSm0OZay
+jktgJp4o+Ld8xiH8Q5oLQ/qNG0hx9IRMaum9h0HCnxwHKsrxcJW2/A/CVhaVlj4J
+p/B3Zs13i2Wc6VGZGK1rfVetLqSnvfVPnT+h
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://dp.ucsf.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://dp.ucsf.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California, San Francisco</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California, San Francisco</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucsf.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kevin Dale</GivenName>
+ <EmailAddress>kevin.dale@ucsf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Susil Rayamajhi</GivenName>
+ <EmailAddress>susil.rayamajhi@ucsf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nathan Sheldon</GivenName>
+ <EmailAddress>nathan.sheldon@ucsf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Patrick Phelan</GivenName>
+ <EmailAddress>Patrick.Phelan@ucsf.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Nebraska-Lincoln -->
+<EntityDescriptor entityID="https://shib.unl.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unl.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Nebraska-Lincoln</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The University of Nebraska-Lincoln, chartered in 1869, is an educational institution of international stature. UNL is listed by the Carnegie Foundation within the "Research Universities (very high research activity)" category. UNL is a land-grant university and a member of the Association of Public and Land-grant Universities (APLU). The university is accredited by the Higher Learning Commission of the North Central Association of Colleges and Schools.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.unl.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://its.unl.edu/unlprivacypolicy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="114" width="114" xml:lang="en">https://www.unl.edu/wdn/templates_4.1/images/n.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1030306040272683194018586124016027375781558520072, expires on Tue Sep 10 21:08:26 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.unl.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.unl.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.unl.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.unl.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.unl.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.unl.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Nebraska-Lincoln</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Nebraska-Lincoln</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unl.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>UNL Computer Help Center</GivenName>
+ <EmailAddress>mysupport@unl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brett Bieber</GivenName>
+ <EmailAddress>bieber@unl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS Security</GivenName>
+ <EmailAddress>ITS-Sec@nebraska.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity &amp; Access Management Team</GivenName>
+ <EmailAddress>its-sec-iam@nebraska.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity &amp; Access Management Team</GivenName>
+ <EmailAddress>its-sec-iam@nebraska.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of California, Santa Cruz -->
+<EntityDescriptor entityID="urn:mace:incommon:ucsc.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucsc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California, Santa Cruz</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.ucsc.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policy.ucsc.edu/policies/its/ECPI.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="129" width="400" xml:lang="en">https://www2.ucsc.edu/shibboleth-sp/logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14649835409976549933, expires on Sun May 31 23:17:42 2020 GMT -->
+ <ds:X509Certificate>
+MIIDmDCCAoACCQDLTquv7ZdiLTANBgkqhkiG9w0BAQsFADCBjTELMAkGA1UEBhMC
+VVMxEzARBgNVBAgMCkNhbGlmb3JuaWExEzARBgNVBAcMClNhbnRhIENydXoxLTAr
+BgNVBAoMJFVuaXZlcnNpdHkgb2YgQ2FsaWZvcm5pYSwgU2FudGEgQ3J1ejEMMAoG
+A1UECwwDSVRTMRcwFQYDVQQDDA5sb2dpbi51Y3NjLmVkdTAeFw0xNTA2MDIyMzE3
+NDJaFw0yMDA1MzEyMzE3NDJaMIGNMQswCQYDVQQGEwJVUzETMBEGA1UECAwKQ2Fs
+aWZvcm5pYTETMBEGA1UEBwwKU2FudGEgQ3J1ejEtMCsGA1UECgwkVW5pdmVyc2l0
+eSBvZiBDYWxpZm9ybmlhLCBTYW50YSBDcnV6MQwwCgYDVQQLDANJVFMxFzAVBgNV
+BAMMDmxvZ2luLnVjc2MuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKC
+AQEAs8RybvRl9WBJDpXGOsoBrEfFKsAuwnz0sSFmjI4zkkV7WXuX2lLbBPhOnJdK
+brXL11J6mDZgf8ydhH31nJJvP98bHo0LQIXe2t1dfLVinhtpOy3TQguQ7Biipwe4
+g0E+HI4U9ndL7jEO/Xf2diMGCSOKyZjSubSYFpgXj0ORpvixqsAId0R0JLA4Xf4O
+V8+l6BqlB7DwzzeZcf49pSq8CCP8QkgU3DzaemNM6Yvqtu1cTpYJ9HqRV2aRGj+G
+OOMVshmJ+8iDr02U5jh+0E+5485lNKb7gWHNA7kLa0QBWm4eBAU0DYQzgnuVG2Oe
+HpP1mKsc77wBkfScyGlOcKvCNQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAZBRvJ
+sHdjLTtoPfa8MuuL3KcyE9dj9rWHeyrnEuWuMfhO95BN6utPkneoOsDKZORHDAVE
+LTrZ4E4iq36xLWarv+37jh2U7EFFqW4zVm/0Pmoa+NtnKTs78tF80n4+Zwt2iPSI
+JS0ZPHiNl2XYjNb7auwUK2XvpqBqh8rP63+nSEHmgFOzg01nWoJz2Q0uQ7C0mEV6
+aai0jp7M5se6pgnauX2g28ZyFORa5H0DO8Ku0SY8l9lTKRgXgsEOk8b2jJwuYnHu
+2dafiqrLOkdpKFPczD6ZGIx6eofqKmMeT4x+rZSvIZsq1j1wRw04gzQTHWCuEb+a
+N4x9ogtc8tHKC0O7
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.ucsc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ucsc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.ucsc.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.ucsc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucsc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14649835409976549933, expires on Sun May 31 23:17:42 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.ucsc.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.ucsc.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California, Santa Cruz</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California, Santa Cruz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucsc.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>UCSC Support Center</GivenName>
+ <EmailAddress>help@ucsc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security and Compliance</GivenName>
+ <EmailAddress>abuse@ucsc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kari Robertson</GivenName>
+ <EmailAddress>idmcore@ucsc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Andre Daniels</GivenName>
+ <EmailAddress>idmcore@ucsc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Purdue University Main Campus -->
+<EntityDescriptor entityID="https://idp.purdue.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">purdue.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Purdue University Main Campus</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.purdue.edu/policies/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="215" xml:lang="en">https://www.purdue.edu//purdue/globals/graphics/v4_purdue/PU_signature_white_bg_215x80.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 270714438420988936821555161400489586627914878012, expires on Sat May 10 19:06:37 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://www.purdue.edu/apps/idphs/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.purdue.edu/apps/idphs/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.purdue.edu/apps/idphs/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.purdue.edu/apps/idphs/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Purdue University Main Campus</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Purdue University Main Campus</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.purdue.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Purdue Identity and Access Management Office</GivenName>
+ <EmailAddress>accounts@purdue.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Purdue Identity and Access Management Office</GivenName>
+ <EmailAddress>accounts@purdue.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Purdue Identity and Access Management Office</GivenName>
+ <EmailAddress>accounts@purdue.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Purdue Security Team</GivenName>
+ <EmailAddress>abuse@purdue.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ncihub.org/login/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ncihub.org/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ncihub.org/Shibboleth.sso/login/shibboleth" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NCI Community Hub</mdui:DisplayName>
+ <mdui:Description xml:lang="en">National Cancer Informatics Community Hub - A Collaborative for Informatics in Cancer Research</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://ncihub.org/about</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://ncihub.org/legal/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="82" width="440" xml:lang="en">https://ncihub.org/app/site/media/images/nciphub.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13776680304954169877, expires on Fri Mar 14 17:46:36 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ncihub.org/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ncihub.org/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ncihub.org/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ncihub.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ncihub.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ncihub.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ncihub.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ncihub.org/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ncihub.org/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NCI Community Hub</ServiceName>
+ <ServiceDescription xml:lang="en">National Cancer Informatics Community Hub - A Collaborative for Informatics in Cancer Research</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Purdue University Main Campus</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Purdue University Main Campus</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.purdue.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ishwar Chandramouliswaran</GivenName>
+ <EmailAddress>contact@ncihub.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Steven Snyder</GivenName>
+ <EmailAddress>support@ncihub.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Purdue Security Team</GivenName>
+ <EmailAddress>abuse@purdue.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Purdue Identity and Access Management</GivenName>
+ <EmailAddress>accounts@purdue.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://www.rcac.purdue.edu/services/hubzero/smarteragriculture">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://smarteragriculture.org/login/shibboleth" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Smarter Agriculture</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Working together to move plant science discoveries from research to commercialization</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://smarteragriculture.org/about</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://smarteragriculture.org/legal/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="170" width="474" xml:lang="en">https://smarteragriculture.org/app/site/media/images/smarteraglogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13914073764828452309, expires on Thu Aug 20 21:07:52 2026 GMT -->
+ <ds:X509Certificate>
+MIIDOjCCAiKgAwIBAgIJAMEYuF6DLpXVMA0GCSqGSIb3DQEBBQUAMCExHzAdBgNV
+BAMTFnNtYXJ0ZXJhZ3JpY3VsdHVyZS5vcmcwHhcNMTYwODIyMjEwNzUyWhcNMjYw
+ODIwMjEwNzUyWjAhMR8wHQYDVQQDExZzbWFydGVyYWdyaWN1bHR1cmUub3JnMIIB
+IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA5+NGbIM7tCsvI9zBau7PNJ9Y
+R3+HjQ2VYDmEZDyGSImngzK6FwUWFGO8mMbgXDhnBWELOGjOJZuonNZUo+hmdNwF
+KHH0GeGIwLmjidSbZWTe3XX/QLBpgh3Tr2ye6pDU1ecCCZnerEyMUfdxKdqbvvKb
+Sl0AUAC/1w0TZL45vdrU3Lizna1D7b2QayADh/9QeSv/2bredHB2Y7K8uoZarqVC
+xYPGoTYC8bsN8FVBvpLT3mYWP4goIKVKVzNTFU9aigIdMhdKF4uWloaDx7xr7dhD
+qP3a6uAPUQ1Q0OqIhChgiWMx1JHhoZG6t6tuG8yxRBhKot9K2GuVYw1pWOjYRQID
+AQABo3UwczBSBgNVHREESzBJghZzbWFydGVyYWdyaWN1bHR1cmUub3Jnhi9odHRw
+czovL3NtYXJ0ZXJhZ3JpY3VsdHVyZS5vcmcvbG9naW4vc2hpYmJvbGV0aDAdBgNV
+HQ4EFgQULhnYO+X7P3Srs+RA6XHvFO3phCIwDQYJKoZIhvcNAQEFBQADggEBAF2n
+EwaX5xyVU7BAXP6k2lQQe1pHacVQ3S+M2ijeDTBFau46AmhdqI2doLbPqZwV7mKZ
+2BIKDg4X3cAEmlXEAxBIgCJvrNGbZWOwdBmIzdEVOpFBFtJ49pbw6lntuAh+u2Rc
+MOMf/8pR404P+VhdYx7tAoFkvAZWOH+ByzDIe0ekoQ/hNieI8RuBWGSucJuOjzxP
+zCCn4kTSaukBpR79g0UzSJRTZP8Sme3LcNpGG/yj/4617T2CUQaMmMhR4Uc51MYP
+wKqjajsNGnZtsWILK9sIW+PeLUSPtcidsZPG+qG6q+yM5DRlWj0H5VZX9dHEYEvx
+D/LB/MSj7Dp0BJKymqI=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://smarteragriculture.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://smarteragriculture.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://smarteragriculture.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://smarteragriculture.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://smarteragriculture.org/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://smarteragriculture.org/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Smarter Agriculture</ServiceName>
+ <ServiceDescription xml:lang="en">Working together to move plant science discoveries from research to commercialization</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Purdue University Main Campus</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Purdue University Main Campus</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.purdue.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Kevin Wojkovich</GivenName>
+ <EmailAddress>support@smarteragriculture.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>April Agee Carroll</GivenName>
+ <EmailAddress>support@smarteragriculture.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Kevin Wojkovich</GivenName>
+ <EmailAddress>support@smarteragriculture.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Purdue Security Team</GivenName>
+ <EmailAddress>abuse@purdue.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Purdue Security Team</GivenName>
+ <EmailAddress>abuse@purdue.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Colorado State University -->
+<EntityDescriptor entityID="https://shibidp.colostate.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://shibidp.colostate.edu/idp/error.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">colostate.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Colorado State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Enterprise identity provider at Colorado State University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.acns.colostate.edu/Help/Single-Sign-On-Shibboleth</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.colostate.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://shibidp.colostate.edu/idp/_support/img/csu-fc-logo-80-60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12926965715522196168, expires on Tue Oct 19 16:22:39 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibidp.colostate.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibidp.colostate.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Colorado State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Colorado State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.colostate.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Randy Miotke</GivenName>
+ <EmailAddress>shibboleth@colostate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brandon Bernier</GivenName>
+ <EmailAddress>shibboleth@colostate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeff Ruch</GivenName>
+ <EmailAddress>shibboleth@colostate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Steve Lovaas</GivenName>
+ <EmailAddress>soc@colostate.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Michigan Technological University -->
+<EntityDescriptor entityID="https://sso.mtu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mtu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Michigan Technological University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.mtu.edu/policy/policies/general/1-06/index.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="332" xml:lang="en">https://www.mtu.edu/it/images/it-support-banner.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1364663416953251628902882413580938516033403285627, expires on Mon Nov 13 21:06:51 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.mtu.edu/cas/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.mtu.edu/cas/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Michigan Technological University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Michigan Technological University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.mtu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>IT Help</GivenName>
+ <EmailAddress>it-help@mtu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Pat Krogel</GivenName>
+ <EmailAddress>pekrogel@mtu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jarrod Karau</GivenName>
+ <EmailAddress>jlkarau@mtu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Security</GivenName>
+ <EmailAddress>it-sec-l@mtu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Gregory Booth</GivenName>
+ <EmailAddress>greg@mtu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Stevens Institute of Technology -->
+<EntityDescriptor entityID="urn:mace:incommon:stevens.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">stevens.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stevens Institute of Technology</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stevens.edu/privacypolicy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="213" width="500" xml:lang="en">https://web.stevens.edu/ews/persistent-logo/Stevens-Official-PMSColor-R_50percent.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11892121347607114547, expires on Wed Apr 20 21:01:09 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.stevens.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.stevens.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.stevens.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.stevens.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.stevens.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.stevens.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">stevens.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11892121347607114547, expires on Wed Apr 20 21:01:09 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.stevens.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.stevens.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stevens Institute of Technology</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stevens Institute of Technology</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.stevens.edu/sit/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stevens InCommon Admin</GivenName>
+ <EmailAddress>incommonadmin@stevens.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stevens InCommon Tech</GivenName>
+ <EmailAddress>incommontech@stevens.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stevens InCommon Security</GivenName>
+ <EmailAddress>incommonsecurity@stevens.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- MCNC -->
+<EntityDescriptor entityID="urn:mace:incommon:mcnc.org">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mcnc.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">MCNC Employees</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.mcnc.org</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.mcnc.org/policies/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="206" width="785" xml:lang="en">https://shib.mcnc.org/images/MyLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11800455188632809129, expires on Tue Dec 13 15:48:18 2033 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17474702835562771731, expires on Sat Dec 21 18:33:30 2013 GMT -->
+ <ds:X509Certificate>
+MIIDLDCCAhSgAwIBAgIJAPKCnaTdOvUTMA0GCSqGSIb3DQEBBQUAMBgxFjAUBgNV
+BAMTDXNoaWIubWNuYy5vcmcwHhcNMTAxMjIyMTgzMzMwWhcNMTMxMjIxMTgzMzMw
+WjAYMRYwFAYDVQQDEw1zaGliLm1jbmMub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAtrw9IAY4PuLTkfH9uRH92E0J+Ij+4DEfo6hxI50NdWsioMJ3
+P05GyEdIIB7TPEI0EOtWNJT6wLBxAVlM38GFfh/OSN4IEgiBywbPLQrmOuEMnTEs
+hpfDdI1aPFJpMVEx+2i5bwMD5EOSPKFNxD8B9Gqm7TZmTr3VbCb+n4xu5orpSka8
+lPBLilksOnZwOKjCHFLJlIlvyAVzB1JpNk+AC171bjdNUWIgRzpjTyD5JKzBKOGO
+VSuZfMsbpwaj8Mhm4IY49f69o9L4IleEeoAI5bWfwYFNQ/ptilcblDK/SASIXpDf
+Oklntjt5DL4shertVGRAAZAkzkF6SvvX8zZ1dQIDAQABo3kwdzAdBgNVHQ4EFgQU
+W44lUTMIMW34L32RSSBpxHcbpRMwSAYDVR0jBEEwP4AUW44lUTMIMW34L32RSSBp
+xHcbpROhHKQaMBgxFjAUBgNVBAMTDXNoaWIubWNuYy5vcmeCCQDygp2k3Tr1EzAM
+BgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQCb73PacEF/52k+5WrtiO+T
+FeW4gR22sHcqJE383mz2WaWA3u0xsgYNbyA7erqIxriY1DOpdQCr4VkY3B4MNSRe
+iHCeDJ67GRKDK1KiH6gR84rugPiOgBRMRkiZEY/sr5PCojg44w/NpFjF0669ZsLk
+iNSnodKcEBwA2xzg/5JBoN8+c2lfA3RErnNE6H1krRSdFUIf6qqvjAsAC4tiaNoX
+qpDN0kQQPXRDoNTOQwq3dsk8Ln3Xath+S+qGl7S4hvAx4uSwRBvq9NC8nbpPOePy
+yON7kOgCmBkorVBXljwXBx36Q7X8jMYI/CQtHFcH2M05Ld8oOU31/m8xiOGruasK
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.mcnc.org:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.mcnc.org:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.mcnc.org/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.mcnc.org/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.mcnc.org/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.mcnc.org/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mcnc.org</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11800455188632809129, expires on Tue Dec 13 15:48:18 2033 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17474702835562771731, expires on Sat Dec 21 18:33:30 2013 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.mcnc.org:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.mcnc.org:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">MCNC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">MCNC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.mcnc.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>MCNC Support</GivenName>
+ <EmailAddress>support@mcnc.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>MCNC Support</GivenName>
+ <EmailAddress>support@mcnc.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>MCNC Support</GivenName>
+ <EmailAddress>support@mcnc.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>MCNC Help Desk</GivenName>
+ <EmailAddress>support@mcnc.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Arizona State University -->
+<EntityDescriptor entityID="urn:mace:incommon:asu.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">asu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Arizona State University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.asu.edu/about</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.asu.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="72" width="400" xml:lang="en">https://www.asu.edu/asuthemes/4.6/assets/full_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 737051971464214349832325621809304097555412250953, expires on Mon Dec 6 00:58:58 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth2.asu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth2.asu.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Arizona State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Arizona State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.asu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>UTO EDNA Team</GivenName>
+ <EmailAddress>ednateam@asu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Certificate Support</GivenName>
+ <EmailAddress>ops.ss.certificates@mainex1.asu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UTO CANES IdM Engineering</GivenName>
+ <EmailAddress>ednateam@asu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Joseph McDonald</GivenName>
+ <EmailAddress>jmcdonald@asu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ASU ISO Team</GivenName>
+ <EmailAddress>infosec@asu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UTO CANES IdM Engineering</GivenName>
+ <EmailAddress>ednateam@asu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Houston-Downtown -->
+<EntityDescriptor entityID="https://idp.uhd.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.uhd.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uhd.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Houston-Downtown</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uhd.edu/administration/employment-services-operations/resources/Pages/hr-information-systems-policy.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="42" width="260" xml:lang="en">https://www.uhd.edu/computing/PublishingImages/uhd-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 53129338365743581008476029977068137942, expires on Thu Sep 22 23:59:59 2016 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16511570351069108585, expires on Sat Sep 1 16:41:28 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 54832333582219220187391702938091486359, expires on Sun Sep 22 23:59:59 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.uhd.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.uhd.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.uhd.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uhd.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uhd.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uhd.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 53129338365743581008476029977068137942, expires on Thu Sep 22 23:59:59 2016 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16511570351069108585, expires on Sat Sep 1 16:41:28 2035 GMT -->
+ <ds:X509Certificate>
+MIIEOzCCAyOgAwIBAgIJAOUk4cCTWJlpMA0GCSqGSIb3DQEBCwUAMIGzMQswCQYD
+VQQGEwJVUzEOMAwGA1UECAwFVGV4YXMxEDAOBgNVBAcMB0hvdXN0b24xKTAnBgNV
+BAoMIFVuaXZlcnNpdHkgb2YgSG91c3RvbiAtIERvd250b3duMR8wHQYDVQQLDBZJ
+bmZvcm1hdGlvbiBUZWNobm9sb2d5MRQwEgYDVQQDDAtpZHAudWhkLmVkdTEgMB4G
+CSqGSIb3DQEJARYRZXNxdWl2ZWx2QHVoZC5lZHUwHhcNMTUwOTAyMTY0MTI4WhcN
+MzUwOTAxMTY0MTI4WjCBszELMAkGA1UEBhMCVVMxDjAMBgNVBAgMBVRleGFzMRAw
+DgYDVQQHDAdIb3VzdG9uMSkwJwYDVQQKDCBVbml2ZXJzaXR5IG9mIEhvdXN0b24g
+LSBEb3dudG93bjEfMB0GA1UECwwWSW5mb3JtYXRpb24gVGVjaG5vbG9neTEUMBIG
+A1UEAwwLaWRwLnVoZC5lZHUxIDAeBgkqhkiG9w0BCQEWEWVzcXVpdmVsdkB1aGQu
+ZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApkNjSneC8ZHZ58fL
+fd2K9P7FmCioLKAjqT0rH/waiTcqFCUA9fCBp7aMlJ3r6q0hy8HIpQALbYc/75e6
+VdzAnl6hkUPg3VkSBdY1CaCkfifoNLKS2viN9DOFcWtoQ9JpDShkX+TVCJQS806F
+xlY5t5/JyDk8S2BzNRTacICdciXzm8ZnZHdK7xsNc69jhN5l10W8rGXAv3H8uzxH
+yc8NdC21bgAFKPE4KB6mqfcazK/sNS5xRCbUr1DL1j0dUEcjAx856DLEGGU3nPwB
+eh0xR4cVfQzdjO/TNLmJLkXpz0nmnpD0+mDFzCtox1nTSOnZTaOHYyn5Ezg6ffbW
+/Bo9gwIDAQABo1AwTjAdBgNVHQ4EFgQUfHHaoSGgDeENzvOWqxsLNlDUWWUwHwYD
+VR0jBBgwFoAUfHHaoSGgDeENzvOWqxsLNlDUWWUwDAYDVR0TBAUwAwEB/zANBgkq
+hkiG9w0BAQsFAAOCAQEANSHP8exc8VcdH8CmvWCHHYmnmVn2yWe3Hazfdmv86NoL
+NnDcLIMyGEhrkptMOT6jzabWW9L/KG/B3l92VgnDRbkoQGriTmVC0Rd8p0Qnt6rI
+v2wRoqEil7gkrBJjZbE/lw+anKs1e6S5dHnrl8jh9Gv7dNWxF3wNwhPNfo2okYKg
+VDhNpUET04lGZvFld3G9deuZkRDZRtnmvKzfXVd0ef+1i2gqYfEaqyc4habhFxxS
+G5GNDnIy+V75iDAzBtVSpiJBnUVedD0hXpKkJ7CFN2rxyWSbS1oTcv7VLkDU+NIn
+ow7ccI2JbtWcZRoyj1SAIWclJIt9ItbyJzkVZus4Ug==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 54832333582219220187391702938091486359, expires on Sun Sep 22 23:59:59 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.uhd.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Houston-Downtown</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Houston-Downtown</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uhd.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Vince Esquivel</GivenName>
+ <EmailAddress>esquivelv@uhd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Grace Davila</GivenName>
+ <EmailAddress>davilag@uhd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Vicente Esquivel</GivenName>
+ <EmailAddress>esquivelv@uhd.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Liberty University -->
+<EntityDescriptor entityID="https://shibboleth.liberty.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">liberty.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Liberty University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.liberty.edu/index.cfm?PID=6901</mdui:PrivacyStatementURL>
+ <mdui:Logo height="220" width="270" xml:lang="en">https://www.liberty.edu/wp-content/uploads/sites/12/2019/01/logo-footer.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 153961866392869174791355707036426323274663311683, expires on Tue Jun 20 18:56:44 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 153961866392869174791355707036426323274663311683, expires on Tue Jun 20 18:56:44 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.liberty.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.liberty.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.liberty.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">liberty.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 653, expires on Thu Sep 22 17:55:11 2011 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.liberty.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.liberty.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Liberty University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Liberty University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.liberty.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>William Canterbury</GivenName>
+ <EmailAddress>wbcanterbury@liberty.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mark Norris</GivenName>
+ <EmailAddress>jmnorris3@liberty.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Karch Frankenfield</GivenName>
+ <EmailAddress>kafrankenfield@liberty.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Brown University -->
+<EntityDescriptor entityID="https://sso.brown.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://wiki.brown.edu/confluence/display/SHIB/Error+Information+Page" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">brown.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Brown University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://it.brown.edu/computing-policies/principles-data-protection</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="80" xml:lang="en">https://sso.brown.edu/idp/images/brown-shib-80.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 165306837990684166687565496886182789549147988285, expires on Tue May 21 21:02:31 2030 GMT -->
+ <ds:X509Certificate>
+MIIDHzCCAgegAwIBAgIUHPSdb4ae0QA3fyeEIe7wKXi2oT0wDQYJKoZIhvcNAQEF
+BQAwGDEWMBQGA1UEAxMNc3NvLmJyb3duLmVkdTAeFw0xMDA1MjEyMTAyMzFaFw0z
+MDA1MjEyMTAyMzFaMBgxFjAUBgNVBAMTDXNzby5icm93bi5lZHUwggEiMA0GCSqG
+SIb3DQEBAQUAA4IBDwAwggEKAoIBAQCxabgPhLgyIOyoG87T41EXwUOyXKNJ4XvF
+a5moC3y8J9JzWBeVRQ8L7zxEiLcsZ4qHYdOCVZNSD5SYeI8rtjwz/lHlJsF7dfLX
+peQSm5HggcgWEEbvgp+qHRsbu6ZLKUmD0qLnWLZ5pG+ihm0n10G6h9op9NKJqJOg
+kyk3PQbe1biAjjpnkVL5CxL4h1E0XADZogZBh3pY04kNzbMvaWsB9ToDI8i6JqTf
+yEZZcQr4ShgIdstAHzbHcGoRqSOuI3BDeYDj0lp7/X/v/lvQMWWnKFJD6E7xKypo
+VO2czCswZ9i390YkI9+eoBbIMunuE/JjPZwwknnWqaI5LBDkGbnJAgMBAAGjYTBf
+MD4GA1UdEQQ3MDWCDXNzby5icm93bi5lZHWGJGh0dHBzOi8vc3NvLmJyb3duLmVk
+dS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU1EgYrxblcWF0RP8BxGEPTM4SkIow
+DQYJKoZIhvcNAQEFBQADggEBAG1o9TLKHLDMlW+fRtyWXeGI1Dpnvw505nmWOQEP
+zXnT3oMRsmFYUrynl6amaay0IlEZ86g8KALM0AsKA9x2hYz/Kvs99ZLJJ+3mcHDs
+wWWC9NYme6HEzs+mXRXD2wxOWUYNKc2xAs3QPOpYmX2g6sZiDPkyQ4KOZT/Vh9BZ
+970k7vtJ0lIOUFSDTQnlfGOtdEBE6QehIzHF6SpFakYYFyAK1MO4G/vdYYoe4lF5
+FTUg9UjnEWqwcmCX02ay5ma5YMkNkyXeetU6HmLRBnpwPcuCgIkzuXP64h+6nVWp
+bLEJHeHIom+fbTMoCnUDbZ0FcmiGxk9Cg6RPORcGztgLcVw=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.brown.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.brown.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sso.brown.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.brown.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.brown.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">brown.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 165306837990684166687565496886182789549147988285, expires on Tue May 21 21:02:31 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.brown.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Brown University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Brown University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.brown.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Brown University Shibboleth Administrator</GivenName>
+ <EmailAddress>CIS-EAS-IdMgmt@brown.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brown University Identity Management</GivenName>
+ <EmailAddress>CIS-EAS-IdMgmt@brown.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Brown University Help Desk</GivenName>
+ <EmailAddress>help@brown.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brown University Information Security Group</GivenName>
+ <EmailAddress>isg@brown.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Missouri System -->
+<EntityDescriptor entityID="https://arc-binders-qa.missouri.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://arc-binders-qa.missouri.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Missouri ARC IT QA</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.umsystem.edu/ums/rules/collected_rules/facilities/ch110/110.005_acceptable_use_policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="144" width="144" xml:lang="en">https://www.umsystem.edu/media/images/um-seal_incommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12987490322491927686, expires on Fri Apr 14 19:49:43 2028 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://arc-binders-qa.missouri.edu/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://arc-binders-qa.missouri.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arc-binders-qa.missouri.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arc-binders-qa.missouri.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://arc-binders-qa.missouri.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://arc-binders-qa.missouri.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://arc-binders-qa.missouri.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://arc-binders-qa.missouri.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://arc-binders-qa.missouri.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Missouri ARC IT QA</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Missouri System</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Missouri System</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://umsystem.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>MU ARC IT</GivenName>
+ <EmailAddress>arcit@missouri.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>MU ARC IT</GivenName>
+ <EmailAddress>arcit@missouri.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>MU ARC IT</GivenName>
+ <EmailAddress>arcit@missouri.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>MU ARC IT</GivenName>
+ <EmailAddress>arcit@missouri.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://arc.missouri.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://arc-binders.missouri.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Missouri ARC IT</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.umsystem.edu/ums/rules/collected_rules/facilities/ch110/110.005_acceptable_use_policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="144" width="144" xml:lang="en">https://www.umsystem.edu/media/images/um-seal_incommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9693319963288014762, expires on Fri Jul 21 16:03:00 2028 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://arc-binders.missouri.edu/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://arc-binders.missouri.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arc-binders.missouri.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arc-binders.missouri.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://arc-binders.missouri.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://arc-binders.missouri.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://arc-binders.missouri.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://arc-binders.missouri.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://arc-binders.missouri.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://arc-binders.missouri.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://arc-binders.missouri.edu/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://arc-binders.missouri.edu/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://arc-binders.missouri.edu/Shibboleth.sso/SAML/POST" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://arc-binders.missouri.edu/Shibboleth.sso/SAML/Artifact" index="11"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Missouri ARC IT</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Missouri System</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Missouri System</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://umsystem.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>MU ARC IT</GivenName>
+ <EmailAddress>arcit@missouri.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>MU ARC IT</GivenName>
+ <EmailAddress>arcit@missouri.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>MU ARC IT</GivenName>
+ <EmailAddress>arcit@missouri.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>MU ARC IT</GivenName>
+ <EmailAddress>arcit@missouri.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://arc-qaweb1.missouri.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://arc-qaweb1.missouri.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Missouri ARC IT QA1</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.umsystem.edu/ums/rules/collected_rules/facilities/ch110/110.005_acceptable_use_policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="144" width="144" xml:lang="en">https://www.umsystem.edu/media/images/um-seal_incommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12987490322491927686, expires on Fri Apr 14 19:49:43 2028 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arc-qaweb1.missouri.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arc-qaweb1.missouri.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arc-qaweb1.missouri.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arc-qaweb1.missouri.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arc-qaweb1.missouri.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arc-qaweb1.missouri.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Missouri ARC IT QA1</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Missouri System</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Missouri System</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://umsystem.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>MU ARC IT</GivenName>
+ <EmailAddress>arcit@missouri.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>MU ARC IT</GivenName>
+ <EmailAddress>arcit@missouri.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>MU ARC IT</GivenName>
+ <EmailAddress>arcit@missouri.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>MU ARC IT</GivenName>
+ <EmailAddress>arcit@missouri.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://shib-idp.umsystem.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umsystem.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">missouri.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">mizzou.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umh.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umkc.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umsl.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">mst.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Missouri System</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.umsystem.edu/ums/rules/collected_rules/facilities/ch110/110.005_acceptable_use_policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="144" width="144" xml:lang="en">https://www.umsystem.edu/media/images/um-seal_incommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11938426614739318945, expires on Sun Apr 9 16:54:30 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib-idp.umsystem.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-idp.umsystem.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib-idp.umsystem.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib-idp.umsystem.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib-idp.umsystem.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib-idp.umsystem.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umsystem.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">missouri.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">mizzou.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umh.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umkc.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umsl.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">mst.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11938426614739318945, expires on Sun Apr 9 16:54:30 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-idp.umsystem.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib-idp.umsystem.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Missouri System</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Missouri System</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://umsystem.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UM System Shibboleth Technical Contact</GivenName>
+ <EmailAddress>shib-tech@umsystem.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UM System Shibboleth Administration</GivenName>
+ <EmailAddress>shib-admin@umsystem.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UM System Shibboleth Support</GivenName>
+ <EmailAddress>shib-support@umsystem.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UM System Shibboleth Security Contact</GivenName>
+ <EmailAddress>shib-security@umsystem.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- North Carolina State University -->
+<EntityDescriptor entityID="urn:mace:incommon:ncsu.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://help.oit.ncsu.edu/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ncsu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">North Carolina State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Sign in with your NC State UnityID credentials</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://oit.ncsu.edu/campus-it/identity-management/shibboleth/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ncsu.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="33" width="195" xml:lang="en">https://docs.shib.ncsu.edu/inc/fed_logo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15698253166706780659, expires on Sun Apr 22 15:43:18 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.ncsu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.ncsu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.ncsu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.ncsu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.ncsu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.ncsu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ncsu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15698253166706780659, expires on Sun Apr 22 15:43:18 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.ncsu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.ncsu.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">North Carolina State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">North Carolina State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ncsu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>NC State Shibboleth Support Team</GivenName>
+ <EmailAddress>shibboleth-help@ncsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>NC State Shibboleth Support Team</GivenName>
+ <EmailAddress>shibboleth-help@ncsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>NC State Help Desk</GivenName>
+ <EmailAddress>help@ncsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>NC State Security Team</GivenName>
+ <EmailAddress>security@ncsu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Colorado at Boulder -->
+<EntityDescriptor entityID="https://fedauth.colorado.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">colorado.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Colorado at Boulder</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The University of Colorado at Boulder's Identity Provider</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.colorado.edu/oit/webaccess</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://oit.colorado.edu/services/identity-access-management/federated-identity</mdui:PrivacyStatementURL>
+ <mdui:Logo height="124" width="242" xml:lang="en">https://www.colorado.edu/brand/sites/default/files/page/boulder-fl-centered-2.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 189167086531610581716788437900655670415371982433, expires on Mon Apr 7 21:19:27 2031 GMT -->
+ <ds:X509Certificate>
+MIIDOzCCAiOgAwIBAgIUISKLp/LUBR62UD3eacuMlgyq1mEwDQYJKoZIhvcNAQEF
+BQAwHzEdMBsGA1UEAxMUZmVkYXV0aC5jb2xvcmFkby5lZHUwHhcNMTEwNDA3MjEx
+OTI3WhcNMzEwNDA3MjExOTI3WjAfMR0wGwYDVQQDExRmZWRhdXRoLmNvbG9yYWRv
+LmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKKfxWBCz6RGXDaM
++Td/GX14ozBjZgctgcOOduUWf1Y6awzXJgRlC7k4LGCJZscZLsuZgfzdO6qTxDwk
+Bbk6UiwUn+dHng6DNBNpuCkUdoCEv6F5gUzZG+aR1NBWk+n565c/u/OAZKt/TgQz
+ni+zSKGR78DVu/FMrgEtFL37mGjy3qcHe9c/y4fVh+TuFpZOvK5TTMsy/OI0Jx2q
+tLL/At7Od5oWEm32UH7NtZl5qBg36SYHcDYeVkaCyCoQrFw03W3i+2Q5PUo5FwG6
+GpeAoZEn1pU1iQ4rowdgafHH8xAg7boLdsax6J02pMem732e7VXUk9pkaDewUfSl
+OwU391kCAwEAAaNvMG0wTAYDVR0RBEUwQ4IUZmVkYXV0aC5jb2xvcmFkby5lZHWG
+K2h0dHBzOi8vZmVkYXV0aC5jb2xvcmFkby5lZHUvaWRwL3NoaWJib2xldGgwHQYD
+VR0OBBYEFLtp54NAL/CFuBokXwZxmltg52+6MA0GCSqGSIb3DQEBBQUAA4IBAQBJ
+KfBAodCf7pfUUBo/y2htFEUEc1EVyyzLardzvxncQBY76KLQKzynkXdzynmtWWdX
+ERDsBWyM5idtMwanSXZhLBxKZ0BLx0whe0QrP26bFjD3hDc54jxWucfK7gbVkaG+
+0U07hjYazpz6YuAXQ/n4+McCnqw5vI7aEreIWH6ky5kU3+KkNuEBsuOfsPCpfhHG
+d/zUrol9WKi0oBE/3A3WluEsKobPTI+Df3UOQbWnujwquIWpR7PYqotR2BYrAuPI
+2ijwqoxQck0dHwpdffo+4STtjJN1LMGDAOgVBZEBX5HQkgt5Z9fxKHw1ok0ygPyD
+aE45z9S0D3Rt1IJs3AeI
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://fedauth.colorado.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fedauth.colorado.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://fedauth.colorado.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fedauth.colorado.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fedauth.colorado.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">colorado.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 189167086531610581716788437900655670415371982433, expires on Mon Apr 7 21:19:27 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://fedauth.colorado.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Colorado at Boulder</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Colorado at Boulder</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.colorado.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Marwan Shaher</GivenName>
+ <EmailAddress>shibboleth@colorado.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kerry Havens</GivenName>
+ <EmailAddress>shibboleth@colorado.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kevin Foote</GivenName>
+ <EmailAddress>shibboleth@colorado.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Service Center</GivenName>
+ <EmailAddress>help@colorado.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Security Office</GivenName>
+ <EmailAddress>security@colorado.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Ramapo College of New Jersey -->
+<EntityDescriptor entityID="urn:mace:incommon:ramapo.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.ramapo.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ramapo.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ramapo College of New Jersey</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.ramapo.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ramapo.edu/statements-policies/#s2</mdui:PrivacyStatementURL>
+ <mdui:Logo height="73" width="180" xml:lang="en">https://www.ramapo.edu/wp-content/uploads/2016/02/ramapo-logo-180.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 289520126864612952800752259098404618023986522386, expires on Wed Jan 31 04:18:04 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.ramapo.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ramapo.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ramapo.edu/idp/profile/SAML2/SOAP/ECP"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ramapo.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ramapo College of New Jersey</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ramapo College of New Jersey</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ramapo.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jefferson Sampson</GivenName>
+ <EmailAddress>sso-admin@ramapo.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Support Admin</GivenName>
+ <EmailAddress>sso-admin@ramapo.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Support Admin</GivenName>
+ <EmailAddress>sso-admin@ramapo.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jefferson Sampson</GivenName>
+ <EmailAddress>sso-admin@ramapo.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Florida -->
+<EntityDescriptor entityID="https://incommon-sp.login.ufl.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://incommon-sp.login.ufl.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UF Test Service Provider</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UF Test Service Provider</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.privacy.ufl.edu</mdui:PrivacyStatementURL>
+ <mdui:Logo height="135" width="38" xml:lang="en">https://images.webadmin.ufl.edu/signatures/wordmark.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13018578956914139118, expires on Mon Jun 27 17:50:46 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://incommon-sp.login.ufl.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Florida</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Florida</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ufl.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Warren Curry</GivenName>
+ <EmailAddress>whcurry@ufl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Charles Tompkins</GivenName>
+ <EmailAddress>crt@ufl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UF Helpdesk</GivenName>
+ <EmailAddress>helpdesk@ufl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:icmd="http://id.incommon.org/metadata" contactType="other" icmd:contactType="http://id.incommon.org/metadata/contactType/security">
+ <GivenName>UF Incident Response Team</GivenName>
+ <EmailAddress>ufirt@ufl.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://login.ufl.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.ufl.edu/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ufl.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Florida</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Florida - GatorLink Credentials</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://helpdesk.ufl.edu/getting-help-for-gatorlink-log-in-issues/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy.ufl.edu/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="38" width="135" xml:lang="en">https://images.webadmin.ufl.edu/signatures/wordmark.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14886451276915891287, expires on Sun Jun 27 16:54:59 2021 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.ufl.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.ufl.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ufl.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.ufl.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.ufl.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ufl.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14886451276915891287, expires on Sun Jun 27 16:54:59 2021 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.ufl.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.ufl.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Florida</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Florida</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ufl.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity Services Team</GivenName>
+ <EmailAddress>Identity-Services@it.ufl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UF Computing Help Desk</GivenName>
+ <EmailAddress>helpdesk@ufl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity Services Team</GivenName>
+ <EmailAddress>Identity-Services@it.ufl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UF Incident Response team</GivenName>
+ <EmailAddress>ufirt@ufl.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://redcap-phone.ctsi.ufl.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CTSI RedCAP for UF</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://ufhealth.org/website-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="72" width="177" xml:lang="en">https://ufhealth.org/sites/all/themes/ufandshands/library/images/footer-ufhealth-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16182487263608758059, expires on Fri Aug 6 20:58:19 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://redcap-phone.ctsi.ufl.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://redcap-phone.ctsi.ufl.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://redcap-phone.ctsi.ufl.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CTSI RedCAP for UF</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Florida</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Florida</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ufl.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Clinical and Translational Science Institute REDCAP</GivenName>
+ <EmailAddress>info@ctsi.ufl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>AHC Unix Team</GivenName>
+ <EmailAddress>AHC_UNIX@shands.ufl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UF Security Team</GivenName>
+ <EmailAddress>security@ufl.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://www.advising.ufl.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Florida CLAS Academic Advising</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UF College of Liberal Arts &amp; Sciences Academic Advising Center</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.it.ufl.edu/identity/shibboleth/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy.ufl.edu/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="38" width="135" xml:lang="en">https://images.webadmin.ufl.edu/signatures/wordmark.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9916962943870465943, expires on Mon Jan 1 19:02:41 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.advising.ufl.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.advising.ufl.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Florida</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Florida</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ufl.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity Services Team</GivenName>
+ <EmailAddress>Identity-Services@it.ufl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Shields</GivenName>
+ <EmailAddress>danshields@advising.ufl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UF Incident Response Team</GivenName>
+ <EmailAddress>ufirt@ufl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UFIT Linux Core</GivenName>
+ <EmailAddress>ict-systems-linux-core@mail.ufl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UF Computing Helpdesk</GivenName>
+ <EmailAddress>helpdesk@ufl.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Northern Colorado -->
+<EntityDescriptor entityID="http://adfs.unco.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unco.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">bears.unco.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Northern Colorado</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.unco.edu/generalcounsel/privacy.htm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="175" width="300" xml:lang="en">https://www.unco.edu/assets/images/unc_logo_combo_stacked.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 42167264726171932080854749013711872850, expires on Thu Jan 9 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
+MIIF7jCCBNagAwIBAgIQH7keqfYYk1gZ4M9iTyljUjANBgkqhkiG9w0BAQsFADB2
+MQswCQYDVQQGEwJVUzELMAkGA1UECBMCTUkxEjAQBgNVBAcTCUFubiBBcmJvcjES
+MBAGA1UEChMJSW50ZXJuZXQyMREwDwYDVQQLEwhJbkNvbW1vbjEfMB0GA1UEAxMW
+SW5Db21tb24gUlNBIFNlcnZlciBDQTAeFw0xNzAxMDkwMDAwMDBaFw0yMDAxMDky
+MzU5NTlaMIG5MQswCQYDVQQGEwJVUzEOMAwGA1UEERMFODA2MzkxCzAJBgNVBAgT
+AkNPMRAwDgYDVQQHEwdHcmVlbGV5MRgwFgYDVQQJEw81MDEgMjB0aCBTdHJlZXQx
+KDAmBgNVBAoTH1VuaXZlcnNpdHkgb2YgTm9ydGhlcm4gQ29sb3JhZG8xHzAdBgNV
+BAsTFkluZm9ybWF0aW9uIFRlY2hub2xvZ3kxFjAUBgNVBAMTDWFkZnMudW5jby5l
+ZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCpHQDPwLOa5lsrjcmB
+liDw1TYaX2QqLVhjCs5+8VgtGKNLXC+XanVihTZg7yPYNDQlZoXzpDlhvk9cdAKB
+cJ36udGwT19rOnajz48ZDrxguM/eFjisBLEgUBlieJk32wurgy2L/Q2KUH+WKCAy
+0da/ztiWLdwRjYNjRWcIPVBuH62zueWt1Zb2xrcAGKSc4F+A65Ep3HKe9xHT0HEm
+eiTYkwzaeTRp7FFbsh0CMFrW60T3cZHkDaqNuhYZm+Cm4atFu++TJB1vZ6wPXpcR
+8LMZlZl3QZ1EP+mUeFFIYb/cdgf4BzqK16Rbo1SRpK7FpgOsC68q/TGk37BUijkt
+2LeRAgMBAAGjggIyMIICLjAfBgNVHSMEGDAWgBQeBaN3j2yW4luHS6a0hqxxAAzn
+ODAdBgNVHQ4EFgQUNLl8kEYwmYr3RtQFn3Vw3/9ZlGkwDgYDVR0PAQH/BAQDAgWg
+MAwGA1UdEwEB/wQCMAAwHQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCMGcG
+A1UdIARgMF4wUgYMKwYBBAGuIwEEAwEBMEIwQAYIKwYBBQUHAgEWNGh0dHBzOi8v
+d3d3LmluY29tbW9uLm9yZy9jZXJ0L3JlcG9zaXRvcnkvY3BzX3NzbC5wZGYwCAYG
+Z4EMAQICMEQGA1UdHwQ9MDswOaA3oDWGM2h0dHA6Ly9jcmwuaW5jb21tb24tcnNh
+Lm9yZy9JbkNvbW1vblJTQVNlcnZlckNBLmNybDB1BggrBgEFBQcBAQRpMGcwPgYI
+KwYBBQUHMAKGMmh0dHA6Ly9jcnQudXNlcnRydXN0LmNvbS9JbkNvbW1vblJTQVNl
+cnZlckNBXzIuY3J0MCUGCCsGAQUFBzABhhlodHRwOi8vb2NzcC51c2VydHJ1c3Qu
+Y29tMIGIBgNVHREEgYAwfoINYWRmcy51bmNvLmVkdYILZnMudW5jby5lZHWCD2l0
+ZnMwMS51bmNvLmVkdYIPaXRmczAyLnVuY28uZWR1gg9pdGZzMDMudW5jby5lZHWC
+D2l0ZnMwNC51bmNvLmVkdYIObG9naW4udW5jby5lZHWCDHN0cy51bmNvLmVkdTAN
+BgkqhkiG9w0BAQsFAAOCAQEAlnefuok13gxpEbbYDB9s/3FMrHemd9u93fG8F2G/
+iVezus5KqKF2CqcUTZNm10YJdwaqkAYLJUixL5uwr2VpMAFf57lYadr5KE2N9l46
+FSr1gYWqdRv5Hateu0XBwHTif4HH1WO859PqlwA2n8nbYS7Xty7c2U6H6Qxt/ael
+O/b6Sa9EXtqIm4luaPAEH+VHuXVVRwS5ZKIrxNq7UkhIMlfHJ6eKsCMYr/jZNWZi
+v6amXYpROTjf/Rh39H2jRoPCU9Q+BFI1Jxsix+Ueb3+l49MmUyUpBDKh2VonIf7P
+zztuDK1ySiHNQAX/nt7XM0iFXK10c/EJTvAS0JGttVjsdA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://adfs.unco.edu/adfs/services/trust/artifactresolution" index="1"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://adfs.unco.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adfs.unco.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Northern Colorado</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Northern Colorado</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unco.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>ID Management Group</GivenName>
+ <EmailAddress>ID.Management@unco.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Technical Support Center</GivenName>
+ <EmailAddress>TSC.Support@unco.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ID Management Group</GivenName>
+ <EmailAddress>ID.Management@unco.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>ID Management Group</GivenName>
+ <EmailAddress>ID.Management@unco.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Virginia State University -->
+<EntityDescriptor entityID="https://vsu-pbslive-01v.vsu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://library.vsu.edu/shiberror.htm" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">vsu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Virginia State University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.vsu.edu/files/docs/policies/6000/6140.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="93" width="176" xml:lang="en">https://vsu-pbslive-01v.vsu.edu/assets/images/vsu-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 771286092157078448214925736998902214391472657669, expires on Sat Aug 16 15:33:01 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://vsu-pbslive-01v.vsu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vsu-pbslive-01v.vsu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://vsu-pbslive-01v.vsu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vsu-pbslive-01v.vsu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vsu-pbslive-01v.vsu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">vsu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 771286092157078448214925736998902214391472657669, expires on Sat Aug 16 15:33:01 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://vsu-pbslive-01v.vsu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Virginia State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Virginia State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.vsu.edu/pages/1.asp</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tessa Perry</GivenName>
+ <EmailAddress>tperry@vsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Robert Schnettler</GivenName>
+ <EmailAddress>rschnettler@vsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Sherod Moses</GivenName>
+ <EmailAddress>smoses@vsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Travis Edmonds</GivenName>
+ <EmailAddress>tedmonds@vsu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of North Carolina at Chapel Hill -->
+<EntityDescriptor entityID="urn:mace:incommon:unc.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of North Carolina at Chapel Hill</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of North Carolina at Chapel Hill</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.unc.edu/about/privacy-statement/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="73" width="265" xml:lang="en">https://its.unc.edu/wp-content/themes/unc-sites-base-theme/images/logo_unc_main.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12023872304119915450, expires on Tue Aug 12 15:35:20 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.unc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.unc.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.unc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.unc.edu/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of North Carolina at Chapel Hill</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of North Carolina at Chapel Hill</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UNC Identity Management</GivenName>
+ <EmailAddress>idman@unc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UNC IT Response Center</GivenName>
+ <EmailAddress>help@unc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UNC Identity Management</GivenName>
+ <EmailAddress>idman@unc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UNC Information Security Office</GivenName>
+ <EmailAddress>security@unc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Wisconsin - Whitewater -->
+<EntityDescriptor entityID="urn:mace:incommon:uww.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uww.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Wisconsin - Whitewater</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uww.edu/icit/policies-agreements</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="349" xml:lang="en">https://www.uww.edu/Images/mmr/identity-standards/university-logo/H2c.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15121601956695334011, expires on Sat May 31 15:22:06 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1435481788698034097886391877963856192021478156280, expires on Tue May 29 16:35:05 2029 GMT -->
+ <ds:X509Certificate>
+MIIDGDCCAgCgAwIBAgIVAPtxOslOmXc+9xoiMxwmqTfiBqf4MA0GCSqGSIb3DQEB
+BQUAMBYxFDASBgNVBAMTC2lkcC51d3cuZWR1MB4XDTA5MDUyOTE2MzUwNVoXDTI5
+MDUyOTE2MzUwNVowFjEUMBIGA1UEAxMLaWRwLnV3dy5lZHUwggEiMA0GCSqGSIb3
+DQEBAQUAA4IBDwAwggEKAoIBAQDVLtt93iHOjIrl1cBGkFywmwFS9cphF1mDK1zh
+yjOt8UqczDhX4K4Yv/pQ0n2og2t1eQEqHIon2SDMTWBerjWdFhOuOnlXYbr6j7Tn
+TVKUZ3VbkxjaLJFIfJHs06Tbg1MJrTCL7Yw44E4ua9CcxTj8N7BD/auu6msoM5cz
+Cl9UWYAPV18IV7uRT/BMBYbQHbukS4x/kElh8hAe8OrHokvPTPlw1DUbIMxn7fnE
++LBnQKGcsnqORvV2kKvHaLCyjHwLr7V9v4MgZ+TM3q2IurwJ6iOGBi324sXzXNni
+2quxZ7i+tYObvOa/3KlXrsFs+fZX8sdpcVoW8/knGGECpoL3AgMBAAGjXTBbMDoG
+A1UdEQQzMDGCC2lkcC51d3cuZWR1hiJodHRwczovL2lkcC51d3cuZWR1L2lkcC9z
+aGliYm9sZXRoMB0GA1UdDgQWBBT2SV45KwA9xQRizt3n2FiaCDYeujANBgkqhkiG
+9w0BAQUFAAOCAQEANEvunzLLBjeAN99Nkfp9iH93uYrsnSdR6kqw7JWfkheolMGS
+ALpER40Cq9EhfLZ6/TSFDAoB/ykygw6XdFWLw5WxQaJOvFFkeoon+WLHik/eLeVs
++F0D1IG1QoT3fW+n/VqazB1cEjs3hb/outaOc2IPeKmWJUIYbh+unkCySQqfkTQq
+wu6siLxqVUBVBZXa5r3LlvLXnAiUWDcubYdF02bU9ygd36+/RJLPO4pA37QwMFHp
+l1iTzZIgt6BGrGtlACPEioKYqDkitjjLHpobISS8cUMV3oeIuOvJt88PryDSlQPH
+Lb3/4DTRLmlBb5hpWKEnDWEtB0NdnRXBOgpkoQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.uww.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.uww.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uww.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.uww.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uww.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uww.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15121601956695334011, expires on Sat May 31 15:22:06 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1435481788698034097886391877963856192021478156280, expires on Tue May 29 16:35:05 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.uww.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin - Whitewater</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin - Whitewater</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uww.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Bradley Schwoerer</GivenName>
+ <EmailAddress>schwoerb@uww.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>ICIT Shib Technologist</GivenName>
+ <EmailAddress>icit-shibTech@uww.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ICIT Security Officer</GivenName>
+ <EmailAddress>security@uww.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>ICIT Office</GivenName>
+ <EmailAddress>icit-office@uww.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California Polytechnic State University-San Luis Obispo -->
+<EntityDescriptor entityID="https://idp.calpoly.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://servicedesk.calpoly.edu/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">calpoly.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California Polytechnic State University-San Luis Obispo</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.calpoly.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://afd.calpoly.edu/security/policies/index.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="81" width="200" xml:lang="en">https://webresource.its.calpoly.edu/assets/calpoly-incommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11668599180937949520, expires on Fri Sep 25 20:21:10 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.calpoly.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.calpoly.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California Polytechnic State University-San Luis Obispo</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California Polytechnic State University-San Luis Obispo</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.calpoly.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity Management Team</GivenName>
+ <EmailAddress>identity-management@calpoly.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dan Malone</GivenName>
+ <EmailAddress>dmalone@calpoly.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Identity Management Team</GivenName>
+ <EmailAddress>identity-management@calpoly.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Office</GivenName>
+ <EmailAddress>abuse@calpoly.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Vermont -->
+<EntityDescriptor entityID="https://idp.uvm.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.uvm.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uvm.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Vermont</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Vermont Identity Provider</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.uvm.edu/it/account/?Page=sso.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.uvm.edu/policies/general_html/privacy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="31" width="290" xml:lang="en">https://www.uvm.edu/www/images/templates/uvmlogo-words.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16972805286301098048, expires on Sun Apr 5 17:13:22 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17032591084655270415, expires on Tue Sep 30 12:25:26 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.uvm.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.uvm.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.uvm.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uvm.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.uvm.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uvm.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uvm.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16972805286301098048, expires on Sun Apr 5 17:13:22 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16193845966490846455, expires on Tue Sep 30 14:27:01 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.uvm.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.uvm.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Vermont</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Vermont</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uvm.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Systems Architecture and Administration</GivenName>
+ <EmailAddress>saa@uvm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Helpline</GivenName>
+ <EmailAddress>helpline@uvm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mike Austin</GivenName>
+ <EmailAddress>mga@uvm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Office</GivenName>
+ <EmailAddress>security@uvm.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Northern Arizona University -->
+<EntityDescriptor entityID="urn:mace:incommon:nau.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">nau.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Northern Arizona University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://nau.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://in.nau.edu/web/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="206" width="435" xml:lang="en">https://shibboleth.nau.edu/idp/images/nau_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10660764759574551152, expires on Mon Mar 31 18:01:18 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.nau.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.nau.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.nau.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.nau.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.nau.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">nau.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10660764759574551152, expires on Mon Mar 31 18:01:18 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.nau.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.nau.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Northern Arizona University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Northern Arizona University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://home.nau.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Zimmer</GivenName>
+ <EmailAddress>michael.zimmer@nau.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>NAU Identity and Access Management</GivenName>
+ <EmailAddress>its-iam@nau.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>NAU Information Security</GivenName>
+ <EmailAddress>INFOSEC@LISTS.NAU.EDU</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>NAU Identity and Access Management</GivenName>
+ <EmailAddress>its-iam@nau.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Washington University in St. Louis -->
+<EntityDescriptor entityID="https://login.wustl.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://connect.wustl.edu/selfservice/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wustl.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Washington University in St. Louis</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Enterprise SSO authentication system for WUSTLKey Connect services.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://wustlkey.wustl.edu/Pages/default.aspx</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://wustl.edu/about/compliance-policies/computers-internet-policies/internet-privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="330" xml:lang="en">https://connect.wustl.edu/selfservice/images/ConnectLogoTransparent.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14363783313546872401, expires on Sat May 8 18:24:37 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.wustl.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.wustl.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.wustl.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.wustl.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.wustl.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wustl.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14363783313546872401, expires on Sat May 8 18:24:37 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.wustl.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.wustl.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Washington University in St. Louis</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Washington University in St. Louis</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wustl.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Ken Koch</GivenName>
+ <EmailAddress>Ken.Koch@wustl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Daniel Zweifel</GivenName>
+ <EmailAddress>danz@wustl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>WashU IT IAMM</GivenName>
+ <EmailAddress>washuit-iamm@wustl.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Denver -->
+<EntityDescriptor entityID="https://mamiwata.du.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.du.edu/uts/helpdesk/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">du.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Denver</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://dunet.du.edu/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="140" xml:lang="en">https://dunet.du.edu/du_logo_sm.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 369458723559604170548947735100536772067324153240, expires on Sat Sep 29 21:35:27 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mamiwata.du.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mamiwata.du.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mamiwata.du.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Denver</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Denver</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.du.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gary Starling</GivenName>
+ <EmailAddress>Gary.Starling@du.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Will Bass</GivenName>
+ <EmailAddress>Will.Bass@du.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Paul Huckins</GivenName>
+ <EmailAddress>paul.huckins@du.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Gary Starling</GivenName>
+ <EmailAddress>Gary.Starling@du.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://my.du.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.du.edu/it/contact" protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">du.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Denver University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">IdP DU Rapid Identity</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://dunet.du.edu/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="140" xml:lang="en">https://dunet.du.edu/du_logo_sm.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1549381482757, expires on Fri Feb 5 15:44:42 2044 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://my.du.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://my.du.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://my.du.edu/idp/logout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://my.du.edu/idp/logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://my.du.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://my.du.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://my.du.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Denver</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Denver</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.du.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Hailaeos Troy</GivenName>
+ <EmailAddress>hailaeos.troy@du.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Hailaeos Troy</GivenName>
+ <EmailAddress>hailaeos.troy@du.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Marcelo Lew</GivenName>
+ <EmailAddress>marcelo.lew@du.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>hailaeos troy</GivenName>
+ <EmailAddress>hailaeos.troy@du.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Humboldt State University -->
+<EntityDescriptor entityID="urn:mace:incommon:humboldt.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">humboldt.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Humboldt State University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.calstate.edu/icsuam/documents/Section8000.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1200" width="1200" xml:lang="en">https://brand.humboldt.edu/sites/default/files/styles/panopoly_image_full/public/general/spirith_0.png?itok=bi_vSO_K</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15141766185108967685, expires on Fri May 7 22:37:06 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.humboldt.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.humboldt.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.humboldt.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.humboldt.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.humboldt.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">humboldt.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15141766185108967685, expires on Fri May 7 22:37:06 2021 GMT -->
+ <ds:X509Certificate>
+MIIDyjCCArICCQDSIlwe73ERBTANBgkqhkiG9w0BAQUFADCBpjELMAkGA1UEBhMC
+VVMxEzARBgNVBAgTCkNhbGlmb3JuaWExDzANBgNVBAcTBkFyY2F0YTEiMCAGA1UE
+ChMZSHVtYm9sZHQgU3RhdGUgVW5pdmVyc2l0eTEMMAoGA1UECxMDSVRTMRkwFwYD
+VQQDExBpZHAuaHVtYm9sZHQuZWR1MSQwIgYJKoZIhvcNAQkBFhVzeXNhZG1pbkBo
+dW1ib2xkdC5lZHUwHhcNMTEwNTEwMjIzNzA2WhcNMjEwNTA3MjIzNzA2WjCBpjEL
+MAkGA1UEBhMCVVMxEzARBgNVBAgTCkNhbGlmb3JuaWExDzANBgNVBAcTBkFyY2F0
+YTEiMCAGA1UEChMZSHVtYm9sZHQgU3RhdGUgVW5pdmVyc2l0eTEMMAoGA1UECxMD
+SVRTMRkwFwYDVQQDExBpZHAuaHVtYm9sZHQuZWR1MSQwIgYJKoZIhvcNAQkBFhVz
+eXNhZG1pbkBodW1ib2xkdC5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK
+AoIBAQDXea3ZM6XJ8f2CRd6bisEol8JsGCwXPwPYLWqbiSF7rBcrxztVRbUofTXe
+5/f3+KR4w4cpvqm2OGun9xpa357mzgW2aMc/AIE6fPErHDSI20K1P3DUIIHIbxOz
+Zb12oaeMDUgqI0PQso32oRCT0hQ9dFegPQ6ICegk5e57Azctpn7ovdkNYurfRVx1
+sQoS0STHPW8b5xNSv6IGoEOjkVUpzKtv9VO+5KIesq/9y5r9nPXISSzHUei/7iAa
+7G3MpNgWHcdYjfE+ZTgtUu2Mb60OKq9oxhwzRF8RrG+R4/+0xkcCJX5Vk3hHrUMs
+9XTdGGo98dm5lwBfS2FFVByNKqRXAgMBAAEwDQYJKoZIhvcNAQEFBQADggEBAHNX
+1zbqSKjgwJa8Bt0Kx7bNBm9ukHfERqfrT1I4c+O0OshH0N0PVLF+m2/eH8NrNz52
+FOfgNBtJrFu9BxI8tc0yp1ptjYVgeCaFrIurNPKShMQSqJRg/BSYYykm26wrPmUs
+ZVagnI+OIJPWNpqDt56xRgzpDrLKf7zHLSLyEmrfK8f2R+DExzGWUGN5StA1G+tg
+JfaZDtwYHOUR9XrHbx+czHTqGcEo1Jpfg8p/KiuacKMb8n99HG9p2bUggLQOangC
+KU/1My9HTkHF8T8QLLSlqA4jb0eXnz9lxfJl2i2Y+imP77X7sWoPoL32jcoAWYoZ
+AR85Z5Jw0RxR+tbYexg=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.humboldt.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.humboldt.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Humboldt State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Humboldt State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.humboldt.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Systems Group</GivenName>
+ <EmailAddress>sysadmin@humboldt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Josh Callahan</GivenName>
+ <EmailAddress>josh.callahan@humboldt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Troy Butolph</GivenName>
+ <EmailAddress>troy.butolph@humboldt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Office</GivenName>
+ <EmailAddress>iso-staff@humboldt.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, Monterey Bay -->
+<EntityDescriptor entityID="https://sso.csumb.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csumb.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, Monterey Bay</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.calstate.edu/icsuam/documents/Section8000.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="249" width="685" xml:lang="en">https://s3.amazonaws.com/csumb-uploads/5idL1uwISCmgLBmh7FvA_CSUMB%20Logo%20540%20Bay%20Blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 667, expires on Mon Oct 10 17:08:32 2011 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11392803739658787791, expires on Fri Oct 8 04:16:54 2021 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18313926595876797563, expires on Mon Jan 11 23:58:48 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.csumb.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.csumb.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.csumb.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.csumb.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.csumb.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csumb.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 667, expires on Mon Oct 10 17:08:32 2011 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11392803739658787791, expires on Fri Oct 8 04:16:54 2021 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18313926595876797563, expires on Mon Jan 11 23:58:48 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.csumb.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.csumb.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, Monterey Bay</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, Monterey Bay</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://csumb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Nicholas A Rodrigues</GivenName>
+ <EmailAddress>nrodrigues@csumb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Steve Mann</GivenName>
+ <EmailAddress>smann@csumb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Nicholas A Rodrigues</GivenName>
+ <EmailAddress>nrodrigues@csumb.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, Chico -->
+<EntityDescriptor entityID="https://shibboleth.csuchico.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csuchico.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, Chico</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Provides authentication and authorization functions for federated applications used by faculty, staff, and students at California State University, Chico.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.csuchico.edu/isec/incommonpop.shtml</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.calstate.edu/icsuam/documents/Section8000.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="282" width="283" xml:lang="en">https://eapp-app1.csuchico.edu/images/flame-color.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 736559351461612765641142079582801800921710714625, expires on Tue Apr 18 16:36:53 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15662068651268254125, expires on Sat Apr 10 17:32:22 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.csuchico.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.csuchico.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.csuchico.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.csuchico.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.csuchico.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.csuchico.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csuchico.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 736559351461612765641142079582801800921710714625, expires on Tue Apr 18 16:36:53 2034 GMT -->
+ <ds:X509Certificate>
+MIIDSDCCAjCgAwIBAgIVAIEEdq+4nDzx9lzoLHgf0Lhl3d8BMA0GCSqGSIb3DQEB
+BQUAMCIxIDAeBgNVBAMTF3NoaWJib2xldGguY3N1Y2hpY28uZWR1MB4XDTE0MDQx
+ODE2MzY1M1oXDTM0MDQxODE2MzY1M1owIjEgMB4GA1UEAxMXc2hpYmJvbGV0aC5j
+c3VjaGljby5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC3/5KV
+RgaUyoR2AZ+mVvR2V4Dw1bjeD42RRWupVlEu6u1HajYNeK77ZV18vZo6J0Hxx7yJ
+HfogEo1cpD7rnDwMwm4lnwSqnsobp8dyOQXX57n0qseciEMxV6t9YyFTFSnA2qBb
+1KmCS5omeV2YEbviTUW+6S9Af63bH2qomPID7Vt7Waw6FFIQVHWrqOQtrThDQPSy
+2sG1WFt4Z3yhhWjMZLGCJdNaBJK6dK9iibTsTJU2H0GKs4NX7RmUXYGtNloGjDU7
+AttNrff44h5+Vc+Qs76XELsVUji9LUvBu0a9sdMMhqyUVaiDt59e7eZgQ0LWWOuq
+RH364SCmr7AvPn2JAgMBAAGjdTBzMFIGA1UdEQRLMEmCF3NoaWJib2xldGguY3N1
+Y2hpY28uZWR1hi5odHRwczovL3NoaWJib2xldGguY3N1Y2hpY28uZWR1L2lkcC9z
+aGliYm9sZXRoMB0GA1UdDgQWBBSjK/qfcx+jwvdDasx4M2PX+ieL0jANBgkqhkiG
+9w0BAQUFAAOCAQEARTR+CWxWOP7VdCYo/YgCXi0Bk7voOVcyAgrrp/DWYVp7aY4s
+sx1JEAIKFJI2ImBqHLuAZFztJoxN/GGvbVNM4QG0288EJOkO5I/UwgQyzczW5TRD
+hjHmSYru01r9ax/hTqK0Xirc3NOquAz5FOSFfg2dmFKjp/nzJbcLAlnuAlkmUjrM
+elF6prjEAvRxdRHg3O1TQoo6xdxR/Iod+wPTgmg9G0gKQPL/4++eiUvotCMMraUR
+C4mfTA0pqKLnIIqgfW7AathlVBdQnDhubTVT1OEp7E7TgG4U6uzsx4qvEkA66C4l
+hERQRKfoE96zHmakc8SmiMASUbUzxjbMYVyJ3g==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15662068651268254125, expires on Sat Apr 10 17:32:22 2021 GMT -->
+ <ds:X509Certificate>
+MIIDTDCCAjSgAwIBAgIJANla2HUGoCmtMA0GCSqGSIb3DQEBBQUAMCIxIDAeBgNV
+BAMTF3NoaWJib2xldGguY3N1Y2hpY28uZWR1MB4XDTExMDQxMzE3MzIyMloXDTIx
+MDQxMDE3MzIyMlowIjEgMB4GA1UEAxMXc2hpYmJvbGV0aC5jc3VjaGljby5lZHUw
+ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDuAtVw7i6Z4VPL2459YGeS
+TqzHz8durVObETdARko4QGWgnDaGIOJrmPlTJkdP4IZEm53BxIZxhWGutnwrTCrF
+yOJO+brKJtfbMD5JT7ib5EVNQzn3cJ819EBJm2tklJ2OS4WFrhhvkpUOoKHrsJQf
+63/jZbFdw7vcmbpUIH5WDPKVyC/w87+Oqcf7ZUkYPlhWZLAo3WzNwCJI+HwdZHDF
+So+66qwu2v8HiH9uKLqVGVU3luF8ySY/lnMfeYdkfpMsnxnyqaeODzcopgNgm34s
+/fYkvrU7TGQdDW5FYX4RddrwnWi4/7PODyPtzhLPfXh75Li3RTS/RbVbuyJ1OZ9R
+AgMBAAGjgYQwgYEwHQYDVR0OBBYEFG9E0fMYVCbrIVX2fb5gpFD731apMFIGA1Ud
+IwRLMEmAFG9E0fMYVCbrIVX2fb5gpFD731apoSakJDAiMSAwHgYDVQQDExdzaGli
+Ym9sZXRoLmNzdWNoaWNvLmVkdYIJANla2HUGoCmtMAwGA1UdEwQFMAMBAf8wDQYJ
+KoZIhvcNAQEFBQADggEBAJeeNHArje/LUYrXVXD2BsXfL6c701vaatOMY67HoOyu
+C+7SlU0zHTo4f2VBPlzvEjeG4LvHJHI8k2g5/EperiaS11JOErz9C2fACua9VfxI
+kzQjkC5NVimeBy8Q86wWivt+1J5+6Nd/CTx0Bac7/CjTghsNy0AUWC4dR8vHa+Fv
+IfvBrCjTxarHxA+2wGD0CLrYXcFj7yo3NjQClmhkMTxquTSq6LBgeRuJyNcUnA8L
+/TudO9r//xU7h/rrRz+WhUH7KCNk/fkZDNiriqfj90yExFeDILr5g0G9swLYZoqU
+OkvoU7bZUozGMD6b/VOon3gG54/d9WM2+vQ+hP282rM=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.csuchico.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.csuchico.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, Chico</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, Chico</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.csuchico.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>David Fuhs</GivenName>
+ <EmailAddress>dfuhs@csuchico.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>David Fuhs</GivenName>
+ <EmailAddress>dfuhs@csuchico.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Andy Miller</GivenName>
+ <EmailAddress>lamiller@csuchico.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark Hendricks</GivenName>
+ <EmailAddress>isec@csuchico.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State Polytechnic University, Pomona -->
+<EntityDescriptor entityID="https://idp.cpp.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://cpp.service-now.com/ehelp" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cpp.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State Polytechnic University, Pomona</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.cpp.edu/privacy.shtml</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.cpp.edu/img/icons/cpp_logo_80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 650845668882146616861839537703143968144444189721, expires on Tue Dec 19 03:58:31 2034 GMT -->
+ <ds:X509Certificate>
+MIIDFzCCAf+gAwIBAgIUcgDt3ZH+mG2Chj61P92XzVTNbBkwDQYJKoZIhvcNAQEF
+BQAwFjEUMBIGA1UEAwwLaWRwLmNwcC5lZHUwHhcNMTQxMjE5MDM1ODMxWhcNMzQx
+MjE5MDM1ODMxWjAWMRQwEgYDVQQDDAtpZHAuY3BwLmVkdTCCASIwDQYJKoZIhvcN
+AQEBBQADggEPADCCAQoCggEBAKhqSiN7v+1ENcPxskjwEgayl8fHt5AWL93BOyP6
+LKc427BDR+beOW+iAJAtx44Vz0Fi8n/UoEC/cNbOxCk/Br1ZR7DcL/NYY9EbCd4S
+3uiGOPCiDQO9UVT6HcuhtR9/UXP2MWA8X7RHJFKR5hNQREWGaoriccpdMbfdKDM1
+/otvxyfJjQWaKm16EN8JE26E7EhBgsJn/YklafuDZGnliYX8XQ5LoZZPTApOuaSa
+7c6Uzeb+16reCP/AknTut0F4s3+G60wrSvCb/N0Ha3tVB8RscJL14PG39sYa53HQ
+HeD5FbFh/nw3VVfP8xNi1RoNff+WYrm5WMPWcx6LesPe/5UCAwEAAaNdMFswHQYD
+VR0OBBYEFF8DROHsl63pHHskwsoyBNrVB4oNMDoGA1UdEQQzMDGCC2lkcC5jcHAu
+ZWR1hiJodHRwczovL2lkcC5jcHAuZWR1L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3
+DQEBBQUAA4IBAQBLM5KaygDxcrC2SMxx72gca7A5Jk4y8XT7QZoaLk7aFKFC3b03
+AjIuVlnt6Ki0gsGQvcK509D4Y5gtipwiQYNZ9l7Pyi8w/BPNun26LYTCrTc1zW/N
+HOXvSvSkBI1fjHUF9M9GPhgSpOWTHSO6S3ugS4EcOfwdzcM4w61few5VVscAaUlH
+w6C2piN3HPUa0+88hna1AN0dGGmpVKdR7Xkac6LIMCdEsAwlBpHzlWGNnilE4qEe
+wQmsBX7k7/eUcdm/yH1rGY7oJExcfp/868ns8xN9o8E1xXFnwTCni+3EmtrMCw6t
+B/i23als47eQ6V3GQjcS0HkMkF6kkuZhMEv0
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.cpp.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.cpp.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.cpp.edu/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State Polytechnic University, Pomona</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State Polytechnic University, Pomona</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cpp.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Paul Henson</GivenName>
+ <EmailAddress>henson@cpp.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cal Poly Pomona Security and Incident Reports</GivenName>
+ <EmailAddress>abuse@cpp.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Cal Poly Pomona Service Desk</GivenName>
+ <EmailAddress>itservicedesk@cpp.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Paul Henson</GivenName>
+ <EmailAddress>henson@cpp.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, Dominguez Hills -->
+<EntityDescriptor entityID="https://idp.csudh.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csudh.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, Dominguez Hills</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.csudh.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="180" xml:lang="en">https://www.csudh.edu/Assets/global/csudh-logos/csudh-logo-stacked-1line-4c-rgb-186x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1230844774833856629899474657106492620248033644658, expires on Fri Mar 23 18:51:03 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.csudh.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.csudh.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.csudh.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.csudh.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.csudh.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csudh.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1230844774833856629899474657106492620248033644658, expires on Fri Mar 23 18:51:03 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.csudh.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.csudh.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, Dominguez Hills</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, Dominguez Hills</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.csudh.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mahabub Alam</GivenName>
+ <EmailAddress>malam@csudh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sara Hariri</GivenName>
+ <EmailAddress>shariri@csudh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kerry Boyer</GivenName>
+ <EmailAddress>kboyer@csudh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Yuki DeSoto</GivenName>
+ <EmailAddress>ydesoto@csudh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kulong Cha</GivenName>
+ <EmailAddress>kcha@csudh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bill Chang</GivenName>
+ <EmailAddress>bchang@csudh.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Oklahoma State University Main Campus -->
+<EntityDescriptor entityID="https://idp.okstate.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.okstate.edu/identity/feedback.htm" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">okstate.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Oklahoma State University Main Campus</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Oklahoma State University System</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.it.okstate.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://stw.sp.okstate.edu/policies/Shared%20Documents/Family%20Educational%20Rights%20and%20Privacy%20Acts%20(Buckley%20Amendment).pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="162" width="250" xml:lang="en">https://omni.okstate.edu/_resources/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17524115783598324762, expires on Fri Jun 14 15:45:10 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11765101815121895612, expires on Sat May 20 12:00:19 2023 GMT -->
+ <ds:X509Certificate>
+MIIDpDCCAowCCQCjRgnERKTgvDANBgkqhkiG9w0BAQUFADCBkzELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE9rbGFob21hMRMwEQYDVQQHDApTdGlsbHdhdGVyMRAwDgYD
+VQQKDAdPS1N0YXRlMQswCQYDVQQLDAJJVDEYMBYGA1UEAwwPaWRwLm9rc3RhdGUu
+ZWR1MSMwIQYJKoZIhvcNAQkBFhRoZWxwZGVza0Bva3N0YXRlLmVkdTAeFw0xMzA1
+MjIxMjAwMTlaFw0yMzA1MjAxMjAwMTlaMIGTMQswCQYDVQQGEwJVUzERMA8GA1UE
+CAwIT2tsYWhvbWExEzARBgNVBAcMClN0aWxsd2F0ZXIxEDAOBgNVBAoMB09LU3Rh
+dGUxCzAJBgNVBAsMAklUMRgwFgYDVQQDDA9pZHAub2tzdGF0ZS5lZHUxIzAhBgkq
+hkiG9w0BCQEWFGhlbHBkZXNrQG9rc3RhdGUuZWR1MIIBIjANBgkqhkiG9w0BAQEF
+AAOCAQ8AMIIBCgKCAQEAwXKsNMBp5tdIbc1ZYbWy3AIKP3FbTjwLt8JU8Or5fnyg
+yOAxWZ9qSkaEoUNEJ+hF3pddckzdDoFXFu/iT5iNXSkb0fu1Z3TIq2L8ORzRuXmu
+XKaVjCzejeeitlyE9yDvXFQjT+Nvhi4j9PLzZ6cC6KW/fnOIdzrYUd1Gmrbu9bxe
+UXZKOn3u8foDeNmoG7WtmXwOhz8NemtMcEZ1L0VZugPqWQtyxCO7x3TeYwuS/4Te
+M+IqYeezWRhfsk7Vpamtgbfi9VMylC3cquE5f5/P24mp1AQuly81KZ9TZh4A9Mz6
+xUZfV7d+xQlQLimOmd5lXM1En4VhmPFfyfS7s1fWiwIDAQABMA0GCSqGSIb3DQEB
+BQUAA4IBAQC48jGan3mFH74r9/cDM44TbmS1LoNbe4ybvI50MgzvV055JRF/nVyf
+5oXYMTytnUCw8xh5IbQbbZnnxN1oJUD7CDcJ3j0alKx8/wsUQeCBnS5LN/WeBiRO
+0fEwOi5tmz7n0O6wQbu9psFPG2yl5Khj/jHYRVxQXwMoBMmrpxUG5Ha0UAoIPM8X
+QWUdAUmhN1oD6YxKK3Bf9pQ2Sinafdsc4k54wvfMZCQkH1f37Pll/cSQCSFxEDKX
+IUS69CJRUBfftvG82kYGdEO5y+FAWBuLyya32MVwWKzHOqh6Q0iTbgEsfWsQL7KU
+aVziUIOjv/nrHap+xcHajNL7CKlXwKQ4
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.okstate.edu:9443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.okstate.edu:9443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.okstate.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.okstate.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.okstate.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.okstate.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">okstate.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17524115783598324762, expires on Fri Jun 14 15:45:10 2013 GMT -->
+ <ds:X509Certificate>
+MIIDYjCCAkoCCQDzMip1XDG8GjANBgkqhkiG9w0BAQUFADBzMRgwFgYDVQQDDA9p
+ZHAub2tzdGF0ZS5lZHUxIjAgBgNVBAoMGU9rbGFob21hIFN0YXRlIFVuaXZlcnNp
+dHkxCzAJBgNVBAYTAlVTMREwDwYDVQQIDAhPa2xhaG9tYTETMBEGA1UEBwwKU3Rp
+bGx3YXRlcjAeFw0xMjA2MTQxNTQ1MTBaFw0xMzA2MTQxNTQ1MTBaMHMxGDAWBgNV
+BAMMD2lkcC5va3N0YXRlLmVkdTEiMCAGA1UECgwZT2tsYWhvbWEgU3RhdGUgVW5p
+dmVyc2l0eTELMAkGA1UEBhMCVVMxETAPBgNVBAgMCE9rbGFob21hMRMwEQYDVQQH
+DApTdGlsbHdhdGVyMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA6Qb5
+pFa2CVE2rTeap0uYEBoJI0q5f3jpHwB/IysHTgDFtO337l4uQbkRBiQamZn/nUGb
+ZwDwB5g/miUNnM+b8UctbiRQ5cbQ9UEGiFDipFklvXci9qTd4954VQabtq09FKx8
+AfKu/fjCL5xJfrkc8+1CY431sYBeVS+EfR1bZv3su0A30HTSK4IhEqrzo3BQbTxj
+es1JOiFNseF7SUqmdqsbSj4HsHjNwaLDEdF5zXuCgUL+USeMkGAmd4e1PXooTGgk
+MP2MiMuNDpHhG6aAbEncEgaFLLums48SY2qjIk3obihjRnU4oppSARom4h0paBkc
+P3TtfPT8vaPvZWUYyQIDAQABMA0GCSqGSIb3DQEBBQUAA4IBAQAMEZIYHHXV/XoO
+A3f7isi1nUY6wTbmifIIAxVFRzKifbAKOjj9jVe3/Mi0dEDXuYTSrEbDgLtmLrxy
+IFmvZopmpGPQQ3BcNzsL+NsKju3DIohXnacuAax4K76a5rVqPu9KlmClSJmr12lB
+/MX45xmrb5jYIkwsG5aSgHJSbArDz9h0cwwOCcExthvp5Brb8F5J3/APluyg0hYj
+pvucaNe/bhjtGVNcPmVkJ2bTzSOlE49icSRuDbc2bkZEqTPdBpSL6b+vKMTF+tDP
+A/br3xw5PtPDxp1uBcpZFuJ6GElZj2vUqXAt+l37NZHicQSRhMzGitXpTcO7OU/g
+7+8OWNW+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11765101815121895612, expires on Sat May 20 12:00:19 2023 GMT -->
+ <ds:X509Certificate>
+MIIDpDCCAowCCQCjRgnERKTgvDANBgkqhkiG9w0BAQUFADCBkzELMAkGA1UEBhMC
+VVMxETAPBgNVBAgMCE9rbGFob21hMRMwEQYDVQQHDApTdGlsbHdhdGVyMRAwDgYD
+VQQKDAdPS1N0YXRlMQswCQYDVQQLDAJJVDEYMBYGA1UEAwwPaWRwLm9rc3RhdGUu
+ZWR1MSMwIQYJKoZIhvcNAQkBFhRoZWxwZGVza0Bva3N0YXRlLmVkdTAeFw0xMzA1
+MjIxMjAwMTlaFw0yMzA1MjAxMjAwMTlaMIGTMQswCQYDVQQGEwJVUzERMA8GA1UE
+CAwIT2tsYWhvbWExEzARBgNVBAcMClN0aWxsd2F0ZXIxEDAOBgNVBAoMB09LU3Rh
+dGUxCzAJBgNVBAsMAklUMRgwFgYDVQQDDA9pZHAub2tzdGF0ZS5lZHUxIzAhBgkq
+hkiG9w0BCQEWFGhlbHBkZXNrQG9rc3RhdGUuZWR1MIIBIjANBgkqhkiG9w0BAQEF
+AAOCAQ8AMIIBCgKCAQEAwXKsNMBp5tdIbc1ZYbWy3AIKP3FbTjwLt8JU8Or5fnyg
+yOAxWZ9qSkaEoUNEJ+hF3pddckzdDoFXFu/iT5iNXSkb0fu1Z3TIq2L8ORzRuXmu
+XKaVjCzejeeitlyE9yDvXFQjT+Nvhi4j9PLzZ6cC6KW/fnOIdzrYUd1Gmrbu9bxe
+UXZKOn3u8foDeNmoG7WtmXwOhz8NemtMcEZ1L0VZugPqWQtyxCO7x3TeYwuS/4Te
+M+IqYeezWRhfsk7Vpamtgbfi9VMylC3cquE5f5/P24mp1AQuly81KZ9TZh4A9Mz6
+xUZfV7d+xQlQLimOmd5lXM1En4VhmPFfyfS7s1fWiwIDAQABMA0GCSqGSIb3DQEB
+BQUAA4IBAQC48jGan3mFH74r9/cDM44TbmS1LoNbe4ybvI50MgzvV055JRF/nVyf
+5oXYMTytnUCw8xh5IbQbbZnnxN1oJUD7CDcJ3j0alKx8/wsUQeCBnS5LN/WeBiRO
+0fEwOi5tmz7n0O6wQbu9psFPG2yl5Khj/jHYRVxQXwMoBMmrpxUG5Ha0UAoIPM8X
+QWUdAUmhN1oD6YxKK3Bf9pQ2Sinafdsc4k54wvfMZCQkH1f37Pll/cSQCSFxEDKX
+IUS69CJRUBfftvG82kYGdEO5y+FAWBuLyya32MVwWKzHOqh6Q0iTbgEsfWsQL7KU
+aVziUIOjv/nrHap+xcHajNL7CKlXwKQ4
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.okstate.edu:9443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.okstate.edu:9443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Oklahoma State University Main Campus</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Oklahoma State University System</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://osu.okstate.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Shawn Harpe</GivenName>
+ <EmailAddress>shawn.harpe@okstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tina Meier</GivenName>
+ <EmailAddress>tina.meier@okstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Raymond Smith</GivenName>
+ <EmailAddress>Raymond.Smith@okstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shawn Harpe</GivenName>
+ <EmailAddress>shawn.harpe@okstate.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Pennsylvania -->
+<EntityDescriptor entityID="https://cluster-prod.apps.upenn.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cluster-prod.apps.upenn.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://securespace.apps.upenn.edu/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://grouper.apps.upenn.edu/Shibboleth.sso/Login" index="3"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-small-b-01.apps.upenn.edu/Shibboleth.sso/Login" index="4"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-small-b-02.apps.upenn.edu/Shibboleth.sso/Login" index="5"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-small-b-03.apps.upenn.edu/Shibboleth.sso/Login" index="6"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-medium-a-01.apps.upenn.edu/Shibboleth.sso/Login" index="7"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-medium-a-02.apps.upenn.edu/Shibboleth.sso/Login" index="8"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-medium-a-03.apps.upenn.edu/Shibboleth.sso/Login" index="9"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-medium-a-04.apps.upenn.edu/Shibboleth.sso/Login" index="10"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-medium-a-05.apps.upenn.edu/Shibboleth.sso/Login" index="11"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://securespace.apps.upenn.edu/secureSpace/jsp/fast2.do/Shibboleth.sso/Login" index="12"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-small-b-01.apps.upenn.edu/secureSpace/jsp/fast2.do/Shibboleth.sso/Login" index="13"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-small-b-02.apps.upenn.edu/secureSpace/jsp/fast2.do/Shibboleth.sso/Login" index="14"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-small-b-03.apps.upenn.edu/secureSpace/jsp/fast2.do/Shibboleth.sso/Login" index="15"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://grouper.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/Login" index="16"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-medium-a-01.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/Login" index="17"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-medium-a-02.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/Login" index="18"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-medium-a-03.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/Login" index="19"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-medium-a-04.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/Login" index="20"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-medium-a-05.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/Login" index="21"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastunit.apps.upenn.edu/fastUnit/jsp/fast2.do/Shibboleth.sso/Login" index="22"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastunit.apps.upenn.edu/Shibboleth.sso/Login" index="23"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastunit.apps.upenn.edu/fastUnit/jsp/echo.do/Shibboleth.sso/Login" index="24"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-tiny-b-01.apps.upenn.edu/fastUnit/jsp/fast2.do/Shibboleth.sso/Login" index="26"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-tiny-b-01.apps.upenn.edu/Shibboleth.sso/Login" index="27"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-tiny-b-02.apps.upenn.edu/fastUnit/jsp/fast2.do/Shibboleth.sso/Login" index="28"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastprod-tiny-b-02.apps.upenn.edu/Shibboleth.sso/Login" index="29"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Penn ISC application cluster LCF</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.upenn.edu/about/privacy_policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="466" xml:lang="en">https://idp.pennkey.upenn.edu/UPenn_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18101908964772540553, expires on Tue Dec 12 14:24:09 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cluster-prod.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cluster-prod.apps.upenn.edu/Shibboleth.sso/SAML/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://fastprod-small-b-01.apps.upenn.edu/Shibboleth.sso/SAML/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://fastprod-small-b-02.apps.upenn.edu/Shibboleth.sso/SAML/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://fastprod-small-b-03.apps.upenn.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://securespace.apps.upenn.edu/Shibboleth.sso/SAML/POST" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://securespace.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://grouper.apps.upenn.edu/Shibboleth.sso/SAML/POST" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grouper.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-small-b-01.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-small-b-02.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-small-b-03.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://securespace.apps.upenn.edu/secureSpace/jsp/fast2.do/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-small-b-01.apps.upenn.edu/secureSpace/jsp/fast2.do/Shibboleth.sso/SAML2/POST" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-small-b-02.apps.upenn.edu/secureSpace/jsp/fast2.do/Shibboleth.sso/SAML2/POST" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-small-b-03.apps.upenn.edu/secureSpace/jsp/fast2.do/Shibboleth.sso/SAML2/POST" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grouper.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/SAML2/POST" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-medium-a-01.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/SAML2/POST" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-medium-a-01.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-medium-a-02.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/SAML2/POST" index="20"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-medium-a-02.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="21"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-medium-a-03.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="22"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-medium-a-03.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/SAML2/POST" index="23"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-medium-a-04.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/SAML2/POST" index="24"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-medium-a-04.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="25"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-medium-a-05.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/SAML2/POST" index="26"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-medium-a-05.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="27"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastunit.apps.upenn.edu/fastUnit/jsp/fast2.do/Shibboleth.sso/SAML2/POST" index="28"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastunit.apps.upenn.edu/fastUnit/jsp/echo.do/Shibboleth.sso/SAML2/POST" index="29"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastunit.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="30"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-tiny-b-01.apps.upenn.edu/fastUnit/jsp/fast2.do/Shibboleth.sso/SAML2/POST" index="31"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-tiny-b-02.apps.upenn.edu/fastUnit/jsp/fast2.do/Shibboleth.sso/SAML2/POST" index="32"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-tiny-b-01.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="33"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastprod-tiny-b-02.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="34"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Penn ISC application cluster LCF</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Pennsylvania</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Pennsylvania</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.upenn.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>ISC ASTT</GivenName>
+ <EmailAddress>astt_idm@lists.upenn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UPenn Information Security</GivenName>
+ <EmailAddress>security@isc.upenn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>ISC ASTT</GivenName>
+ <EmailAddress>astt_idm@lists.upenn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>ISC ASTT</GivenName>
+ <EmailAddress>astt_idm@lists.upenn.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cluster-test.apps.upenn.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cluster-test.apps.upenn.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://securespace-test.apps.upenn.edu/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://grouper-test.apps.upenn.edu/Shibboleth.sso/Login" index="3"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pennserver-test.apps.upenn.edu/Shibboleth.sso/Login" index="4"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://securespace-test.apps.upenn.edu/secureSpace/jsp/fast2.do/Shibboleth.sso/Login" index="5"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fasttest-small-c-01.apps.upenn.edu/secureSpace/jsp/fast2.do/Shibboleth.sso/Login" index="6"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fasttest-small-c-01.apps.upenn.edu/Shibboleth.sso/Login" index="7"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fasttest-small-c-02.apps.upenn.edu/secureSpace/jsp/fast2.do/Shibboleth.sso/Login" index="8"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fasttest-small-c-02.apps.upenn.edu/Shibboleth.sso/Login" index="9"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://grouper-test.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/Login" index="10"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fasttest-small-c-01.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/Login" index="11"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fasttest-small-c-01.apps.upenn.edu/Shibboleth.sso/Login" index="12"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fasttest-small-c-02.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/Login" index="13"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fasttest-small-c-02.apps.upenn.edu/Shibboleth.sso/Login" index="14"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastunit-test.apps.upenn.edu/fastUnit/jsp/fast2.do/Shibboleth.sso/Login" index="15"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastunit-test.apps.upenn.edu/fastUnit/jsp/echo.do/Shibboleth.sso/Login" index="16"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fastunit-test.apps.upenn.edu/Shibboleth.sso/Login" index="17"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fasttest-small-a-01.apps.upenn.edu/fastUnit/jsp/fast2.do/Shibboleth.sso/Login" index="18"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fasttest-small-a-02.apps.upenn.edu/fastUnit/jsp/fast2.do/Shibboleth.sso/Login" index="19"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fasttest-small-a-01.apps.upenn.edu/Shibboleth.sso/Login" index="20"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fasttest-small-a-02.apps.upenn.edu/Shibboleth.sso/Login" index="21"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Penn ISC application test cluster LCF</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.upenn.edu/about/privacy_policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="466" xml:lang="en">https://idp.pennkey.upenn.edu/UPenn_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16445841649623664689, expires on Tue Dec 12 14:23:51 2023 GMT -->
+ <ds:X509Certificate>
+MIIDSDCCAjCgAwIBAgIJAOQ7Xdi2JIgxMA0GCSqGSIb3DQEBBQUAMCYxJDAiBgNV
+BAMTG2NsdXN0ZXItdGVzdC5hcHBzLnVwZW5uLmVkdTAeFw0xMzEyMTQxNDIzNTFa
+Fw0yMzEyMTIxNDIzNTFaMCYxJDAiBgNVBAMTG2NsdXN0ZXItdGVzdC5hcHBzLnVw
+ZW5uLmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALZaAvxfwjXn
+S9HfcUd+rCCtS5GUt49lM9njL0Fhgkqk5BidLBGxbPH1il4sl6G4NMWfj2MSOXm9
+iJXKs+nPei0uXVzUZCT5byPlJcMGJcjZhHyZx7LQSXMq1TNagzklZCrvRFhskWwk
+yF3/0oDsZbSYTzZcPY9zTf/GrgE3MwqwnJVKEiOcEBPfDS0ANM+hu18jz6abSKOC
+o0MLLijbxf5eu3by4Iw0PyuKk0dNnnY06iXqEtSB3B9Ra3kp0g3XYTmRjSWaxOxi
+iEtYrKOUaIcUpfLGacQVLcJLwR7X6ddEoN8Q4ZUrGxBBwvyvLwYriERv5YaWSOP/
+/OmwdduQPm0CAwEAAaN5MHcwVgYDVR0RBE8wTYIbY2x1c3Rlci10ZXN0LmFwcHMu
+dXBlbm4uZWR1hi5odHRwczovL2NsdXN0ZXItdGVzdC5hcHBzLnVwZW5uLmVkdS9z
+aGliYm9sZXRoMB0GA1UdDgQWBBQqGK+f+eggzsOzcFS9i8q/MmaVczANBgkqhkiG
+9w0BAQUFAAOCAQEAGGU6NncNuSiVusnipbXUkwc2/AxPY2TGffLjbNWEDF8+1lgG
+ZKv9jt1VAOyV2kyvQTNb9s78l04DfItaKHqyezcddGVvwGACYZc5xMm63HA6IMvZ
+/qCkoLwsFHWYFnDwVFI6ztpqHfufkXnG+xlc5Xzzluysd7FJ19nIDa1CgScCX7Vo
+PO7cRJlK/qkcdxJfOaEXw0zqX2mzINZbTXD8ervb179iLOTsE3KxTz51rvHu/qDf
+xkC64ISQpgHSQE8JkGczRDH3LcFIr3bQA2wGR4QslWo9jl9IiWL/mW2a4AIitEAX
+y1D3B0pUZzflAB1lcMnpaDii3z5rM/xLXqGDHA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cluster-test.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cluster-test.apps.upenn.edu/Shibboleth.sso/SAML/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://fasttest-small-c-01.apps.upenn.edu/Shibboleth.sso/SAML/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://fasttest-small-c-02.apps.upenn.edu/Shibboleth.sso/SAML/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://fasttest-small-c-03.apps.upenn.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://securespace-test.apps.upenn.edu/Shibboleth.sso/SAML/POST" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://securespace-test.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://grouper-test.apps.upenn.edu/Shibboleth.sso/SAML/POST" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grouper-test.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://pennserver-test.apps.upenn.edu/Shibboleth.sso/SAML/POST" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pennserver-test.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-c-01.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-a-01.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-a-02.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-b-01.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-b-02.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-c-01.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-c-02.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-d-01.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-d-02.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="20"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pennsway-test.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="21"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://securespace-test.apps.upenn.edu/secureSpace/jsp/fast2.do/Shibboleth.sso/SAML2/POST" index="22"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-c-01.apps.upenn.edu/secureSpace/jsp/fast2.do/Shibboleth.sso/SAML2/POST" index="23"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-c-02.apps.upenn.edu/secureSpace/jsp/fast2.do/Shibboleth.sso/SAML2/POST" index="24"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grouper-test.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/SAML2/POST" index="25"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-c-01.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/SAML2/POST" index="26"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-c-02.apps.upenn.edu/grouper/grouperExternal/Shibboleth.sso/SAML2/POST" index="27"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastunit-test.apps.upenn.edu/fastUnit/jsp/fast2.do/Shibboleth.sso/SAML2/POST" index="28"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastunit-test.apps.upenn.edu/fastUnit/jsp/echo.do/Shibboleth.sso/SAML2/POST" index="29"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fastunit-test.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="30"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-a-01.apps.upenn.edu/fastUnit/jsp/fast2.do/Shibboleth.sso/SAML2/POST" index="31"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-a-02.apps.upenn.edu/fastUnit/jsp/fast2.do/Shibboleth.sso/SAML2/POST" index="32"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-a-01.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="33"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fasttest-small-a-02.apps.upenn.edu/Shibboleth.sso/SAML2/POST" index="34"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Penn ISC application test cluster LCF</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Pennsylvania</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Pennsylvania</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.upenn.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>ISC ASTT</GivenName>
+ <EmailAddress>astt_idm@lists.upenn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UPenn Information Security</GivenName>
+ <EmailAddress>security@isc.upenn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>ISC ASTT</GivenName>
+ <EmailAddress>astt_idm@lists.upenn.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://idp.pennkey.upenn.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">upenn.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Pennsylvania</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.isc.upenn.edu/how-to/shibboleth-attributes-available-penn</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.upenn.edu/about/privacy_policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="466" xml:lang="en">https://idp.pennkey.upenn.edu/UPenn_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 763473274434633803761648543885450284945891363595, expires on Mon Mar 31 15:54:04 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.pennkey.upenn.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.pennkey.upenn.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.pennkey.upenn.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Pennsylvania</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Pennsylvania</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.upenn.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UPenn WebLogin Support</GivenName>
+ <EmailAddress>weblogin-help@isc.upenn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UPenn WebLogin Support</GivenName>
+ <EmailAddress>weblogin-help@isc.upenn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UPenn WebLogin Support</GivenName>
+ <EmailAddress>weblogin-help@isc.upenn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UPenn Information Security</GivenName>
+ <EmailAddress>security@isc.upenn.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, Fullerton -->
+<EntityDescriptor entityID="https://shibboleth.fullerton.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fullerton.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, Fullerton</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.fullerton.edu/it/iso/policy/OnlinePrivacy.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="253" xml:lang="en">https://shibboleth.fullerton.edu/images/csuf_logo_blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11704661747908324771, expires on Mon May 5 22:49:17 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.fullerton.edu/idp/profile/Logout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.fullerton.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.fullerton.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.fullerton.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.fullerton.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.fullerton.edu/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, Fullerton</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, Fullerton</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.fullerton.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>James O'Dell</GivenName>
+ <EmailAddress>jodell@fullerton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Berhanu Tadesse</GivenName>
+ <EmailAddress>btadesse@fullerton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Tony Modiri</GivenName>
+ <EmailAddress>tmodiri@fullerton.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, Sacramento -->
+<EntityDescriptor entityID="https://idp.csus.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.csus.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csus.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, Sacramento</mdui:DisplayName>
+ <mdui:Description xml:lang="en">California State University, Sacramento Central Shibboleth Identity Provider</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.calstate.edu/icsuam/documents/Section8000.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="102" width="516" xml:lang="en">https://irt-cdn.webhost.csus.edu/cascade/responsive-3.0/assets/app/img/logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 671, expires on Fri Oct 14 17:59:08 2011 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10005920877966448980, expires on Fri Oct 8 15:55:30 2021 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.csus.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.csus.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.csus.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.csus.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.csus.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.csus.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csus.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 671, expires on Fri Oct 14 17:59:08 2011 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10005920877966448980, expires on Fri Oct 8 15:55:30 2021 GMT -->
+ <ds:X509Certificate>
+MIIDKTCCAhGgAwIBAgIJAIrcLAZd2tlUMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV
+BAMTDGlkcC5jc3VzLmVkdTAeFw0xMTEwMTExNTU1MzBaFw0yMTEwMDgxNTU1MzBa
+MBcxFTATBgNVBAMTDGlkcC5jc3VzLmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEP
+ADCCAQoCggEBAM62rDQa6qRVEXoqEm+kWeFInc5oACzU5pJqkKxEmKizZ8P/Y8aB
+/w2vWzFoWWefNPb/zrg6wijOb6FAbTJe/zBexa+JibUg1uk4BlfOmebWvCIoOhRx
+U7GfR5czHcsiGyzIiwGCchBOIIAsUYtVdT1VNzybetbaKSTTEe/N2+otM76EBGl0
+N95X5LdUxRYydteqIl8hmLrCP06WjGjIukIjQcMgNomRckFedyGHgywYU30Mo9Tm
+CYz/pbiQDQbJPgFjDmbOd4iYsyzdJpE8pbsaEJZ1XcNgxe5Y9BOoexLp0+/Bvebm
+uanwRiy+/THhIqQ38mMKaNjRbzyNJgDl3KsCAwEAAaN4MHYwHQYDVR0OBBYEFPYi
+UhafxN4O1ADU9mFoKPAep57OMEcGA1UdIwRAMD6AFPYiUhafxN4O1ADU9mFoKPAe
+p57OoRukGTAXMRUwEwYDVQQDEwxpZHAuY3N1cy5lZHWCCQCK3CwGXdrZVDAMBgNV
+HRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQAgV3TIJrLbxLn7Df0pWdX3ODHq
+3xLyeurA/QtVE9Xp+x98wi6HfTljnSYRlL3PrQdSpELh7D0T18BUgzBhGATQ7g5m
+H8nxcCMsKC75SYnQSBspuosDBSrcpfV8wfHpcEOiqUIYPg/9kzbu79YzQr/2W61N
+fIctPqr43IlDuZqDDWbbCOPti49oTcMGDeVHJPfR6o2kGeM8qo+uQlHpU030mjtR
+Lgbeue9s2vlzQoPbAW2ZIjMtxkSztb4dXEiDz6jBf788NVKCfeKrL52TMF1kT/NM
+A4DxizdeC1TEfLUgq0gDwe8XIYYldlIDI2XAwlm69GmSAVWtw91I4TbeJGJT
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.csus.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.csus.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, Sacramento</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, Sacramento</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.csus.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brennan Pike</GivenName>
+ <EmailAddress>idm@csus.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ISO Group</GivenName>
+ <EmailAddress>iso@csus.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IDM Group</GivenName>
+ <EmailAddress>idm@csus.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Alaska Statewide System -->
+<EntityDescriptor entityID="urn:mace:incommon:alaska.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.alaska.edu/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">alaska.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Alaska Statewide System</mdui:DisplayName>
+ <mdui:Description xml:lang="en">InCommon federated IdP (identity provider) for all students, faculty, &amp; staff at all campuses of the University of Alaska.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://iam.alaska.edu/trac/wiki/UAInCPOP.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://iam.alaska.edu/trac/wiki/IamUaArp</mdui:PrivacyStatementURL>
+ <mdui:Logo height="632" width="860" xml:lang="en">https://www.alaska.edu/files/opa/color.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1115975601720591705099751514747447536697228770285, expires on Tue Jun 13 21:59:20 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.alaska.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.alaska.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.alaska.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.alaska.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.alaska.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">alaska.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1115975601720591705099751514747447536697228770285, expires on Tue Jun 13 21:59:20 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.alaska.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.alaska.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Alaska Statewide System</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Alaska Statewide System</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.alaska.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>David Bantz</GivenName>
+ <EmailAddress>Q@Alaska.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Support Center</GivenName>
+ <EmailAddress>helpdesk@alaska.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity &amp; Access Management</GivenName>
+ <EmailAddress>IAM@Alaska.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>U Alaska IT Security</GivenName>
+ <EmailAddress>ua-oit-security@alaska.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Louisiana State University -->
+<EntityDescriptor entityID="https://webauth.shib.lsu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.lsu.edu/404.php" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lsu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Louisiana State University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://webauth.shib.lsu.edu/shibboleth/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.lsu.edu/itpolicy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="200" xml:lang="en">https://webauth.shib.lsu.edu/shibboleth/images/lsulogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12457263422800275377, expires on Sun Jun 26 18:39:13 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.shib.lsu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webauth.shib.lsu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://webauth.shib.lsu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.shib.lsu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webauth.shib.lsu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.shib.lsu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lsu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12457263422800275377, expires on Sun Jun 26 18:39:13 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.shib.lsu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webauth.shib.lsu.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Louisiana State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Louisiana State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lsu.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Technical</GivenName>
+ <EmailAddress>security@lsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Administrator</GivenName>
+ <EmailAddress>security@lsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Security</GivenName>
+ <EmailAddress>security@lsu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Sonoma State University -->
+<EntityDescriptor entityID="https://login.sonoma.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.sonoma.edu/it/helpdesk/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sonoma.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Sonoma State University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.sonoma.edu/about/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.sonoma.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="144" width="288" xml:lang="en">https://web.sonoma.edu/logos/web/primarybox-web143b87.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 366, expires on Sat Oct 23 20:17:14 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.sonoma.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.sonoma.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.sonoma.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.sonoma.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Sonoma State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Sonoma State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sonoma.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Andru Luvisi</GivenName>
+ <EmailAddress>andru.luvisi@sonoma.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Helpdesk</GivenName>
+ <EmailAddress>helpdesk@sonoma.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IDP Administrator</GivenName>
+ <EmailAddress>idp-admin@sonoma.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Evan Ferguson</GivenName>
+ <EmailAddress>fergusoe@sonoma.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, San Bernardino -->
+<EntityDescriptor entityID="https://idp.csusb.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csusb.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, San Bernardino</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://iam.csusb.edu/incommon/incommonpop.pdf</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://iam.csusb.edu/incommon/incommonpop.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="252" width="300" xml:lang="en">https://cdn.brandisty.com/img?id=54922487ac2d362e7100001f&amp;format=png&amp;w=300&amp;h=252</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17892234856651550567, expires on Sun Nov 14 22:40:11 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.csusb.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.csusb.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, San Bernardino</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, San Bernardino</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.csusb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Javier Torner</GivenName>
+ <EmailAddress>jtorner@csusb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Lenora Rogers</GivenName>
+ <EmailAddress>lenora@csusb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>iset-ops@csusb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>iset-ops@csusb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Technology Support Center</GivenName>
+ <EmailAddress>support@csusb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>iset-ops@csusb.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- San Jose State University -->
+<EntityDescriptor entityID="https://idp01.sjsu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sjsu.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">students.sjsu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">San Jose State University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.calstate.edu/icsuam/documents/Section8000.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="44" width="282" xml:lang="en">https://antivirus.sjsu.edu/sjsu-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1153152381340086299069842224546786468974452801682, expires on Tue Jan 29 23:55:59 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp01.sjsu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp01.sjsu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp01.sjsu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp01.sjsu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp01.sjsu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp01.sjsu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sjsu.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">students.sjsu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1153152381340086299069842224546786468974452801682, expires on Tue Jan 29 23:55:59 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp01.sjsu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp01.sjsu.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">San Jose State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">San Jose State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sjsu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Atul Pala</GivenName>
+ <EmailAddress>atul.pala@sjsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Atul Pala</GivenName>
+ <EmailAddress>atul.pala@sjsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Office of Information Security</GivenName>
+ <EmailAddress>security@sjsu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Fairfield University -->
+<EntityDescriptor entityID="https://namid.fairfield.edu:8443/nidp/saml2/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.fairfield.edu/404/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fairfield.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fairfield University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.fairfield.edu/about-fairfield/leadership-offices/departments/marketing-communications/digital-marketing/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="80" xml:lang="en">https://www.fairfield.edu/hostedfiles/images/f-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 43241829631178273137681192350765241417, expires on Fri May 3 23:59:59 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://namid.fairfield.edu:8443/nidp/saml2/soap" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://namid.fairfield.edu:8443/nidp/saml2/slo"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://namid.fairfield.edu:8443/nidp/saml2/slo"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://namid.fairfield.edu:8443/nidp/saml2/sso"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://namid.fairfield.edu:8443/nidp/saml2/sso"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Fairfield University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Fairfield University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.fairfield.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Steven H. Mann</GivenName>
+ <EmailAddress>smann@fairfield.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Eli Kharaz</GivenName>
+ <EmailAddress>ekharaz@fairfield.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Eli Kharaz</GivenName>
+ <EmailAddress>ekharaz@fairfield.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, Fresno -->
+<EntityDescriptor entityID="https://shib-idp.its.csufresno.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csufresno.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, Fresno</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://fresnostate.edu/technology/security/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="42" width="343" xml:lang="en">https://www.fresnostate.edu/omniresources/tpl/default/images/fresnostate-logo-clean.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1031530487873192363678339814830235747884913292341, expires on Sun Nov 12 16:30:30 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib-idp.its.csufresno.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-idp.its.csufresno.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib-idp.its.csufresno.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib-idp.its.csufresno.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib-idp.its.csufresno.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib-idp.its.csufresno.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csufresno.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1031530487873192363678339814830235747884913292341, expires on Sun Nov 12 16:30:30 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib-idp.its.csufresno.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-idp.its.csufresno.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, Fresno</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, Fresno</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.csufresno.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>ITS Systems Group</GivenName>
+ <EmailAddress>sysadmin@csufresno.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>SSO Tech</GivenName>
+ <EmailAddress>sso-tech@csufresno.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>SSO Admin</GivenName>
+ <EmailAddress>sso-admin@csufresno.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>SSO Security</GivenName>
+ <EmailAddress>sso-sec@csufresno.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Washington University in St. Louis -->
+<EntityDescriptor entityID="https://logintest.wustl.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wustl.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">zTest_Washington University in St. Louis</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test environment IDP for Washington University</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://wustl.edu/about/compliance-policies/computers-internet-policies/internet-privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="330" xml:lang="en">https://connect.wustl.edu/selfservice/images/ConnectLogoTransparent.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16116565800543431837, expires on Sat May 8 18:21:08 2027 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://logintest.wustl.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://logintest.wustl.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://logintest.wustl.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://logintest.wustl.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://logintest.wustl.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://logintest.wustl.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wustl.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16116565800543431837, expires on Sat May 8 18:21:08 2027 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://logintest.wustl.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://logintest.wustl.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Washington University in St. Louis</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">zTest_Washington University in St. Louis</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wustl.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Ken Koch</GivenName>
+ <EmailAddress>ken.koch@wustl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Daniel Zweifel</GivenName>
+ <EmailAddress>DanZ@wustl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>WashU IT IAMM</GivenName>
+ <EmailAddress>washuit-iamm@wustl.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California Maritime Academy -->
+<EntityDescriptor entityID="https://cma-shibboleth.csum.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csum.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California Maritime Academy</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.calstate.edu/icsuam/documents/Section8000.pdf#%5B%7B%22num%22%3A70%2C%22gen%22%3A0%7D%2C%7B%22name%22%3A%22XYZ%22%7D%2C52%2C756%2C0%5D</mdui:PrivacyStatementURL>
+ <mdui:Logo height="71" width="287" xml:lang="en">https://www.csum.edu/csum-theme/images/custom/csum-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15104971444369811077, expires on Mon May 6 22:13:39 2013 GMT -->
+ <ds:X509Certificate>
+MIIDTDCCAjSgAwIBAgIJANGfo3/EFOaFMA0GCSqGSIb3DQEBBQUAMCIxIDAeBgNV
+BAMTF2NtYS1zaGliYm9sZXRoLmNzdW0uZWR1MB4XDTEwMDUwNzIyMTMzOVoXDTEz
+MDUwNjIyMTMzOVowIjEgMB4GA1UEAxMXY21hLXNoaWJib2xldGguY3N1bS5lZHUw
+ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDgkG1bWSQW5CqTAcVhu4qi
+ukj7tA5Fy71+hPMjlcPut/HVGzFbC50yykZlrBETKZHs/uQvhFTNf/pyMbpgLNNg
+9HLDFh9XRDrff5cod3hLbP9YMUJWRwTEotHPGSIzpEnJEQ49FR5GljJZk42HVqry
+/N17pgseO6Ye54aGrGUgmmulhb1w15yQ+IF6NH1mMmN1UfqL9HDQRe0ict+rT0cs
+Q3T/vWtFnEMYivWDKbUMkmFDbADdxRAHyk1XmY2s6evaq9zq43ZN6Nrx4Z+w8ogF
+ZuOxAA3uqUFwzb0RYnkQJagn14taxYsqdG3s938v8moUoEJQH30WAqhjRnwqGRAt
+AgMBAAGjgYQwgYEwHQYDVR0OBBYEFM7EOttJXwWxNIfeiwsYeQR0YQrCMFIGA1Ud
+IwRLMEmAFM7EOttJXwWxNIfeiwsYeQR0YQrCoSakJDAiMSAwHgYDVQQDExdjbWEt
+c2hpYmJvbGV0aC5jc3VtLmVkdYIJANGfo3/EFOaFMAwGA1UdEwQFMAMBAf8wDQYJ
+KoZIhvcNAQEFBQADggEBAETxTbMfKsLKSuqv3vWZYB38XgGQOBZqOCgk5KHnWe9V
+2PggyG73lnr1s4yQHPxot6uK2sP6eYLjaIx/dPTJTivoXJAkECjnTWTWxnJVzh+k
+cZn4KdKgZlqTzIgBzPRpTl5kgBJf/wI38ecaAoWpDBTwrlrETJmE9v0mYnrhdX0u
+fDftIxBbFSfRQ2Qk+jYIHEPSYTGef56YLZkHrA5ohZ5G6rHpFMhIfbea843NZ3ZN
+3hevks7qbycgvP92CH/zLffB39C1ajsstCrmdjbU1m6/MXBYzz4lY9CtI0PIPvgd
+eKdMuCgiKOUaEFR8gBOgGbpc3cDVXi0J1zwnq4+eKy4=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cma-shibboleth.csum.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cma-shibboleth.csum.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://cma-shibboleth.csum.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cma-shibboleth.csum.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cma-shibboleth.csum.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csum.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15104971444369811077, expires on Mon May 6 22:13:39 2013 GMT -->
+ <ds:X509Certificate>
+MIIDTDCCAjSgAwIBAgIJANGfo3/EFOaFMA0GCSqGSIb3DQEBBQUAMCIxIDAeBgNV
+BAMTF2NtYS1zaGliYm9sZXRoLmNzdW0uZWR1MB4XDTEwMDUwNzIyMTMzOVoXDTEz
+MDUwNjIyMTMzOVowIjEgMB4GA1UEAxMXY21hLXNoaWJib2xldGguY3N1bS5lZHUw
+ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDgkG1bWSQW5CqTAcVhu4qi
+ukj7tA5Fy71+hPMjlcPut/HVGzFbC50yykZlrBETKZHs/uQvhFTNf/pyMbpgLNNg
+9HLDFh9XRDrff5cod3hLbP9YMUJWRwTEotHPGSIzpEnJEQ49FR5GljJZk42HVqry
+/N17pgseO6Ye54aGrGUgmmulhb1w15yQ+IF6NH1mMmN1UfqL9HDQRe0ict+rT0cs
+Q3T/vWtFnEMYivWDKbUMkmFDbADdxRAHyk1XmY2s6evaq9zq43ZN6Nrx4Z+w8ogF
+ZuOxAA3uqUFwzb0RYnkQJagn14taxYsqdG3s938v8moUoEJQH30WAqhjRnwqGRAt
+AgMBAAGjgYQwgYEwHQYDVR0OBBYEFM7EOttJXwWxNIfeiwsYeQR0YQrCMFIGA1Ud
+IwRLMEmAFM7EOttJXwWxNIfeiwsYeQR0YQrCoSakJDAiMSAwHgYDVQQDExdjbWEt
+c2hpYmJvbGV0aC5jc3VtLmVkdYIJANGfo3/EFOaFMAwGA1UdEwQFMAMBAf8wDQYJ
+KoZIhvcNAQEFBQADggEBAETxTbMfKsLKSuqv3vWZYB38XgGQOBZqOCgk5KHnWe9V
+2PggyG73lnr1s4yQHPxot6uK2sP6eYLjaIx/dPTJTivoXJAkECjnTWTWxnJVzh+k
+cZn4KdKgZlqTzIgBzPRpTl5kgBJf/wI38ecaAoWpDBTwrlrETJmE9v0mYnrhdX0u
+fDftIxBbFSfRQ2Qk+jYIHEPSYTGef56YLZkHrA5ohZ5G6rHpFMhIfbea843NZ3ZN
+3hevks7qbycgvP92CH/zLffB39C1ajsstCrmdjbU1m6/MXBYzz4lY9CtI0PIPvgd
+eKdMuCgiKOUaEFR8gBOgGbpc3cDVXi0J1zwnq4+eKy4=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cma-shibboleth.csum.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cma-shibboleth.csum.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California Maritime Academy</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California Maritime Academy</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.csum.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Julianne Tolson</GivenName>
+ <EmailAddress>infosec@csum.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Paul Sosa</GivenName>
+ <EmailAddress>Psosa@csum.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Walter Gutierrez</GivenName>
+ <EmailAddress>helpdesk@csum.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Helpdesk</GivenName>
+ <EmailAddress>helpdesk@csum.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Illinois at Chicago -->
+<EntityDescriptor entityID="https://shibboleth.uic.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://shibboleth.uic.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uic.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Illinois at Chicago</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.vpaa.uillinois.edu/policies/web_privacy.cfm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="300" width="250" xml:lang="en">https://logos.uic.edu/Images/UICLOGO.PNG</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14547142102731650334, expires on Thu Jul 15 16:43:47 2021 GMT -->
+ <ds:X509Certificate>
+MIIDOzCCAiOgAwIBAgIJAMnh1KsacvUeMA0GCSqGSIb3DQEBBQUAMB0xGzAZBgNV
+BAMTEnNoaWJib2xldGgudWljLmVkdTAeFw0xMTA3MTgxNjQzNDdaFw0yMTA3MTUx
+NjQzNDdaMB0xGzAZBgNVBAMTEnNoaWJib2xldGgudWljLmVkdTCCASIwDQYJKoZI
+hvcNAQEBBQADggEPADCCAQoCggEBAK/LA9eioSPqX+ipdmNMyZerjyPhPWBiem4f
+piOGnBiua76pGvvujhlaPnWT3YfwFWLpKKuPt0nBgk8SC9PTlP2oubVqF9FIFA5O
+UHtAj3nrkXNCu67HLzaW8ClGwCwdImCcTnXXhp1c8iVcRjp2r+DcxjYHpXLyT3o8
+8BmWnGJX8fCo8gtnVukc6Xv+J+gSOFRmCnvbkBkeiALNn3lkJgdvdJhAHE+OcRg1
+4kEmt3/mxOENVouRMi505ez4hMH4iR3fvD3w+1rGKtrNYCBrvagqUSZ2fBF3k6tG
+TQfzNswoGiSrLAkrMZ+N8qjkC/hdQNj4t48uKzEUYvcka7x5q2sCAwEAAaN+MHww
+HQYDVR0OBBYEFPCmz0jymFskc2beyFTMGZ8F7ERVME0GA1UdIwRGMESAFPCmz0jy
+mFskc2beyFTMGZ8F7ERVoSGkHzAdMRswGQYDVQQDExJzaGliYm9sZXRoLnVpYy5l
+ZHWCCQDJ4dSrGnL1HjAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQBY
+WrbjYC+bfwb1gPCchi0vil5x92avIJjQv/AOIT5xp9vmg6km429KXD5BoI32tf7i
+SgmwOllxtLGLE8j7EKZwcVcm3JYo5PIVzWX8yI2q2UpUZKFryoS/KFUoolDN1bNQ
+RnrLeO1Pwy7i93H8mnLGBa/S0+pcjEitKdC+VGEw+i+ZVVBCZMsyggzLK8KIrJPr
+I7vNFfld6a9DYkGUK59mwUwfVU1syUk0Eht25bNa4wKkWGf4OYV83x36xWMyN2Yy
+9fvlUHzM13HdEFvfPytJ2z1wpDUVZaGJ5LWb13cSpTZ2yEyllrRW8we9Paoac8js
+Ej+l4a6PybN1ttx/R08j
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.uic.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.uic.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.uic.edu/idp/cgi-bin/shib-logout.cgi?return=https://shibboleth.uic.edu/shibboleth-logout.html"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.uic.edu/shibboleth-idp/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.uic.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.uic.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.uic.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uic.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14547142102731650334, expires on Thu Jul 15 16:43:47 2021 GMT -->
+ <ds:X509Certificate>
+MIIDOzCCAiOgAwIBAgIJAMnh1KsacvUeMA0GCSqGSIb3DQEBBQUAMB0xGzAZBgNV
+BAMTEnNoaWJib2xldGgudWljLmVkdTAeFw0xMTA3MTgxNjQzNDdaFw0yMTA3MTUx
+NjQzNDdaMB0xGzAZBgNVBAMTEnNoaWJib2xldGgudWljLmVkdTCCASIwDQYJKoZI
+hvcNAQEBBQADggEPADCCAQoCggEBAK/LA9eioSPqX+ipdmNMyZerjyPhPWBiem4f
+piOGnBiua76pGvvujhlaPnWT3YfwFWLpKKuPt0nBgk8SC9PTlP2oubVqF9FIFA5O
+UHtAj3nrkXNCu67HLzaW8ClGwCwdImCcTnXXhp1c8iVcRjp2r+DcxjYHpXLyT3o8
+8BmWnGJX8fCo8gtnVukc6Xv+J+gSOFRmCnvbkBkeiALNn3lkJgdvdJhAHE+OcRg1
+4kEmt3/mxOENVouRMi505ez4hMH4iR3fvD3w+1rGKtrNYCBrvagqUSZ2fBF3k6tG
+TQfzNswoGiSrLAkrMZ+N8qjkC/hdQNj4t48uKzEUYvcka7x5q2sCAwEAAaN+MHww
+HQYDVR0OBBYEFPCmz0jymFskc2beyFTMGZ8F7ERVME0GA1UdIwRGMESAFPCmz0jy
+mFskc2beyFTMGZ8F7ERVoSGkHzAdMRswGQYDVQQDExJzaGliYm9sZXRoLnVpYy5l
+ZHWCCQDJ4dSrGnL1HjAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQBY
+WrbjYC+bfwb1gPCchi0vil5x92avIJjQv/AOIT5xp9vmg6km429KXD5BoI32tf7i
+SgmwOllxtLGLE8j7EKZwcVcm3JYo5PIVzWX8yI2q2UpUZKFryoS/KFUoolDN1bNQ
+RnrLeO1Pwy7i93H8mnLGBa/S0+pcjEitKdC+VGEw+i+ZVVBCZMsyggzLK8KIrJPr
+I7vNFfld6a9DYkGUK59mwUwfVU1syUk0Eht25bNa4wKkWGf4OYV83x36xWMyN2Yy
+9fvlUHzM13HdEFvfPytJ2z1wpDUVZaGJ5LWb13cSpTZ2yEyllrRW8we9Paoac8js
+Ej+l4a6PybN1ttx/R08j
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.uic.edu:8443/shibboleth-idp/AA"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.uic.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Illinois at Chicago</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Illinois at Chicago</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uic.edu/index.html/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>ACCC Single Sign On</GivenName>
+ <EmailAddress>singlesignon@uic.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>ACCC Helpdesk Services</GivenName>
+ <EmailAddress>consult@uic.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>ACCC Administration</GivenName>
+ <EmailAddress>officeadmin@uic.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ACCC Security</GivenName>
+ <EmailAddress>security@uic.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Oregon Health & Science University -->
+<EntityDescriptor entityID="https://idp.ohsu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.ohsu.edu/idp/error.jsp" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ohsu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Oregon Health &amp; Science University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">OHSU production</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ohsu.edu/information-technology/ohsu-notice-privacy-practices</mdui:PrivacyStatementURL>
+ <mdui:Logo height="129" width="75" xml:lang="en">https://idp.ohsu.edu/idp/images/ohsu-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 255956706479418136169267128475177704031102018370, expires on Mon Sep 7 23:47:51 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ohsu.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ohsu.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ohsu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ohsu.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Oregon Health &amp; Science University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Oregon Health &amp; Science University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ohsu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth IdP Support</GivenName>
+ <EmailAddress>ShibbolethIdPSupport@ohsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth IdP Support</GivenName>
+ <EmailAddress>ShibbolethIdPSupport@ohsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth IdP Support</GivenName>
+ <EmailAddress>ShibbolethIdPSupport@ohsu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of North Carolina at Greensboro -->
+<EntityDescriptor entityID="https://prdidp.uncg.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.uncg.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uncg.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of North Carolina at Greensboro</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UNCG is a public liberal arts and research university in Greensboro, North Carolina and constituent institution of the UNC system.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.uncg.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policy.uncg.edu/university-policies/acceptable_use/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="96" width="101" xml:lang="en">https://uncgcdn.blob.core.windows.net/inc/formatted-uncg-incommon.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14605516621964562620, expires on Sun Jun 13 15:27:37 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.uncg.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.uncg.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.uncg.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uncg.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uncg.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.uncg.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uncg.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14605516621964562620, expires on Sun Jun 13 15:27:37 2021 GMT -->
+ <ds:X509Certificate>
+MIIDMjCCAhqgAwIBAgIJAMqxN/v9QtC8MA0GCSqGSIb3DQEBBQUAMBoxGDAWBgNV
+BAMTD3ByZGlkcC51bmNnLmVkdTAeFw0xMTA2MTMxNTI3MzdaFw0yMTA2MTMxNTI3
+MzdaMBoxGDAWBgNVBAMTD3ByZGlkcC51bmNnLmVkdTCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBAMcQLm/5wUB0aOWQgN+yBxS1+VsN1VLUbeaE9k6S4ADD
+BgZ6uHYrprWyp7JqYYS96I3y3B6/FFwC44CWc9Drajgx3vgwl6tmdbjMZxiVhILC
+TCT0bVBvfelq/9p/6Jy9CCEr+mtaH5YgTlfbByKjrAqzrl2/e3aIKKI8AH/MKU7p
+p9U7NBCw50GNUa+NZ+nzIXLx/iYGzyhBjmzfD1RI6sHYVV+rx2IZjYZ8+Lw9tJ/H
+kWIAbEslY7CHS6nhVsRXKN1CZUdjNUOX1Ce74ygS1/DarGb7lIB8byWfeW/8PTkR
+rE1tgSNktCtn4L8OKV/Ma4i4oFsl1s4tTAq3gy68kYsCAwEAAaN7MHkwHQYDVR0O
+BBYEFO5c0T5RBCqKHUzjFUXn9avY7HHJMEoGA1UdIwRDMEGAFO5c0T5RBCqKHUzj
+FUXn9avY7HHJoR6kHDAaMRgwFgYDVQQDEw9wcmRpZHAudW5jZy5lZHWCCQDKsTf7
+/ULQvDAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQCtqJqAWwbQI/l1
+i+a3Eom2upU7r9NQ8bw/IvBNr6VLkJyGmm4Y41hh6yp6zKUerECVwVGfcdOumLQQ
+rQvfG9XK9Ax5CxC34/qA8cn6TuHldPntBqGiCcPfqjN64wCITl0MhJ+FrRTXVhw1
+FutslB2FC/t+EyPkk1FB8RBa417/Rf24AcAnGb0CuM6Y/M22dvYNrLE+mePL4JTM
+Bu22LQTtR6UgA6NvQR7Znv/XrtHKCzkcEwKWTuZjiZQqjpItTjYl3Fz/BOITT+57
++lxD/J8U1TYtgs0D5Im9Ttt09xRzeXB0+gHWUIV7oM/KURL8RO6fPxj1gE5wcQrt
+9C/plVjK
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.uncg.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.uncg.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of North Carolina at Greensboro</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of North Carolina at Greensboro</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uncg.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jeff Whitworth</GivenName>
+ <EmailAddress>jnwhitwo@uncg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Robert Gorrell</GivenName>
+ <EmailAddress>rwgorrel@uncg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeffrey Williams</GivenName>
+ <EmailAddress>jfwillia@uncg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Service Desk (6-TECH)</GivenName>
+ <EmailAddress>6-tech@uncg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mike Rollins</GivenName>
+ <EmailAddress>jmrollin@uncg.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://redcap.uncg.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://redcap.uncg.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UNCG REDCap</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UNCG - School of Health and Human Sciences instance of Research Electronic Data Capture (REDCap) software.
+</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://project-redcap.org/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://policy.uncg.edu/identity_theft_prevention/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="83" width="270" xml:lang="en">https://redcap.vanderbilt.edu/consortium/resources/img/redcaplogo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+<!-- Serial No. 12498197038919638440, expires on Sat May 31 15:13:22 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://redcap.uncg.edu/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://redcap.uncg.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://redcap.uncg.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://redcap.uncg.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://redcap.uncg.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://redcap.uncg.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://redcap.uncg.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://redcap.uncg.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://redcap.uncg.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UNCG REDCap</ServiceName>
+ <ServiceDescription xml:lang="en">UNCG - School of Health and Human Sciences instance of Research Electronic Data Capture (REDCap) software.
+</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of North Carolina at Greensboro</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of North Carolina at Greensboro</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uncg.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity Management</GivenName>
+ <EmailAddress>idm-admin@uncg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Department Application Hosting</GivenName>
+ <EmailAddress>its-syn-dept-app-hosting-l@uncg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>6-TECH</GivenName>
+ <EmailAddress>6-TECH@uncg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:icmd="http://id.incommon.org/metadata" contactType="other" icmd:contactType="http://id.incommon.org/metadata/contactType/security">
+ <GivenName>Computing Abuse</GivenName>
+ <EmailAddress>abuse@uncg.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, San Marcos -->
+<EntityDescriptor entityID="https://idp.csusm.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csusm.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, San Marcos</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.csusm.edu/security/program/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="300" width="639" xml:lang="en">https://idp.csusm.edu/idp/images/csusmlogo_fullnamehillsabove_blue.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 388648608319389456546693700975219181891236930142, expires on Fri Aug 24 17:45:06 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.csusm.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.csusm.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.csusm.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.csusm.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.csusm.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.csusm.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csusm.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 388648608319389456546693700975219181891236930142, expires on Fri Aug 24 17:45:06 2029 GMT -->
+ <ds:X509Certificate>
+MIIDHzCCAgegAwIBAgIURBObONYB1aVZUkchbN9Vm7i8Il4wDQYJKoZIhvcNAQEF
+BQAwGDEWMBQGA1UEAxMNaWRwLmNzdXNtLmVkdTAeFw0wOTA4MjQxNzQ1MDZaFw0y
+OTA4MjQxNzQ1MDZaMBgxFjAUBgNVBAMTDWlkcC5jc3VzbS5lZHUwggEiMA0GCSqG
+SIb3DQEBAQUAA4IBDwAwggEKAoIBAQCNxuYDajoiDXTQ4TvPcWGZy167mRRwlH1i
+rfxHV90o0XHKoL/FTJ3sh/Zj7S/7bCTPVB8mEXmIeTfGURUkwM8dSVeVLpX3j8jz
+DdtVhEGBxQUPtZsQPWt7vP+mk+w5t85nA8ShbKmvPNVS1kFBfb9+EYVVBwaN8aXH
+f0jXKVnt041DxOAXWGz958SaIetTVqa/P6XsBz6E9heulp3CgXSBLBlBQ/EKYcPz
++NtLYG5iKbH9u6ka3zfTbefsZ1W/7fe8j416TgZdgUaKN7GNsgU9O/jCqHkGVURt
+pN9/rtkN0feQhpcW8ZKWN727zmqbUIka6kPA8N0h8IVEMpgvzYCTAgMBAAGjYTBf
+MD4GA1UdEQQ3MDWCDWlkcC5jc3VzbS5lZHWGJGh0dHBzOi8vaWRwLmNzdXNtLmVk
+dS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQUUWLdnhv2ZxtBMXDDAlaFWeDgDaYw
+DQYJKoZIhvcNAQEFBQADggEBAEuAj7CnXZppeRZ149EiZ4T54Gq6GNlIFzWfoD8Z
+sxiIOxcJbM/lJ9rXGtHwV5RE1cxNXncLMfA7XAtDoRtHIDQ+KL0JEd7hqjZFz2/1
+jNXMxjNO8oQnTEqtwuo6yH8fKuAxHGAoLK1/ZXOC4MV4Gj265hhR2vUOp7WzRWKk
+IUnVPqjV3HQd+eTL4yQQM1s4NANaMsCoQ/u0C/j5C92ERrYmKZ3axgVh5iuEMcRI
+noZH8nkxLFKIpQhm5kJlWq5YOKrdyTUF9lF7lD3YqacBcK/gctKBxbAmHwPqn2kc
+erUVBDmnMbYvO+WkO29HAl4Q0MbsXjQOm0C8cdFfI7gnehE=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.csusm.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.csusm.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, San Marcos</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, San Marcos</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.csusm.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Teresa Macklin</GivenName>
+ <EmailAddress>macklin@csusm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Margo Lopez</GivenName>
+ <EmailAddress>margo@csusm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Teresa Macklin</GivenName>
+ <EmailAddress>macklin@csusm.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- EDUCAUSE -->
+<EntityDescriptor entityID="https://idp.educause.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">educause.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">EDUCAUSE</mdui:DisplayName>
+ <mdui:Description xml:lang="en">EDUCAUSE IdP server</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.educause.edu/about/incommon</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.educause.edu/privacy-notice</mdui:PrivacyStatementURL>
+ <mdui:Logo height="57" width="225" xml:lang="en">https://www.educause.edu/-/media/images/educause/logos/educause_logo_general_use.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 840995308157300325638493861435674424277801183540, expires on Mon Nov 5 00:33:53 2035 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.educause.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.educause.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.educause.edu/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.educause.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.educause.edu/idp/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.educause.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.educause.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.educause.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">educause.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 840995308157300325638493861435674424277801183540, expires on Mon Nov 5 00:33:53 2035 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.educause.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">EDUCAUSE</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">EDUCAUSE</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.educause.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>EDUCAUSE IT Support</GivenName>
+ <EmailAddress>ITHelpdesk@educause.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>EDUCAUSE IT Administrative Support</GivenName>
+ <EmailAddress>ITinfo@educause.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>EDUCAUSE IT Support</GivenName>
+ <EmailAddress>ITHelpdesk@educause.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Johnny Lasker</GivenName>
+ <EmailAddress>jlasker@educause.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sso.educause.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sso.educause.edu/module.php/saml/sp/discoresp.php" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">EDUCAUSE SSO</mdui:DisplayName>
+ <mdui:Description xml:lang="en">EDUCAUSE is a nonprofit association and the foremost community of IT leaders and professionals committed to advancing higher education. This service provides access to collaborative and informative services for faculty and staff if the form of curated content, publications, IT benchmarking data and research, list servers, blogs, wikis, and events.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.educause.edu/about/incommon</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.educause.edu/privacy-notice</mdui:PrivacyStatementURL>
+ <mdui:Logo height="57" width="225" xml:lang="en">https://www.educause.edu/sites/all/themes/edutheme/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12313131498408655360, expires on Sat Dec 16 16:40:29 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.educause.edu/sp/ACS.saml2" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.educause.edu/module.php/saml/sp/saml2-acs.php/educause_proxy" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">EDUCAUSE SSO</ServiceName>
+ <ServiceDescription xml:lang="en">EDUCAUSE is a nonprofit association and the foremost community of IT leaders and professionals committed to advancing higher education. This service provides access to collaborative and informative services for faculty and staff if the form of curated content, publications, IT benchmarking data and research, list servers, blogs, wikis, and events.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">EDUCAUSE</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">EDUCAUSE</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.educause.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IT Support</GivenName>
+ <EmailAddress>itadmin@educause.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Support</GivenName>
+ <EmailAddress>itadmin@educause.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Administrative Support</GivenName>
+ <EmailAddress>itadmin@educause.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Support</GivenName>
+ <EmailAddress>itadmin@educause.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Texas System -->
+<EntityDescriptor entityID="https://idp.utsystem.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idm.utsystem.edu/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utsystem.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas System</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Logon service for The University of Texas System Administration</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utsystem.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="75" xml:lang="en">https://idm.utsystem.edu/images/UTSystemSeal-Small.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1251296733715548325357054589585701937994591869507, expires on Wed Jun 20 21:27:22 2029 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.utsystem.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.utsystem.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.utsystem.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.utsystem.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.utsystem.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.utsystem.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utsystem.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1251296733715548325357054589585701937994591869507, expires on Wed Jun 20 21:27:22 2029 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.utsystem.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.utsystem.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas System</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas System</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.utsystem.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Network Admin</GivenName>
+ <EmailAddress>netadmin@utsystem.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>help@utsystem.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UT System IDM Support</GivenName>
+ <EmailAddress>idm-support@utsystem.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UT System Security</GivenName>
+ <EmailAddress>secadmin@utsystem.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Delaware -->
+<EntityDescriptor entityID="https://idp.nss.udel.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.nss.udel.edu/idp/shibboleth/error" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">udel.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Delaware</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Delaware Shibboleth Single Sign-on Service</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.udel.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.udel.edu/home/legal-notices/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="52" width="399" xml:lang="en">https://cas.nss.udel.edu/themes/secureheader/headerbluetext.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 94207778113614958803832839681777856429500637406, expires on Mon May 26 15:02:33 2036 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.nss.udel.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.nss.udel.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.nss.udel.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.nss.udel.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.nss.udel.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.nss.udel.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">udel.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1429411761924444483590905836515564751475357705866, expires on Mon May 26 15:02:33 2036 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.nss.udel.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Delaware</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Delaware</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.udel.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IT-WebDev</GivenName>
+ <EmailAddress>itwd-auth@udel.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT-WebDev</GivenName>
+ <EmailAddress>itwd-auth@udel.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT-WebDev</GivenName>
+ <EmailAddress>itwd-auth@udel.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UD IT Security</GivenName>
+ <EmailAddress>secadmin@udel.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Whitman College -->
+<EntityDescriptor entityID="https://idp.whitman.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">whitman.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Whitman College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.whitman.edu/technology-services/policies/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="400" width="456" xml:lang="en">https://idp.whitman.edu/Whitman-stacked_456-400.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1023425272195963178650933424510584466297926285062, expires on Mon Jun 22 18:02:11 2037 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.whitman.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.whitman.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Whitman College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Whitman College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.whitman.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mike Osterman</GivenName>
+ <EmailAddress>ostermmg@whitman.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mike Osterman</GivenName>
+ <EmailAddress>ostermmg@whitman.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Linc Nesheim</GivenName>
+ <EmailAddress>iso@whitman.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Texas at Austin -->
+<EntityDescriptor entityID="https://idp.its.utexas.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.utexas.edu/its/helpdesk/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utexas.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas at Austin</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Logon service for The University of Texas at Austin</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utsystem.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="153" xml:lang="en">https://idm.utsystem.edu/images/UTAus.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 935264466451937119111541195131830698449081126297, expires on Sun Apr 16 12:05:18 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.its.utexas.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.its.utexas.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.its.utexas.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.its.utexas.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.its.utexas.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.its.utexas.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utexas.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 935264466451937119111541195131830698449081126297, expires on Sun Apr 16 12:05:18 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.its.utexas.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.its.utexas.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas at Austin</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas at Austin</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.utexas.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>U.T. Austin Shibboleth Team</GivenName>
+ <EmailAddress>shibboleth@utlists.utexas.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>U.T. Austin Shibboleth Team</GivenName>
+ <EmailAddress>shibboleth@utlists.utexas.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>U.T. Austin Shibboleth Team</GivenName>
+ <EmailAddress>shibboleth@utlists.utexas.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>U.T. Austin Shibboleth Team</GivenName>
+ <EmailAddress>shibboleth@utlists.utexas.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://login.lite.isora.saltycloud.com/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://login.lite.isora.saltycloud.com/saml/discover" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UT Austin Saltycloud</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Saltycloud Security Apps</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.saltycloud.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.saltycloud.com/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="101" width="397" xml:lang="en">https://www.saltycloud.com/wp-content/uploads/2017/05/SC-Horizontal-White-Small.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17224108000384058840, expires on Wed Apr 28 16:14:22 2027 GMT -->
+ <ds:X509Certificate>
+MIIEWzCCA0OgAwIBAgIJAO8IUvgX2wXYMA0GCSqGSIb3DQEBCwUAMIHDMQswCQYD VQQGEwJVUzEOMAwGA1UECAwFVGV4YXMxDzANBgNVBAcMBkF1c3RpbjEmMCQGA1UE CgwdVW5pdmVyc2l0eSBvZiBUZXhhcyBhdCBBdXN0aW4xJDAiBgNVBAsMG0luZm9y bWF0aW9uIFNlY3VyaXR5IE9mZmljZTEhMB8GA1UEAwwYdXRleGFzLnN0YWNoZS5z YXdsdHkuY29tMSIwIAYJKoZIhvcNAQkBFhNzZWN1cml0eUB1dGV4YXMuZWR1MB4X DTE3MDQyODE2MTQyMloXDTI3MDQyODE2MTQyMlowgcMxCzAJBgNVBAYTAlVTMQ4w DAYDVQQIDAVUZXhhczEPMA0GA1UEBwwGQXVzdGluMSYwJAYDVQQKDB1Vbml2ZXJz aXR5IG9mIFRleGFzIGF0IEF1c3RpbjEkMCIGA1UECwwbSW5mb3JtYXRpb24gU2Vj dXJpdHkgT2ZmaWNlMSEwHwYDVQQDDBh1dGV4YXMuc3RhY2hlLnNhd2x0eS5jb20x IjAgBgkqhkiG9w0BCQEWE3NlY3VyaXR5QHV0ZXhhcy5lZHUwggEiMA0GCSqGSIb3 DQEBAQUAA4IBDwAwggEKAoIBAQCqtP1QnRYlu9G+05iXts9BiTHPlHewR8rGIa8X 2urDWWyRf2okXKgNoK9hCwgAJDNyFwgZsB/yMzduPYZQqefnEdtsL9zblzxlCOAY SwGOP/dxi5Dn+7AaCS/7hlDdV/a0f0pgVygjCFNT/DumBA88PZu/+vhd2gqbeW4e 6/7/GehcWA7tnpIQz69HmTEHy9VlVFsk2VAFRMXJ4QdhhldjgyToj4AoJu5MRhj5 Wn4HycjL5HtOoXFCWMl8do7Dd8A0DBS54gX4J/cBrMTdncLHPoX01OLHwu6IoU1v lWnRkuhVQ26+5zcHKEnGFAk2GKyRLHCamskHp/nIWZCKDFG1AgMBAAGjUDBOMB0G A1UdDgQWBBRlJudqkrslm0IxLp93GNnUYzljRjAfBgNVHSMEGDAWgBRlJudqkrsl m0IxLp93GNnUYzljRjAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAZ L8mkIOu0+LpYylESUy/VjvB3OTa0fK9k5hdWB/FIP2RhfEHcSutcN8OU0rraaHnH N/iT6FeCxpx3dWzn6CRqKOxw9bFOHVia4WRxOe9DwHDqltYKLl7TqgUllCrdRGeF jSbIB8kglgDNCxTifbawDM3jOWZzJACxTrxD+A4GqhgrgBxsDBIWy2jPMUZH1Cti djIaNVLFQpLOZVYmqyaAfWPJyZT6T850rDZ91EUWDxTGkBjHw4iarGLzOOqHoxcK yirSssxQsi/RuOTisBNiPXJbYZ5Jwkuij/ILknbC/YMcc06xHSWi7IpvdAMiIqzg eNCSj5miSyYp4/1qaYSN
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.lite.isora.saltycloud.com/saml/consume" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UT Austin Saltycloud</ServiceName>
+ <ServiceDescription xml:lang="en">Saltycloud Security Apps</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas at Austin</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas at Austin</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.utexas.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jason Phelps</GivenName>
+ <EmailAddress>mute@utexas.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jason Phelps</GivenName>
+ <EmailAddress>mute@utexas.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jason Phelps</GivenName>
+ <EmailAddress>mute@utexas.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- San Francisco State University -->
+<EntityDescriptor entityID="https://idp.sfsu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sfsu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">San Francisco State University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://hr.sfsu.edu/Labor_Compliance_ProfDev/emp_relations/hr_Directives/P202</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="80" xml:lang="en">https://www.sfsu.edu/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 601360562168917016067484663509425922728323527717, expires on Sat Jan 12 17:58:49 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.sfsu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.sfsu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.sfsu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.sfsu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.sfsu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.sfsu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sfsu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 601360562168917016067484663509425922728323527717, expires on Sat Jan 12 17:58:49 2030 GMT -->
+ <ds:X509Certificate>
+MIIDGzCCAgOgAwIBAgIUaVXwsxeZ7HtpgzDRqkb/SXmxNCUwDQYJKoZIhvcNAQEF
+BQAwFzEVMBMGA1UEAxMMaWRwLnNmc3UuZWR1MB4XDTEwMDExMjE3NTg0OVoXDTMw
+MDExMjE3NTg0OVowFzEVMBMGA1UEAxMMaWRwLnNmc3UuZWR1MIIBIjANBgkqhkiG
+9w0BAQEFAAOCAQ8AMIIBCgKCAQEAnM2TW44FPEMlaZShdBub38iLLGtpvvtTZVvC
+tLo6xRQx0YCPYIQua2hxjf5lYFMe2KlwehxuCfujsTbegBX8TNg86NaN2s5iTFk7
+Q7BKY0o1UGEHhmELKZx/BVSH1AB0qwk1ZF9jGyynTITRwRGsr1yLvFM3aTH1tB4s
+iMpTTp7U4HfWcfCsAepxVJw8o8Nvgujgi6E8Mh4emTz+PdNmx0cgpiu7EpvruUEk
+ELlHifyFRhCCBUeOtxgsJXvXgqIYxLlxcz7aGnsylTCgX8fN2WABkJte90Cv06EU
+mkCnB4x8pKLxSfVkLDRDImpqPwnTjmizD6neSRQ5ano4qdAm9wIDAQABo18wXTA8
+BgNVHREENTAzggxpZHAuc2ZzdS5lZHWGI2h0dHBzOi8vaWRwLnNmc3UuZWR1L2lk
+cC9zaGliYm9sZXRoMB0GA1UdDgQWBBT7bbal9a/eJjoYsQd6Stdkk9D6uTANBgkq
+hkiG9w0BAQUFAAOCAQEAB2UmDPQkEVR8YPNCUZS2+XjA5Pw7vdswtZpqLbN4x2RG
+AFnaUFs4Qw5/9RScVOdfuSKjbB32LSJzOTLUc2LA2zUhAcieprD9wBcW2gIVnpPC
+PQxMSI7vD7YuF6erW/qFh+gZwBod/PPmP30wy4uDAcWfW09f79wWv67v8ePXS/PA
+Ww8M8pNXffLcYo8NAdTY1ZddhYsqcAduFzL4Q0u/+QpV4K2qpMOK57sJ/4GuI0i4
+TF+IPVqP9ibO/PX7scYZDBm8wGCQ3G3UwADAQxJlSTJzyP7PthgH3ublYb3IbrY6
+OQKTDUHTSx//VpESlGrhleDG/BalOfbtxZka2UF05A==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.sfsu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.sfsu.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">San Francisco State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">San Francisco State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sfsu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical support</GivenName>
+ <EmailAddress>systems@sfsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dmitry Vayntrub</GivenName>
+ <EmailAddress>dmitry@sfsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Ameer Basha Nagore</GivenName>
+ <EmailAddress>nagore@sfsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ameer Basha Nagore</GivenName>
+ <EmailAddress>nagore@sfsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Dmitry Vayntrub</GivenName>
+ <EmailAddress>dmitry@sfsu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Texas at Dallas -->
+<EntityDescriptor entityID="https://idp.utdallas.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utdallas.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas at Dallas</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utsystem.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="209" width="565" xml:lang="en">https://idm.utsystem.edu/images/UT_Dallas_tex_flame-1.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 984352061068911148571417346666277305644882731079, expires on Fri Jun 7 20:54:45 2030 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.utdallas.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.utdallas.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.utdallas.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.utdallas.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas at Dallas</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas at Dallas</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.utdallas.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UT Dallas Identity Provider</GivenName>
+ <EmailAddress>identityprovider@utdallas.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UT Dallas Identity Provider</GivenName>
+ <EmailAddress>identityprovider@utdallas.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UT Dallas Identity Provider</GivenName>
+ <EmailAddress>identityprovider@utdallas.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UT Dallas Identity Provider</GivenName>
+ <EmailAddress>identityprovider@utdallas.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Texas at El Paso -->
+<EntityDescriptor entityID="https://shib2.utep.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utep.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas at El Paso</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Logon service for The University of Texas at El Paso</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utsystem.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="75" xml:lang="en">https://idm.utsystem.edu/images/utep-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 412220235691929111021371406101746212484697913744, expires on Mon Apr 29 21:55:35 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib2.utep.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib2.utep.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib2.utep.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib2.utep.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib2.utep.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utep.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 412220235691929111021371406101746212484697913744, expires on Mon Apr 29 21:55:35 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib2.utep.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib2.utep.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas at El Paso</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas at El Paso</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.utep.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gerard Cochrane</GivenName>
+ <EmailAddress>gdcochrane@utep.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Information Security Office</GivenName>
+ <EmailAddress>security@utep.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@utep.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ISO</GivenName>
+ <EmailAddress>security@utep.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Texas Southwestern Medical Center at Dallas -->
+<EntityDescriptor entityID="https://shib2.swmed.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.utsouthwestern.edu/about-us/administrative-offices/information-resources/index.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utsouthwestern.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas Southwestern Medical Center at Dallas</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Logon service for The University of Texas Southwestern Medical Center</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utsystem.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="103" width="75" xml:lang="en">https://idm.utsystem.edu/images/utswmc-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14991885411132139139, expires on Sun Jan 19 01:16:34 2042 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib2.swmed.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib2.swmed.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib2.swmed.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib2.swmed.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib2.swmed.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utsouthwestern.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14991885411132139139, expires on Sun Jan 19 01:16:34 2042 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib2.swmed.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas Southwestern Medical Center at Dallas</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas Southwestern Medical Center at Dallas</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www3.utsouthwestern.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Peter Smith</GivenName>
+ <EmailAddress>Peter.Smith@UTSouthwestern.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Peter Smith</GivenName>
+ <EmailAddress>Peter.Smith@UTSouthwestern.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Peter Smith</GivenName>
+ <EmailAddress>Peter.Smith@UTSouthwestern.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Peter Smith</GivenName>
+ <EmailAddress>Peter.Smith@UTSouthwestern.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Texas at Arlington -->
+<EntityDescriptor entityID="https://idp.uta.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.uta.edu/error" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uta.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas at Arlington</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.uta.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utsystem.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="75" xml:lang="en">https://idm.utsystem.edu/images/UTA-seal.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 66948572088731983116789975865875382203515297903, expires on Sun Jan 20 16:11:02 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.uta.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uta.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uta.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.uta.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas at Arlington</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas at Arlington</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uta.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UTA Shibboleth Administrators</GivenName>
+ <EmailAddress>shibboleth-admin@uta.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jason Hardy</GivenName>
+ <EmailAddress>hardy@uta.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UTA Shibboleth</GivenName>
+ <EmailAddress>shibboleth-admin@uta.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UTA Shibboleth</GivenName>
+ <EmailAddress>shibboleth-admin@uta.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Texas Health Science Center At Houston -->
+<EntityDescriptor entityID="https://shib-idp2.uth.tmc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.uthouston.edu/index/contact-mailing.htm" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uth.tmc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas Health Science Center At Houston</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utsystem.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="182" xml:lang="en">https://idm.utsystem.edu/images/uthsch-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15722086118228622644, expires on Fri Jun 26 20:12:49 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib-idp2.uth.tmc.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-idp2.uth.tmc.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib-idp2.uth.tmc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib-idp2.uth.tmc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib-idp2.uth.tmc.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib-idp2.uth.tmc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uth.tmc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15722086118228622644, expires on Fri Jun 26 20:12:49 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib-idp2.uth.tmc.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-idp2.uth.tmc.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas Health Science Center At Houston</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas Health Science Center At Houston</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uth.tmc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Fagon Istre</GivenName>
+ <EmailAddress>Fagon.M.Istre@uth.tmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>OAC Support</GivenName>
+ <EmailAddress>support@uth.tmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IdM Support</GivenName>
+ <EmailAddress>idm-support@utsystem.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Richard Anselme</GivenName>
+ <EmailAddress>Richard.Anselme@uth.tmc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Texas at San Antonio -->
+<EntityDescriptor entityID="https://sso.it.utsa.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.utsa.edu/oit/oitConnect.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utsa.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas at San Antonio</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Use your myUTSA ID to login to services across the UT System federation, other Universities worldwide, and 3rd party applications affiliated with UTSA.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.utsa.edu/policies/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="54" width="338" xml:lang="en">https://sso.it.utsa.edu/images/utsa-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1174407111689691976372248799273630687600436137527, expires on Fri Jun 18 19:49:22 2032 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.it.utsa.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.it.utsa.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.it.utsa.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas at San Antonio</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas at San Antonio</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.utsa.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark McCoy</GivenName>
+ <EmailAddress>mark.mccoy@utsa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Support - OIT Connect</GivenName>
+ <EmailAddress>oitconnect@utsa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dan Byrd</GivenName>
+ <EmailAddress>dan.byrd@utsa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark McCoy</GivenName>
+ <EmailAddress>mark.mccoy@utsa.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Texas At Tyler -->
+<EntityDescriptor entityID="https://idp.uttyler.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uttyler.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas At Tyler</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Single Signon Service at The University of Texas at Tyler</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utsystem.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="75" xml:lang="en">https://idm.utsystem.edu/images/UTtyler-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1338036271067478197654103820406840731675816507820, expires on Mon Apr 15 20:57:43 2030 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.uttyler.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uttyler.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uttyler.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.uttyler.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uttyler.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1338036271067478197654103820406840731675816507820, expires on Mon Apr 15 20:57:43 2030 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.uttyler.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.uttyler.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas At Tyler</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas At Tyler</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uttyler.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>UT Tyler IT Support</GivenName>
+ <EmailAddress>itsupport@uttyler.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UT Tyler IT Support</GivenName>
+ <EmailAddress>itsupport@uttyler.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UT Tyler IT Support</GivenName>
+ <EmailAddress>itsupport@uttyler.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UT Tyler IT Support</GivenName>
+ <EmailAddress>itsupport@uttyler.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Texas Medical Branch At Galveston -->
+<EntityDescriptor entityID="https://idp.utmb.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utmb.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas Medical Branch At Galveston</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utsystem.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="157" xml:lang="en">https://idm.utsystem.edu/images/utmb-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15732160438286379776, expires on Sat Jun 20 15:00:01 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.utmb.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.utmb.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.utmb.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.utmb.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.utmb.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.utmb.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utmb.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15732160438286379776, expires on Sat Jun 20 15:00:01 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.utmb.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.utmb.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas Medical Branch At Galveston</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas Medical Branch At Galveston</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.utmb.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Rich Thomas</GivenName>
+ <EmailAddress>rcthomas@utmb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rich Thomas</GivenName>
+ <EmailAddress>rcthomas@utmb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Rich Thomas</GivenName>
+ <EmailAddress>rcthomas@utmb.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Texas Health Science Center At San Antonio -->
+<EntityDescriptor entityID="https://shib.uthscsa.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://ims.uthscsa.edu/TechSuppt/HelpDesk.aspx" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uthscsa.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas Health Science Center At San Antonio</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utsystem.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="171" xml:lang="en">https://idm.utsystem.edu/images/uthscsa-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 320071908023492093342270847436429038487984666177, expires on Fri Oct 19 15:50:08 2029 GMT -->
+ <ds:X509Certificate>
+MIIDKzCCAhOgAwIBAgIUOBCFT1ioD0RKc/AB856Jnvb79kEwDQYJKoZIhvcNAQEF
+BQAwGzEZMBcGA1UEAxMQc2hpYi51dGhzY3NhLmVkdTAeFw0wOTEwMTkxNTUwMDha
+Fw0yOTEwMTkxNTUwMDhaMBsxGTAXBgNVBAMTEHNoaWIudXRoc2NzYS5lZHUwggEi
+MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCWW8cEBcuG3QBhlSVu7WSbvxAw
+8QLM51Dpg/QsJvUes6hjZGetH/WV9u6LjlCGc6sVr5uXpd0IFkpvVFikLszqlOrH
+p62jO8uomSAlI5nDjG51HAd2lGYx+aTO+ioc5BU9RnMo/VA6VcBsySGlTbWEbf59
+u87fvyTktNRjPOr5mMztZsrb5twYy3e4XfdFTiWJYIccZvjfsZZOwa7vu+JnfUl2
+M2q2jsO/dgCMk2nIAcYOYKEd5F0exwY4qjFHUCPm8s315I9+RZBPFGVB+Y77Rg2e
+VS4Q+9CoTTFLY2LZ4isR3a0RbBr+2TFqMv0ES0aUt3YC8sqWOvxiIhclvCHXAgMB
+AAGjZzBlMEQGA1UdEQQ9MDuCEHNoaWIudXRoc2NzYS5lZHWGJ2h0dHBzOi8vc2hp
+Yi51dGhzY3NhLmVkdS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQUqadoMe9LA6OA
+NuWMvOkr+fZCuwowDQYJKoZIhvcNAQEFBQADggEBAGWZjR5NFsdiB+IY1eb89+zQ
+txFy3a8Jct9Dv+nRePNOc5YCF0FLx+BRYfc4L0+yGxhAjyq3XlRe7e4YVpQ/Qy0e
+dqFClRLNXYAVXku2/8zkGNVh+wMDpxOiILoKN1wi+wQ8WnnS7iQPiT2h9ypnrvbf
+RDu+MTSSlVM/XbDOUxtoLWV0YnhhFksN6cseeqW5sUK+4pbj9as+PgTLSt+pxLzY
+WNfu12cY6+Qjam6zo6qiYXfqrvqoVvWf971mJWgf7APZqdp5GrLpMqQoa3XSgfQ6
+sZemi2r9GnG7yy/S/oAW5ZJjeHjRkp+4IBAjCVy8XmRkqx9Lbvq/eincPQjhDjQ=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.uthscsa.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.uthscsa.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.uthscsa.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.uthscsa.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.uthscsa.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.uthscsa.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uthscsa.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 320071908023492093342270847436429038487984666177, expires on Fri Oct 19 15:50:08 2029 GMT -->
+ <ds:X509Certificate>
+MIIDKzCCAhOgAwIBAgIUOBCFT1ioD0RKc/AB856Jnvb79kEwDQYJKoZIhvcNAQEF
+BQAwGzEZMBcGA1UEAxMQc2hpYi51dGhzY3NhLmVkdTAeFw0wOTEwMTkxNTUwMDha
+Fw0yOTEwMTkxNTUwMDhaMBsxGTAXBgNVBAMTEHNoaWIudXRoc2NzYS5lZHUwggEi
+MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCWW8cEBcuG3QBhlSVu7WSbvxAw
+8QLM51Dpg/QsJvUes6hjZGetH/WV9u6LjlCGc6sVr5uXpd0IFkpvVFikLszqlOrH
+p62jO8uomSAlI5nDjG51HAd2lGYx+aTO+ioc5BU9RnMo/VA6VcBsySGlTbWEbf59
+u87fvyTktNRjPOr5mMztZsrb5twYy3e4XfdFTiWJYIccZvjfsZZOwa7vu+JnfUl2
+M2q2jsO/dgCMk2nIAcYOYKEd5F0exwY4qjFHUCPm8s315I9+RZBPFGVB+Y77Rg2e
+VS4Q+9CoTTFLY2LZ4isR3a0RbBr+2TFqMv0ES0aUt3YC8sqWOvxiIhclvCHXAgMB
+AAGjZzBlMEQGA1UdEQQ9MDuCEHNoaWIudXRoc2NzYS5lZHWGJ2h0dHBzOi8vc2hp
+Yi51dGhzY3NhLmVkdS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQUqadoMe9LA6OA
+NuWMvOkr+fZCuwowDQYJKoZIhvcNAQEFBQADggEBAGWZjR5NFsdiB+IY1eb89+zQ
+txFy3a8Jct9Dv+nRePNOc5YCF0FLx+BRYfc4L0+yGxhAjyq3XlRe7e4YVpQ/Qy0e
+dqFClRLNXYAVXku2/8zkGNVh+wMDpxOiILoKN1wi+wQ8WnnS7iQPiT2h9ypnrvbf
+RDu+MTSSlVM/XbDOUxtoLWV0YnhhFksN6cseeqW5sUK+4pbj9as+PgTLSt+pxLzY
+WNfu12cY6+Qjam6zo6qiYXfqrvqoVvWf971mJWgf7APZqdp5GrLpMqQoa3XSgfQ6
+sZemi2r9GnG7yy/S/oAW5ZJjeHjRkp+4IBAjCVy8XmRkqx9Lbvq/eincPQjhDjQ=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.uthscsa.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.uthscsa.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas Health Science Center At San Antonio</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas Health Science Center At San Antonio</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uthscsa.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Brian Purcell</GivenName>
+ <EmailAddress>purcell@uthscsa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brian Purcell</GivenName>
+ <EmailAddress>purcell@uthscsa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brian Purcell</GivenName>
+ <EmailAddress>purcell@uthscsa.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Texas of the Permian Basin -->
+<EntityDescriptor entityID="https://shibb.utpb.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.utpb.edu/services/ird" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utpb.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas of the Permian Basin</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utsystem.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="150" xml:lang="en">https://idm.utsystem.edu/images/utpb-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1452526860751213333225141024893888568147994091172, expires on Sat Feb 17 21:34:28 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibb.utpb.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibb.utpb.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibb.utpb.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibb.utpb.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibb.utpb.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utpb.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1452526860751213333225141024893888568147994091172, expires on Sat Feb 17 21:34:28 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibb.utpb.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas of the Permian Basin</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas of the Permian Basin</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.utpb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>SSO Support</GivenName>
+ <EmailAddress>sso_support@utpb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>SSO Support</GivenName>
+ <EmailAddress>sso_support@utpb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>SSO Support</GivenName>
+ <EmailAddress>sso_support@utpb.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Texas M.D. Anderson Cancer Center -->
+<EntityDescriptor entityID="https://shib.mdanderson.org/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mdanderson.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas M.D. Anderson Cancer Center</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utsystem.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="153" xml:lang="en">https://idm.utsystem.edu/images/utmdanderson.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1274831237808065443520383461816809208327989538349, expires on Mon Oct 1 22:46:02 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.mdanderson.org:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.mdanderson.org:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.mdanderson.org/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.mdanderson.org/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.mdanderson.org/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.mdanderson.org/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mdanderson.org</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1274831237808065443520383461816809208327989538349, expires on Mon Oct 1 22:46:02 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.mdanderson.org:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.mdanderson.org:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas M.D. Anderson Cancer Center</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas M.D. Anderson Cancer Center</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.mdanderson.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>MDACC IdM Support</GivenName>
+ <EmailAddress>idm@mdanderson.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>MDACC 4Info</GivenName>
+ <EmailAddress>4info@mdanderson.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>MDACC IDM support</GivenName>
+ <EmailAddress>idm@mdanderson.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>MDACC IDM support</GivenName>
+ <EmailAddress>idm@mdanderson.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Texas Health Science Center At Tyler -->
+<EntityDescriptor entityID="https://infp-shib-01.uthct.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.uthealth.org/about-us/contact-us/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uthct.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas Health Science Center At Tyler</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utsystem.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="59" width="190" xml:lang="en">https://idm.utsystem.edu/images/uthctyler-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 358118681086149777839931347606610334158393258146, expires on Sun Dec 16 15:17:17 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://infp-shib-01.uthct.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://infp-shib-01.uthct.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://infp-shib-01.uthct.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://infp-shib-01.uthct.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://infp-shib-01.uthct.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uthct.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 358118681086149777839931347606610334158393258146, expires on Sun Dec 16 15:17:17 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://infp-shib-01.uthct.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas Health Science Center At Tyler</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas Health Science Center At Tyler</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uthct.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Lawrence Crabb</GivenName>
+ <EmailAddress>lawrence.crabb@uthct.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Lawrence Crabb</GivenName>
+ <EmailAddress>lawrence.crabb@uthct.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Lawrence Crabb</GivenName>
+ <EmailAddress>lawrence.crabb@uthct.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Baylor University -->
+<EntityDescriptor entityID="https://shibboleth-2.baylor.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">baylor.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Baylor University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.baylor.edu/about/index.php?id=90104</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.baylor.edu/images/incommon/baylor_BU-brand-R.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 891575916460207048935946270948187121314969169004, expires on Tue Oct 10 15:51:52 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth-2.baylor.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth-2.baylor.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth-2.baylor.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">baylor.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 891575916460207048935946270948187121314969169004, expires on Tue Oct 10 15:51:52 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth-2.baylor.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth-2.baylor.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Baylor University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Baylor University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.baylor.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Tommy Roberson</GivenName>
+ <EmailAddress>tommy_roberson@baylor.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Becky King</GivenName>
+ <EmailAddress>becky_king@baylor.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Ray Nazzario</GivenName>
+ <EmailAddress>ray_nazzario@baylor.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jon D Allen</GivenName>
+ <EmailAddress>Jon_Allen@baylor.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Carnegie Mellon University -->
+<EntityDescriptor entityID="https://login.cmu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.cmu.edu/error" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">andrew.cmu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Carnegie Mellon University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Carnegie Mellon University Identity Provider</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cmu.edu/policies/information-technology/computing.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="125" width="181" xml:lang="en">https://login.cmu.edu/images/cmu-181x125.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17102902977616877670, expires on Sat Jun 29 19:30:36 2030 GMT -->
+ <ds:X509Certificate>
+MIIDLDCCAhSgAwIBAgIJAO1Zt6Sg0xhmMA0GCSqGSIb3DQEBBQUAMBgxFjAUBgNV
+BAMTDWxvZ2luLmNtdS5lZHUwHhcNMTQwMTIyMTkzMDM2WhcNMzAwNjI5MTkzMDM2
+WjAYMRYwFAYDVQQDEw1sb2dpbi5jbXUuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEA4yIV5lVs9/7jdmRTi23AINTzGQTrL+p8EXmV1iL48YAZ36T+
+xnDpTXt2RDaioI34/P9vHYpSKY6C5gDNyXGQZYTrgJQHQRgJAGTsXshYoDeBboZZ
+9ax+7m86rKqmHZAprHALONubY0UtPDEGQKdMeeetAUAOh8kIKpGvKp96I+4pIT6S
+/p5VtBB80veOK6woqbzU0Qr9q1FbcZfJ6AjG8as9lBa9Si6vc/fGvFrjsJL3+cpv
+ECuyG/yHp9obdwXLgxlQNPtXNeBgclgiaJJE8zWcZBUxWPboVeuC2Jfv7spIOcCy
+KPKTGUlobBoANGHqGMqbK+/7YzQ+J/s/4n0tvwIDAQABo3kwdzAdBgNVHQ4EFgQU
+oZye8kn1Hznd+tCaxJ3elowNIbYwSAYDVR0jBEEwP4AUoZye8kn1Hznd+tCaxJ3e
+lowNIbahHKQaMBgxFjAUBgNVBAMTDWxvZ2luLmNtdS5lZHWCCQDtWbekoNMYZjAM
+BgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQCp51hb/WPVfRtdQNZm6OQj
+8I6HwDGWmu5PzUycJAkD/VYd3wCM1zLwd32LMbxbA2ArKWBstErEsUog94zvMBWy
+AeT3Q5Gyghji0emF0nbZpNjPjE9bXavMbUppXF2/VHbuBtzEMBxIKV53X2et2MMc
+9mnNzZN1rofuIB//W9Fg9IWV5PLVbsvEYI98IkJ5t4JP92/V5p497O8jMj6oLhy7
+mI4FNx0pQnirAvrQxxgFTwVV5SEm87DBYRblUb4ba0yYVSBQg0EVbIb7QEDxHFWb
+zt4+NLolAQAMSQW+SJKf9V7+6+4uhMwpJxQwezzn41u9kGTIg9F8/s0IrgsTlAm3
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.cmu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.cmu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.cmu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.cmu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Carnegie Mellon University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Carnegie Mellon University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cmu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity Services</GivenName>
+ <EmailAddress>identity-services@andrew.cmu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Computing Services Help Center</GivenName>
+ <EmailAddress>it-help@cmu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jeffrey Eaton</GivenName>
+ <EmailAddress>jeaton@andrew.cmu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Garrettt King</GivenName>
+ <EmailAddress>garrettk@andrew.cmu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ISO Incident Response</GivenName>
+ <EmailAddress>iso-ir@andrew.cmu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, Channel Islands -->
+<EntityDescriptor entityID="https://mckinley.csuci.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.csuci.edu/error" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csuci.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, Channel Islands</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.calstate.edu/icsuam/documents/Section8000.pdf#%5B%7B%22num%22%3A70%2C%22gen%22%3A0%7D%2C%7B%22name%22%3A%22XYZ%22%7D%2C52%2C756%2C0%5D</mdui:PrivacyStatementURL>
+ <mdui:Logo height="36" width="218" xml:lang="en">https://www.csuci.edu/img/brand/ci-logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 173038506385546796217821882251074643115874878471, expires on Sat Dec 15 14:35:42 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mckinley.csuci.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mckinley.csuci.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://mckinley.csuci.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mckinley.csuci.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csuci.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 173038506385546796217821882251074643115874878471, expires on Sat Dec 15 14:35:42 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://mckinley.csuci.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mckinley.csuci.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, Channel Islands</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, Channel Islands</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.csuci.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Pedro Rivas</GivenName>
+ <EmailAddress>iam@csuci.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Neal Fisch</GivenName>
+ <EmailAddress>infosec@csuci.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Herb Aquino</GivenName>
+ <EmailAddress>herb.aquino@csuci.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Arkansas for Medical Sciences -->
+<EntityDescriptor entityID="https://shibboleth.uams.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uams.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Arkansas for Medical Sciences</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://uamshealth.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="101" width="120" xml:lang="en">https://shibboleth.uams.edu/idp/images/uamsmobile-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1, expires on Sun Jan 19 20:20:19 2020 GMT -->
+ <ds:X509Certificate>
+MIIF6DCCA9ACAQEwDQYJKoZIhvcNAQEFBQAwgbkxCzAJBgNVBAYTAlVTMREwDwYD
+VQQIEwhBcmthbnNhczEUMBIGA1UEBxMLTGl0dGxlIFJvY2sxNDAyBgNVBAoTK1Vu
+aXZlcnNpdHkgb2YgQXJrYW5zYXMgZm9yIE1lZGljYWwgU2NpZW5jZXMxCzAJBgNV
+BAsTAklUMRwwGgYDVQQDExNzaGliYm9sZXRoLnVhbXMuZWR1MSAwHgYJKoZIhvcN
+AQkBFhFrYXBvd2VsbEB1YW1zLmVkdTAeFw0xMDAxMjEyMDIwMTlaFw0yMDAxMTky
+MDIwMTlaMIG5MQswCQYDVQQGEwJVUzERMA8GA1UECBMIQXJrYW5zYXMxFDASBgNV
+BAcTC0xpdHRsZSBSb2NrMTQwMgYDVQQKEytVbml2ZXJzaXR5IG9mIEFya2Fuc2Fz
+IGZvciBNZWRpY2FsIFNjaWVuY2VzMQswCQYDVQQLEwJJVDEcMBoGA1UEAxMTc2hp
+YmJvbGV0aC51YW1zLmVkdTEgMB4GCSqGSIb3DQEJARYRa2Fwb3dlbGxAdWFtcy5l
+ZHUwggIiMA0GCSqGSIb3DQEBAQUAA4ICDwAwggIKAoICAQD5Hc8JIuSngcQzhmkZ
+hjJy5R1d/7zlBNEHuBrHw21UE1y7lpVAJUAk1wDj4twxLjrkzTuWcClvr+8DU+ov
+Kvd8as3UmxcLtUdzpgDPGNggLyyNn5kdJP0Ds0eQ7RzIVMOq4tU87eL0TjIFY6Kg
+4898Now4GKkcb+D13d+a3mXWSUAi1HfnUtKoAwZIj1awc/P7C5lO+sq+rgB4+EAl
+TcjB+vS1puUbk+eKBLWfp4iQfwpmRVtTRhQT/fDxvvebbW/in2GoRUDLHsgkxLLk
+cIVPw965w3bek93EOj/nJeZ8FtGgByQhIONOyXWgLgIzSb6q+r0aO7cGYOeTD2fd
+ckJxFIu6lrk25pdWE7heUCwmFiOpG5i4Dn/Zyfbk5Mf2rrEOimzNLQGMXoXrSo2x
+w8Md5hQTa2hgkEhOAqYCYVeZEkpPJkj9yeYvnYF1pOvzRvUVbje93SV9Mp1Umt4A
+kmGR7PWBYnRO+ibspy5KTt2wZvwm8Nnz9FMa4KY93/HdS55OYPzUZ0U6J1Qb66Co
+jjD0/7DAKNWyP2rDxor1HAP94tYwkkM5N/nmGh7rp5/ky0UYN46dVruLozO6CvC0
+HL4Jv3oAByDM3mA9zEWUFnPLGSel87N6Bghp7y+NSbop6QxDThgKJom3BZdoFrRd
+IVpTEW1a4Bkx0n4/HN+wVSuaiQIDAQABMA0GCSqGSIb3DQEBBQUAA4ICAQAVSKZp
+WRiiI/GMwP8J1qLpPYps9GAg8K3SSamNTZjFb4Bx1U9BX2oVfhFzWUHlkEZ4I9Kn
+pHy1DoajsUMXGihIAW7nE4QB7Scg0/j72qWD8RTYJf45LOMmYjwaFzh6nx8ZW8nr
+jQFlZ3FZqrdxRlc09QGj+/1EAB8zsl1TwY5LLHKXmxrrzxgcjlEJQj5W1QsxY+cp
+qR7U2FTIUHWPYIuk32j+4D0cADEgSPRoWQvhQ4yv6ObXnnysmQyL80vMy4qWRkQW
+EZzValhP7+c1HlX/3ZFE5oyfa4MIArxQ2cD6wCxhGLauMOCAGkWw2OBSTsNrAQ9k
+Z5w7ZkB+dkZjTLbMpXEBEjInQraA6daFGpHn0XZWt0yUrPv8yuwrPZPEhCulnCwz
+jPT8ic+thGwdiyXVouxToFoDS+IHHhQXkH4tNTZSVK8g8do5V5mxSJLq2QiySAKj
+8HCKUSg+5YT9hghvD/DZg7AIG7x15WB7tguybmEZ0ZQTMbXfxW8++ennnMv0YB08
+0TcaZVLkzfGqpa7LViMTg+DMOxrbxDPyWwmJYIp1wctIwD/0Mt1GLO24SCpsL0Xi
+/oQmUfmngWJ89KOYIv/FBO1yVwq3LUuwc1bDS+6zYsmOTIdNTjl+HGmq07Nu5IEV
+5CGF3Xf3OCIcIPuFxeF6aJA+h9o82twJq3mwpw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.uams.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.uams.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.uams.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.uams.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uams.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1, expires on Sun Jan 19 20:20:19 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.uams.edu/idp/profile/SAML2/POST/SSO"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Arkansas for Medical Sciences</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Arkansas for Medical Sciences</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uams.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Keith A. Powell</GivenName>
+ <EmailAddress>kapowell@uams.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Steve W. Cochran</GivenName>
+ <EmailAddress>CochranStephenW@uams.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Steve W. Cochran</GivenName>
+ <EmailAddress>CochranStephenW@uams.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, Northridge -->
+<EntityDescriptor entityID="urn:mace:incommon:csun.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csun.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, Northridge</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.csun.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.csun.edu/sites/default/files/500-8025.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="38" width="235" xml:lang="en">https://www.csun.edu/sites/default/themes/csun/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 567589024390665291381070551708329548006115414975, expires on Mon Jul 30 16:11:50 2029 GMT -->
+ <ds:X509Certificate>
+MIIDJzCCAg+gAwIBAgIUY2uSdWZf8iUsvSq94OJMJ4nik78wDQYJKoZIhvcNAQEF
+BQAwGjEYMBYGA1UEAxMPY29kbGV0LmNzdW4uZWR1MB4XDTA5MDczMDE2MTE1MFoX
+DTI5MDczMDE2MTE1MFowGjEYMBYGA1UEAxMPY29kbGV0LmNzdW4uZWR1MIIBIjAN
+BgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvcIJNc9pBDyp7afaRauK/6BaWEj8
+pCNlJew9KniMreB6kFLeKVtMXeV3ucoem+RlsWTyMrfkVEzGOV7o/ONv+lNH+I6E
+wPzL1cNToMY+N7sb/BMAundO5qbVpFclFWkgg8R5fyqv25ropAoXYaMHxpdU4aJq
+wMndxHdQSteaQiLD9n+cEM06hnrxaB0yvl4NBKRgTECNpR4ArxzrRA5DocV3CDCG
+v6OmbDPu5qF2j653JCpoYD/yXr9k0zZA3fc7Od0Jhy8Lcbo3LC/Y+MtBAoipfxts
+q6JAbGAFhaeGr+oaSvMzFsiI63Yrg/Q4+ykRvmOpnX4qAAONHuVFbk+UGQIDAQAB
+o2UwYzBCBgNVHREEOzA5gg9jb2RsZXQuY3N1bi5lZHWGJmh0dHBzOi8vY29kbGV0
+LmNzdW4uZWR1L2lkcC9zaGliYm9sZXRoMB0GA1UdDgQWBBRbdJgHXpfz22+xZ4Zw
+/Xf8fCnARjANBgkqhkiG9w0BAQUFAAOCAQEAc6CsTPazYg64kzcnGU3NHzpz//Fz
+M6BsoqTYeJBlAzyq/n6bTws+Ii1Awf8QDWK8CokJz2z6jFd6RbOpQjA1Eu3P8kK8
+OuW9XQt4u6ovT6ht8oZZr3CRczSLoJG+Y02p0logf00u5NMH6skjkAllYQmcJ+rm
+ECBgb3NgBX2PFRZeC29gH20w5H0eTU9uORUTuINxASL42C48GIOScGawhoQsuoF9
+/OV1ae3LnYM8uqGzgYcC7I4KTxND5pPWdIQxlwoiX7ltroxhFVK74fFW65Hb9vdV
+gQxt3E011CLn6QqiHbbvGZoTTd9MJ1kPsejqryDgepMfD9VX2z+ieVsdgw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 205020018012299770555197594933955967681, expires on Sat Sep 3 23:59:59 2016 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.csun.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.csun.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.csun.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.csun.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.csun.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.csun.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csun.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 567589024390665291381070551708329548006115414975, expires on Mon Jul 30 16:11:50 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 205020018012299770555197594933955967681, expires on Sat Sep 3 23:59:59 2016 GMT -->
+ <ds:X509Certificate>
+MIIFmzCCBIOgAwIBAgIRAJo9a0/2NuQ/0LhXpZXousEwDQYJKoZIhvcNAQELBQAw
+djELMAkGA1UEBhMCVVMxCzAJBgNVBAgTAk1JMRIwEAYDVQQHEwlBbm4gQXJib3Ix
+EjAQBgNVBAoTCUludGVybmV0MjERMA8GA1UECxMISW5Db21tb24xHzAdBgNVBAMT
+FkluQ29tbW9uIFJTQSBTZXJ2ZXIgQ0EwHhcNMTUwOTA0MDAwMDAwWhcNMTYwOTAz
+MjM1OTU5WjCB0DELMAkGA1UEBhMCVVMxDjAMBgNVBBETBTkxMzMwMQswCQYDVQQI
+EwJDQTETMBEGA1UEBxMKTm9ydGhyaWRnZTEeMBwGA1UECRMVMTgxMTEgTm9yZGhv
+ZmYgU3RyZWV0MTAwLgYDVQQKEydDYWxpZm9ybmlhIFN0YXRlIFVuaXZlcnNpdHks
+IE5vcnRocmlkZ2UxHzAdBgNVBAsTFkluZm9ybWF0aW9uIFRlY2hub2xvZ3kxHDAa
+BgNVBAMTE3NoaWJib2xldGguY3N1bi5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IB
+DwAwggEKAoIBAQCLDEDuwl7fPi1w2l9MyC6FpxU1EhRLYLdrRRhmQ+9P6ncZQuKq
+W4jwlUGPx85e6tBdl5zwj5CfpuLFiqjPsqX4mt4tE2xrRFsk5jDSlE5dFAwBjxIH
+ifoNnh0Qj1j9cXQJu7FhTM/Aoz8UG+IwLuIqFLJRkk9ycxuOdD3WCt250G+ptum0
+mUtYuflHSphJRT6JYhQxThcPBAjlmg/nlUWspXcFtMh6ERZMgK0aqyBxs/Vao4sQ
+u7XmrcxSfyIO0FPjanm22HleJp6ZbDi1QhQo7iQiMxcfXI0Smcv0XUhoMOnInDwr
+Slb4BoRtexwOEW978USZA2lpXvSzrDwJpV4/AgMBAAGjggHHMIIBwzAfBgNVHSME
+GDAWgBQeBaN3j2yW4luHS6a0hqxxAAznODAdBgNVHQ4EFgQU0dVlPlTcESZV7N62
+gvYHEK2eq3owDgYDVR0PAQH/BAQDAgWgMAwGA1UdEwEB/wQCMAAwHQYDVR0lBBYw
+FAYIKwYBBQUHAwEGCCsGAQUFBwMCMGcGA1UdIARgMF4wUgYMKwYBBAGuIwEEAwEB
+MEIwQAYIKwYBBQUHAgEWNGh0dHBzOi8vd3d3LmluY29tbW9uLm9yZy9jZXJ0L3Jl
+cG9zaXRvcnkvY3BzX3NzbC5wZGYwCAYGZ4EMAQICMEQGA1UdHwQ9MDswOaA3oDWG
+M2h0dHA6Ly9jcmwuaW5jb21tb24tcnNhLm9yZy9JbkNvbW1vblJTQVNlcnZlckNB
+LmNybDB1BggrBgEFBQcBAQRpMGcwPgYIKwYBBQUHMAKGMmh0dHA6Ly9jcnQudXNl
+cnRydXN0LmNvbS9JbkNvbW1vblJTQVNlcnZlckNBXzIuY3J0MCUGCCsGAQUFBzAB
+hhlodHRwOi8vb2NzcC51c2VydHJ1c3QuY29tMB4GA1UdEQQXMBWCE3NoaWJib2xl
+dGguY3N1bi5lZHUwDQYJKoZIhvcNAQELBQADggEBAF2Cjq42x6LZ/xazRCfLPoN7
+LV8BfSWUqMdR53bme4eIx/CpZ98HtR7lgNTuk7cAMhByFccKE/Lr7sX2N/4EJQos
+BAmuBKvZ3/7MvTjfx2FkVxMGBT1qmhOHjvolCAVMMGQIAiSsooD6oI28fjprU5VH
+5YwAKog+yO9HmAIfFCC5jdfTSC0MpfD+omDfZJSVyz9TYXyMBpuOj3DfIgh5lHfq
+8Okjj9vd1FWidEfxvNmfBLHaTeuEuZTPFKDPYcflZ+z7TYn5C2FqigZ7Bhfdmq8d
+8XdzO4Qjp5GshUVPkDwnH1BoEGJJqA/5dVeSlkvWiwdTvuS1bTalOVKPaG75oRk=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.csun.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.csun.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, Northridge</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, Northridge</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.csun.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Kevin Krzewinski</GivenName>
+ <EmailAddress>kevin.krzewinski@csun.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kevin Krzewinski</GivenName>
+ <EmailAddress>kevin.krzewinski@csun.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kevin Krzewinski</GivenName>
+ <EmailAddress>kevin.krzewinski@csun.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University At Albany, State University of New York -->
+<EntityDescriptor entityID="https://weblogin.albany.edu/shibboleth/idp2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://wiki.albany.edu/x/A4ZvAg" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">albany.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University At Albany, State University of New York</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.albany.edu/its/policies_security_and_privacy.htm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="203" xml:lang="en">https://maenad.csc.albany.edu/incommon/logo_A1_pms269-InCommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 945583294584579829531631703656345574581398508235, expires on Sun Feb 11 19:54:14 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://weblogin.albany.edu:8444/idp2/profile/Artifact" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://weblogin.albany.edu:8444/idp2/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://weblogin.albany.edu/idp2/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://weblogin.albany.edu/idp2/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://weblogin.albany.edu/idp2/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">albany.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 945583294584579829531631703656345574581398508235, expires on Sun Feb 11 19:54:14 2029 GMT -->
+ <ds:X509Certificate>
+MIIDODCCAiCgAwIBAgIVAKWha+CKTeinjttEcaqLm7fQSZLLMA0GCSqGSIb3DQEB
+BQUAMB4xHDAaBgNVBAMTE3dlYmxvZ2luLmFsYmFueS5lZHUwHhcNMDkwMjExMTk1
+NDE0WhcNMjkwMjExMTk1NDE0WjAeMRwwGgYDVQQDExN3ZWJsb2dpbi5hbGJhbnku
+ZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAjAY1R6LqpUcsbpn3
+8AcJW/KtQTyVcdcHmkEeCdW3UNzd6ibmhRFcPVhXwY9Z8jAuHQLjIkPj4QuiaGXI
+lfRJBQkTnkWeGLrHCzZA7/eZ0uJxL+SBf84OiK2jSmLqw6xGAADE8GmcyBpTQe2d
+HDFDbLvsLc3UNs0U/WzIGEE5iPBd33UntVEYezO8vszjdKZr8r4ZRVTeSUe+qkgW
+19ncHiqrbPBT+5qK2j8PaCiFrOjc0ScnsqHkgxr5krBM//SGoFPc+2bClUtbF/ci
+wuNZ3RHxhkyxlwEwkhLyuhr9gpZDYH6mi/SKUXMcXdLBKev13ddXN3Is6JZxagXn
+qZv/cwIDAQABo20wazBKBgNVHREEQzBBghN3ZWJsb2dpbi5hbGJhbnkuZWR1hipo
+dHRwczovL3dlYmxvZ2luLmFsYmFueS5lZHUvaWRwL3NoaWJib2xldGgwHQYDVR0O
+BBYEFC5IsCUVHd9dT/Q7onCX7ItOnehlMA0GCSqGSIb3DQEBBQUAA4IBAQBy+8+Q
+vnDnS010CWPNF76wHA24ka7cX4FsV/+nsUbxCtL9lundZdBfzqTquy5GuF3j96ej
+foXg0Vz9GOn/KtRDDCFz8Gym+8hZdvPQ/XOdxHW1kjb7EbbL/K8dLilUYR9B/IOZ
+AXr4j4M4Qrh3jyxoFP+a4QTkUj/9+bcDPmqwftxaRoUIGcmyRzUvwU5pl227UkNy
+nftVP/rsZZ6nr0wJBZfPbhiBDAuzamzI05QHB+sFskVXB6Z8h2KawwNSrjgc2poj
+QWzZNOuth932vN8p2Lc6iI5v5bC/QSDDBlZ7tl+Uj/ejZC9b9WG/y83RrM333twp
+Kq1D/QWBwg4oa9Zq
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://weblogin.albany.edu:8444/idp2/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://weblogin.albany.edu:8444/idp2/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University At Albany, State University of New York</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University At Albany, State University of New York</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.albany.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Rod Grau</GivenName>
+ <EmailAddress>usg@albany.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Martin Manjak</GivenName>
+ <EmailAddress>infosec@albany.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity and Access Management</GivenName>
+ <EmailAddress>iamsteam@albany.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Identity and Access Management</GivenName>
+ <EmailAddress>iamsteam@albany.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Iowa State University -->
+<EntityDescriptor entityID="https://idp.iastate.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.it.iastate.edu/support/solution/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">iastate.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Iowa State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The Iowa State University of Science and Technology</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.policy.iastate.edu/electronicprivacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="249" width="564" xml:lang="en">https://cdn.theme.iastate.edu/incommon/isu-nameplate.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15809733631748054718, expires on Fri Jan 6 23:09:57 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.iastate.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.iastate.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.iastate.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.iastate.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.iastate.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.iastate.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Iowa State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Iowa State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.iastate.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Iowa State University Shibboleth Technical Team</GivenName>
+ <EmailAddress>shibboleth@iastate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Iowa State University Solution Center</GivenName>
+ <EmailAddress>solution@iastate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Iowa State University InCommon Admins</GivenName>
+ <EmailAddress>incommon-admins@iastate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Iowa State University Security Team</GivenName>
+ <EmailAddress>incommon-security@iastate.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Princeton University -->
+<EntityDescriptor entityID="https://idp.princeton.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">princeton.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Princeton University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://rrr.princeton.edu/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="49" width="49" xml:lang="en">https://www.princeton.edu/favicon.ico</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 285306870299062821967435432909517087784234182588, expires on Tue Oct 30 12:51:39 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.princeton.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.princeton.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.princeton.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.princeton.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.princeton.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">princeton.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 285306870299062821967435432909517087784234182588, expires on Tue Oct 30 12:51:39 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.princeton.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.princeton.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Princeton University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Princeton University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.princeton.edu/index.shtml</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity and Access Maangement</GivenName>
+ <EmailAddress>iam@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity and Access Maangement</GivenName>
+ <EmailAddress>iam@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Office</GivenName>
+ <EmailAddress>infosec@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>OIT Support and Operations Center</GivenName>
+ <EmailAddress>helpdesk@princeton.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wase.princeton.edu/simplesaml/module.php/saml/sp/metadata.php/default-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">WASE</mdui:DisplayName>
+ <mdui:Description xml:lang="en">WASE allows the scheduling of office/advising hour appointments via a web interface. The system can sync appointments into Exchange or Google calendars. It has a reminder system. It supports LTI integration. </mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://wase.princeton.edu/docs/WASE.docx</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://rrr.princeton.edu/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="110" width="341" xml:lang="en">https://wase.princeton.edu/princeton/views/images/waselogo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16498803110319626902, expires on Mon Apr 5 13:20:46 2027 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wase.princeton.edu/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wase.princeton.edu/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wase.princeton.edu/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wase.princeton.edu/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wase.princeton.edu/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">WASE</ServiceName>
+ <ServiceDescription xml:lang="en">WASE allows the scheduling of office/advising hour appointments via a web interface. The system can sync appointments into Exchange or Google calendars. It has a reminder system. It supports LTI integration. </ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Princeton University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Princeton University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.princeton.edu/index.shtml</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Serge Goldstein</GivenName>
+ <EmailAddress>serge@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Serge Goldstein</GivenName>
+ <EmailAddress>serge@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kevin Perry</GivenName>
+ <EmailAddress>perry@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Serge Goldstein</GivenName>
+ <EmailAddress>serge@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Office</GivenName>
+ <EmailAddress>infosec@princeton.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://waseqa.princeton.edu/simplesaml/module.php/saml/sp/metadata.php/default-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">WASEQA</mdui:DisplayName>
+ <mdui:Description xml:lang="en">WASE allows the scheduling of office/advising hour appointments via a web interface. The system can sync appointments into Exchange or Google calendars. It has a reminder system. It supports LTI integration. </mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://waseqa.princeton.edu/docs/WASE.docx</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://rrr.princeton.edu/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="110" width="341" xml:lang="en">https://waseqa.princeton.edu/princeton/views/images/waselogo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18386847408883296876, expires on Wed Apr 8 13:55:48 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://waseqa.princeton.edu/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://waseqa.princeton.edu/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://waseqa.princeton.edu/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://waseqa.princeton.edu/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://waseqa.princeton.edu/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">WASEQA</ServiceName>
+ <ServiceDescription xml:lang="en">WASE allows the scheduling of office/advising hour appointments via a web interface. The system can sync appointments into Exchange or Google calendars. It has a reminder system. It supports LTI integration. </ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Princeton University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Princeton University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.princeton.edu/index.shtml</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Serge Goldstein</GivenName>
+ <EmailAddress>serge@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Serge Goldstein</GivenName>
+ <EmailAddress>serge@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kevin Perry</GivenName>
+ <EmailAddress>perry@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Serge Goldstein</GivenName>
+ <EmailAddress>serge@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Office</GivenName>
+ <EmailAddress>infosec@princeton.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wasp.princeton.edu/simplesaml/module.php/saml/sp/metadata.php/default-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">WASP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">WASP allows the scheduling of office/advising hour appointments via a web interface. The system can sync appointments into Exchange of Google calendars. It has a reminder system. It supports LTI integration. </mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://wasp.princeton.edu/docs/WASP.docx</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://rrr.princeton.edu/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="110" width="341" xml:lang="en">https://wasp.princeton.edu/princeton/views/images/wasplogo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17603727880406426809, expires on Wed Aug 13 18:18:08 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wasp.princeton.edu/simplesaml/module.php/saml/sp/saml2-logout.php/default-sp"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wasp.princeton.edu/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wasp.princeton.edu/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wasp.princeton.edu/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wasp.princeton.edu/simplesaml/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">WASP</ServiceName>
+ <ServiceDescription xml:lang="en">WASP allows the scheduling of office/advising hour appointments via a web interface. The system can sync appointments into Exchange of Google calendars. It has a reminder system. It supports LTI integration. </ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Princeton University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Princeton University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.princeton.edu/index.shtml</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Serge Goldstein</GivenName>
+ <EmailAddress>serge@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Serge Goldstein</GivenName>
+ <EmailAddress>serge@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kevin Perry</GivenName>
+ <EmailAddress>perry@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Serge Goldstein</GivenName>
+ <EmailAddress>serge@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Office</GivenName>
+ <EmailAddress>infosec@princeton.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Augsburg College -->
+<EntityDescriptor entityID="https://sso.augsburg.edu/simplesaml/saml2/idp/metadata.php">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">augsburg.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Augsburg University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Augsburg University Identity Service</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://web.augsburg.edu/it/policies/pdf/IT_Privacy_Statement.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="114" width="114" xml:lang="en">https://sso.augsburg.edu/apple-touch-icon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16091709338502049302, expires on Sun Aug 27 12:55:15 2023 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.augsburg.edu/simplesaml/saml2/idp/SingleLogoutService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.augsburg.edu/simplesaml/saml2/idp/SSOService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.augsburg.edu/simplesaml/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Augsburg College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Augsburg College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.augsburg.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Josef Fortier</GivenName>
+ <EmailAddress>fortier@augsburg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Matthew Schornstein</GivenName>
+ <EmailAddress>schornst@augsburg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Dan Malvin</GivenName>
+ <EmailAddress>malvin@augsburg.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Cincinnati Main Campus -->
+<EntityDescriptor entityID="https://login.uc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.uc.edu/ucit/helpdesk.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Cincinnati Main Campus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://kb.uc.edu/KBArticles/UCIDM-ShibbolethSSO.aspx</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uc.edu/content/dam/uc/trustees/docs/rules_10/10-43-11.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="153" width="270" xml:lang="en">https://login.uc.edu/idp/images/UC_logo-incommon-official.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11271836013311236177, expires on Sun Feb 28 13:01:17 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.uc.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.uc.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.uc.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.uc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.uc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.uc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.uc.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11271836013311236177, expires on Sun Feb 28 13:01:17 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.uc.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.uc.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Cincinnati Main Campus</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Cincinnati Main Campus</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UC Identity Management</GivenName>
+ <EmailAddress>shibboleth@uc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UC Identity Management</GivenName>
+ <EmailAddress>shibboleth@uc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UC Identity Management</GivenName>
+ <EmailAddress>shibboleth@uc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UC Office of Information Security</GivenName>
+ <EmailAddress>infosec@uc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Loyola University of Chicago -->
+<EntityDescriptor entityID="https://shibidp.luc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">luc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Loyola University of Chicago</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.luc.edu/gdpr/policies/gdprprivacynotice/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="330" width="450" xml:lang="en">https://www.luc.edu/media/lucedu/universitymarketingcommunication/vertical-3color.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9558126917568788695, expires on Sat May 10 19:38:34 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibidp.luc.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibidp.luc.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibidp.luc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibidp.luc.edu/idp/profile/Shibboleth/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibidp.luc.edu/idp/profile/Shibboleth/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">luc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9558126917568788695, expires on Sat May 10 19:38:34 2036 GMT -->
+ <ds:X509Certificate>
+MIIDBzCCAe+gAwIBAgIJAISlScpXyXjXMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV
+BAMMD3NoaWJpZHAubHVjLmVkdTAeFw0xODA1MTUxOTM4MzRaFw0zNjA1MTAxOTM4
+MzRaMBoxGDAWBgNVBAMMD3NoaWJpZHAubHVjLmVkdTCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBALDfw0PIitM8GhYsWpJdPsjpsQ4qD2bsQlci1uXM35GF
+7TDqbg94KcVtz4iJHVpdrzN3OEEta1mDWNW1OopRwI9i4Jt3naQnBC5teOixEgvG
+zfQjeLJUVdGzQP+vFCCel/6yTy79fnoZLOViXZDfzs4O88FbdK0eZLw9aK3/y2B5
+4Jc07fT7niu8RtmzSUQDA39MNJVECPK55wLmkbfA8+vmjssbbdPYJXUpzr2Hjclw
+Hg1+f6Lfw42TS0bBN5ZDrwKVPbJR8szMRk9jtp4Of+tnMgID5ygvqoFiaZ2lWgBx
+bF/nIbwyyI+D2nAODQZiN+KyuHWC5KA9yRtlBOm/9K8CAwEAAaNQME4wHQYDVR0O
+BBYEFBYEUpK1xIxp5bF4HPWZ6/OACzo4MB8GA1UdIwQYMBaAFBYEUpK1xIxp5bF4
+HPWZ6/OACzo4MAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAAzqn+SD
+iTxbd7hudO2Ru3sE078aG6wl2dlZpX1V3x1I9b+a4/xp/BhDXjC/0iiLmWKLQmpQ
+nQCIadDkM5a66+jMbUSK5GnAFNrBYk0v7ACwnvYDnydpAXArCUIsDfPdlYAhGYgf
+sGd3dEZYRzQGLyIDswe/VOIvXi5sbmQeUPPAX5szjBneEZ68IJHLBUBeNKnWfadT
+LF+cltZuv9LDh7FJ3dYSTEapxDfWWKlD557EBGTRBkIDVBNYeWEdqIMSoGpjmjYd
+YXAkQ/YjGe5ha865QKY6jQi3ZWaen0em2kdQaQnuJnUvVd5U3mKTbtDQchuuStLN
+XdUi9o0glrHBDWc=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibidp.luc.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibidp.luc.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Loyola University of Chicago</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Loyola University of Chicago</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.luc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>ITS</GivenName>
+ <EmailAddress>dns-admin@luc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>ITS</GivenName>
+ <EmailAddress>dns-admin@luc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS</GivenName>
+ <EmailAddress>dns-admin@luc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- BioOne, Inc. -->
+<EntityDescriptor entityID="https://www.bioone.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">BioOne Complete</mdui:DisplayName>
+ <mdui:Description xml:lang="en">BioOne Complete is the full-text database of scientific journals in the biological, ecological, and environmental sciences from BioOne.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.bioone.org/action/showPublications?type=byAlphabet</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.bioone.org/page/privacy_policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="57" width="300" xml:lang="en">https://www.bioone.org/templates/jsp/_style2/_AP/_bioone/images/bioOne_splash_logo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11013350645670959019, expires on Mon Oct 19 00:29:15 2020 GMT -->
+ <ds:X509Certificate>
+MIIDoTCCAomgAwIBAgIJAJjXSA+eCVerMA0GCSqGSIb3DQEBBQUAMIGPMQswCQYD
+VQQGEwJVUzETMBEGA1UECBMKQ2FsaWZvcm5pYTEUMBIGA1UEBxMLU2FudGEgQ2xh
+cmExHTAbBgNVBAoTFEF0eXBvbiBTeXN0ZW1zLCBJbmMuMR0wGwYDVQQLExRBdHlw
+b24gU3lzdGVtcywgSW5jLjEXMBUGA1UEAxMOd3d3LmJpb29uZS5vcmcwHhcNMTAx
+MDIyMDAyOTE1WhcNMjAxMDE5MDAyOTE1WjCBjzELMAkGA1UEBhMCVVMxEzARBgNV
+BAgTCkNhbGlmb3JuaWExFDASBgNVBAcTC1NhbnRhIENsYXJhMR0wGwYDVQQKExRB
+dHlwb24gU3lzdGVtcywgSW5jLjEdMBsGA1UECxMUQXR5cG9uIFN5c3RlbXMsIElu
+Yy4xFzAVBgNVBAMTDnd3dy5iaW9vbmUub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAq9l9fHkQV6d18ZBMtv1oAsyV2spBF4o5FCta4jLiVrcx6TAh
+eY+1djxN0smEpiflND9YyncINW/QxTr4VkJaRrURGalwPYUnEDMbUeDCZGdjmuHn
+ijesTi34lBnjz8FeIIoB/1YlCSVffVxxOLw6AhVDuBixH+n1MK3AvMaV7+6k7iar
+59570440WqpQMpWVJm+a1EgyS4WF5SjW8PI3VDfrJCC76Qg6YCKXhdO56sFZ8fOe
+m+6nUdkZRSUEDZ6jG9nF2rFKdxrlTCEpVXrSViiuAGrwcNXxIF07M/cdW4gh2J1n
+anOVWYhax9gL0PPXptkCjQxiJKK8oKF/qU5YvQIDAQABMA0GCSqGSIb3DQEBBQUA
+A4IBAQCXFBWSkhl6SXKrjBTJGR2Ed7QdRhhZJFgglA0NZJ0eGHE0tTmF34Htgr+D
+rjxXukFop7y+zuEg51CCNExeiIn8boC6/Bi1N5wnXKgBxejuF5WTRqua7PehfcUk
+sAcyQfiT42U4qL/Y5cCVvVjyjOn4vB9QInt6w0t2JB0KhdkTlzHPFGNhIr6JielL
+OysB8mqF8SvNWTA8FXtsoj/xMzTZmOhbEr6LWeCRsATxTEnfts9XKrnvr6QvLzOp
+oznstpE1RBJHa+apJ8N1d+K2N9Ki2S2GYGl2g9Z82UGSvirtJTnZY6TANrYKFKnd
+WjtPYywjxsAyOSn7irW8nyLDn8sA
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.bioone.org/action/saml2post" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.bioone.org/action/saml2artifact" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.bioone.org/action/samlACS" index="3"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">BioOne Complete</ServiceName>
+ <ServiceDescription xml:lang="en">BioOne Complete is the full-text database of scientific journals in the biological, ecological, and environmental sciences from BioOne.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true">
+ <saml:AttributeValue>urn:mace:dir:entitlement:common-lib-terms</saml:AttributeValue>
+ </RequestedAttribute>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">BioOne, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">BioOne, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.bioone.org</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>SSO-Support@atypon.com</GivenName>
+ <EmailAddress>SSO-Support@atypon.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>BioOne Help Desk</GivenName>
+ <EmailAddress>helpdesk@bioone.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Di Natale</GivenName>
+ <EmailAddress>mike@bioone.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Di Natale</GivenName>
+ <EmailAddress>mike@bioone.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California Institute of Technology -->
+<EntityDescriptor entityID="https://idp.caltech.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.caltech.edu/idp/profile/error" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">caltech.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California Institute of Technology</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://hr.caltech.edu/policies/AUP</mdui:PrivacyStatementURL>
+ <mdui:Logo height="103" width="240" xml:lang="en">https://idp.caltech.edu/idp/images/105-caltech_logo-orange_rgb.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 64370492486943557358580814171600805460449288146, expires on Mon Feb 4 00:38:14 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.caltech.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.caltech.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.caltech.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.caltech.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.caltech.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.caltech.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.caltech.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">caltech.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 64370492486943557358580814171600805460449288146, expires on Mon Feb 4 00:38:14 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.caltech.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.caltech.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California Institute of Technology</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California Institute of Technology</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.caltech.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Zailo Leite</GivenName>
+ <EmailAddress>zleite@caltech.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>RuthAnne Bevier</GivenName>
+ <EmailAddress>ruthanne@caltech.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Caltech Information Security</GivenName>
+ <EmailAddress>security@caltech.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Atlas Systems, Inc. -->
+<EntityDescriptor entityID="https://brown.aeon.atlas-sys.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://brown.aeon.atlas-sys.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Brown University - Aeon</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.atlas-sys.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="217" width="1251" xml:lang="en">https://static1.squarespace.com/static/586d3c61725e2524685ac5b9/t/586fabe33e00be70aef56668/1528205345335/?format=1500w</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10091661497548973358, expires on Sun Jun 6 18:27:14 2027 GMT -->
+ <ds:X509Certificate>
+MIIDHDCCAgSgAwIBAgIJAIwMyKoC5KUuMA0GCSqGSIb3DQEBCwUAMCMxITAfBgNV
+BAMMGGJyb3duLmFlb24uYXRsYXMtc3lzLmNvbTAeFw0xNzA2MDgxODI3MTRaFw0y
+NzA2MDYxODI3MTRaMCMxITAfBgNVBAMMGGJyb3duLmFlb24uYXRsYXMtc3lzLmNv
+bTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAOrS2E+5xqtvcwEjDAqb
+C5WBhBLZg/xgflqXDI8tjkt2j5mub7xxHSAJxV4jPYN02Q1wUD70904iNPhXWGWl
+G/GcKiSu3sKzHB/+E9//9MKexmcsjgX1tpoYA0eNFpO+/DUqA3TWqZXg9m1jSKb0
+djOd1Hz4XzBqBZup5Di7GCTolVbIROKS6E0UGIwI61DazcWo09gvrMdXLtCxtebM
+UagKSjB3WYixk4HJh0d6tUZjmGScLSZJdadiJveHFpXbe8nSjEo8d50MjxnhRmV9
+IU/rwpPGjyDluCmHeUsqEzdrRXA3F5Q3FsP6Ff+fjXzg3Pm+mH/2Qw4uI7GeEddg
+GEkCAwEAAaNTMFEwHQYDVR0OBBYEFC1NA8GtP94y53loPBH9G7VGkQMfMB8GA1Ud
+IwQYMBaAFC1NA8GtP94y53loPBH9G7VGkQMfMA8GA1UdEwEB/wQFMAMBAf8wDQYJ
+KoZIhvcNAQELBQADggEBAJVGtRui0g6tIvTeLXgVVTjY8uzM3vkpSIrKnNvrPk2k
++O8GOgHRKYoVuxpRBSq17z9dGAOJviPX2PyLTmj5z4LMYEDBdmhsHZmYb3WNymJm
+yTiTgXoRELEQZmU6KBML707XfRliaQOvtTGI5iAJ1Gwpe4WgZ+/x4HxmNd+MNuzX
+UVzDVJpARLBMkOOv2Gj32HljYKeWLV1Bpkdg9iRLnjCPmobQBIUgJOdOx5Pc/eqw
+HaZJo0u3rvnxhFQPPAmUXCvTq+RwrVdrXiK8GFjDpl9m00ZQmDvzGIbqU+zvF7Jl
+kGuwVfxSJEWgxvxntKcOTI12BTlzo3ES8TwFo5zk6Ig=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://brown.aeon.atlas-sys.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://brown.aeon.atlas-sys.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://brown.aeon.atlas-sys.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://brown.aeon.atlas-sys.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Atlas Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Atlas Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.atlas-sys.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Curtis Poston</GivenName>
+ <EmailAddress>cposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kathy Poston</GivenName>
+ <EmailAddress>kposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nathan Tefft</GivenName>
+ <EmailAddress>ntefft@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Schneider</GivenName>
+ <EmailAddress>dschneider@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://georgetown.aeon.atlas-sys.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://aeon.library.georgetown.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Georgetown University - Aeon</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.atlas-sys.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="217" width="1251" xml:lang="en">https://static1.squarespace.com/static/586d3c61725e2524685ac5b9/t/586fabe33e00be70aef56668/1528205345335/?format=1500w</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12118480050005422352, expires on Mon Aug 2 18:21:16 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aeon.library.georgetown.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aeon.library.georgetown.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aeon.library.georgetown.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://aeon.library.georgetown.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Atlas Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Atlas Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.atlas-sys.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Curtis Poston</GivenName>
+ <EmailAddress>cposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kathy Poston</GivenName>
+ <EmailAddress>kposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>David G. Carlson</GivenName>
+ <EmailAddress>dcarlson@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://louis.hosts.atlas-sys.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://louis.hosts.atlas-sys.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LOUIS - ILLiad</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.atlas-sys.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="217" width="1251" xml:lang="en">https://static1.squarespace.com/static/586d3c61725e2524685ac5b9/t/586fabe33e00be70aef56668/1528205345335/?format=1500w</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11593234997793230329, expires on Mon Jan 4 15:02:16 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://louis.hosts.atlas-sys.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://louis.hosts.atlas-sys.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://louis.hosts.atlas-sys.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://louis.hosts.atlas-sys.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Atlas Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Atlas Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.atlas-sys.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Curtis Poston</GivenName>
+ <EmailAddress>cposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kathy Poston</GivenName>
+ <EmailAddress>kposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nathan Tefft</GivenName>
+ <EmailAddress>ntefft@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Schneider</GivenName>
+ <EmailAddress>dschneider@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nyu.aeon.atlas-sys.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://aeon.library.nyu.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">New York University - Aeon</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.atlas-sys.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="217" width="1251" xml:lang="en">https://static1.squarespace.com/static/586d3c61725e2524685ac5b9/t/586fabe33e00be70aef56668/1528205345335/?format=1500w</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12401661033661834593, expires on Mon Aug 30 15:29:56 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aeon.library.nyu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aeon.library.nyu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aeon.library.nyu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://aeon.library.nyu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Atlas Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Atlas Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.atlas-sys.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Curtis Poston</GivenName>
+ <EmailAddress>cposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kathy Poston</GivenName>
+ <EmailAddress>kposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nathan Tefft</GivenName>
+ <EmailAddress>ntefft@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Schneider</GivenName>
+ <EmailAddress>dschneider@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://rochester.hosts.atlas-sys.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://illiad.lib.rochester.edu/Shibboleth.sso" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Rochester - ILLiad</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.atlas-sys.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="217" width="1251" xml:lang="en">https://static1.squarespace.com/static/586d3c61725e2524685ac5b9/t/586fabe33e00be70aef56668/1528205345335/?format=1500w</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16034722441083034559, expires on Mon Jan 4 14:32:15 2027 GMT -->
+ <ds:X509Certificate>
+MIIDJjCCAg6gAwIBAgIJAN6GxxrEvRu/MA0GCSqGSIb3DQEBCwUAMCgxJjAkBgNV
+BAMMHXJvY2hlc3Rlci5ob3N0cy5hdGxhcy1zeXMuY29tMB4XDTE3MDEwNjE0MzIx
+NVoXDTI3MDEwNDE0MzIxNVowKDEmMCQGA1UEAwwdcm9jaGVzdGVyLmhvc3RzLmF0
+bGFzLXN5cy5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC23Y1H
+9ThNKnzP/vAvVjjgDvf6AnFhJDE7KLGTXIv3a0kRiAil1JxESQ5bnVLR5kfKax/B
+4p10o8OOADyjGRkj4fRxrXTUv79CWs/rQOwgT/7wRpTc4gDPibOZQ+Wr6LLy/BaU
+dsEQYYkmywgzRQRy/41WwxF/SSkIrSHLSOhwVZghTLH0IPGbvwVl9vivwB9tL6T+
+EQNokU2X1xT5tvbVtefV0letKcauX8GRgtDk/NIV2ujzCqcrfv/gUCWiaxD7/ZQb
+l4a9JkGx5XQNQGb7VK2wj+59E0ITpzfjJ/9VHQkFop6ibx+91gvfdSX2QfZM2o59
+gv3DbeSCfb6AtDghAgMBAAGjUzBRMB0GA1UdDgQWBBRa4b8I8wb8FBZ2xrOr75LR
+mYWAvTAfBgNVHSMEGDAWgBRa4b8I8wb8FBZ2xrOr75LRmYWAvTAPBgNVHRMBAf8E
+BTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQCO2ct4/iQJEtSvG37cJzhcIIvu+uk6
+fKm0aGjlv6SUCRIj0HEuaXIucH+dE/CA2gN0Wqig44qzIrZFshRJ+hunsrvElsOW
+BaolmtApyCm2rEkBJUasY2blrEU8QqN/vOXkSf1K/qkWZ0BiCzfdN9gfMDyuCIXM
+SAoJLsh4WdnIiQWREU391jVIEk3ywjmlzEtabnM+97uokKj33IeReUMl1BEdU/ur
+Nkoo38il9XrsIqYTbpN0kT1gydV2eCXD/ucSo4OrJCRvDOCDxA2UqblK4z5LlY8g
+gNsR68VnbjxT7WmWmok6o0rlbUIZL2eTPQHqLx5SIq4toEOlJf+5vpYJ
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://illiad.lib.rochester.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://illiad.lib.rochester.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://illiad.lib.rochester.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://illiad.lib.rochester.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Atlas Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Atlas Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.atlas-sys.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Curtis Poston</GivenName>
+ <EmailAddress>cposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kathy Poston</GivenName>
+ <EmailAddress>kposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nathan Tefft</GivenName>
+ <EmailAddress>ntefft@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Schneider</GivenName>
+ <EmailAddress>dschneider@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://rochestertest.hosts.atlas-sys.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rochestertest.hosts.atlas-sys.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Rochester Test - ILLiad</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.atlas-sys.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="217" width="1251" xml:lang="en">https://static1.squarespace.com/static/586d3c61725e2524685ac5b9/t/586fabe33e00be70aef56668/1528205345335/?format=1500w</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9539797316893161221, expires on Fri Oct 30 18:01:20 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rochestertest.hosts.atlas-sys.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rochestertest.hosts.atlas-sys.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rochestertest.hosts.atlas-sys.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rochestertest.hosts.atlas-sys.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Atlas Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Atlas Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.atlas-sys.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Curtis Poston</GivenName>
+ <EmailAddress>cposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kathy Poston</GivenName>
+ <EmailAddress>kposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nathan Tefft</GivenName>
+ <EmailAddress>ntefft@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Schneider</GivenName>
+ <EmailAddress>dschneider@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucberkeley.aeon.atlas-sys.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucberkeley.aeon.atlas-sys.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California, Berkeley - Aeon</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.atlas-sys.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="217" width="1251" xml:lang="en">https://static1.squarespace.com/static/586d3c61725e2524685ac5b9/t/586fabe33e00be70aef56668/1528205345335/?format=1500w</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9628394832238811588, expires on Mon Sep 13 18:21:30 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucberkeley.aeon.atlas-sys.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucberkeley.aeon.atlas-sys.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucberkeley.aeon.atlas-sys.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucberkeley.aeon.atlas-sys.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Atlas Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Atlas Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.atlas-sys.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Curtis Poston</GivenName>
+ <EmailAddress>cposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kathy Poston</GivenName>
+ <EmailAddress>kposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nathan Tefft</GivenName>
+ <EmailAddress>ntefft@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Schneider</GivenName>
+ <EmailAddress>dschneider@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucdlibrary.aeon.atlas-sys.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucdlibrary.aeon.atlas-sys.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California, Davis - Aeon</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.atlas-sys.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="217" width="1251" xml:lang="en">https://static1.squarespace.com/static/586d3c61725e2524685ac5b9/t/586fabe33e00be70aef56668/1528205345335/?format=1500w</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9656963052024907006, expires on Fri Jun 4 14:52:53 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucdlibrary.aeon.atlas-sys.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucdlibrary.aeon.atlas-sys.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucdlibrary.aeon.atlas-sys.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucdlibrary.aeon.atlas-sys.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Atlas Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Atlas Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.atlas-sys.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Curtis Poston</GivenName>
+ <EmailAddress>cposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kathy Poston</GivenName>
+ <EmailAddress>kposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nathan Tefft</GivenName>
+ <EmailAddress>ntefft@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Schneider</GivenName>
+ <EmailAddress>dschneider@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucmerced.ares.atlas-sys.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucmerced.ares.atlas-sys.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California at Merced - Ares</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.atlas-sys.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="217" width="1251" xml:lang="en">https://static1.squarespace.com/static/586d3c61725e2524685ac5b9/t/586fabe33e00be70aef56668/1528205345335/?format=1500w</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13270751379967764997, expires on Fri Nov 6 14:57:54 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucmerced.ares.atlas-sys.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucmerced.ares.atlas-sys.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucmerced.ares.atlas-sys.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucmerced.ares.atlas-sys.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Atlas Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Atlas Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.atlas-sys.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Curtis Poston</GivenName>
+ <EmailAddress>cposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kathy Poston</GivenName>
+ <EmailAddress>kposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nathan Tefft</GivenName>
+ <EmailAddress>ntefft@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Schneider</GivenName>
+ <EmailAddress>dschneider@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://unimelb.aeon.atlas-sys.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://unimelb.aeon.atlas-sys.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Melbourne Sandbox - Aeon</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.atlas-sys.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="217" width="1251" xml:lang="en">https://static1.squarespace.com/static/586d3c61725e2524685ac5b9/t/586fabe33e00be70aef56668/1528205345335/?format=1500w</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17948098149039773223, expires on Sun Jul 18 19:27:48 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unimelb.aeon.atlas-sys.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://unimelb.aeon.atlas-sys.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://unimelb.aeon.atlas-sys.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://unimelb.aeon.atlas-sys.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Atlas Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Atlas Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.atlas-sys.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Curtis Poston</GivenName>
+ <EmailAddress>cposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kathy Poston</GivenName>
+ <EmailAddress>kposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nathan Tefft</GivenName>
+ <EmailAddress>ntefft@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Schneider</GivenName>
+ <EmailAddress>dschneider@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://unt.aeon.atlas-sys.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://aeon.library.unt.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of North Texas - Aeon</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.atlas-sys.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="217" width="1251" xml:lang="en">https://static1.squarespace.com/static/586d3c61725e2524685ac5b9/t/586fabe33e00be70aef56668/1528205345335/?format=1500w</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9389615233493412433, expires on Thu Oct 1 18:43:29 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aeon.library.unt.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aeon.library.unt.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aeon.library.unt.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://aeon.library.unt.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Atlas Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Atlas Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.atlas-sys.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Curtis Poston</GivenName>
+ <EmailAddress>cposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kathy Poston</GivenName>
+ <EmailAddress>kposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nathan Tefft</GivenName>
+ <EmailAddress>ntefft@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Schneider</GivenName>
+ <EmailAddress>dschneider@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://utexas.aeon.atlas-sys.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://utexas.aeon.atlas-sys.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas, Austin - Aeon</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.atlas-sys.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="217" width="1251" xml:lang="en">https://static1.squarespace.com/static/586d3c61725e2524685ac5b9/t/586fabe33e00be70aef56668/1528205345335/?format=1500w</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13440340399630959626, expires on Sun Jun 6 19:13:55 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://utexas.aeon.atlas-sys.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://utexas.aeon.atlas-sys.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://utexas.aeon.atlas-sys.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://utexas.aeon.atlas-sys.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Atlas Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Atlas Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.atlas-sys.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Curtis Poston</GivenName>
+ <EmailAddress>cposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kathy Poston</GivenName>
+ <EmailAddress>kposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nathan Tefft</GivenName>
+ <EmailAddress>ntefft@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Schneider</GivenName>
+ <EmailAddress>dschneider@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wustl.aeon.atlas-sys.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://becker-aeon.wustl.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Washington University in St. Louis - Aeon</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.atlas-sys.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="217" width="1251" xml:lang="en">https://static1.squarespace.com/static/586d3c61725e2524685ac5b9/t/586fabe33e00be70aef56668/1528205345335/?format=1500w</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17185508872803064706, expires on Mon Aug 3 18:38:49 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://becker-aeon.wustl.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://becker-aeon.wustl.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://becker-aeon.wustl.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://becker-aeon.wustl.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Atlas Systems, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Atlas Systems, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.atlas-sys.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Curtis Poston</GivenName>
+ <EmailAddress>cposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kathy Poston</GivenName>
+ <EmailAddress>kposton@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nathan Tefft</GivenName>
+ <EmailAddress>ntefft@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Schneider</GivenName>
+ <EmailAddress>dschneider@atlas-sys.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, Stanislaus -->
+<EntityDescriptor entityID="https://apps.csustan.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth.csustan.edu/idp/Authn/UserPassword" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CSUStan Apps</mdui:DisplayName>
+ <mdui:Description xml:lang="en">CSU Stanislaus App SP</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.csustan.edu/oit/icsuam-policy-80250-privacy-personal-information</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="64" xml:lang="en">https://shibboleth.csustan.edu/favicon.ico</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -34513241423526171327039358917708765386, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://apps.csustan.edu/skillsoftimport/assertionservice.aspx" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://apps.csustan.edu/test/skillsoftimport/assertionservice.aspx" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CSUStan Apps</ServiceName>
+ <ServiceDescription xml:lang="en">CSU Stanislaus App SP</ServiceDescription>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, Stanislaus</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, Stanislaus</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.csustan.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Craig Boucher</GivenName>
+ <EmailAddress>CBoucher@csustan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Corey Cardoza</GivenName>
+ <EmailAddress>ccardoza@csustan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Nathan Zierfuss-Hubbard</GivenName>
+ <EmailAddress>nzierfuss@csustan.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://shibboleth.csustan.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csustan.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, Stanislaus</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.csustan.edu/oit/icsuam-policy-80250-privacy-personal-information</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="64" xml:lang="en">https://shibboleth.csustan.edu/favicon.ico</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 141304140964595575729930798505711522410028379289, expires on Sat Sep 1 21:11:09 2029 GMT -->
+ <ds:X509Certificate>
+MIIDQzCCAiugAwIBAgIUGMBL/KES+CItQJGiZd2xZSh8rJkwDQYJKoZIhvcNAQEF
+BQAwITEfMB0GA1UEAxMWc2hpYmJvbGV0aC5jc3VzdGFuLmVkdTAeFw0wOTA5MDEy
+MTExMDlaFw0yOTA5MDEyMTExMDlaMCExHzAdBgNVBAMTFnNoaWJib2xldGguY3N1
+c3Rhbi5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCjiFi9hRTI
+uF6n0w82/XQHlhhj34q59TzPvf9vPh9pjgxd6sju/hCY1tx/hmAf5Woa2ilegpVt
+iy+G3tZCKgaJdVLq49zgEmKU0VYXCliGaLW1gtpwKdUYLY3M47oReql3lGlb0ml9
+zC4f8yeg7tCP1+OpnSt2EGR38SqNKqGSpdtsNVP007G4FYOZ5I/bDwCGbdyMrEuH
+G8hmXVSZOtt36Z8uXnVZb8ZWMruEvwm4Ch4SYp1ArSXF7eqyWI5juNQA8orzBjCe
+C/vpF08H/iZsAJ5ZtRYU77046cJwvzsRuFyfl74A6p4iFUl9botcIAE6O+kix2z/
+4QnLRK7kpLTzAgMBAAGjczBxMFAGA1UdEQRJMEeCFnNoaWJib2xldGguY3N1c3Rh
+bi5lZHWGLWh0dHBzOi8vc2hpYmJvbGV0aC5jc3VzdGFuLmVkdS9pZHAvc2hpYmJv
+bGV0aDAdBgNVHQ4EFgQU0+lADdpb6oUYg9Oc96Zjx/cFThswDQYJKoZIhvcNAQEF
+BQADggEBAFqASbOPNSUo4KijkXfQv9yemFmjX5g0FBO3quSUtmX0XFHMkJrAfkUQ
+34KIwGE1NKEnR5DE2CMhi+CMLM3UwsV/AH54PfMnFZYxKOeya1h5ou99rliwYfE/
+oERIMqkMdqfZI2eVOmjKMfgZMpjhSAjqkvuZ0lJSrHM6GhJTZGVF1qHHxAniNJuL
+EiG0dCIfR86g8fLLIKB2T6NExYY6yYJHobC9h8G9IiR+2QAf/UxuC6hEGAQAnUWj
+NqWgMu7TiZy0oedXYZYYaAHmWQDJWXt2SGC11bB8qtEU2tcccppV75MWjC7SYqko
++1hpIr+zlLqhBIi73qZPIVggyEH8HpE=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.csustan.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.csustan.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.csustan.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.csustan.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.csustan.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.csustan.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.csustan.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.csustan.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csustan.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 141304140964595575729930798505711522410028379289, expires on Sat Sep 1 21:11:09 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.csustan.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.csustan.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, Stanislaus</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, Stanislaus</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.csustan.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Corey Cardoza</GivenName>
+ <EmailAddress>CCardoza@csustan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Steven Teixeira</GivenName>
+ <EmailAddress>steixeira@csustan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Nathan Zierfuss-Hubbard</GivenName>
+ <EmailAddress>nzierfuss@csustan.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Qualtrics Labs, Inc. -->
+<EntityDescriptor entityID="https://nau.co1.qualtrics.com/WRSAML/simplesaml/www/module.php/saml/sp/metadata.php/default-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Qualtrics - nau</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.qualtrics.com/privacy-statement/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="250" xml:lang="en">https://login.qualtrics.com/login/static/d819bc7995e3523fce63f942bef48fb03c16f8fd/client/img/xm_logo-16.min.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13563331965333349444, expires on Tue Apr 7 19:33:04 2020 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nau.co1.qualtrics.com/WRSAML/simplesaml/www/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nau.co1.qualtrics.com/WRSAML/simplesaml/www/module.php/saml/sp/saml1-acs.php/default-sp" index="2"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Qualtrics Labs, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Qualtrics Labs, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.qualtrics.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Qualtrics Support</GivenName>
+ <EmailAddress>shibboleth@qualtrics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>support</GivenName>
+ <EmailAddress>support@qualtrics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>support</GivenName>
+ <EmailAddress>support@qualtrics.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://oxfordsaid.eu.qualtrics.com/WRSAML/simplesaml/www/module.php/saml/sp/metadata.php/default-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Qualtrics Lab, Inc.</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.qualtrics.com/privacy-statement/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="250" xml:lang="en">https://login.qualtrics.com/login/static/d819bc7995e3523fce63f942bef48fb03c16f8fd/client/img/xm_logo-16.min.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13563331965333349444, expires on Tue Apr 7 19:33:04 2020 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oxfordsaid.eu.qualtrics.com/WRSAML/simplesaml/www/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://oxfordsaid.eu.qualtrics.com/WRSAML/simplesaml/www/module.php/saml/sp/saml1-acs.php/default-sp" index="2"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Qualtrics Labs, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Qualtrics Labs, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.qualtrics.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Page</GivenName>
+ <EmailAddress>shibboleth@qualtrics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>support</GivenName>
+ <EmailAddress>support@qualtrics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>support</GivenName>
+ <EmailAddress>support@qualtrics.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucsd.co1.qualtrics.com/WRSAML/simplesaml/www/module.php/saml/sp/metadata.php/default-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Qualtrics - ucsd</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.qualtrics.com/privacy-statement/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="250" xml:lang="en">https://login.qualtrics.com/login/static/d819bc7995e3523fce63f942bef48fb03c16f8fd/client/img/xm_logo-16.min.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13563331965333349444, expires on Tue Apr 7 19:33:04 2020 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucsd.co1.qualtrics.com/WRSAML/simplesaml/www/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Qualtrics Labs, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Qualtrics Labs, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.qualtrics.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Qualtrics Support</GivenName>
+ <EmailAddress>shibboleth@qualtrics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>support</GivenName>
+ <EmailAddress>support@qualtrics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>support</GivenName>
+ <EmailAddress>support@qualtrics.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Clarivate Analytics -->
+<EntityDescriptor entityID="https://sp.tshhosting.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.webofknowledge.com/" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://login.incites.thomsonreuters.com/" index="4"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Clarivate Analytics</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Global leader in providing research, discovery, and analytics applications to the world’s top universities and corporations.
+</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://clarivate.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://clarivate.com/legal/privacy-statement/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="84" width="292" xml:lang="en">https://cdn.clarivate.com/wp-content/uploads/2017/06/clarivate.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15283853805829074357860520124197982283, expires on Sun Mar 15 12:00:00 2020 GMT -->
+ <ds:X509Certificate>
+MIIGfzCCBWegAwIBAgIQC3+QK/n8nfWMt8LGUplQSzANBgkqhkiG9w0BAQsFADBg
+MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3
+d3cuZGlnaWNlcnQuY29tMR8wHQYDVQQDExZHZW9UcnVzdCBUTFMgUlNBIENBIEcx
+MB4XDTE4MDQwMjAwMDAwMFoXDTIwMDMxNTEyMDAwMFowbDELMAkGA1UEBhMCR0Ix
+DzANBgNVBAcTBkxvbmRvbjEhMB8GA1UEChMYQ2FtZWxvdCBVSyBCaWRjbyBMaW1p
+dGVkMQswCQYDVQQLEwJDQTEcMBoGA1UEAxMTc2hpYi50c2hob3N0aW5nLmNvbTCC
+ASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMlt+O/KQrgMSi1lcZ+kQwjr
+J0RzeBj/WddBlobhPQkwnvmfebH3jIcMG6WIHJV9MoGL/GU7A6n7ui5+/EQ4P+Ru
+B+nHgNHYIhOxU98lgkf6biG/JFmIGquVw+Y6vntHAllni4ZC/N+g/Cw7iDsCl722
+82kapd/EcSY+fZYP1wEXO4+lHTFD3CnCa5EnrjK5+oMOtuseMi9NUebhHObPlbsK
+HS6NYU4kbHsAjsn19Dexb9eo/G8RHnGbU3xjki+RaMXI14wH9yUHBaCq+++iGOSJ
+j8TZ0tb8H8fOLVjdJv+PNYaP0Pax9eYwoRf0F7yBDQrvy1H1ETtFGo4x7MhgA3UC
+AwEAAaOCAycwggMjMB8GA1UdIwQYMBaAFJRP1F2L5KTipoD+/dj5AO+jvgJXMB0G
+A1UdDgQWBBReDEjG7LvCpKWqHVn4BH2d0ZbUbTAeBgNVHREEFzAVghNzaGliLnRz
+aGhvc3RpbmcuY29tMA4GA1UdDwEB/wQEAwIFoDAdBgNVHSUEFjAUBggrBgEFBQcD
+AQYIKwYBBQUHAwIwPwYDVR0fBDgwNjA0oDKgMIYuaHR0cDovL2NkcC5nZW90cnVz
+dC5jb20vR2VvVHJ1c3RUTFNSU0FDQUcxLmNybDBMBgNVHSAERTBDMDcGCWCGSAGG
+/WwBATAqMCgGCCsGAQUFBwIBFhxodHRwczovL3d3dy5kaWdpY2VydC5jb20vQ1BT
+MAgGBmeBDAECAjB2BggrBgEFBQcBAQRqMGgwJgYIKwYBBQUHMAGGGmh0dHA6Ly9z
+dGF0dXMuZ2VvdHJ1c3QuY29tMD4GCCsGAQUFBzAChjJodHRwOi8vY2FjZXJ0cy5n
+ZW90cnVzdC5jb20vR2VvVHJ1c3RUTFNSU0FDQUcxLmNydDAJBgNVHRMEAjAAMIIB
+fgYKKwYBBAHWeQIEAgSCAW4EggFqAWgAdwCkuQmQtBhYFIe7E6LMZ3AKPDWYBPkb
+37jjd80OyA3cEAAAAWKGc7M9AAAEAwBIMEYCIQD+3dB+0uW1osS43iJI0UxzTE3+
+M9TKCAna8eRMQyIyuAIhAIhdW6f4ve1ejtmnorN/2MO9XjCURHavfjATbeeKr+OO
+AHYAb1N2rDHwMRnYmQCkURX/dxUcEdkCwQApBo2yCJo32RMAAAFihnO0rwAABAMA
+RzBFAiAY2BN8gTgN/HSaMuirYYkLITB9o2Oqe1LtD9czqPpJ3wIhAL7bkN6WBjqD
+sBeXbA2qtJ18TfoZ6r8k/0ZjNsfiFlfeAHUAu9nfvB+KcbWTlCOXqpJ7RzhXlQqr
+UugakJZkNo4e0YUAAAFihnO0EAAABAMARjBEAiA//JSnAmkGoPQChRD1NkgrXFH5
+p5dymMnV0oc3HZIqjAIgbtjXRV9E0Z0QxyEWh3dxPn6WJbmi1XHa/YYjADu/O8cw
+DQYJKoZIhvcNAQELBQADggEBAJtXdZ/Rs1XN/5OD7CPwY8K8PcvEy5tkJwj6IfEX
+DpKixOGOo+28pAR1pG0sdyEAob5+MezTkpQI1rg3XfQszLVIm3ufE/7cOw6XgVd3
+ebt36BLwRxugCQC9PD8RK2gYmjX8zBduaKqAID8UZjXmwZs5+Rh9RkuBnWsxiK3I
+pQRrwOKhnkPMVIdM1rZSsXQtdYPuwB50P6hO8JPESyJYmQ2MLeHwLoD8pBYhXfCP
+BZYm6HJbVA/OHGIexGQw0Ot5ecjWqNwkXBrHBigSTMhDx7TguoT5yahQVQ+wKK1T
+LBUTq0ydKZRDiZHCiXihNC4VcUdYqRiJ98JhmYORLNdU8Sg=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.webofknowledge.com/?auth=Shibboleth" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.webofknowledge.com/?auth=Shibboleth" index="2"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Clarivate Analytics</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Clarivate Analytics</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://clarivate.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>SSO Support</GivenName>
+ <EmailAddress>science.shibbolethsupport@clarivate.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Satya Prakash Rath</GivenName>
+ <EmailAddress>Satyaprakash.rath@clarivate.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Sanjay Lahurikar</GivenName>
+ <EmailAddress>sanjay.lahurikar@clarivate.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Satya Prakash Rath</GivenName>
+ <EmailAddress>satyaprakash.rath@clarivate.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Oregon -->
+<EntityDescriptor entityID="https://shibboleth.uoregon.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://service.uoregon.edu/TDClient/KB/ArticleDet?ID=52631" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uoregon.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Oregon</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Oregon's Shibboleth Identity Provider</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://uoregon.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policies.uoregon.edu/content/z-index-uo-policy-statements</mdui:PrivacyStatementURL>
+ <mdui:Logo height="239" width="200" xml:lang="en">https://shibboleth.uoregon.edu/images/Large_UO_Logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 468082133872964124381250680193044146864260986, expires on Mon Aug 21 17:07:58 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.uoregon.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.uoregon.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.uoregon.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.uoregon.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.uoregon.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.uoregon.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uoregon.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 468082133872964124381250680193044146864260986, expires on Mon Aug 21 17:07:58 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.uoregon.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.uoregon.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Oregon</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Oregon</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uoregon.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IDM Administrative Support</GivenName>
+ <EmailAddress>idmsupport@uoregon.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IDM Technical Support</GivenName>
+ <EmailAddress>idmsupport@uoregon.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IDM Support</GivenName>
+ <EmailAddress>idmsupport@uoregon.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>infosec@uoregon.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Pittsburgh -->
+<EntityDescriptor entityID="https://passport.pitt.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://passport.pitt.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pitt.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Pittsburgh</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Pittsburgh Passport Single Sign-On experience</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://technology.pitt.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://technology.pitt.edu/help-desk/how-to-documents/privacy-statement-identity-provider-users</mdui:PrivacyStatementURL>
+ <mdui:Logo height="400" width="400" xml:lang="en">https://www.pitt.edu/seal/seal-400x400-72rgb.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 583040639026709560057307560386972239037964462261, expires on Tue Nov 13 17:30:47 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://passport.pitt.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://passport.pitt.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://passport.pitt.edu/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://passport.pitt.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://passport.pitt.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://passport.pitt.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://passport.pitt.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://passport.pitt.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pitt.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 583040639026709560057307560386972239037964462261, expires on Tue Nov 13 17:30:47 2035 GMT -->
+ <ds:X509Certificate>
+MIIDLzCCAhegAwIBAgIUZiByS7B062+ol+pZKrqkwBxrqLUwDQYJKoZIhvcNAQEL
+BQAwHDEaMBgGA1UEAwwRcGFzc3BvcnQucGl0dC5lZHUwHhcNMTUxMTEzMTczMDQ3
+WhcNMzUxMTEzMTczMDQ3WjAcMRowGAYDVQQDDBFwYXNzcG9ydC5waXR0LmVkdTCC
+ASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAIXgP4IOEjINaJ9dePEzc5Wp
+J8+Ytw0Ojc/JlImfMlUf9yiwiQZQhYIv7C7KmSIgBBvzj/4e6x+tGioE3vIPq9Yz
+47zLOUjzsPgSXnmqSujVCF1zce5aXsjwNcZ5JFN037pgoNLpwtuzfLg9sPbTdQV4
+dRGE07eIXiil6+ER1diFrmGQYSrlfY8DX4sZzl7er6eNEkN5bb3sYK4W13g54Vwf
+BT9/nZe8dsVq7HSZeGdqtyU9Vm49BxpRJLi/X1xsoTCsa8jSRGhpfktR/UygnMWc
+oKfayjUC/3fjyBBEvb2EbIiAByYZeApM8zCynHpoHbNTCECIfmkQ6YYohEVave8C
+AwEAAaNpMGcwHQYDVR0OBBYEFAguZrxqsqNCg5KQhdAnsGrSFZEgMEYGA1UdEQQ/
+MD2CEXBhc3Nwb3J0LnBpdHQuZWR1hihodHRwczovL3Bhc3Nwb3J0LnBpdHQuZWR1
+L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQBdX30sZVe9QfYYJydn
+x+nWdKeGT0FxqPHaLaa/NHREOetOG1DHYCi617zy0bXq9Vnm+bZpqIheBHwzGzpk
+U5MJrPjwnmy1YyjoFNKy9N5KTQ+nCv7fKfLv55LSNE685T144B2KcRcFg3cDd2jt
+keVXfOYIBWnyEPnFeTlVA5Y16kbly78ixjTRGXaSLtrwCOJ25kM2+RAyZwp6/lHC
+S6tSx6TluEVAaA9y/ByyF41xdJk6iqgtqR6NmUIZLZlJ5dAOoyddHFgzWnKCqvtF
+RtrlnjGNwrHyXGWJbgY7wixreqLbBKAQ+nbaesqlCii8lR/5LawpnSAZmGD2diwl
+133k
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://passport.pitt.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://passport.pitt.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Pittsburgh</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Pittsburgh</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.pitt.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Technology Helpdesk</GivenName>
+ <EmailAddress>helpdesk@pitt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Technology Helpdesk</GivenName>
+ <EmailAddress>helpdesk@pitt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Technology Helpdesk</GivenName>
+ <EmailAddress>helpdesk@pitt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Technology Helpdesk</GivenName>
+ <EmailAddress>helpdesk@pitt.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, East Bay -->
+<EntityDescriptor entityID="https://vince.csueastbay.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.csueastbay.edu/servicedesk" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csueastbay.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, East Bay</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Campus main IDP</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.csueastbay.edu/netid/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.csueastbay.edu/security/files/docs/policies/computing-use-policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="114" width="627" xml:lang="en">https://www.csueastbay.edu/universitycommunications/files/images/logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 867141856229797087907541239897129442604429424000, expires on Sun Apr 7 17:56:22 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vince.csueastbay.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://vince.csueastbay.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vince.csueastbay.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, East Bay</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, East Bay</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www20.csueastbay.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>David Heldt</GivenName>
+ <EmailAddress>david.heldt@csueastbay.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Thomas Dixon</GivenName>
+ <EmailAddress>thomas.dixon@csueastbay.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Thomas Dixon</GivenName>
+ <EmailAddress>thomas.dixon@csueastbay.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>David Heldt</GivenName>
+ <EmailAddress>david.heldt@csueastbay.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, Long Beach -->
+<EntityDescriptor entityID="https://its-shib.its.csulb.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csulb.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, Long Beach</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://daf.csulb.edu/offices/vp/information_security/program.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="279" xml:lang="en">https://its-shib.its.csulb.edu/idp/images/csulb-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 843768401569701009771025859403643821993939714091, expires on Sun Feb 3 18:57:45 2030 GMT -->
+ <ds:X509Certificate>
+MIIDRDCCAiygAwIBAgIVAJPL4jmebB2O17/3wHKhz8V1qEArMA0GCSqGSIb3DQEB
+BQUAMCExHzAdBgNVBAMTFml0cy1zaGliLml0cy5jc3VsYi5lZHUwHhcNMTAwMjAz
+MTg1NzQ1WhcNMzAwMjAzMTg1NzQ1WjAhMR8wHQYDVQQDExZpdHMtc2hpYi5pdHMu
+Y3N1bGIuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArbViX4eh
+msE7HYLfwAeBnBVkAwrw526zOn9dki/7AVLOb7E+EmmSur0WJDI83UqPzmPqaF3r
+delLE4CMtRPt+qtZBfC6gSiOU85hwKdC6zCY9qMeeGA3mbcdpBUeRAQs5CBpVfIq
+9b6ONlMzDdcIgeLNFUhHTZk/TKgkXWYyWVgbsLQJjkjDJWgN+joWl2d2zNWkwHPL
+A2pn3eBxDN1ljxYI3Y7mD/KWMEkNDuhSZUckCRM1VBdyUKccmUXlGDbLJTZ9jJq9
+5Vrtcy+PgqTKzkt1V7PDyf3RbZBM+NgQKktrmWgjQYwWEonNpo1y6aSQCfDxQ8lQ
+25Oljv2lfTcfMQIDAQABo3MwcTBQBgNVHREESTBHghZpdHMtc2hpYi5pdHMuY3N1
+bGIuZWR1hi1odHRwczovL2l0cy1zaGliLml0cy5jc3VsYi5lZHUvaWRwL3NoaWJi
+b2xldGgwHQYDVR0OBBYEFGcFT/yuYca/kcgGyIaK+VZ9Mqx1MA0GCSqGSIb3DQEB
+BQUAA4IBAQBkdTI5YljHX1yxnvXzKxrFNM5e+d44vy845vuZz3phQkLJbx0qE5I9
+HiPwt54umx+neXTuTkKW9nozjb6O1G7XcCk10574Ou1zXI3ndV6rxgfxygkw1TRR
+wvsQvjaT2Ap5ogqo95BVGVNX+vGlhPneoMfVbHUHwFjv6IIlRPUfIT6V2g5y6CKV
+BIFqM69GfneuKbZkLsDsZDL6CLXWz2BYE4Z/RGRRWwN2+IE//9vcDra+7q0bqfqf
+7eMgq13DOjl3gbhvE1Hq1pkmzrwv1ewjHCxd4ILQC05MYFPAJiq3hzhske1DU8xO
+BqRi7xc2j/DiFKyFbqwPCyGLSIlDG9Tu
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://its-shib.its.csulb.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://its-shib.its.csulb.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://its-shib.its.csulb.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://its-shib.its.csulb.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csulb.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 843768401569701009771025859403643821993939714091, expires on Sun Feb 3 18:57:45 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://its-shib.its.csulb.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://its-shib.its.csulb.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, Long Beach</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, Long Beach</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.csulb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jesse Santana</GivenName>
+ <EmailAddress>jsantana@csulb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Ryan Tapp</GivenName>
+ <EmailAddress>ryan.tapp@csulb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Steve La</GivenName>
+ <EmailAddress>steve.la@csulb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Janet Foster</GivenName>
+ <EmailAddress>janet.foster@csulb.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Smithsonian Institution -->
+<EntityDescriptor entityID="https://idp.si.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">si.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Smithsonian Institution</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.si.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="141" width="112" xml:lang="en">https://logo.si.edu/wp-content/uploads/2014/08/si-suntop-2lines-3x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 400501482656734661556940252590883223646355877546, expires on Sat Aug 16 13:18:44 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.si.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.si.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.si.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.si.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Smithsonian Institution</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Smithsonian Institution</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.si.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jeffrey McAvoy</GivenName>
+ <EmailAddress>mcavoyj@si.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Weber Wung</GivenName>
+ <EmailAddress>wungw@si.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Alex Aveta</GivenName>
+ <EmailAddress>AvetaA@si.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jas Jamwal</GivenName>
+ <EmailAddress>JamwalJ@si.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Juliette Sheppard</GivenName>
+ <EmailAddress>security@si.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, Bakersfield -->
+<EntityDescriptor entityID="https://shib.csub.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csub.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, Bakersfield</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.csub.edu/admissionsandaid/grades_transcripts/confidentiality/index.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="136" width="472" xml:lang="en">https://www.csub.edu/_files/images/CSUB_Logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 82148487530193423361930665965506993219, expires on Sat Dec 3 23:59:59 2011 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1214829996422888757147109925606529219696562235969, expires on Fri May 24 21:40:36 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.csub.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.csub.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.csub.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.csub.edu/idp/profile/Shibboleth/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.csub.edu/idp/profile/Shibboleth/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">csub.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 82148487530193423361930665965506993219, expires on Sat Dec 3 23:59:59 2011 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1214829996422888757147109925606529219696562235969, expires on Fri May 24 21:40:36 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.csub.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, Bakersfield</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, Bakersfield</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.csub.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Network Operations Center</GivenName>
+ <EmailAddress>netops@csub.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Abuse</GivenName>
+ <EmailAddress>abuse@csub.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nick Rowland</GivenName>
+ <EmailAddress>nrowland@csub.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Argonne National Laboratory -->
+<EntityDescriptor entityID="https://identityprovider.anl.gov/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.anl.gov/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">anl.gov</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Argonne National Laboratory</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.anl.gov</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.anl.gov/privacy-security-notice</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="227" xml:lang="en">https://login.anl.gov/idp/images/argonne_header_logo_white.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 681361639461742460662013581430047346775099134929, expires on Tue Jun 3 14:29:57 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.anl.gov/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.anl.gov/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.anl.gov/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Argonne National Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Argonne National Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.anl.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk - Shibboleth</GivenName>
+ <EmailAddress>help@anl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Volmer</GivenName>
+ <EmailAddress>volmer@anl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tony Plovich</GivenName>
+ <EmailAddress>aplovich@anl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cyber Security Program Office</GivenName>
+ <EmailAddress>cspo@anl.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Coconino County Community College District -->
+<EntityDescriptor entityID="https://shibboleth.coconino.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://oldsite.coconino.edu/ssoerror/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">coconino.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Coconino County Community College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.coconino.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="371" width="1125" xml:lang="en">https://www.coconino.edu/resources/images/logos/ccc-logo-teal.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1396934098738290776400240601312910700699142575959, expires on Sun Sep 16 20:53:14 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.coconino.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.coconino.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.coconino.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.coconino.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.coconino.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.coconino.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">coconino.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1396934098738290776400240601312910700699142575959, expires on Sun Sep 16 20:53:14 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.coconino.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.coconino.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Coconino County Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Coconino County Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.coconino.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>ITS Infrastructure</GivenName>
+ <EmailAddress>its-infrastructure@coconino.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Daniel Vigil</GivenName>
+ <EmailAddress>daniel.vigil@coconino.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brian Wilson</GivenName>
+ <EmailAddress>brian.wilson@coconino.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brian Wilson</GivenName>
+ <EmailAddress>brian.wilson@coconino.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Naval Postgraduate School -->
+<EntityDescriptor entityID="https://id.nps.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://id.nps.edu/idp/help.jsp" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">nps.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Naval Postgraduate School</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Naval Postgraduate School Identity Provider</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.nps.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://my.nps.edu/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="100" xml:lang="en">https://id.nps.edu/idp/images/nps_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1173916065830848301156875683633575779517451298803, expires on Tue Dec 4 19:31:17 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://id.nps.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://id.nps.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://id.nps.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://id.nps.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Naval Postgraduate School</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Naval Postgraduate School</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nps.navy.mil/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>NPS Webmaster</GivenName>
+ <EmailAddress>webmaster@nps.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>NPS Webmaster</GivenName>
+ <EmailAddress>webmaster@nps.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>NPS TAC</GivenName>
+ <EmailAddress>tac@nps.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>NPS Cybersecurity</GivenName>
+ <EmailAddress>ia-support@nps.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Leepfrog Technologies, Inc. -->
+<EntityDescriptor entityID="https://shib.courseleaf.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shib.courseleaf.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CourseLeaf</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Leepfrog Technologies CourseLeaf</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://courseleaf.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.leepfrog.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="176" width="600" xml:lang="en">https://www.courseleaf.com/images/cl-logo-incommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12694532286549731395, expires on Mon Apr 8 16:02:01 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.courseleaf.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.courseleaf.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shib.courseleaf.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shib.courseleaf.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shib.courseleaf.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shib.courseleaf.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currbulletin.wustl.edu/Shibboleth.sso/SAML2/POST" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextbulletin.wustl.edu/Shibboleth.sso/SAML2/POST" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://coursecatalog-new.web.cmu.edu/Shibboleth.sso/SAML2/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://upcomingcatalog.uchicago.edu/Shibboleth.sso/SAML2/POST" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stagingcatalog.uchicago.edu/Shibboleth.sso/SAML2/POST" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.odu.edu/Shibboleth.sso/SAML2/POST" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.odu.edu/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next-catalog.ncsu.edu/Shibboleth.sso/SAML2/POST" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://current-catalog.ncsu.edu/Shibboleth.sso/SAML2/POST" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exploredegrees-admin.stanford.edu/Shibboleth.sso/SAML2/POST" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://exploredegrees-nextyear.stanford.edu/Shibboleth.sso/SAML2/POST" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextbulletin.brown.edu/Shibboleth.sso/SAML2/POST" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentbulletin.brown.edu/Shibboleth.sso/SAML2/POST" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.uark.edu/Shibboleth.sso/SAML2/POST" index="20"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.uark.edu/Shibboleth.sso/SAML2/POST" index="21"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.utexas.edu/Shibboleth.sso/SAML2/POST" index="22"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currcatalog.utexas.edu/Shibboleth.sso/SAML2/POST" index="23"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next.catalogue.uci.edu/Shibboleth.sso/SAML2/POST" index="24"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://current.catalogue.uci.edu/Shibboleth.sso/SAML2/POST" index="25"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog-admin.calpoly.edu/Shibboleth.sso/SAML2/POST" index="26"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog-admin.calpoly.edu/Shibboleth.sso/SAML2/POST" index="27"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.missouri.edu/Shibboleth.sso/SAML2/POST" index="28"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.missouri.edu/Shibboleth.sso/SAML2/POST" index="29"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextbulletin.umsl.edu/Shibboleth.sso/SAML2/POST" index="30"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentbulletin.umsl.edu/Shibboleth.sso/SAML2/POST" index="31"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.mst.edu/Shibboleth.sso/SAML2/POST" index="32"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.mst.edu/Shibboleth.sso/SAML2/POST" index="33"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.sandburg.edu/Shibboleth.sso/SAML2/POST" index="34"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.sandburg.edu/Shibboleth.sso/SAML2/POST" index="35"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next.catalog.utsa.edu/Shibboleth.sso/SAML2/POST" index="36"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://current.catalog.utsa.edu/Shibboleth.sso/SAML2/POST" index="37"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://catalog-next.uvm.edu/Shibboleth.sso/SAML2/POST" index="38"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://catalog-current.uvm.edu/Shibboleth.sso/SAML2/POST" index="39"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.lehigh.edu/Shibboleth.sso/SAML2/POST" index="40"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.lehigh.edu/Shibboleth.sso/SAML2/POST" index="41"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.uthscsa.edu/Shibboleth.sso/SAML2/POST" index="42"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.uthscsa.edu/Shibboleth.sso/SAML2/POST" index="43"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://e-nextcatalog.jhu.edu/Shibboleth.sso/SAML2/POST" index="44"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://e-currentcatalog.jhu.edu/Shibboleth.sso/SAML2/POST" index="45"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next.catalog.ku.edu/Shibboleth.sso/SAML2/POST" index="46"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://current.catalog.ku.edu/Shibboleth.sso/SAML2/POST" index="47"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.uoregon.edu/Shibboleth.sso/SAML2/POST" index="48"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.uoregon.edu/Shibboleth.sso/SAML2/POST" index="49"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.uis.edu/Shibboleth.sso/SAML2/POST" index="50"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.uis.edu/Shibboleth.sso/SAML2/POST" index="51"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.uic.edu/Shibboleth.sso/SAML2/POST" index="52"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.uic.edu/Shibboleth.sso/SAML2/POST" index="53"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next.bulletin.gwu.edu/Shibboleth.sso/SAML2/POST" index="54"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://current.bulletin.gwu.edu/Shibboleth.sso/SAML2/POST" index="55"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcourses.illinois.edu/Shibboleth.sso/SAML2/POST" index="56"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcourses.illinois.edu/Shibboleth.sso/SAML2/POST" index="57"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextbulletin.csusb.edu/Shibboleth.sso/SAML2/POST" index="58"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentbulletin.csusb.edu/Shibboleth.sso/SAML2/POST" index="59"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.apu.edu/Shibboleth.sso/SAML2/POST" index="60"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.apu.edu/Shibboleth.sso/SAML2/POST" index="61"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.umkc.edu/Shibboleth.sso/SAML2/POST" index="62"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://editcatalog.umkc.edu/Shibboleth.sso/SAML2/POST" index="63"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.creighton.edu/Shibboleth.sso/SAML2/POST" index="64"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.creighton.edu/Shibboleth.sso/SAML2/POST" index="65"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://classplanning.northwestern.edu/Shibboleth.sso/SAML2/POST" index="66"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.towson.edu/Shibboleth.sso/SAML2/POST" index="67"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.towson.edu/Shibboleth.sso/SAML2/POST" index="68"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uww-next.courseleaf.com/Shibboleth.sso/SAML2/POST" index="69"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uww-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="70"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next.catalog.njit.edu/Shibboleth.sso/SAML2/POST" index="71"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://current.catalog.njit.edu/Shibboleth.sso/SAML2/POST" index="72"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://northwestern-dev.courseleaf.com/Shibboleth.sso/SAML2/POST" index="73"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextbulletin.temple.edu/Shibboleth.sso/SAML2/POST" index="74"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentbulletin.temple.edu/Shibboleth.sso/SAML2/POST" index="75"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.mtholyoke.edu/Shibboleth.sso/SAML2/POST" index="76"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.mtholyoke.edu/Shibboleth.sso/SAML2/POST" index="77"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.uwgb.edu/Shibboleth.sso/SAML2/POST" index="78"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.uwgb.edu/Shibboleth.sso/SAML2/POST" index="79"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.twu.edu/Shibboleth.sso/SAML2/POST" index="80"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.twu.edu/Shibboleth.sso/SAML2/POST" index="81"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.stolaf.edu/Shibboleth.sso/SAML2/POST" index="82"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currcatalog.stolaf.edu/Shibboleth.sso/SAML2/POST" index="83"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next.catalog.colostate.edu/Shibboleth.sso/SAML2/POST" index="84"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://catalog-dev.mit.edu/Shibboleth.sso/SAML2/POST" index="85"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mit-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="86"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://colostate-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="87"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.udayton.edu/Shibboleth.sso/SAML2/POST" index="88"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.udayton.edu/Shibboleth.sso/SAML2/POST" index="89"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://utexas-prior.courseleaf.com/Shibboleth.sso/SAML2/POST" index="90"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uic-prior.courseleaf.com/Shibboleth.sso/SAML2/POST" index="91"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://catalog-test.uwplatt.edu/Shibboleth.sso/SAML2/POST" index="92"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next.mycatalog.txstate.edu/Shibboleth.sso/SAML2/POST" index="93"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://current.mycatalog.txstate.edu/Shibboleth.sso/SAML2/POST" index="94"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next-bulletin.miami.edu/Shibboleth.sso/SAML2/POST" index="95"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://miami-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="96"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.uah.edu/Shibboleth.sso/SAML2/POST" index="97"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uah-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="98"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextschedule.unomaha.edu/Shibboleth.sso/SAML2/POST" index="99"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.shsu.edu/Shibboleth.sso/SAML2/POST" index="100"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shsu-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="101"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.northeastern.edu/Shibboleth.sso/SAML2/POST" index="102"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://northeastern-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="103"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stanford-test.courseleaf.com/Shibboleth.sso/SAML2/POST" index="104"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://easyschedule.fau.edu/Shibboleth.sso/SAML2/POST" index="105"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uci-test.courseleaf.com/Shibboleth.sso/SAML2/POST" index="106"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.ou.edu/Shibboleth.sso/SAML2/POST" index="107"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ou-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="108"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unomaha-test.courseleaf.com/Shibboleth.sso/SAML2/POST" index="109"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.uwec.edu/Shibboleth.sso/SAML2/POST" index="110"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uwec-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="111"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.registrar.iastate.edu/Shibboleth.sso/SAML2/POST" index="112"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.registrar.iastate.edu/Shibboleth.sso/SAML2/POST" index="113"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://georgetown-next.courseleaf.com/Shibboleth.sso/SAML2/POST" index="114"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.uaf.edu/Shibboleth.sso/SAML2/POST" index="115"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uaf-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="116"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mines-test.courseleaf.com/Shibboleth.sso/SAML2/POST" index="117"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mines-prior.courseleaf.com/Shibboleth.sso/SAML2/POST" index="118"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextbulletin.mines.edu/Shibboleth.sso/SAML2/POST" index="119"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentbulletin.mines.edu/Shibboleth.sso/SAML2/POST" index="120"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gatech-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="121"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://catalog-next.gatech.edu/Shibboleth.sso/SAML2/POST" index="122"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://temple-test.courseleaf.com/Shibboleth.sso/SAML2/POST" index="123"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.uvu.edu/Shibboleth.sso/SAML2/POST" index="124"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uvu-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="125"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uwplatt-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="126"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.unc.edu/Shibboleth.sso/SAML2/POST" index="127"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unc-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="128"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextbulletin.sfsu.edu/Shibboleth.sso/SAML2/POST" index="129"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sfsu-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="130"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://devcatalog.utep.edu/Shibboleth.sso/SAML2/POST" index="131"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testcatalog.utep.edu/Shibboleth.sso/SAML2/POST" index="132"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next-guide.wisc.edu/Shibboleth.sso/SAML2/POST" index="133"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wisc-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="134"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uww-test.courseleaf.com/Shibboleth.sso/SAML2/POST" index="135"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://catdev.colorado.edu/Shibboleth.sso/SAML2/POST" index="136"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://colorado-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="137"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://courseleaf.rice.edu/Shibboleth.sso/SAML2/POST" index="138"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://courseleaf.emory.edu/Shibboleth.sso/SAML2/POST" index="139"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.courseleaf.emory.edu/Shibboleth.sso/SAML2/POST" index="140"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.umd.umich.edu/Shibboleth.sso/SAML2/POST" index="141"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umdearborn-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="142"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.unl.edu/Shibboleth.sso/SAML2/POST" index="143"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unl-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="144"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://futurecatalog.wesleyan.edu/Shibboleth.sso/SAML2/POST" index="145"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wesleyan-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="146"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://courseleaf.unmc.edu/Shibboleth.sso/SAML2/POST" index="147"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unmc-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="148"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.unomaha.edu/Shibboleth.sso/SAML2/POST" index="149"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unomaha-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="150"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://workingcatalog.gmu.edu/Shibboleth.sso/SAML2/POST" index="151"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gmu-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="152"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clss.utah.edu/Shibboleth.sso/SAML2/POST" index="153"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://utsa-prior.courseleaf.com/Shibboleth.sso/SAML2/POST" index="154"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://catalog-next.uwplatt.edu/Shibboleth.sso/SAML2/POST" index="155"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.csus.edu/Shibboleth.sso/SAML2/POST" index="156"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csus-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="157"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.uni.edu/Shibboleth.sso/SAML2/POST" index="158"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uni-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="159"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.fairfield.edu/Shibboleth.sso/SAML2/POST" index="160"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fairfield-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="161"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.louisville.edu/Shibboleth.sso/SAML2/POST" index="162"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://louisville-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="163"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next.catalog.upenn.edu/Shibboleth.sso/SAML2/POST" index="164"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://upenn-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="165"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextbulletins.wayne.edu/Shibboleth.sso/SAML2/POST" index="166"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wayne-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="167"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.uni.edu/Shibboleth.sso/SAML2/POST" index="168"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://curriculum-courseleaf.bu.edu/Shibboleth.sso/SAML2/POST" index="169"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.csc.edu/Shibboleth.sso/SAML2/POST" index="170"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csc-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="171"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://draft.catalog.umt.edu/Shibboleth.sso/SAML2/POST" index="172"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umt-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="173"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://georgetown-law-next.courseleaf.com/Shibboleth.sso/SAML2/POST" index="174"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.vsu.edu/Shibboleth.sso/SAML2/POST" index="175"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vsu-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="176"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.sbcc.edu/Shibboleth.sso/SAML2/POST" index="177"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sbcc-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="178"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.uwm.edu/Shibboleth.sso/SAML2/POST" index="179"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uwm-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="180"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uic-test.courseleaf.com/Shibboleth.sso/SAML2/POST" index="181"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcourseleaf.evc.edu/Shibboleth.sso/SAML2/POST" index="182"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcourseleaf.sjcc.edu/Shibboleth.sso/SAML2/POST" index="183"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://evc-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="184"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sjcc-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="185"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currentcatalog.mines.edu/Shibboleth.sso/SAML2/POST" index="186"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.mines.edu/Shibboleth.sso/SAML2/POST" index="187"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://catplanning.simon.rochester.edu/Shibboleth.sso/SAML2/POST" index="188"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://simon-rochester-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="189"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.citruscollege.edu/Shibboleth.sso/SAML2/POST" index="190"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://citruscollege-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="191"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://psu-next.courseleaf.com/Shibboleth.sso/SAML2/POST" index="192"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://psu-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="193"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcourseleaf.nd.edu/Shibboleth.sso/SAML2/POST" index="194"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next.bulletin.wfu.edu/Shibboleth.sso/SAML2/POST" index="195"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wfu-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="196"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcourseleaf.nyu.edu/Shibboleth.sso/SAML2/POST" index="197"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csusb-prior.courseleaf.com/Shibboleth.sso/SAML2/POST" index="198"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.oregonstate.edu/Shibboleth.sso/SAML2/POST" index="199"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oregonstate-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="200"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://schedule.gsu.edu/Shibboleth.sso/SAML2/POST" index="201"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://subjectproposal.mit.edu/Shibboleth.sso/SAML2/POST" index="202"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://courseleaf.umd.edu/Shibboleth.sso/SAML2/POST" index="203"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umd-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="204"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next.catalog.ufl.edu/Shibboleth.sso/SAML2/POST" index="205"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ufl-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="206"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.uidaho.edu/Shibboleth.sso/SAML2/POST" index="207"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uidaho-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="208"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://georgetown-law-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="209"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://georgetown-law-prior.courseleaf.com/Shibboleth.sso/SAML2/POST" index="210"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rice-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="211"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalogs.northwestern.edu/Shibboleth.sso/SAML2/POST" index="212"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://northwestern-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="213"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.uncg.edu/Shibboleth.sso/SAML2/POST" index="214"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uncg-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="215"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.haverford.edu/Shibboleth.sso/SAML2/POST" index="216"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://haverford-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="217"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.nic.edu/Shibboleth.sso/SAML2/POST" index="218"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nic-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="219"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcalendar.carleton.ca/Shibboleth.sso/SAML2/POST" index="220"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://currcalendar.carleton.ca/Shibboleth.sso/SAML2/POST" index="221"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bulletin-working.uakron.edu/Shibboleth.sso/SAML2/POST" index="222"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uakron-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="223"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://catalogbuild.depaul.edu/Shibboleth.sso/SAML2/POST" index="224"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://depaul-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="225"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.msubillings.edu/Shibboleth.sso/SAML2/POST" index="226"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://msubillings-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="227"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://courseentry.skidmore.edu/Shibboleth.sso/SAML2/POST" index="228"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://skidmore-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="229"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://northwestern-test.courseleaf.com/Shibboleth.sso/SAML2/POST" index="230"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next-catalog.valleycollege.edu/Shibboleth.sso/SAML2/POST" index="231"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://valleycollege-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="232"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.wit.edu/Shibboleth.sso/SAML2/POST" index="233"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wit-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="234"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sched.lmu.edu/Shibboleth.sso/SAML2/POST" index="235"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://courseleaf.dukehub.duke.edu/Shibboleth.sso/SAML2/POST" index="236"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.csupueblo.edu/Shibboleth.sso/SAML2/POST" index="237"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csupueblo-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="238"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://curriculum.williams.edu/Shibboleth.sso/SAML2/POST" index="239"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next.codes.deanofstudents.utexas.edu/Shibboleth.sso/SAML2/POST" index="240"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://utexas-sg-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="241"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.kent.edu/Shibboleth.sso/SAML2/POST" index="242"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kent-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="243"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.ithaca.edu/Shibboleth.sso/SAML2/POST" index="244"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ithaca-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="245"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.esc.edu/Shibboleth.sso/SAML2/POST" index="246"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://esc-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="247"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nextcatalog.uwp.edu/Shibboleth.sso/SAML2/POST" index="248"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uwp-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="249"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpac.ewu.edu/Shibboleth.sso/SAML2/POST" index="250"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ewu-curr.courseleaf.com/Shibboleth.sso/SAML2/POST" index="251"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CourseLeaf</ServiceName>
+ <ServiceDescription xml:lang="en">Leepfrog Technologies CourseLeaf</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Leepfrog Technologies, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Leepfrog Technologies, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.leepfrog.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Wes Bachman</GivenName>
+ <EmailAddress>wbachman@leepfrog.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Leepfrog Shibboleth Support</GivenName>
+ <EmailAddress>shibmaster@leepfrog.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Leepfrog Shibboleth Support</GivenName>
+ <EmailAddress>shibmaster@leepfrog.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Wes Bachman</GivenName>
+ <EmailAddress>wbachman@leepfrog.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- The University of Memphis -->
+<EntityDescriptor entityID="https://datashop.memphis.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://datashop.memphis.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Memphis Datashop</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.memphis.edu/notice/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="118" width="350" xml:lang="en">https://sso.memphis.edu/idp/images/uofmlogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17710708636462169577, expires on Fri Apr 24 17:52:40 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://datashop.memphis.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://datashop.memphis.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://datashop.memphis.edu/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://datashop.memphis.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://datashop.memphis.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The University of Memphis</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">The University of Memphis</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.memphis.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Craig Kelly</GivenName>
+ <EmailAddress>cnkelly@memphis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Security</GivenName>
+ <EmailAddress>itsec@memphis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Philip Pavlik</GivenName>
+ <EmailAddress>ppavlik@memphis.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sso.memphis.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">memphis.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">The University of Memphis</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.memphis.edu/notice/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="118" width="350" xml:lang="en">https://sso.memphis.edu/idp/images/uofmlogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1121540337356166033445934541365609259066371885492, expires on Sat May 4 16:43:29 2030 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.memphis.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.memphis.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The University of Memphis</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">The University of Memphis</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.memphis.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Patrick Hood</GivenName>
+ <EmailAddress>pchood@memphis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Walter Hoehn</GivenName>
+ <EmailAddress>wassa@memphis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Security</GivenName>
+ <EmailAddress>itsec@memphis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jon Weber</GivenName>
+ <EmailAddress>jweber2@memphis.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California State University, Los Angeles -->
+<EntityDescriptor entityID="https://idp.calstatela.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">calstatela.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California State University, Los Angeles</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.calstatela.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="30" xml:lang="en">https://www.calstatela.edu/sites/default/files/groups/California%20State%20University%2C%20Los%20Angeles/badge.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16512644329044895232, expires on Thu Jun 17 17:26:02 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.calstatela.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.calstatela.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.calstatela.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.calstatela.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.calstatela.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.calstatela.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">calstatela.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16084608870769212034, expires on Mon Dec 9 18:00:12 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16512644329044895232, expires on Thu Jun 17 17:26:02 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.calstatela.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.calstatela.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California State University, Los Angeles</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California State University, Los Angeles</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.calstatela.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Sheryl Okuno</GivenName>
+ <EmailAddress>seng@calstatela.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>David Ng</GivenName>
+ <EmailAddress>dng3@cslanet.calstatela.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jason Solis</GivenName>
+ <EmailAddress>jason.solis@calstatela.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Lee</GivenName>
+ <EmailAddress>mlee40@calstatela.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sheryl Okuno</GivenName>
+ <EmailAddress>seng@calstatela.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Utah State University -->
+<EntityDescriptor entityID="https://shibboleth.usu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">usu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Utah State University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.usu.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.usu.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://shibboleth.usu.edu/idp/images/A-BLUE.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1269798656321595347470274188728869415977449836812, expires on Fri Feb 14 12:25:07 2031 GMT -->
+ <ds:X509Certificate>
+MIIDNDCCAhygAwIBAgIVAN5rvbP4K7GmRoDpmtKTw2gl0lEMMA0GCSqGSIb3DQEB
+BQUAMB0xGzAZBgNVBAMTEnNoaWJib2xldGgudXN1LmVkdTAeFw0xMTAyMTQxMjI1
+MDdaFw0zMTAyMTQxMjI1MDdaMB0xGzAZBgNVBAMTEnNoaWJib2xldGgudXN1LmVk
+dTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJfljSATBO8mCYlTKdCf
+XKBDTSbXttlSplVly3qutRqGkBsJYMPoK0nd7vaGmHmZXjXVXFRwGMLHBG6lkxQj
+rf8748zoKGWjdka3QFEYcEXK+xbbkCg7WyCLatAS23TyQEc0Rn2XEBgdrxXEvFAt
+jZtGVusXfXk25xldHJJ/usqCO7cXoZEoN+mWE8W/Wd5tZJTtLjH1Cxl5s8Cgpd7g
+buotzbsyykph8eJWycFOy5BUVi8e7umyWLKh9ZqSYjlmLcqcK/ZfWpVKjDBYM8Bt
+W0QD0CwhAJnBPvNi6j1q1vbNeIuisuRbWEqnKIJU8pqgJdA4FKHwLDeQ7k3wxeNJ
+O1MCAwEAAaNrMGkwSAYDVR0RBEEwP4ISc2hpYmJvbGV0aC51c3UuZWR1hilodHRw
+czovL3NoaWJib2xldGgudXN1LmVkdS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU
+Bb5q0BZx1Lx8/dnKvlOt51u4yJwwDQYJKoZIhvcNAQEFBQADggEBADP3QDO1PDLv
+3nzgisFfoPyVS25k9dgzx8/58U5cC+XSsV5CeoFSvegW/ji9zy4rSD3p3naxqfEK
+/cyDYI2ajwNzo9cBquMHHYe/AP1xF46sCjxAIPiABQaGGvBt4qNHGMSA12HQeB2B
+2Bg+JwMw2RBGXIJxHSGMhqDHfU8HeGlaowKdviDS2Y/fdSD6u7miGX9f26kPT+UI
+YI3rmm+hqgCiHnN4ROJ6aCcII03zTdyVbE97Ho77trGKzB2F4aXqTBhMab39rAOl
+oBeFIPuEqHYWp3GalpQ4DlTYl3+t24gGqfR+XcZSfSbMV7YEB09Bg72LSU7h+t1t
+4WTDmHYR+OA=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.usu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.usu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.usu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.usu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.usu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.usu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">usu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1269798656321595347470274188728869415977449836812, expires on Fri Feb 14 12:25:07 2031 GMT -->
+ <ds:X509Certificate>
+MIIDNDCCAhygAwIBAgIVAN5rvbP4K7GmRoDpmtKTw2gl0lEMMA0GCSqGSIb3DQEB
+BQUAMB0xGzAZBgNVBAMTEnNoaWJib2xldGgudXN1LmVkdTAeFw0xMTAyMTQxMjI1
+MDdaFw0zMTAyMTQxMjI1MDdaMB0xGzAZBgNVBAMTEnNoaWJib2xldGgudXN1LmVk
+dTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJfljSATBO8mCYlTKdCf
+XKBDTSbXttlSplVly3qutRqGkBsJYMPoK0nd7vaGmHmZXjXVXFRwGMLHBG6lkxQj
+rf8748zoKGWjdka3QFEYcEXK+xbbkCg7WyCLatAS23TyQEc0Rn2XEBgdrxXEvFAt
+jZtGVusXfXk25xldHJJ/usqCO7cXoZEoN+mWE8W/Wd5tZJTtLjH1Cxl5s8Cgpd7g
+buotzbsyykph8eJWycFOy5BUVi8e7umyWLKh9ZqSYjlmLcqcK/ZfWpVKjDBYM8Bt
+W0QD0CwhAJnBPvNi6j1q1vbNeIuisuRbWEqnKIJU8pqgJdA4FKHwLDeQ7k3wxeNJ
+O1MCAwEAAaNrMGkwSAYDVR0RBEEwP4ISc2hpYmJvbGV0aC51c3UuZWR1hilodHRw
+czovL3NoaWJib2xldGgudXN1LmVkdS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU
+Bb5q0BZx1Lx8/dnKvlOt51u4yJwwDQYJKoZIhvcNAQEFBQADggEBADP3QDO1PDLv
+3nzgisFfoPyVS25k9dgzx8/58U5cC+XSsV5CeoFSvegW/ji9zy4rSD3p3naxqfEK
+/cyDYI2ajwNzo9cBquMHHYe/AP1xF46sCjxAIPiABQaGGvBt4qNHGMSA12HQeB2B
+2Bg+JwMw2RBGXIJxHSGMhqDHfU8HeGlaowKdviDS2Y/fdSD6u7miGX9f26kPT+UI
+YI3rmm+hqgCiHnN4ROJ6aCcII03zTdyVbE97Ho77trGKzB2F4aXqTBhMab39rAOl
+oBeFIPuEqHYWp3GalpQ4DlTYl3+t24gGqfR+XcZSfSbMV7YEB09Bg72LSU7h+t1t
+4WTDmHYR+OA=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.usu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.usu.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Utah State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Utah State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.usu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>USU IT Security</GivenName>
+ <EmailAddress>security@usu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>USU IT Technical</GivenName>
+ <EmailAddress>tech.contact@usu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>USU IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@usu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>USU IT Administrative</GivenName>
+ <EmailAddress>admin.contact@usu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Tulane University -->
+<EntityDescriptor entityID="https://idp.tulane.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.tulane.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">tulane.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Tulane University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://tulane.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="142" width="100" xml:lang="en">https://wp.tulane.edu/wp-content/uploads/2014/01/shield_2color_web.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1297195738316648508723768955988246845138687145066, expires on Wed Mar 5 02:08:04 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.tulane.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.tulane.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.tulane.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.tulane.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.tulane.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.tulane.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">tulane.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1297195738316648508723768955988246845138687145066, expires on Wed Mar 5 02:08:04 2031 GMT -->
+ <ds:X509Certificate>
+MIIDJDCCAgygAwIBAgIVAOM4RMfBQji0Gpr8ZAah2qVCyrRqMA0GCSqGSIb3DQEB
+BQUAMBkxFzAVBgNVBAMTDmlkcC50dWxhbmUuZWR1MB4XDTExMDMwNTAyMDgwNFoX
+DTMxMDMwNTAyMDgwNFowGTEXMBUGA1UEAxMOaWRwLnR1bGFuZS5lZHUwggEiMA0G
+CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCNglzmRkmm9GnUzXj+aMGQP6FG1QRc
+caZbNP5Iirb/xI/9BdibwieQ/u27EcY6RtHsXxo/Og6leBF8ZIDDujxg9YHF6j7y
+6o0kDTZsNpe+s1XrUNFbKIiO2KXSR+kECHNdhmLosn2RkPs0xPCKHAvj2y5f2Res
+PAW3/OunoxApGl8FzojvN1dcyy7vvG8ku+G0TsOgYXTbV/ge0MhO9zUqcdNGmX6v
+RMQkVfiweeTrVTD7O85xMUWqgCnmp5o5DZkMpuqJQE3fZ3V7Uqyih0yhkCapYz54
+Q7MD36fGfc8J6CnFdaI9yvZT9K8wyDdJQOODL+n8MoilChD65joySlZ9AgMBAAGj
+YzBhMEAGA1UdEQQ5MDeCDmlkcC50dWxhbmUuZWR1hiVodHRwczovL2lkcC50dWxh
+bmUuZWR1L2lkcC9zaGliYm9sZXRoMB0GA1UdDgQWBBQmI5B3stl/tQTgiYPmiNZ5
+hGM+tTANBgkqhkiG9w0BAQUFAAOCAQEAaN5G4XNfkdlwUlUEWtdYg5fdDe4R7z36
+DiE6oB7fgeYGqRWtPtaw3gcZChzGhxd36rW9z5PEVSybnruxZDhhpMljeIBcw+Z2
+7C0awG6iQU8NsuSmnCqzLUlYctgqRq66KGUM3bkYDfBDdCvAPbkkNfAPweZ9jp4U
+qsndPfh/4A4j9Zyj9X3XPRUYTvpcQ2XveBiKyA70ZF6WGbqLALw7/g07NH6wW9js
+0dlMhOhrgRu07YFATFwg4RidRkvfUsbjGXgGJ+BxlZzIbrB9hacSRQdNxddtIWO+
+7m01Z344mGsZ1ZDR8bdPepRQi3B8efL6qJXsw3pzQE/xruoBU+jCJg==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.tulane.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.tulane.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Tulane University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Tulane University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.tulane.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Leo Tran</GivenName>
+ <EmailAddress>ldtran@tulane.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Carlos Le</GivenName>
+ <EmailAddress>cle3@tulane.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Tim Riley</GivenName>
+ <EmailAddress>riley@tulane.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Leo Tran</GivenName>
+ <EmailAddress>ldtran@tulane.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Wisconsin-Milwaukee -->
+<EntityDescriptor entityID="https://cgca.phys.uwm.edu/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.lsc-group.phys.uwm.edu/wiki/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UW-Milwaukee CGCA Wiki</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Wisconsin-Milwaukee Center for Gravitation, Cosmology, and Astrophysics Wiki</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://gravity.phys.uwm.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.lsc-group.phys.uwm.edu/wiki/Policy/Privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="81" width="276" xml:lang="en">https://md.uwm.edu/files/uwm_preferred_logo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 44, expires on Tue Jan 5 23:24:52 2021 GMT -->
+ <ds:X509Certificate>
+MIIEbzCCA1egAwIBAgIBLDANBgkqhkiG9w0BAQUFADCBhzETMBEGCgmSJomT8ixk
+ARkWA29yZzEUMBIGCgmSJomT8ixkARkWBGxpZ28xDTALBgNVBAoTBExJR08xIDAe
+BgNVBAsTF0NlcnRpZmljYXRlIEF1dGhvcml0aWVzMRUwEwYDVQQLEwxXZWIgU2Vy
+dmljZXMxEjAQBgNVBAMTCUxJR08gQ0EgMTAeFw0xMTAxMDYyMzI0NTJaFw0yMTAx
+MDUyMzI0NTJaMHYxEzARBgoJkiaJk/IsZAEZFgNvcmcxFDASBgoJkiaJk/IsZAEZ
+FgRsaWdvMQ0wCwYDVQQKEwRMSUdPMRUwEwYDVQQLEwxXZWIgU2VydmljZXMxIzAh
+BgNVBAMTGnd3dy5sc2MtZ3JvdXAucGh5cy51d20uZWR1MIIBIjANBgkqhkiG9w0B
+AQEFAAOCAQ8AMIIBCgKCAQEAuecfG1v+W0aaj7hPyPMuomjqJhV2cRndqwqckQlP
+V8CpGTEUZo1p1xX/Inx3lX7hUYkiGD+0pN120FSI79umMM5mgiRUPqqKYMiQZoS6
+q7P7gm8NNitjhlt3vwlMO2Spsfe84jjy+KkgJRV2ReRpxn6P+A4DkEUn88Ct+BmS
+F3YYh5hPlJJ/uGqVIG+XxgMyii2y1W11GZJuxls5u4aOnWGnZbgimmUJfQ3Ymjme
+1AM2JOp0B2xCJFVY4j0GsHCRKIy6lKisMTsXMhnPL8gL1y/OxqGSs0J2vMnNRqxO
+rNajrq/EPuyxAWp/53fptT8ZMDSKyXuFk7lG23vvKywIuQIDAQABo4H1MIHyMAwG
+A1UdEwEB/wQCMAAwDgYDVR0PAQH/BAQDAgSwMB0GA1UdJQQWMBQGCCsGAQUFBwMB
+BggrBgEFBQcDAjAZBgNVHSAEEjAQMA4GDCsGAQQBgfpGAgECATA5BgNVHR8EMjAw
+MC6gLKAqhihodHRwOi8vY2EubGlnby5vcmcvNTQxNDA0YzMvNTQxNDA0YzMuY3Js
+MB8GA1UdIwQYMBaAFFJu3Xuqb4VcCCLTl5+tfyNWHmrRMDwGA1UdEQQ1MDOCMXd3
+dy5sc2MtZ3JvdXAucGh5cy51d20uZWR1OnNjb3R0LmtvcmFuZGFAbGlnby5vcmcw
+DQYJKoZIhvcNAQEFBQADggEBAC8RMkc5TrNWkNJ8yMVS6NFIKRSV7H6J2NToTu8h
+1X4zHC1o2tb2kh5Kcg1rhAKtUKpLHnsrZ+OYGY1kJ/NpfUQWHDoYq/2NGnIUAFod
+zJvIT/a/9ENSVVEe0TUwz6oI7EC0TYmggHL6kdkKXB237ah1NLQrSZ3xEJaoK0I3
+De6W4llFiV5Dls+j6EpHzuCET/e6s1cMclB7OMjcdNdecBX0xCGCm91u3OtEQGKM
+rzjVenErOkaR2hlPpssGfuLrGE8XT0qOvouycF+tC4MCElQnRQUjv5Gm7rnDnCFo
+abdn3KRVra6I57DBgGlc3hNW7pWrWcB+roy1O73/Cb/ZIpo=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.lsc-group.phys.uwm.edu/wiki/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.lsc-group.phys.uwm.edu/wiki/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.lsc-group.phys.uwm.edu/wiki/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.lsc-group.phys.uwm.edu/wiki/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UW-Milwaukee CGCA Wiki</ServiceName>
+ <ServiceDescription xml:lang="en">University of Wisconsin-Milwaukee Center for Gravitation, Cosmology, and Astrophysics Wiki</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin-Milwaukee</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin-Milwaukee</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uwm.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>UWM CGCA Help</GivenName>
+ <EmailAddress>uwm-help@gravity.phys.uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tom Downes</GivenName>
+ <EmailAddress>downes@uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Scientific Collaboration Security Committee</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chris Spadanuda</GivenName>
+ <EmailAddress>cspada@uwm.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cgca.uwm.edu/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cgca.uwm.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UW-Milwaukee CGCA</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Wisconsin-Milwaukee Center for Gravitation, Cosmology, and Astrophysics</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://cgca.uwm.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.lsc-group.phys.uwm.edu/wiki/Policy/Privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="81" width="276" xml:lang="en">https://md.uwm.edu/files/uwm_preferred_logo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 44, expires on Tue Jan 5 23:24:52 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cgca.uwm.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cgca.uwm.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cgca.uwm.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cgca.uwm.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UW-Milwaukee CGCA</ServiceName>
+ <ServiceDescription xml:lang="en">University of Wisconsin-Milwaukee Center for Gravitation, Cosmology, and Astrophysics</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin-Milwaukee</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin-Milwaukee</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uwm.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>UWM CGCA Help</GivenName>
+ <EmailAddress>uwm-help@gravity.phys.uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chris Spadanuda</GivenName>
+ <EmailAddress>cspada@uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tom Downes</GivenName>
+ <EmailAddress>downes@uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Scientific Collaboration Security Committee</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://gw-astronomy.org/lists/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gw-astronomy.org/lists/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Gravitational Wave Astronomy Community List Server</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Gravitational Wave Astronomy Community list server used to support collaboration across astronomy and astrophysics projects.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://gw-astronomy.org/lists/sp-info.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://gw-astronomy.org/lists/ca/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://gw-astronomy.org/img/gw-astro-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 62, expires on Wed Apr 28 17:24:12 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gw-astronomy.org/lists/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gw-astronomy.org/lists/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gw-astronomy.org/lists/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gw-astronomy.org/lists/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Gravitational Wave Astronomy Community List Server</ServiceName>
+ <ServiceDescription xml:lang="en">Gravitational Wave Astronomy Community list server used to support collaboration across astronomy and astrophysics projects.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin-Milwaukee</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin-Milwaukee</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uwm.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>UWM CGCA Help</GivenName>
+ <EmailAddress>uwm-help@gravity.phys.uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Warren Anderson</GivenName>
+ <EmailAddress>anders15@uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Scientific Collaboration Security Committee</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Manske</GivenName>
+ <EmailAddress>manskema@uwm.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://gw-astronomy.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gw-astronomy.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Gravitational Wave Astronomy Community Registry</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Gravitational Wave Astronomy Community Registry used to support collaboration across astronomy and astrophysics projects.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://gw-astronomy.org/registry/pages/public/sp_info</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://gw-astronomy.org/registry/pages/public/privacy_info</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://gw-astronomy.org/img/gw-astro-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 62, expires on Wed Apr 28 17:24:12 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gw-astronomy.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gw-astronomy.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gw-astronomy.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gw-astronomy.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Gravitational Wave Astronomy Community Registry</ServiceName>
+ <ServiceDescription xml:lang="en">Gravitational Wave Astronomy Community Registry used to support collaboration across astronomy and astrophysics projects.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin-Milwaukee</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin-Milwaukee</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uwm.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>UWM CGCA Help</GivenName>
+ <EmailAddress>uwm-help@gravity.phys.uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Warren Anderson</GivenName>
+ <EmailAddress>anders15@uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Manske</GivenName>
+ <EmailAddress>manskema@uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Scientific Collaboration Security Committee</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://gw-astronomy.org/wiki/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gw-astronomy.org/wiki/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Gravitational Wave Astronomy Community Wiki</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Gravitational Wave Astronomy Community wiki used to support collaboration across astronomy and astrophysics projects.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://gw-astronomy.org/wiki/Main/SPInfo</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://wiki.gw-astronomy.org/Main/SPPrivacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://gw-astronomy.org/img/gw-astro-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 62, expires on Wed Apr 28 17:24:12 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gw-astronomy.org/wiki/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gw-astronomy.org/wiki/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gw-astronomy.org/wiki/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiki.gw-astronomy.org/Shibboleth.sso/SAML2/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wiki.gw-astronomy.org/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wiki.gw-astronomy.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Gravitational Wave Astronomy Community Wiki</ServiceName>
+ <ServiceDescription xml:lang="en">Gravitational Wave Astronomy Community wiki used to support collaboration across astronomy and astrophysics projects.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin-Milwaukee</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin-Milwaukee</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uwm.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>UWM CGCA Help</GivenName>
+ <EmailAddress>uwm-help@gravity.phys.uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Warren Anderson</GivenName>
+ <EmailAddress>anders15@uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Scientific Collaboration Security Committee</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Manske</GivenName>
+ <EmailAddress>manskema@uwm.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://idp.uwm.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.uwm.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwm.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Wisconsin-Milwaukee</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Primary Identity Provider for UW-Milwaukee</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://uwm.edu/iam/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.wisconsin.edu/regents/policies/acceptable-use-of-information-technology-resources/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="81" width="276" xml:lang="en">https://md.uwm.edu/files/uwm_preferred_logo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 618381166421952742620879537788336709974680516134, expires on Sun Nov 3 22:32:29 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uwm.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.uwm.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uwm.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uwm.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwm.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 618381166421952742620879537788336709974680516134, expires on Sun Nov 3 22:32:29 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.uwm.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.uwm.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin-Milwaukee</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin-Milwaukee</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uwm.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mat Houser</GivenName>
+ <EmailAddress>mhouser@uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UW-Milwaukee IAM Team</GivenName>
+ <EmailAddress>iam-support@uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chris Spadanuda</GivenName>
+ <EmailAddress>cspada@uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UW-Milwaukee Information Security Office</GivenName>
+ <EmailAddress>infosec@uwm.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://lists.gw-astronomy.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lists.gw-astronomy.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Gravitational Wave Astronomy Community List Server</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Gravitational Wave Astronomy Community list server used to support collaboration across astronomy and astrophysics projects.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://gw-astronomy.org/lists/sp-info.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://gw-astronomy.org/lists/ca/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://gw-astronomy.org/img/gw-astro-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12704705791382774628, expires on Fri Oct 1 20:31:49 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lists.gw-astronomy.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lists.gw-astronomy.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lists.gw-astronomy.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lists.gw-astronomy.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin-Milwaukee</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin-Milwaukee</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uwm.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Warren Anderson</GivenName>
+ <EmailAddress>anders15@uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Manske</GivenName>
+ <EmailAddress>manskema@uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Scientific Collaboration Security Committee</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UWM CGCA Help</GivenName>
+ <EmailAddress>uwm-help@gravity.phys.uwm.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- American University -->
+<EntityDescriptor entityID="https://idp.american.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">american.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">American University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.american.edu/oit/policies/Web-Copyright.cfm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="182" width="222" xml:lang="en">https://www.american.edu/ucm/images/au_logo_v_1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 827336934620050455179828971568494569399639187703, expires on Sun Jul 6 17:54:05 2031 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.american.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.american.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.american.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.american.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.american.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">american.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 827336934620050455179828971568494569399639187703, expires on Sun Jul 6 17:54:05 2031 GMT -->
+ <ds:X509Certificate>
+MIIDLDCCAhSgAwIBAgIVAJDrEjwuZf7tKwar/iJcnJUpBaD3MA0GCSqGSIb3DQEB
+BQUAMBsxGTAXBgNVBAMTEGlkcC5hbWVyaWNhbi5lZHUwHhcNMTEwNzA2MTc1NDA1
+WhcNMzEwNzA2MTc1NDA1WjAbMRkwFwYDVQQDExBpZHAuYW1lcmljYW4uZWR1MIIB
+IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAlMec/brVKO//Y6LSzqHWBOtO
+9HvX5R49417xn/3gXnC8OIFyJpZLFDITOPfze8FC8fzgNw7HIDkR9Qvb/sqZ6yys
+rH00gblENowjF7L6b+GnDfjZdGtTSxh72JxkY/Gc/zc1hsA0VwBir12YZxgKX4ta
+ftC1lAeq5qgHDgkitQB8sbXyCdnj+iC1ZYQB2voNvX943W0Zoz9vtAzAYsmsxV3S
+LDvyN8MHBqipXWGWunloRke/JmugBOzYIZ4lGRWY0Upu24GqAhCOcS/tii3FwFZ1
+lxZ/w/wXrNyley32KoIPfY9awbZEMxQZvSWbZ78QXpvMj0m8a10Gloy7AL1n0QID
+AQABo2cwZTBEBgNVHREEPTA7ghBpZHAuYW1lcmljYW4uZWR1hidodHRwczovL2lk
+cC5hbWVyaWNhbi5lZHUvaWRwL3NoaWJib2xldGgwHQYDVR0OBBYEFIX7x6u7hEbE
+QV3quLr2nrucZDXxMA0GCSqGSIb3DQEBBQUAA4IBAQB3sqVb/IQToX7s/0xMxzEV
+BBG/IQtOiJla3BfOQrcLtakPNX5svAQusE7r2m5YrZlmjuznGg+riNFUYBm0u089
+zTtMuRrRCaxg3NUU2JuqTo17lFNguUB7+uzfop//nu+u7PyT6325o/Bla1iP4HNc
+0Y+NWgqsewCcbwAg9QHGrHef6SAFVkeEwevEEJRB7B3I0TQBPirj9BoZjUVwDwV1
+Qld5H3yair/rrHPwpk3aH+torcKqdV/VlyPcgwXZ1LhqmgBIbQ6jGWZsniwh+xfs
+GSfLlV8bGtUawXlz2hsCK4EGIzVMeGanIBE/kozBqy3Ul6SVPZzxsU2nJCRuIHS5
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.american.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">American University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">American University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.american.edu/index1.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Eric Weakland</GivenName>
+ <EmailAddress>eric@american.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Evgeny Bisk</GivenName>
+ <EmailAddress>ebisk@american.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Eric Weakland</GivenName>
+ <EmailAddress>eric@american.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Baltimore -->
+<EntityDescriptor entityID="https://idp.ubalt.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ubalt.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Baltimore</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.ubalt.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.ubalt.edu/privacy-statement.cfm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="41" width="167" xml:lang="en">https://www.ubalt.edu/images/ots/idp-ub-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1023360311942355689413029545043598708237909526156, expires on Sun Apr 14 14:10:14 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ubalt.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ubalt.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.ubalt.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ubalt.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ubalt.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ubalt.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1023360311942355689413029545043598708237909526156, expires on Sun Apr 14 14:10:14 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ubalt.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Baltimore</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Baltimore</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ubalt.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>George Weitzel</GivenName>
+ <EmailAddress>gweitzel@ubalt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>George Weitzel</GivenName>
+ <EmailAddress>gweitzel@ubalt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>George Weitzel</GivenName>
+ <EmailAddress>gweitzel@ubalt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>George Weitzel</GivenName>
+ <EmailAddress>gweitzel@ubalt.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Gustavus Adolphus College -->
+<EntityDescriptor entityID="https://sso.gac.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">gac.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Gustavus Adolphus College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://gustavus.edu/policy/privacy.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="375" width="375" xml:lang="en">https://gustavus.edu/images/gac-icon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1094242668959575806480717658193236698207536527803, expires on Mon Mar 10 18:56:07 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.gac.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.gac.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Gustavus Adolphus College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Gustavus Adolphus College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://gustavus.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Oachs</GivenName>
+ <EmailAddress>doachs@gac.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Paul Hanson</GivenName>
+ <EmailAddress>phanson@gac.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jessie Twaddle</GivenName>
+ <EmailAddress>jtwaddle@gac.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Network Operations Center</GivenName>
+ <EmailAddress>noc@gac.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Network Operations Center</GivenName>
+ <EmailAddress>noc@gustavus.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Northern Iowa -->
+<EntityDescriptor entityID="https://shib.uni.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uni.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Northern Iowa</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Northern Iowa</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.uni.edu/its/success/federated-identity-based-authentication-and-authorization</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policies.uni.edu/web-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="151" width="150" xml:lang="en">https://shib.uni.edu/uni_shib_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 62398220616143545403804811675786656243198909868, expires on Fri Nov 8 22:16:07 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.uni.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.uni.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.uni.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.uni.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.uni.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uni.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 62398220616143545403804811675786656243198909868, expires on Fri Nov 8 22:16:07 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.uni.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Northern Iowa</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Northern Iowa</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uni.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UNI Shibboleth Support</GivenName>
+ <EmailAddress>shibboleth@uni.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>UNI IT Leadership Team</GivenName>
+ <EmailAddress>it-lt@uni.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UNI Information Security</GivenName>
+ <EmailAddress>security@uni.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UNI IT Service Desk</GivenName>
+ <EmailAddress>servicedesk@uni.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- ALEKS Corporation -->
+<EntityDescriptor entityID="https://secure.aleks.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://secure.aleks.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ALEKS</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ALEKS is an artificially intelligent assessment and learning system founded on ground-breaking research in mathematical cognitive science.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.aleks.com/about_aleks/overview</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.aleks.com/privacy_statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="41" width="206" xml:lang="en">https://www.aleks.com/aleks/logo_top.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11787384246200143106, expires on Sat Jul 11 17:54:19 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure.aleks.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://secure.aleks.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://secure.aleks.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://secure.aleks.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://secure.aleks.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://secure.aleks.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ALEKS</ServiceName>
+ <ServiceDescription xml:lang="en">ALEKS is an artificially intelligent assessment and learning system founded on ground-breaking research in mathematical cognitive science.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">ALEKS Corporation</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">ALEKS Corporation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.aleks.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Nicolas Thiery</GivenName>
+ <EmailAddress>nthiery@aleks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nicolas Thiery</GivenName>
+ <EmailAddress>nthiery@aleks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Nicolas Thiery</GivenName>
+ <EmailAddress>nthiery@aleks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Nicolas Thiery</GivenName>
+ <EmailAddress>nthiery@aleks.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Cayuse, Inc. -->
+<EntityDescriptor entityID="https://api.apps.cayuse.com/sso/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Cayuse Platform SAML Service Provider</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://cayuse.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="150" xml:lang="en">https://cayuse.com/app/uploads/2017/11/logo-cayuse.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13897584030114363368, expires on Tue Mar 23 21:06:41 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://api.apps.cayuse.com/session/sp/assert" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Cayuse, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Cayuse, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cayuse.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://api.qa.apps.cayuse.com/sso/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Cayuse Platform SAML Service Provider (QA)</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://cayuse.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="150" xml:lang="en">https://cayuse.com/app/uploads/2017/11/logo-cayuse.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14028136444728031319, expires on Sun Mar 21 18:15:01 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://api.qa.apps.cayuse.com/session/sp/assert" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Cayuse, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Cayuse, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cayuse.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://api.regression.apps.cayuse.com/sso/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Cayuse Platform SAML Service Provider (Regression)</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://cayuse.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="150" xml:lang="en">https://cayuse.com/app/uploads/2017/11/logo-cayuse.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10420904221625499928, expires on Tue Mar 23 20:12:05 2038 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://api.regression.apps.cayuse.com/session/sp/assert" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Cayuse, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Cayuse, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cayuse.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://api.training.apps.cayuse.com/sso/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Cayuse Platform SAML Service Provider (Training)</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://cayuse.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="150" xml:lang="en">https://cayuse.com/app/uploads/2017/11/logo-cayuse.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15522154290790047800, expires on Tue Mar 23 19:57:01 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://api.training.apps.cayuse.com/session/sp/assert" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Cayuse, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Cayuse, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cayuse.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cayuse Technical Operations</GivenName>
+ <EmailAddress>tekops@cayuse.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Regis University -->
+<EntityDescriptor entityID="https://login.regis.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">regis.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Regis University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.regis.edu/About-Regis-University/Policies-and-Procedures/privacy.aspx?elqTrackId=b6034baee2ae4448b71635a6087ab001&amp;elqaid=92&amp;elqat=2&amp;elqTrackId=b6034baee2ae4448b71635a6087ab001&amp;elqaid=92&amp;elqat=2</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="458" xml:lang="en">https://www.regis.edu/~/media/Images/Logos/RU-logo-official_rev.ashx?la=en</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1282591428897, expires on Wed Aug 22 19:23:48 2012 GMT -->
+ <ds:X509Certificate>
+MIIDWjCCAkKgAwIBAgIGASqgaBEhMA0GCSqGSIb3DQEBBQUAMG4xCzAJBgNVBAYTAlVTMQswCQYD
+VQQIEwJDbzEPMA0GA1UEBxMGRGVudmVyMRkwFwYDVQQKExBSZWdpcyBVbml2ZXJzaXR5MQwwCgYD
+VQQLEwNJVFMxGDAWBgNVBAMTD2xvZ2luLnJlZ2lzLmVkdTAeFw0xMDA4MjMxOTIzNDhaFw0xMjA4
+MjIxOTIzNDhaMG4xCzAJBgNVBAYTAlVTMQswCQYDVQQIEwJDbzEPMA0GA1UEBxMGRGVudmVyMRkw
+FwYDVQQKExBSZWdpcyBVbml2ZXJzaXR5MQwwCgYDVQQLEwNJVFMxGDAWBgNVBAMTD2xvZ2luLnJl
+Z2lzLmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJ6QoQongAUGrHZ9eTcGf0bV
+sSEle3y522qHTF2+kBMZaxcCtD9s12rOPkhIbgnmKeQMOr9abSyu9aY1RKcjIzE6eozkvvmsjjfU
+aRBLXEMzW33CmFmEa2EP5RrNNmQkHJvjb2ZCoZJOjYSi+wnlSROkw3yxxj2ChV/FwhuMwXVZL/pL
+FCwO/XNNRjWaqyUbrHzbqVVlpch8NU0XyhaUlWfsxqqikWeEaPCT1VPWWLfzKiiuz9u9yqTcyuo8
++g+gJ/ovzKOQ7ae6UGJL4rMzxK4fvYrMO0EWgfYRFnl8ShJ0AS5KIaSpwcufhBC2EhaV2gN7uI/E
+YkVnimyG/wvlNwMCAwEAATANBgkqhkiG9w0BAQUFAAOCAQEAemW0ASJe3Z5LbvPjskXhCA8fxq5D
+vaUH4GQUceN6JfBlugrwd1ivzhe5ez5vIwQPNmQiwdQphr0nXehMCm1WXsM8/Q9/VUF0FHzxLCB+
+79OKVSlCIMCZW77q4HqcXfGzxPqJr55f8oYb325AcvgugLclm5nLX+/hwGJoaBhoLju4ZI5DbgUg
+zRYY89D7K/WkbnW7gFRPZ8NTP+U5m2e+NP/+Xm0og9O2YhilNZH3Mn+NSZwNdbXJ5RXv4Wrq0F4e
+rEHhvsmbrjPpcG8BJ46pYReen2ZTZ1uEVmHsaAFD6Fz0nsWj7BwKPptmnkMPgxJ57Wod96ysgGjn
+zwa3cLKnmg==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.regis.edu/idp/soap.ssaml1" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.regis.edu/idp/ARS.ssaml2" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.regis.edu/idp/SSO.saml2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.regis.edu/idp/SSO.saml2"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">regis.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1282591428897, expires on Wed Aug 22 19:23:48 2012 GMT -->
+ <ds:X509Certificate>
+MIIDWjCCAkKgAwIBAgIGASqgaBEhMA0GCSqGSIb3DQEBBQUAMG4xCzAJBgNVBAYTAlVTMQswCQYD
+VQQIEwJDbzEPMA0GA1UEBxMGRGVudmVyMRkwFwYDVQQKExBSZWdpcyBVbml2ZXJzaXR5MQwwCgYD
+VQQLEwNJVFMxGDAWBgNVBAMTD2xvZ2luLnJlZ2lzLmVkdTAeFw0xMDA4MjMxOTIzNDhaFw0xMjA4
+MjIxOTIzNDhaMG4xCzAJBgNVBAYTAlVTMQswCQYDVQQIEwJDbzEPMA0GA1UEBxMGRGVudmVyMRkw
+FwYDVQQKExBSZWdpcyBVbml2ZXJzaXR5MQwwCgYDVQQLEwNJVFMxGDAWBgNVBAMTD2xvZ2luLnJl
+Z2lzLmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJ6QoQongAUGrHZ9eTcGf0bV
+sSEle3y522qHTF2+kBMZaxcCtD9s12rOPkhIbgnmKeQMOr9abSyu9aY1RKcjIzE6eozkvvmsjjfU
+aRBLXEMzW33CmFmEa2EP5RrNNmQkHJvjb2ZCoZJOjYSi+wnlSROkw3yxxj2ChV/FwhuMwXVZL/pL
+FCwO/XNNRjWaqyUbrHzbqVVlpch8NU0XyhaUlWfsxqqikWeEaPCT1VPWWLfzKiiuz9u9yqTcyuo8
++g+gJ/ovzKOQ7ae6UGJL4rMzxK4fvYrMO0EWgfYRFnl8ShJ0AS5KIaSpwcufhBC2EhaV2gN7uI/E
+YkVnimyG/wvlNwMCAwEAATANBgkqhkiG9w0BAQUFAAOCAQEAemW0ASJe3Z5LbvPjskXhCA8fxq5D
+vaUH4GQUceN6JfBlugrwd1ivzhe5ez5vIwQPNmQiwdQphr0nXehMCm1WXsM8/Q9/VUF0FHzxLCB+
+79OKVSlCIMCZW77q4HqcXfGzxPqJr55f8oYb325AcvgugLclm5nLX+/hwGJoaBhoLju4ZI5DbgUg
+zRYY89D7K/WkbnW7gFRPZ8NTP+U5m2e+NP/+Xm0og9O2YhilNZH3Mn+NSZwNdbXJ5RXv4Wrq0F4e
+rEHhvsmbrjPpcG8BJ46pYReen2ZTZ1uEVmHsaAFD6Fz0nsWj7BwKPptmnkMPgxJ57Wod96ysgGjn
+zwa3cLKnmg==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.regis.edu/idp/attrsvc.ssaml2"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Regis University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Regis University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://regis.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jerry Perez</GivenName>
+ <EmailAddress>jperez@regis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Celeste Melville</GivenName>
+ <EmailAddress>cmelvill@regis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Sara Porter</GivenName>
+ <EmailAddress>saporter@regis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chuck Steigerwalt</GivenName>
+ <EmailAddress>iso@regis.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Desire2Learn Inc. -->
+<EntityDescriptor entityID="https://arizona.brightspace.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://arizona.brightspace.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Arizona – Desire2Learn</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Arizona</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.d2l.com/support/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.d2l.com/legal/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="152" xml:lang="en">https://www.d2l.com/wp-content/themes/d2l-2016/dist/images/d2l-logo-full-2x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11704618571075536750, expires on Thu Apr 4 14:38:45 2115 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arizona.brightspace.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://arizona.brightspace.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://arizona.brightspace.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arizona.brightspace.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://arizona.brightspace.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://arizona.brightspace.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://arizona.brightspace.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://arizona.brightspace.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://arizona.brightspace.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Arizona – Desire2Learn</ServiceName>
+ <ServiceDescription xml:lang="en">University of Arizona</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Desire2Learn Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Desire2Learn Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.desire2learn.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@desire2learn.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@desire2learn.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@desire2learn.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incident</GivenName>
+ <EmailAddress>incident@d2l.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://arizonatest.brightspace.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://arizonatest.brightspace.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Arizona – Desire2Learn</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Arizona</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.d2l.com/support/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.d2l.com/legal/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="152" xml:lang="en">https://www.d2l.com/wp-content/themes/d2l-2016/dist/images/d2l-logo-full-2x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17591794017181284720, expires on Thu May 2 14:16:03 2115 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://arizonatest.brightspace.com/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://arizonatest.brightspace.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arizonatest.brightspace.com/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://arizonatest.brightspace.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://arizonatest.brightspace.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://arizonatest.brightspace.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://arizonatest.brightspace.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://arizonatest.brightspace.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://arizonatest.brightspace.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Arizona – Desire2Learn</ServiceName>
+ <ServiceDescription xml:lang="en">University of Arizona</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Desire2Learn Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Desire2Learn Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.desire2learn.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@desire2learn.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@desire2learn.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@desire2learn.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incident</GivenName>
+ <EmailAddress>incident@d2l.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://bloomudev.desire2learn.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://bloomudev.desire2learn.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PASSHE Bloomsburg - Dev- Desire2Learn</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PASSHE Bloomsburg - Dev- Desire2Learn </mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.d2l.com/support/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.d2l.com/legal/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="152" xml:lang="en">https://www.d2l.com/wp-content/themes/d2l-2016/dist/images/d2l-logo-full-2x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16281095619058690243, expires on Thu Apr 6 17:06:36 2113 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bloomudev.desire2learn.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://bloomudev.desire2learn.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bloomudev.desire2learn.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bloomudev.desire2learn.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://bloomudev.desire2learn.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://bloomudev.desire2learn.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PASSHE Bloomsburg - Dev- Desire2Learn</ServiceName>
+ <ServiceDescription xml:lang="en">PASSHE Bloomsburg - Dev- Desire2Learn </ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Desire2Learn Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Desire2Learn Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.desire2learn.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@desire2learn.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@desire2learn.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@desire2learn.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incident</GivenName>
+ <EmailAddress>incident@d2l.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://bloomutest.desire2learn.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://bloomutest.desire2learn.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PASSHE Bloomsburg - TEST - Desire2Learn</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.d2l.com/support/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.d2l.com/legal/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="152" xml:lang="en">https://www.d2l.com/wp-content/themes/d2l-2016/dist/images/d2l-logo-full-2x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14881620653656313669, expires on Wed Apr 5 18:35:20 2113 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bloomutest.desire2learn.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://bloomutest.desire2learn.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bloomutest.desire2learn.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bloomutest.desire2learn.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://bloomutest.desire2learn.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://bloomutest.desire2learn.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PASSHE Bloomsburg - TEST - Desire2Learn</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Desire2Learn Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Desire2Learn Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.desire2learn.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@desire2learn.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@desire2learn.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@desire2learn.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incident</GivenName>
+ <EmailAddress>incident@d2l.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wmich.brightspace.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wmich.brightspace.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">WMU-WMU – Desire2Learn</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Western Michigan University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.d2l.com/support/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.d2l.com/legal/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="152" xml:lang="en">https://www.d2l.com/wp-content/themes/d2l-2016/dist/images/d2l-logo-full-2x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10939359303394043302, expires on Sun Apr 21 16:59:17 2041 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://wmich.brightspace.com/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wmich.brightspace.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wmich.brightspace.com/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wmich.brightspace.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wmich.brightspace.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wmich.brightspace.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wmich.brightspace.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wmich.brightspace.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wmich.brightspace.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">WMU-WMU – Desire2Learn</ServiceName>
+ <ServiceDescription xml:lang="en">Western Michigan University</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Desire2Learn Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Desire2Learn Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.desire2learn.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@desire2learn.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@desire2learn.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@desire2learn.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incident</GivenName>
+ <EmailAddress>incident@d2l.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Massachusetts Boston -->
+<EntityDescriptor entityID="https://vm-shibboleth.umb.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://vm-shibboleth.umb.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umb.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Massachusetts Boston</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Massachusetts, Boston</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.umb.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.umb.edu/privacy_terms</mdui:PrivacyStatementURL>
+ <mdui:Logo height="141" width="116" xml:lang="en">https://vm-shibboleth.umb.edu/umb_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 499438015345946343495929418237157193003243061475, expires on Mon Oct 5 20:51:01 2037 GMT -->
+ <ds:X509Certificate>
+MIIDPzCCAiegAwIBAgIUV3uTPhAI/SExJMFNAHONlTFOwOMwDQYJKoZIhvcNAQEF
+BQAwIDEeMBwGA1UEAxMVdm0tc2hpYmJvbGV0aC51bWIuZWR1MB4XDTE3MTAwNTIw
+NTEwMVoXDTM3MTAwNTIwNTEwMVowIDEeMBwGA1UEAxMVdm0tc2hpYmJvbGV0aC51
+bWIuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAiTdoy9N1aGVw
+QNewTZghquwcKVE0IHFoTll4VGXfk9YhXDxrAhnaBOdUH3ChCHFBr0LcVeaMxkFd
+geWNgd5m/jgXZOwmyzEpYjYgGbYS6L4rNKcA5iJrDbDn6mR1Gu9zZ/Lf7sq0Uhqc
+eJoPVjW+18uxZmuOwEUbuP4IPTru7lkZi1svMTUGckQH+FiBOW6zyRuL2Fl1+jo9
+OM1E4CL5x7KkCmQOWKIqw2yXF0spkDkKZ2w3ahxF4+r4xmmDkSfm6UR6WeNXmokM
+C2A3bWrhMnozgz5/3H4QGqLM6BqtM8pxjKddOq1352Mg5qLLEhTOUq/0XIWkW7C8
+uCFrGAdIMwIDAQABo3EwbzBOBgNVHREERzBFghV2bS1zaGliYm9sZXRoLnVtYi5l
+ZHWGLGh0dHBzOi8vdm0tc2hpYmJvbGV0aC51bWIuZWR1L2lkcC9zaGliYm9sZXRo
+MB0GA1UdDgQWBBQiPsj5fn04rjB0TuYuTf/yOTqwOzANBgkqhkiG9w0BAQUFAAOC
+AQEAOUA9inQXxgDFPoUjBh145l0RrLkAvQp93BVCvTyrQpR60zkG6YmWF4Pu+eSN
+wjwW3DUbtIG3CCijZtjQ6+pFHW5pbBiYy0fUXZ7qGvubm69Mwc128yXlMbt9y4PI
+M8aA8PunfmGBTqGVcw5OFNu8YzgV0WOxmJu72bkEkQMhMpWBoWW5I3uk1XezmycN
+Jibl0/UF4Jm9Bvk5mjN5RipK6l3M8/NrixTaJCyvNpIddmu+w05N4DgR5oWFqdE2
+9Jlinu3XIYT/Dx0z1/MXbxrawHAE9HwfoT8CbG4XT5xVhqBJJ4E9RnT4KBF6QUIh
+MMf3f3pSQ/nyWub3RIYlBSAsVw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://vm-shibboleth.umb.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vm-shibboleth.umb.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://vm-shibboleth.umb.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vm-shibboleth.umb.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vm-shibboleth.umb.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umb.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 499438015345946343495929418237157193003243061475, expires on Mon Oct 5 20:51:01 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 123728600652908059234203511699630667408, expires on Sun Oct 8 23:59:59 2017 GMT -->
+ <ds:X509Certificate>
+MIIFvzCCBKegAwIBAgIQXRVC/prBbahteHW9QGc2kDANBgkqhkiG9w0BAQsFADB2
+MQswCQYDVQQGEwJVUzELMAkGA1UECBMCTUkxEjAQBgNVBAcTCUFubiBBcmJvcjES
+MBAGA1UEChMJSW50ZXJuZXQyMREwDwYDVQQLEwhJbkNvbW1vbjEfMB0GA1UEAxMW
+SW5Db21tb24gUlNBIFNlcnZlciBDQTAeFw0xNDEwMDkwMDAwMDBaFw0xNzEwMDgy
+MzU5NTlaMIHzMQswCQYDVQQGEwJVUzEOMAwGA1UEERMFMDIxMjUxCzAJBgNVBAgT
+Ak1BMQ8wDQYDVQQHEwZCb3N0b24xIDAeBgNVBAkTFzEwMCBNb3JyaXNzZXkgQm91
+bGV2YXJkMSswKQYDVQQKEyJVbml2ZXJzaXR5IG9mIE1hc3NhY2h1c2V0dHMgQm9z
+dG9uMTEwLwYDVQQLEyhJbmZvcm1hdGlvbiBUZWNobm9sb2d5IFNlcnZpY2VzIERp
+dmlzaW9uMRQwEgYDVQQLEwtQbGF0aW51bVNTTDEeMBwGA1UEAxMVdm0tc2hpYmJv
+bGV0aC51bWIuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA8PtK
+5CDTHI0ioAT7fB2d+DIWJCdDjy0lcbQPT70SeH6AKUISJTtg02aCl/+a02ZWWUus
+SrbgEsiDPCv07h4U4NLL21f+pITLISK8Q5VQDGISIqsh2oyZzvvUpi1LnCPU8tos
+FVl21Zw/k/cbl/jfG/JEYb73m7oQ6srem04GsSmbfFZJq6GTam92Bg1yxuKmhqyM
+XOcJFJXvZUBmXNyRyvT6VrESNHV9m3hFEgrL+TaL2UXBcBIYDV3hqFik9kqBkoj9
+V7rbLSdXC7s9g0NLSpPmYqE4oTWqt1RgAgxEVRXD+nuwplknPxVLCP6vRXJhWt7p
+74VOu64RgDjCI9YEqwIDAQABo4IByTCCAcUwHwYDVR0jBBgwFoAUHgWjd49sluJb
+h0umtIascQAM5zgwHQYDVR0OBBYEFMF8qgtbkD420iv5Khmt8sCcX/FpMA4GA1Ud
+DwEB/wQEAwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggr
+BgEFBQcDAjBnBgNVHSAEYDBeMFIGDCsGAQQBriMBBAMBATBCMEAGCCsGAQUFBwIB
+FjRodHRwczovL3d3dy5pbmNvbW1vbi5vcmcvY2VydC9yZXBvc2l0b3J5L2Nwc19z
+c2wucGRmMAgGBmeBDAECAjBEBgNVHR8EPTA7MDmgN6A1hjNodHRwOi8vY3JsLmlu
+Y29tbW9uLXJzYS5vcmcvSW5Db21tb25SU0FTZXJ2ZXJDQS5jcmwwdQYIKwYBBQUH
+AQEEaTBnMD4GCCsGAQUFBzAChjJodHRwOi8vY3J0LnVzZXJ0cnVzdC5jb20vSW5D
+b21tb25SU0FTZXJ2ZXJDQV8yLmNydDAlBggrBgEFBQcwAYYZaHR0cDovL29jc3Au
+dXNlcnRydXN0LmNvbTAgBgNVHREEGTAXghV2bS1zaGliYm9sZXRoLnVtYi5lZHUw
+DQYJKoZIhvcNAQELBQADggEBAHqEHQ84nWUbB4uaYHl8GdD+VSbQcl8j4uVC60Dz
+xK2OOVE44bOBiGi4D4qTCGx5zIyu9GR0zqJNWsqb7fDssXvLDtCJujgOeg8sC1+R
+HtJWIZDdRewvv3CjsvC8HEMOCF/ccGj6DN5GgnyQ0K8a/MjldjomVWJ7mgB3p0Hw
+4cmV4DN5nJVHx588Zcy6lbRS2PmsZ+l7F80UB1s78p4Uzbu+TVsu7Wm2H7MyV7VD
+h5hVfhvFBc3oaiIZO4BFagetIk+nb7HBj5Av0BmZUMY24RJk7kaNUspVfnr7cl7S
+S+Nii5H5ZBvs91SaKPTriRVVu4CleuRbdvYmjRbWVhQvnJk=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://vm-shibboleth.umb.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://vm-shibboleth.umb.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Massachusetts Boston</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Massachusetts Boston</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://umb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Brian Forbes</GivenName>
+ <EmailAddress>brian.forbes@umb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Daniel McDonald</GivenName>
+ <EmailAddress>daniel.mcdonald@umb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brian Forbes</GivenName>
+ <EmailAddress>brian.forbes@umb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Daniel McDonald</GivenName>
+ <EmailAddress>daniel.mcdonald@umb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brian Forbes</GivenName>
+ <EmailAddress>brian.forbes@umb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Daniel McDonald</GivenName>
+ <EmailAddress>daniel.mcdonald@umb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Brian Forbes</GivenName>
+ <EmailAddress>brian.forbes@umb.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- East Carolina University -->
+<EntityDescriptor entityID="https://sso.ecu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ecu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">East Carolina University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Login for ECU Faculty/Staff/Students</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ecu.edu/terms</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="200" xml:lang="en">https://www.ecu.edu/cs-admin/mktg/images/ECU_lockup_primary_Purple.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15485729396173912097, expires on Tue Sep 27 14:39:05 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.ecu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.ecu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.ecu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.ecu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.ecu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sso.ecu.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ecu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15485729396173912097, expires on Tue Sep 27 14:39:05 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.ecu.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.ecu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">East Carolina University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">East Carolina University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ecu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kris Augustus</GivenName>
+ <EmailAddress>augustusk@ecu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jospeh Sawyer</GivenName>
+ <EmailAddress>sawyerr16@ecu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Joseph Sawyer</GivenName>
+ <EmailAddress>sawyerr16@ecu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Georgia Institute of Technology -->
+<EntityDescriptor entityID="https://idp.gatech.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">gatech.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Georgia Institute of Technology</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policylibrary.gatech.edu/information-technology/data-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="180" width="409" xml:lang="en">https://idp.gatech.edu/idp/images/dummylogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 865461898849652540151710298784312862970485228440, expires on Fri Jul 19 19:04:02 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.gatech.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.gatech.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.gatech.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.gatech.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.gatech.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">gatech.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 865461898849652540151710298784312862970485228440, expires on Fri Jul 19 19:04:02 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.gatech.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Georgia Institute of Technology</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Georgia Institute of Technology</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.gatech.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Eric Buckhalt</GivenName>
+ <EmailAddress>eric.buckhalt@oit.gatech.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Georgia Tech Cyber Security</GivenName>
+ <EmailAddress>soc@gatech.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Bryson</GivenName>
+ <EmailAddress>john.bryson@oit.gatech.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dusty Edenfield</GivenName>
+ <EmailAddress>dusty.edenfield@oit.gatech.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Hawaii -->
+<EntityDescriptor entityID="https://idp.hawaii.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://hawaii.edu/idp/shibboleth/error" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">hawaii.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Hawaii</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UH Login</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.hawaii.edu/bwiki/display/UHIAM/InCommon+Participation</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.hawaii.edu/bwiki/display/UHIAM/UH+Login+Privacy+Policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="50" xml:lang="en">https://idp.hawaii.edu/UH_System_Logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 619035295954041531330753943280248089694796081715, expires on Sat Jun 8 01:48:28 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.hawaii.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.hawaii.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Hawaii</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Hawaii</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hawaii.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UH ITS Identity and Access Management</GivenName>
+ <EmailAddress>its-iam-help@lists.hawaii.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Hodges</GivenName>
+ <EmailAddress>mhodges@hawaii.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>ITS Help Desk</GivenName>
+ <EmailAddress>help@hawaii.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jodi Ito</GivenName>
+ <EmailAddress>infosec@hawaii.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Fermi National Accelerator Laboratory -->
+<EntityDescriptor entityID="https://fnal-fed-auth.fnal.gov/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Production Fermilab Federation Hub SP</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.fnal.gov/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.fnal.gov/pub/disclaim.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="600" xml:lang="en">https://pingprod.fnal.gov:9031/files/flogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1528898391506, expires on Sat Jun 10 13:59:51 2028 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pingprod.fnal.gov:9031/sp/SLO.saml2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pingprod.fnal.gov:9031/sp/ACS.saml2" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Production Fermilab Federation Hub SP</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Fermi National Accelerator Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Fermi National Accelerator Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.fnal.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Authentication Services</GivenName>
+ <EmailAddress>auth@fnal.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Authentication Services</GivenName>
+ <EmailAddress>auth@fnal.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cyber Security</GivenName>
+ <EmailAddress>cybersecurity@fnal.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Service Desk</GivenName>
+ <EmailAddress>servicedesk@fnal.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://idp.fnal.gov/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://pingprod.fnal.gov:9031/files/error.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fnal.gov</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fermi National Accelerator Laboratory</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Fermilab's Production IdP Server</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.fnal.gov/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.fnal.gov/pub/disclaim.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="597" xml:lang="en">https://pingprod.fnal.gov:9031/files/flogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1528898391506, expires on Sat Jun 10 13:59:51 2028 GMT -->
+ <ds:X509Certificate>
+MIIDtDCCApygAwIBAgIGAWP5cg3SMA0GCSqGSIb3DQEBCwUAMIGaMQswCQYDVQQGEwJVUzELMAkG
+A1UECBMCSWwxEDAOBgNVBAcTB0JhdGF2aWExLjAsBgNVBAoTJUZlcm1pIE5hdGlvbmFsIEFjY2Vs
+ZXJhdG9yIExhYm9yYXRvcnkxIDAeBgNVBAsTF0F1dGhlbnRpY2F0aW9uIFNlcnZpY2VzMRowGAYD
+VQQDExFwaW5ncHJvZC5mbmFsLmdvdjAeFw0xODA2MTMxMzU5NTFaFw0yODA2MTAxMzU5NTFaMIGa
+MQswCQYDVQQGEwJVUzELMAkGA1UECBMCSWwxEDAOBgNVBAcTB0JhdGF2aWExLjAsBgNVBAoTJUZl
+cm1pIE5hdGlvbmFsIEFjY2VsZXJhdG9yIExhYm9yYXRvcnkxIDAeBgNVBAsTF0F1dGhlbnRpY2F0
+aW9uIFNlcnZpY2VzMRowGAYDVQQDExFwaW5ncHJvZC5mbmFsLmdvdjCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBAJuS0MFEFcKHT3I89X4l7wmrc88GNu9l5YbCn5QHUY8WnTVeVmgS+0L4
+MXtehbu7Q2hCyvblYuSvIjdWrbwcAS7PJooQUoj1WzOSMGhezUKIJzEQu6B/0zV338oCoQjvkFkk
+iuzzCMrg24QL4f+z5fxBSnsNXCSvwi1XDLf0WakYB1tB7yKVzJSPAhPAEqclzygVwH0TYA37/4+D
+Wa64IeRVTcYYNv10hsze3ABwkO+ObxUXeiNSwbb8ef857I5NSJPCMVUP3pMedfpFofRcDbta9P17
+DfS7sOTzvvHkGtyRHAkxl6n9ulYRztSxb/uX/AyTY9fduawC4yb0LWLMIIsCAwEAATANBgkqhkiG
+9w0BAQsFAAOCAQEAjbChGEEGXC3zTPu6GbDo4XI4G6OoqN43dpBRH/ByfZeS/sMqKZcNm/lb12na
+9m1cGttjrTaiNK/Hx9QrPAEW5558j9hzWSCyE4RnZIdP71/GWQOf/mlXBdBcOJpFlIFRagr7rDej
+ZIXhpKjolOMWweppPtclcLXOARYNSTv3EXg1xUkyJ8VfqNSwfR2JsWjOsHFIm3o18CW1XUMxCEp/
+QZAzUrWat4FC33fXK0JfpDIwVrp+gf/VIqmcIhhlXF38KA4xwNr5Y9e9oqsSsrK9m2UYjPmDNKvi
+BP6KY4wWBFgsZcyCyaqLxlIl4VzsoYg14Qbm0fCO6/sm0Es4iqI9xQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1436298451263, expires on Fri Jul 6 19:47:31 2018 GMT -->
+ <ds:X509Certificate>
+MIIDtDCCApygAwIBAgIGAU5qDxk/MA0GCSqGSIb3DQEBCwUAMIGaMQswCQYDVQQGEwJVUzELMAkG
+A1UECBMCSUwxEDAOBgNVBAcTB0JhdGF2aWExLjAsBgNVBAoTJUZlcm1pIE5hdGlvbmFsIEFjY2Vs
+ZXJhdG9yIExhYm9yYXRvcnkxIDAeBgNVBAsTF0F1dGhlbnRpY2F0aW9uIFNlcnZpY2VzMRowGAYD
+VQQDExFwaW5ncHJvZC5mbmFsLmdvdjAeFw0xNTA3MDcxOTQ3MzFaFw0xODA3MDYxOTQ3MzFaMIGa
+MQswCQYDVQQGEwJVUzELMAkGA1UECBMCSUwxEDAOBgNVBAcTB0JhdGF2aWExLjAsBgNVBAoTJUZl
+cm1pIE5hdGlvbmFsIEFjY2VsZXJhdG9yIExhYm9yYXRvcnkxIDAeBgNVBAsTF0F1dGhlbnRpY2F0
+aW9uIFNlcnZpY2VzMRowGAYDVQQDExFwaW5ncHJvZC5mbmFsLmdvdjCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBAJd08n1npTMlLcBxZ8x/Wq99VdL0+EcipNjlJtwi9A8pXs4b42eokzpH
+WBOLWW7CF8KVkkeJsZHI9F/ik8u3V6r2BiPOEp9vjRgqE+BAt2zlRor+H/nqv5PyZ/L6/yLY4p8H
+AwdzjXa+CeWMlW8sClwNBR28yqt0a+lUyxApWNR2kyMU98EteGnAzEHdu6kCX6rDc1VoDlLbGajm
+TrPMypPcU3+PgDmVcRNLId3Htlq9IU82zgn9qMVDV6n8p85Yh+RzJDwETIqB8Us8697MDribOa0o
+3t4QOSJKFfbP3o8y/E+GEqWOGxsprJuI+EMb+zFVq1VdkhMi5fG6AKAXKzECAwEAATANBgkqhkiG
+9w0BAQsFAAOCAQEAaWUX/S/J4FoNHaN0jW2la9XpjEmIH0zzHCKkv794CtkJwihfKrXH/5ntu3z6
+WTtRUQRiv3JtTsRyNBDJeY1EJGlxnAoeGk1shSc9wbqXXm/XbhUTiZa9/NOG9jlq/7EWaaCaTRa7
+1eDB/QOMVwGm0RWW7j9r42hg/l9Sm+LtfCdkvTqZAQIz5UMD7LvWAvyv7EGv9t3NH6USbzrADsax
+vmLXS1toaIkjZd90Pvl5MkNQ7k7YXYaOJThjpXOBDyNdPGanCcaJQItGS6EG3dbKRdOqLxhYym42
+63F3WI6GgeS6dTHvrYMBaR6B5dDX7xa2rdsSp8pkSE3xk3OwvbJePw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pingprod.fnal.gov:9031/idp/ARS.ssaml2" index="1"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pingprod.fnal.gov:9031/idp/SSO.saml2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pingprod.fnal.gov:9031/idp/SSO.saml2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ecp-test.fnal.gov/idp/profile/SAML2/SOAP/ECP"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ecp-prod.fnal.gov/idp/profile/SAML2/SOAP/ECP"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ecp-prod.fnal.gov/idp-krb/profile/SAML2/SOAP/ECP"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ecp-test.fnal.gov/idp-krb/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fnal.gov</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1528898391506, expires on Sat Jun 10 13:59:51 2028 GMT -->
+ <ds:X509Certificate>
+MIIDtDCCApygAwIBAgIGAWP5cg3SMA0GCSqGSIb3DQEBCwUAMIGaMQswCQYDVQQGEwJVUzELMAkG
+A1UECBMCSWwxEDAOBgNVBAcTB0JhdGF2aWExLjAsBgNVBAoTJUZlcm1pIE5hdGlvbmFsIEFjY2Vs
+ZXJhdG9yIExhYm9yYXRvcnkxIDAeBgNVBAsTF0F1dGhlbnRpY2F0aW9uIFNlcnZpY2VzMRowGAYD
+VQQDExFwaW5ncHJvZC5mbmFsLmdvdjAeFw0xODA2MTMxMzU5NTFaFw0yODA2MTAxMzU5NTFaMIGa
+MQswCQYDVQQGEwJVUzELMAkGA1UECBMCSWwxEDAOBgNVBAcTB0JhdGF2aWExLjAsBgNVBAoTJUZl
+cm1pIE5hdGlvbmFsIEFjY2VsZXJhdG9yIExhYm9yYXRvcnkxIDAeBgNVBAsTF0F1dGhlbnRpY2F0
+aW9uIFNlcnZpY2VzMRowGAYDVQQDExFwaW5ncHJvZC5mbmFsLmdvdjCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBAJuS0MFEFcKHT3I89X4l7wmrc88GNu9l5YbCn5QHUY8WnTVeVmgS+0L4
+MXtehbu7Q2hCyvblYuSvIjdWrbwcAS7PJooQUoj1WzOSMGhezUKIJzEQu6B/0zV338oCoQjvkFkk
+iuzzCMrg24QL4f+z5fxBSnsNXCSvwi1XDLf0WakYB1tB7yKVzJSPAhPAEqclzygVwH0TYA37/4+D
+Wa64IeRVTcYYNv10hsze3ABwkO+ObxUXeiNSwbb8ef857I5NSJPCMVUP3pMedfpFofRcDbta9P17
+DfS7sOTzvvHkGtyRHAkxl6n9ulYRztSxb/uX/AyTY9fduawC4yb0LWLMIIsCAwEAATANBgkqhkiG
+9w0BAQsFAAOCAQEAjbChGEEGXC3zTPu6GbDo4XI4G6OoqN43dpBRH/ByfZeS/sMqKZcNm/lb12na
+9m1cGttjrTaiNK/Hx9QrPAEW5558j9hzWSCyE4RnZIdP71/GWQOf/mlXBdBcOJpFlIFRagr7rDej
+ZIXhpKjolOMWweppPtclcLXOARYNSTv3EXg1xUkyJ8VfqNSwfR2JsWjOsHFIm3o18CW1XUMxCEp/
+QZAzUrWat4FC33fXK0JfpDIwVrp+gf/VIqmcIhhlXF38KA4xwNr5Y9e9oqsSsrK9m2UYjPmDNKvi
+BP6KY4wWBFgsZcyCyaqLxlIl4VzsoYg14Qbm0fCO6/sm0Es4iqI9xQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1436298451263, expires on Fri Jul 6 19:47:31 2018 GMT -->
+ <ds:X509Certificate>
+MIIDtDCCApygAwIBAgIGAU5qDxk/MA0GCSqGSIb3DQEBCwUAMIGaMQswCQYDVQQGEwJVUzELMAkG
+A1UECBMCSUwxEDAOBgNVBAcTB0JhdGF2aWExLjAsBgNVBAoTJUZlcm1pIE5hdGlvbmFsIEFjY2Vs
+ZXJhdG9yIExhYm9yYXRvcnkxIDAeBgNVBAsTF0F1dGhlbnRpY2F0aW9uIFNlcnZpY2VzMRowGAYD
+VQQDExFwaW5ncHJvZC5mbmFsLmdvdjAeFw0xNTA3MDcxOTQ3MzFaFw0xODA3MDYxOTQ3MzFaMIGa
+MQswCQYDVQQGEwJVUzELMAkGA1UECBMCSUwxEDAOBgNVBAcTB0JhdGF2aWExLjAsBgNVBAoTJUZl
+cm1pIE5hdGlvbmFsIEFjY2VsZXJhdG9yIExhYm9yYXRvcnkxIDAeBgNVBAsTF0F1dGhlbnRpY2F0
+aW9uIFNlcnZpY2VzMRowGAYDVQQDExFwaW5ncHJvZC5mbmFsLmdvdjCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBAJd08n1npTMlLcBxZ8x/Wq99VdL0+EcipNjlJtwi9A8pXs4b42eokzpH
+WBOLWW7CF8KVkkeJsZHI9F/ik8u3V6r2BiPOEp9vjRgqE+BAt2zlRor+H/nqv5PyZ/L6/yLY4p8H
+AwdzjXa+CeWMlW8sClwNBR28yqt0a+lUyxApWNR2kyMU98EteGnAzEHdu6kCX6rDc1VoDlLbGajm
+TrPMypPcU3+PgDmVcRNLId3Htlq9IU82zgn9qMVDV6n8p85Yh+RzJDwETIqB8Us8697MDribOa0o
+3t4QOSJKFfbP3o8y/E+GEqWOGxsprJuI+EMb+zFVq1VdkhMi5fG6AKAXKzECAwEAATANBgkqhkiG
+9w0BAQsFAAOCAQEAaWUX/S/J4FoNHaN0jW2la9XpjEmIH0zzHCKkv794CtkJwihfKrXH/5ntu3z6
+WTtRUQRiv3JtTsRyNBDJeY1EJGlxnAoeGk1shSc9wbqXXm/XbhUTiZa9/NOG9jlq/7EWaaCaTRa7
+1eDB/QOMVwGm0RWW7j9r42hg/l9Sm+LtfCdkvTqZAQIz5UMD7LvWAvyv7EGv9t3NH6USbzrADsax
+vmLXS1toaIkjZd90Pvl5MkNQ7k7YXYaOJThjpXOBDyNdPGanCcaJQItGS6EG3dbKRdOqLxhYym42
+63F3WI6GgeS6dTHvrYMBaR6B5dDX7xa2rdsSp8pkSE3xk3OwvbJePw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://pingprod.fnal.gov:9031/idp/attrsvc.ssaml2"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Fermi National Accelerator Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Fermi National Accelerator Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.fnal.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mine Altunay</GivenName>
+ <EmailAddress>maltunay@fnal.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Authentication Group</GivenName>
+ <EmailAddress>auth@fnal.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Authentication Group</GivenName>
+ <EmailAddress>auth@fnal.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Service Desk</GivenName>
+ <EmailAddress>servicedesk@fnal.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Computer Security Response Team</GivenName>
+ <EmailAddress>cybersecurity@fnal.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://pingdev.fnal.gov/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fermilab Federation Hub SP</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.fnal.gov/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.fnal.gov/pub/disclaim.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="597" xml:lang="en">https://pingprod.fnal.gov:9031/files/flogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1525279779482, expires on Sat Apr 29 16:49:39 2028 GMT -->
+ <ds:X509Certificate>
+MIIDsjCCApqgAwIBAgIGAWMhwmqaMA0GCSqGSIb3DQEBCwUAMIGZMQswCQYDVQQGEwJVUzELMAkGA1UECBMCSWwxEDAOBgNVBAcTB0JhdGF2aWExLjAsBgNVBAoTJUZlcm1pIE5hdGlvbmFsIEFjY2VsYXJhdG9yIExhYm9yYXRvcnkxIDAeBgNVBAsTF0F1dGhlbnRpY2F0aW9uIFNlcnZpY2VzMRkwFwYDVQQDExBwaW5nZGV2LmZuYWwuZ292MB4XDTE4MDUwMjE2NDkzOVoXDTI4MDQyOTE2NDkzOVowgZkxCzAJBgNVBAYTAlVTMQswCQYDVQQIEwJJbDEQMA4GA1UEBxMHQmF0YXZpYTEuMCwGA1UEChMlRmVybWkgTmF0aW9uYWwgQWNjZWxhcmF0b3IgTGFib3JhdG9yeTEgMB4GA1UECxMXQXV0aGVudGljYXRpb24gU2VydmljZXMxGTAXBgNVBAMTEHBpbmdkZXYuZm5hbC5nb3YwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDPa2K6NHTO6ks6KOmcsnosYiNxF6wk/XHicjc0cElVaVqhYbZBRDJZijiqDKcrfo3Kr7rez39hY3FY+y11QlLfYde7dLgxiYZtOTbjy5CDFyk71R5iUQmrOe5reImM7Eopf23j0SBcn0ZUwjJqZq4snTJ67M5C3+7jp7Ca5DSEEjNR8UoDxXLO+GZzyZ7curWxhK0wkFjXFuS7aPgssVvy19GiguH1smvHnx+wdssiX5dHu2R+UaBdW22SxxxKeGCyKL45icwkq0bApnZ7yISpcefz1qyNwJ+RlYgBSRP/gHY09txJsX6OKCmsIPNy24dnZaHpKKbRkemT39FMukF9AgMBAAEwDQYJKoZIhvcNAQELBQADggEBAKva5b55PjmM+5lxya5APdy4biuwByijT9ScobbvrUL9SNVnDBqFpa1g3dxrpsHJWyiFLdvwLUVqWY95JF4RrTe87aW41Wfubf3lsWkyjiYlSAyZFx9f+btuu2oBK4mxM9z7usXStXmIlgW7Af1iZlmeMSzj0+Ds02PbgM8Xc1EELYRD/Gd3Tuu3Tz+ITZncpYow5gK7GxgCvmZSD1DZwQnUdQRRsLoMkaaJQNvUXfmvofE6QZevH18wiUP50ZGjeLnozraDg5JSY/PS9B3iXQafVDWF33iTsgO1obQX11IxNnErKxOK8gETgt8wR4aShJxYEYO3rgzMvKzKxkL7DWk=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pingdev.fnal.gov:9031/sp/ACS.saml2" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Fermilab Federation Hub SP</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Fermi National Accelerator Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Fermi National Accelerator Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.fnal.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Authentication Services</GivenName>
+ <EmailAddress>auth@fnal.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Authentication Services</GivenName>
+ <EmailAddress>auth@fnal.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Computer Security</GivenName>
+ <EmailAddress>computer_security@fnal.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Parchment, Inc. -->
+<EntityDescriptor entityID="https://idp.parchment.com/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">parchment.com</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Parchment, Inc.</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.parchment.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="250" xml:lang="en">https://www.parchment.com/wp-content/uploads/2018/05/incommon-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 313616304207247909305819279610563170442, expires on Mon Apr 13 23:59:59 2015 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.parchment.com/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.parchment.com/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.parchment.com/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.parchment.com/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.parchment.com/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.parchment.com/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">parchment.com</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 313616304207247909305819279610563170442, expires on Mon Apr 13 23:59:59 2015 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.parchment.com/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Parchment, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Parchment, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.parchment.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Erin Elliott</GivenName>
+ <EmailAddress>eelliott@parchment.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Erin Elliott</GivenName>
+ <EmailAddress>eelliott@parchment.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Bryan Tyler</GivenName>
+ <EmailAddress>btyler@parchment.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Central Florida -->
+<EntityDescriptor entityID="https://idp-prod.cc.ucf.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucf.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Central Florida</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ucf.edu/internet-privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="150" xml:lang="en">https://idp-prod.cc.ucf.edu/idp/ucflogo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1163315071776519721440706445722962386341523776819, expires on Mon May 19 21:10:43 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 122316193308677157287892529212597215047, expires on Tue May 8 23:59:59 2012 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp-prod.cc.ucf.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-prod.cc.ucf.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp-prod.cc.ucf.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp-prod.cc.ucf.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp-prod.cc.ucf.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp-prod.cc.ucf.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucf.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1163315071776519721440706445722962386341523776819, expires on Mon May 19 21:10:43 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp-prod.cc.ucf.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Central Florida</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Central Florida</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucf.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Tim Larson</GivenName>
+ <EmailAddress>tim@ucf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jim Ennis</GivenName>
+ <EmailAddress>jim@ucf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Laurence Siew</GivenName>
+ <EmailAddress>ls@ucf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ISO Office</GivenName>
+ <EmailAddress>infosec@ucf.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Florida International University -->
+<EntityDescriptor entityID="https://fiuidp.fiu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://fiu.service-now.com/sp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fiu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Florida International University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://it.fiu.edu/index.shtlm</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policies.fiu.edu/files/96.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="85" width="64" xml:lang="en">https://fiuidp.fiu.edu/idp/images/fiulogo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1181293848568275401752343480072393484428056808326, expires on Sat Mar 13 14:51:35 2032 GMT -->
+ <ds:X509Certificate>
+MIIDJDCCAgygAwIBAgIVAM7rDFYiAD7ejQynyojPagGeGUuGMA0GCSqGSIb3DQEB
+BQUAMBkxFzAVBgNVBAMTDmZpdWlkcC5maXUuZWR1MB4XDTEyMDMxMzEzNTEzNVoX
+DTMyMDMxMzE0NTEzNVowGTEXMBUGA1UEAxMOZml1aWRwLmZpdS5lZHUwggEiMA0G
+CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCnubM4QbTQQYvUMNGlVB1uO4xwDlcy
+9tyXYqE4sjAFu/Fqjv+C4IkDD1BZy+pI+glAWgftq9Vox/dvC1oMcfuhSxAWB7st
++aBlKusubh7UAQs+2lym/x0i4E30OMrG2MAcO9pZoGJT+xiOTgba+Vd977KzZdOv
+o2wAvABy9dJmH+TboHR7w8AOgzQ/QDqOlTq75uMG5fuZhtRAULUKUsMG7niWQCXe
+Yf3zGE4hStEXos17DnFWzP7S+BZtaPShkPupLR7A23ZiEg8UMRNtdAzXl5ljbrus
+A6UgnbYslO3NTinTUlRzeB79P7iv3tGujsKEZBZM7jnbEaCnYOthhrwlAgMBAAGj
+YzBhMEAGA1UdEQQ5MDeCDmZpdWlkcC5maXUuZWR1hiVodHRwczovL2ZpdWlkcC5m
+aXUuZWR1L2lkcC9zaGliYm9sZXRoMB0GA1UdDgQWBBQ/EzTBahbswoM9gJhVbmdK
+LzJsBjANBgkqhkiG9w0BAQUFAAOCAQEAE/oT8PSELMiKXo9QKG3YiHY5+2QxQBs2
+hqUI3HpTrRCegfQMc8ymCp3nWU6MMa/R2JxPyekKHTCJyrBvYv8FT/sBPnRXXLHV
+bfZk10puNnuILfkT8vsdd3fBJ1/dBWd2Aop5axWdPCse2zB8ChJ1ImrhCu8fhI1T
+H4Rqr8AkOIuUXRvDvlOj6PUP6J1luFFcQZl5v+uREv5Pih8W5NhKY+ENPrFX2g59
+iWZ7NojDxss/TtqsvGDbMHlt3PNg/FC6rHlcW9gH0qudXf1wLh8u+quX/7mGGvIv
+FfPU6B1stKoyNoo42HbUm+KOc8S3L3yaxGZfWtL8kNhY0hSXrYI13w==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://fiuidp.fiu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fiuidp.fiu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://fiuidp.fiu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fiuidp.fiu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fiuidp.fiu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fiuidp.fiu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fiu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1181293848568275401752343480072393484428056808326, expires on Sat Mar 13 14:51:35 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://fiuidp.fiu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fiuidp.fiu.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Florida International University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Florida International University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.fiu.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>idpadmins@fiu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>anu chirinos</GivenName>
+ <EmailAddress>anu@fiu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Shibboleth Support</GivenName>
+ <EmailAddress>idpadmins@fiu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Security</GivenName>
+ <EmailAddress>idpadmins@fiu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Rice University -->
+<EntityDescriptor entityID="https://idp.rice.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">rice.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Rice University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Rice University Identity Provider</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.rice.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policy.rice.edu/808</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="152" xml:lang="en">https://idp.rice.edu/idp/images/RiceLogo_small.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 297520253078466742236117680757972564411364874694, expires on Mon Oct 29 19:56:31 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.rice.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.rice.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.rice.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.rice.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.rice.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.rice.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Rice University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Rice University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rice.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Paul Engle</GivenName>
+ <EmailAddress>pengle@rice.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dean Lane</GivenName>
+ <EmailAddress>dlane@rice.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>OIT Help Desk</GivenName>
+ <EmailAddress>helpdesk@rice.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Office</GivenName>
+ <EmailAddress>security@rice.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Florida Atlantic University -->
+<EntityDescriptor entityID="https://app.teamsparx.com/api/saml2/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Team Sparxâ„¢</mdui:DisplayName>
+ <mdui:Description xml:lang="en">TeamSparX helps researchers collaborate and pursue funding opportunities across the nation.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://teamsparx.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.fau.edu/privacypolicy.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="100" xml:lang="en">https://images.squarespace-cdn.com/content/5cc09a7111f78423cbab1421/1560198224916-YCCIU9OTW1ZDCV2ILPTT/TS-FullColor-Logomark.png?content-type=image%2Fpng</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13351860796856166962, expires on Mon Aug 9 00:31:44 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.teamsparx.com/api/saml2/sls"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://app.teamsparx.com/api/saml2/sls"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.teamsparx.com/api/saml2/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.teamsparx.com/api/saml2/acs" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Team Sparxâ„¢</ServiceName>
+ <ServiceDescription xml:lang="en">TeamSparX helps researchers collaborate and pursue funding opportunities across the nation.</ServiceDescription>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Florida Atlantic University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Florida Atlantic University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.fau.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Luis Perez</GivenName>
+ <EmailAddress>luis@teamsparx.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stepan Mazokha</GivenName>
+ <EmailAddress>stephan@teamsparx.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Luis Perez</GivenName>
+ <EmailAddress>luis@teamsparx.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sso.fau.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://wordpress.fau.edu/irm" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fau.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Florida Atlantic University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Florida Atlantic Test IDP</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.fau.edu/oit/accounts/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.fau.edu/oit/accounts/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://www.fau.edu/images/shibboleth.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1404040592387618492282988305480597018338788861848, expires on Wed Jun 2 20:05:14 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.fau.edu:443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.fau.edu:443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.fau.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.fau.edu:8443/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.fau.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sso.fau.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.fau.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.fau.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fau.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1404040592387618492282988305480597018338788861848, expires on Wed Jun 2 20:05:14 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.fau.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Florida Atlantic University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Florida Atlantic University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.fau.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rhian Resnick</GivenName>
+ <EmailAddress>rresnick@fau.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Research Computing</GivenName>
+ <EmailAddress>hpc@fau.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Please call 561 297-3999 for assistance.</GivenName>
+ <EmailAddress>helpdesk@fau.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>security@fau.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Indiana University of Pennsylvania -->
+<EntityDescriptor entityID="https://webso.iup.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">iup.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Indiana University of Pennsylvania</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.iup.edu/itsupportcenter/accounts/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.iup.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="110" width="83" xml:lang="en">https://webso.iup.edu/images/iup_mdui.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1306809062416425655666293413960416479442750597955, expires on Mon Mar 5 13:33:47 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://webso.iup.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webso.iup.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webso.iup.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webso.iup.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Indiana University of Pennsylvania</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Indiana University of Pennsylvania</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.iup.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Paul Grieggs</GivenName>
+ <EmailAddress>pmgriegg@iup.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Craig Pluchinsky</GivenName>
+ <EmailAddress>tsc-sysadmin@iup.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Craig Pluchinsky</GivenName>
+ <EmailAddress>craigp@iup.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Security Office</GivenName>
+ <EmailAddress>abuse@iup.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Skidmore College -->
+<EntityDescriptor entityID="https://certify.skidmore.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">skidmore.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Skidmore College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Creative Thought Matters</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.skidmore.edu/registrar/transcripts/privacypolicy.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="34" width="227" xml:lang="en">https://certify.skidmore.edu/idp/images/skidmore-wordmark-green.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1382689912590034687086386173572660408335165201571, expires on Sun Apr 25 18:07:53 2032 GMT -->
+ <ds:X509Certificate>
+MIIDPDCCAiSgAwIBAgIVAPIx9cT4q8AyR4ueZ8uIqpunypyjMA0GCSqGSIb3DQEB
+BQUAMB8xHTAbBgNVBAMTFGNlcnRpZnkuc2tpZG1vcmUuZWR1MB4XDTEyMDQyNTE4
+MDc1M1oXDTMyMDQyNTE4MDc1M1owHzEdMBsGA1UEAxMUY2VydGlmeS5za2lkbW9y
+ZS5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCgQIzapjdutN/r
+2SVjlA0XDyQQ4Py3VUdFTxCm0s+aieDUnyY5H55z7q6a6SbGeC6r0voThzAp8fGv
+64XVxQaWFN/gv+7GnSHfORcSlpenXfVsPPW/BA/x2IKg2c/BfeRjmU8W7AZMgUcI
+nVj8sFzyF8OtglcQe/+V9TjvSdmOEIWG5mt0Up9oeOmHbe9eYvq+LPORGamQUHj0
+iJIlJfiAMEm+bCuET4SbO1IUuv65oR77YuZcSWlVaP4NRbrqopO8ULiYkOMIEaZ2
+Pbx+dhKgQJijFfbDFFzlFizV9AY7wt0nGMcGheFVUch7D/l12h4fHBTAGAcPYj3H
+T+AsiQq1AgMBAAGjbzBtMEwGA1UdEQRFMEOCFGNlcnRpZnkuc2tpZG1vcmUuZWR1
+hitodHRwczovL2NlcnRpZnkuc2tpZG1vcmUuZWR1L2lkcC9zaGliYm9sZXRoMB0G
+A1UdDgQWBBQNIBXsa4ErtKvaykTt91WpA/q8xzANBgkqhkiG9w0BAQUFAAOCAQEA
+kwApou7fsK8oUx7AJC2t1JzqkbJaOpaUG/UdUPvOzBplnqqugy17Ug7HSy2/trKE
+mL7bPPuRi6p42sBGJwPCm3hC2gFfXmFWmMYTtO53zJNktXmfaTBtVZKHlpUVsXtG
+0uzPK5BoH9lpGwscn7JDMtC2qsF6HIZtRIPrPOnux/JznM8WyBaaE9HoSqzluRkk
+HOEet5gtgNt//cgfVwFISX0I3Uh/Wk9nHadr/pu9L2rz2Gkb+2LxBC5iKOtL5oW/
+q7QweOtDE18IwI4JCw4nsvU2YFZw9ooyK9f3w+tj6rV56cN22EpefXNOM4pZRP7D
+bGUHwACZ7MErl4ABbfZpVQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://certify.skidmore.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://certify.skidmore.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://certify.skidmore.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://certify.skidmore.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://certify.skidmore.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">skidmore.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1382689912590034687086386173572660408335165201571, expires on Sun Apr 25 18:07:53 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://certify.skidmore.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Skidmore College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Skidmore College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.skidmore.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michelle Osgood</GivenName>
+ <EmailAddress>mosgood@skidmore.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Micheal Grant</GivenName>
+ <EmailAddress>mjgrant@skidmore.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michelle Osgood</GivenName>
+ <EmailAddress>mosgood@skidmore.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Skidmore Help Desk</GivenName>
+ <EmailAddress>helpdesk@skidmore.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Fort Lewis College -->
+<EntityDescriptor entityID="https://shib.fortlewis.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fortlewis.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fort Lewis College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://wiki.fortlewis.edu/display/POL/6-1+Privacy+Statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="133" width="80" xml:lang="en">https://resources.fortlewis.edu/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 914509253655907312750429937276313863255066698597, expires on Wed Aug 16 13:33:35 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 325777247061849056956505635706392046029, expires on Thu Oct 17 23:59:59 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.fortlewis.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.fortlewis.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.fortlewis.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.fortlewis.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.fortlewis.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fortlewis.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 914509253655907312750429937276313863255066698597, expires on Wed Aug 16 13:33:35 2028 GMT -->
+ <ds:X509Certificate>
+MIIDNDCCAhygAwIBAgIVAKAwA2GeOWnox0HE2Cs9vOZ+vGNlMA0GCSqGSIb3DQEB
+BQUAMB0xGzAZBgNVBAMTEnNoaWIuZm9ydGxld2lzLmVkdTAeFw0xMzA4MTYxMzMz
+MzVaFw0yODA4MTYxMzMzMzVaMB0xGzAZBgNVBAMTEnNoaWIuZm9ydGxld2lzLmVk
+dTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAIU0/7DIXyuOPF2Wl2Rh
+vSS6WlMwwqq3lSYCzbbuvW958k4Qm18KtqnnEBVvnxj9kOzMJqH1MSwjpKU41J88
+sGlQIdy0Os6DxQXY09NnhNRInSjbgCnw17UEniXUqJpg8IYFebwMkX1UfpqULO8y
+KWv5tB80M4dhvcLswHHBmngRsgSHopN393i/vo/mnjQ6uFDyoZtv4nIn8GP1zaV4
+c2w9QqNa3JoSgAZWDdxfU3Xzu4l0XMzVE3TsI4V6nxVg3K6blTOGIG5qSFevgTFh
+qzqDlIxn2Da9wjEME74ISGPxWbs96zdL7Y5O5LrwySXYyfoXgAmuF7ZGtYe/rlsG
+B8cCAwEAAaNrMGkwSAYDVR0RBEEwP4ISc2hpYi5mb3J0bGV3aXMuZWR1hilodHRw
+czovL3NoaWIuZm9ydGxld2lzLmVkdS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU
+BYK1Me0MowhhHsiQq//A36KfbJIwDQYJKoZIhvcNAQEFBQADggEBADGo3/7fy+eD
+/iXi2AhSVIHG5vCDL3Mg1hqTMc2A1u9qjVFsLg89zu05QuhgqXldFqW5BY5foJaa
+bvVlQx/2qcbYXiBWLqKwORXDLzoHXaWO2Ipl4zZgehf4PpE3+uZqzdz7zCjJUdMA
+vhm6RvQmet50R0UfTj7VqjFNmjhanu//Z5kEWwrh1ynVa9270EskmcKJBfuGYYDO
+L44iLiEoDtkonZHj80wAxweX2ZKTUV3Zx1rN9izq0/7Wmcs8d7kxK/fUvSRMOLeY
+aQ3ZXyJG9G28xL1x7mCjLJ8atZIXr+Y74eG0dH+02TBR8zBwIOwfRORG+2XdydG+
+Zw/pUkWhDXU=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 325777247061849056956505635706392046029, expires on Thu Oct 17 23:59:59 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.fortlewis.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Fort Lewis College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Fort Lewis College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://explore.fortlewis.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>James Bodine</GivenName>
+ <EmailAddress>bodine_j@fortlewis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Gary Maxwell</GivenName>
+ <EmailAddress>maxwell_g@fortlewis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Gary Maxwell</GivenName>
+ <EmailAddress>maxwell_g@fortlewis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>James Bodine</GivenName>
+ <EmailAddress>bodine_j@fortlewis.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Boise State University -->
+<EntityDescriptor entityID="https://idp.boisestate.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">boisestate.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Boise State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">You are connecting to a Boise State University website that requires authentication. Please enter your BroncoWeb username and password to continue.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://oit.boisestate.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://go.boisestate.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="180" xml:lang="en">https://oit.boisestate.edu/wp-content/blogs.dir/1/files/2018/02/boisestate_logo_BluOrng_left.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1434249824500067354918661215497917906396871164035, expires on Mon Aug 25 21:16:51 2036 GMT -->
+ <ds:X509Certificate>
+MIIDNDCCAhygAwIBAgIVAPs5/IfrUcAUlLWeyVITm7pJFICDMA0GCSqGSIb3DQEB
+CwUAMB0xGzAZBgNVBAMMEmlkcC5ib2lzZXN0YXRlLmVkdTAeFw0xNjA4MjUyMTE2
+NTFaFw0zNjA4MjUyMTE2NTFaMB0xGzAZBgNVBAMMEmlkcC5ib2lzZXN0YXRlLmVk
+dTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKEAsdXFFlvj46SAInJ9
+9TR3bqOvsC6iipJmJxWbwUjv7gMz04cx2wuyiVR3CGzhqoWtlfGJTGqQhg8ILubK
+iEj34RH4s7DH5s4YeaLC/A2/xUmwLc9DPu2uSFvA+0MErNedpxkv88iDHLyrDYzd
+9IKTEl/xJwrd5ycR2P7aZq6nwHyjvXtJObMSP2r3wl92MhYpJw6LpWaSDIcNGZcZ
+d8QEFDaMznpgJZdmXSdMKbpuf89k8ihXiIhjsBl6BrGsh9b5iCYDkvcJcvnyLWuf
+rM2O+fX4jWoK34/l0PlySb8OCgyD6qK6gJwEJDxj9/YC0OwRYEFbJ1VE8nX16LBn
+2ckCAwEAAaNrMGkwHQYDVR0OBBYEFN4vAoy7CCtFzmXshqs5VopZho6nMEgGA1Ud
+EQRBMD+CEmlkcC5ib2lzZXN0YXRlLmVkdYYpaHR0cHM6Ly9pZHAuYm9pc2VzdGF0
+ZS5lZHUvaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBAJO53Tkc51Zs
+W9tL1vjNHQ+AkWeEPjwIc7Uk5eUf4VhU63dySLETIgVTGvFUEc1xha/3zYBeILtr
+PSP0iv/OCCGOmzh8PcCuyqiGK8M7W4qxxXX6augBBm9CdjjrB6HM5bxGfbc7BEJO
+tbR4gPH5LYU2+XhsKGWSTVnsYeueTSl3OMzy602TkRgBfuwa8r+Gh8U/80Q9WDlm
+gAyt1RUlYfkXPAI8XagPEqBb+4A2BIzWkAMx4faWrneyAAQ+hnlNJ3AZ0S+y3Uf4
+Jhje74nh7GXTdTtNpcftFb9cIX3W91Jl4ieVNDlS323PF6VwrcTnBuonu4uVExPo
+PnE9D3nExO0=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.boisestate.edu:9443/idp/profile/SAML1/SOAP/AttributeQuery" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.boisestate.edu:9443/idp/profile/SAML2/SOAP/AttributeQuery" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.boisestate.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.boisestate.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.boisestate.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.boisestate.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">boisestate.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1434249824500067354918661215497917906396871164035, expires on Mon Aug 25 21:16:51 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.boisestate.edu:9443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.boisestate.edu:9443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Boise State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Boise State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://boisestate.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Eric Kollmann</GivenName>
+ <EmailAddress>security@boisestate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Gary Kincaid</GivenName>
+ <EmailAddress>gkincaid@boisestate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Application Administrator</GivenName>
+ <EmailAddress>msadm@boisestate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Customer Care</GivenName>
+ <EmailAddress>customercare@boisestate.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Baylor College of Medicine -->
+<EntityDescriptor entityID="https://fedidp.bcm.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bcm.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Baylor College of Medicine</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.bcm.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="126" width="128" xml:lang="en">https://media.bcm.edu/images/2016/0d/logo-bcm-flat.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1288662453799693393124787300716279130403360270586, expires on Tue Mar 12 15:58:23 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://fedidp.bcm.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fedidp.bcm.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://fedidp.bcm.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fedidp.bcm.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fedidp.bcm.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fedidp.bcm.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bcm.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1288662453799693393124787300716279130403360270586, expires on Tue Mar 12 15:58:23 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://fedidp.bcm.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fedidp.bcm.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Baylor College of Medicine</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Baylor College of Medicine</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.bcm.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>BCM IT Security and Compliance</GivenName>
+ <EmailAddress>it-security@bcm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Richard Yeager</GivenName>
+ <EmailAddress>yeager@bcm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>BCM IT Security and Compliance</GivenName>
+ <EmailAddress>it-security@bcm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jose Rivera</GivenName>
+ <EmailAddress>rivera@bcm.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Loyola University Maryland -->
+<EntityDescriptor entityID="https://shibprodapp.loyola.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">loyola.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Loyola University Maryland</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.loyola.edu/-/media/department/technology-services/documents/about/policies-guidelines/privacy-policy.ashx?la=en</mdui:PrivacyStatementURL>
+ <mdui:Logo height="57" width="209" xml:lang="en">https://www.loyola.edu/-/media/utility/images/common/loyola_logo_svg.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 506417055451671753404172775854526148430098625578, expires on Mon Feb 17 16:52:05 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibprodapp.loyola.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibprodapp.loyola.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibprodapp.loyola.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibprodapp.loyola.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibprodapp.loyola.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibprodapp.loyola.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">loyola.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 506417055451671753404172775854526148430098625578, expires on Mon Feb 17 16:52:05 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibprodapp.loyola.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibprodapp.loyola.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Loyola University Maryland</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Loyola University Maryland</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.loyola.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Patricia Malek</GivenName>
+ <EmailAddress>pamalek@loyola.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Timothy Enders</GivenName>
+ <EmailAddress>tenders@loyola.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Timothy Enders</GivenName>
+ <EmailAddress>tenders@loyola.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of California, Santa Barbara -->
+<EntityDescriptor entityID="urn:mace:incommon:ucsb.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucsb.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California, Santa Barbara</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UCSB is a public research university within the University of California system. It is located on the California coast about 100 miles northwest of Los Angeles.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.ucsb.edu/campus/index.shtml</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.policy.ucsb.edu/privacy-notification</mdui:PrivacyStatementURL>
+ <mdui:Logo height="34" width="80" xml:lang="en">https://secure.identity.ucsb.edu/UCSB_Tab_Navy_RGB-80px.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13108920574839711749, expires on Fri Mar 17 23:38:41 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://passport.identity.ucsb.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://passport.identity.ucsb.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://passport.identity.ucsb.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://passport.identity.ucsb.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://passport.identity.ucsb.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://passport.identity.ucsb.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucsb.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13108920574839711749, expires on Fri Mar 17 23:38:41 2034 GMT -->
+ <ds:X509Certificate>
+MIIEwzCCA6ugAwIBAgIJALXsPc8MIWgFMA0GCSqGSIb3DQEBBQUAMIHlMQswCQYD
+VQQGEwJVUzETMBEGA1UECBMKQ2FsaWZvcm5pYTEWMBQGA1UEBxMNU2FudGEgQmFy
+YmFyYTEwMC4GA1UEChMnVW5pdmVyc2l0eSBvZiBDYWxpZm9ybmlhLCBTYW50YSBC
+YXJiYXJhMScwJQYDVQQLEx5FbnRlcnByaXNlIFRlY2hub2xvZ3kgU2VydmljZXMx
+IzAhBgNVBAMTGnBhc3Nwb3J0LmlkZW50aXR5LnVjc2IuZWR1MSkwJwYJKoZIhvcN
+AQkBFhpzeXNhZG1pbkBpZGVudGl0eS51Y3NiLmVkdTAeFw0xNDAzMTcyMzM4NDFa
+Fw0zNDAzMTcyMzM4NDFaMIHlMQswCQYDVQQGEwJVUzETMBEGA1UECBMKQ2FsaWZv
+cm5pYTEWMBQGA1UEBxMNU2FudGEgQmFyYmFyYTEwMC4GA1UEChMnVW5pdmVyc2l0
+eSBvZiBDYWxpZm9ybmlhLCBTYW50YSBCYXJiYXJhMScwJQYDVQQLEx5FbnRlcnBy
+aXNlIFRlY2hub2xvZ3kgU2VydmljZXMxIzAhBgNVBAMTGnBhc3Nwb3J0LmlkZW50
+aXR5LnVjc2IuZWR1MSkwJwYJKoZIhvcNAQkBFhpzeXNhZG1pbkBpZGVudGl0eS51
+Y3NiLmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJs7aac3RDir
+o1na35ngbZ6ANQ0bY8GigpXb7UfKDqQ8lpSVEqJm6LPbmhstiPQ1MopFM2x25A4T
+jRPgNEChb4GWMbblRZkF/bBDFNykLgxgcS5+IRu8lQRME5karb3VFNZhhFic8X6s
+fQd+k0Z1DbVw/cLP3kzgcVu24dBAynWhN0Heuu5x1OUeNiE19mxxKjfLZqvCjLd6
+wyp1P+5huidqT8Svx5pG0j19zHTRrlFU7t/gCVgGNgfE6aaA+YcryOkfwdVKS1RS
+XbcwBSvCch366OUEdE1oU5L7hkB5EQMCRgCcnS8J9m1Nlw6VvmPN/1r9Il1nK0Km
+VVCPELTliIUCAwEAAaN0MHIwCQYDVR0TBAIwADALBgNVHQ8EBAMCBeAwWAYDVR0R
+BFEwT4IacGFzc3BvcnQuaWRlbnRpdHkudWNzYi5lZHWGMWh0dHBzOi8vcGFzc3Bv
+cnQuaWRlbnRpdHkudWNzYi5lZHUvaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQEF
+BQADggEBAHhc3LxPiz0Aw+0mhWbIBFCT9BxRc2//mDbaC/2bFKCeHL3ffd3ND3Ad
+EB7sme6ApKgzcT6m29dTHGc0FLWAfn+vQEOLZFhdxYlKEwo6luLuR/urktY1YVZm
+vV/kS9sFxlQJAAA01oZIOP5vryMW0g6+2cCC3GQDJFr4B4MJ0b+2Ubvzogjh6O2U
+WfybDi2fQ7QNKkIkh4yGi58Ole9wS7V8p1tchlKFCGiApnyeYj7Cy0MjuSC64FUj
+Ls6JGZp/+BoiS9inWJItj8ZjPY7cGaN1TD5hzeNxfThwJAenGSJS0nr3B4wh+5kb
+KFf7dOk/JbGUoqizayuf7Ucaf5A5MzI=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://passport.identity.ucsb.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://passport.identity.ucsb.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California, Santa Barbara</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California, Santa Barbara</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucsb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity Services Operations</GivenName>
+ <EmailAddress>sysadmin@identity.ucsb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Identity Service Support</GivenName>
+ <EmailAddress>help@identity.ucsb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Scott Gilbert</GivenName>
+ <EmailAddress>scott.gilbert@ucsb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Yaheya Quazi</GivenName>
+ <EmailAddress>yaheya@ucsb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Scott Gilbert</GivenName>
+ <EmailAddress>sgilbert@ucsb.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Blackboard, Inc -->
+<EntityDescriptor entityID="https://cornellsaas-test.blackboard.com/auth-saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cornellsaas-test.blackboard.com/auth-saml/saml/login/alias/_102_1?disco=true" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Cornell Bb Learn SaaS Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Cornell University's Blackboard Learn test SaaS deployment</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dfa.cornell.edu/policy/policies/access-information-technology-data-and-monitoring-network-transmissions</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.cornell.edu/privacy-notice.cfm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="383" xml:lang="en">https://shibidp.cit.cornell.edu/cornell-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1, expires on Mon Mar 15 21:13:37 2027 GMT -->
+ <ds:X509Certificate>
+MIICrTCCAZWgAwIBAgIBATANBgkqhkiG9w0BAQsFADAaMRgwFgYDVQQDEw9CbGFja2JvYXJkIFNB
+TUwwHhcNMTcwMzE1MjExMzM3WhcNMjcwMzE1MjExMzM3WjAaMRgwFgYDVQQDEw9CbGFja2JvYXJk
+IFNBTUwwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC03SH0F0XL0qetbGZvbWH0Y4HY
+LfWhema1maVT0mhVItaXbViXNxCs/JFAlSdQx9hFLchaJLYewp5e89bFsio9xL11DNBsBf5eQ3tK
+d7vMk2ilvS4rpNQ5Xvm6Q08srGK3GC5xxrFdVism7py3CMUgS++7D3rd0TuZQWB+nU/MoVzLZ6iu
+5M7oOk7NzsIyzptdDVSh/wkaHG30HGk86uFg6FWrRRORiP12uxNMtAks9YgfBzS5dllyIhqoCpy5
+yrHH55EhXHscS3Br/7bygHrXEY9nov56y1dsiJLQDnwV8XAkPZlAKBQXLwSsUip4owjVF1j5ks8/
+Mnn7ngIrtrnzAgMBAAEwDQYJKoZIhvcNAQELBQADggEBADeqtihNfuXNMxJEZv2Opn6qXg+GJAgv
+9f6xkAzC7vkvdf4bk65SnM7K21B4Ppt+tqOQMZLzLlFbhZO97FXN1i/G0/IU6lchR6ZYLgU3U799
+KLyTbweDYut6G3MuYMVHHYVacWDC3zXQNRDYSXRXeMGGn9nlY0LaBcgHvpQVeUFQ7Qz/R2Dp0u7S
+Lr4hVYw+g6LI0QK5EIIuYZ/yOQRuhI0rxz9FxrF0bwQpHFgyDopbtJzHM0omw6WdTiveH/INzN5j
+Q5mcaRS6h64vhhh63k3iEvN8dEKU+EEGNn81APbZAQQMK6teun1QzhIuvBy06Wpao/SXiHiJINVl
+6ljkIKA=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cornellsaas-test.blackboard.com/auth-saml/saml/SingleLogout/alias/_102_1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cornellsaas-test.blackboard.com/auth-saml/saml/SingleLogout/alias/_102_1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cornellsaas-test.blackboard.com/auth-saml/saml/SSO/alias/_102_1" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cornellsaas-test.blackboard.com/auth-saml/saml/SSO/alias/_102_1" index="2"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Blackboard, Inc</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Blackboard, Inc</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.blackboard.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jeff Kelley</GivenName>
+ <EmailAddress>jeff.kelley@blackboard.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Hong Ye</GivenName>
+ <EmailAddress>hy93@cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>University Security Office</GivenName>
+ <EmailAddress>security-services@cornell.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nahesales.blackboard.com/auth-saml/saml/SSO/alias/_1442_1">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nahesales.blackboard.com/auth-saml/saml/login/alias/_1442_1?disco=true" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Blackboard Learn Demo NAHESALES</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.blackboard.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.blackboard.com/legal/privacy-policy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="149" width="458" xml:lang="en">https://www.blackboard.com/images/223/Bb_Signature_RevMed_tcm223-65543.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1, expires on Mon May 4 06:47:16 2026 GMT -->
+ <ds:X509Certificate>
+MIICrTCCAZWgAwIBAgIBATANBgkqhkiG9w0BAQsFADAaMRgwFgYDVQQDEw9CbGFja2JvYXJkIFNB TUwwHhcNMTYwNTA0MDY0NzE2WhcNMjYwNTA0MDY0NzE2WjAaMRgwFgYDVQQDEw9CbGFja2JvYXJk IFNBTUwwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCGyzk6PJ6tbVdAT1WbpnxJdhbD lhRR107e7txvXDcyc5KxhjTc2BYHk0ao2BWyreCpKpghSJlY07FDJWdgBgY9oOoYgLNbUexwpCwD n1PlU3WAn2O7vxWqRF8tzDU5g6Zen2Cp3ZxndGiNQGoNMXdON7lRYvqxjzAgOVJrys7xaw162za6 0OuLxSDbOxuuThatRVpGfbGr/WVNKNK2dF+SBFaZSv6Xaf1ElnbGrMsB063nSGTw1Lax6dnonB5f +Wl5N4Fz0lKmkdPQiZ959GDovfw7JBUgkYnBdz1snOIX9y0OTmcLrqNKjDCF07pEusmPNuUbvAzC 2pPRQq2RHYMvAgMBAAEwDQYJKoZIhvcNAQELBQADggEBAHxnv1VVS6Wa0u9vwS2RqpaN8T8I1DgB toSTjAvgKJ/vZMuakzYfZx+pQJHrFElVfWVyF0QOnf07LCGo7ROJ5qZB6Jqh0otzn+Cfbr7T5NM3 04ztdm7SlU24HF8lrznZo7IRNvoVNUQIrGPx1YafTk5fYzvAUiHBGfGujpzCSB2oSTTLrrImglMn yUe7jo/usKaIfvkujAOqmE/FbIKNDqeiE72UprK+0taTRuILcCLK7CBxiHc+4bP5V9oBxl0qfdiO 6kGAo0lh48VO7Nn6oeCqz6FlBYXrNvEpTiEdKYRMOfAy9hY8DjYHPI22qSjj5/Mtdrgc88O7gyVs OFgGQkY=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nahesales.blackboard.com/auth-saml/saml/SingleLogout/alias/_1442_1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nahesales.blackboard.com/auth-saml/saml/SingleLogout/alias/_1442_1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nahesales.blackboard.com/auth-saml/saml/SSO/alias/_1442_1" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nahesales.blackboard.com/auth-saml/saml/SSO/alias/_1442_1" index="2"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Blackboard, Inc</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Blackboard, Inc</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.blackboard.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeff Kelley</GivenName>
+ <EmailAddress>jeff.kelley@blackboard.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jeff Kelley</GivenName>
+ <EmailAddress>jeff.kelley@blackboard.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jeff Kelley</GivenName>
+ <EmailAddress>jeff.kelley@blackboard.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ue.blackboard.com/auth-saml/saml/SSO/alias/_111_1">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ue.blackboard.com/auth-saml/saml/login/alias/_111_1?disco=true" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UE Blackboard Production SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Blackboard Learn for UE.org</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.blackboard.com/index.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.edurisksolutions.org/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="72" width="203" xml:lang="en">https://www.ue.org/resources/images/ue-logo2.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1, expires on Mon May 15 20:15:10 2028 GMT -->
+ <ds:X509Certificate>
+MIICrTCCAZWgAwIBAgIBATANBgkqhkiG9w0BAQsFADAaMRgwFgYDVQQDEw9CbGFja2JvYXJkIFNB
+TUwwHhcNMTgwNTE1MjAxNTEwWhcNMjgwNTE1MjAxNTEwWjAaMRgwFgYDVQQDEw9CbGFja2JvYXJk
+IFNBTUwwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDNvVsVu02NWN6l5sSfDAB5RAuq
+HKn9FwAezZ4Ne/YRuYoK9wIzpoY5wJOBy8GSJIg+5bq3QVHnTl+p8FMh/5EUh2wa2fGAhOfWeXh9
++wxAfgyvcNjOXQKmZ8vNAS2gx5RLoOz9RhcwffaJuOUVoDrgGrDXyMIX900HHq5RhrzZitLu8foS
+IoQwIktUauBHtJKrqiN+ppMZ/SJU62iIWQOcakjtWswJ5PrIbQBy6ngtFMkn6t4ig9fOmcAviEVg
+gSmNiBkc5eLoGj62Gp1gimP/vJBYxbYkmcinsSygdgn9sBc653pVlfunDS7fE7Hn8+5qNfO/NZkL
+h6vCFJj5PT0nAgMBAAEwDQYJKoZIhvcNAQELBQADggEBAJgl4aHnunOG1X7C57YcDsEi1g7QphHD
+l4HBQ1KY8rfff9I3T3huYOUoco7oc9NPsYMYkoZtbj6Ey63tWixzX8ABE7jov0BzzySEfuytosU4
+PUTLZd218ZZYtAIfQouF2uqAru/nPu9c/wCBwkUBI5YOEiWVEXpnpts40CInUwllwfa4PMVrwjAn
+EzCB4jN/gKgAb+5OBMULGBa+blIImW1n98gPKM+JWJfzXJ4Ye8hlcfTHaksKO2lxTVGWq6IsRath
+Qc4rZO57vBjaCxuH0CF0gXMGWm2FbDbeDdKB6s1tiarsKInAz2UgaQenQTGesdEDRQLx4c1Keakc
+8MyLgFs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ue.blackboard.com/auth-saml/saml/SingleLogout/alias/_111_1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ue.blackboard.com/auth-saml/saml/SingleLogout/alias/_111_1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ue.blackboard.com/auth-saml/saml/SSO/alias/_111_1" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ue.blackboard.com/auth-saml/saml/SSO/alias/_111_1" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UE Blackboard Production SP</ServiceName>
+ <ServiceDescription xml:lang="en">Blackboard Learn for UE.org</ServiceDescription>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Blackboard, Inc</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Blackboard, Inc</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.blackboard.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeff Kelley</GivenName>
+ <EmailAddress>jeff.kelley@blackboard.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jeff Kelley</GivenName>
+ <EmailAddress>jeff.kelley@blackboard.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jeff Kelley</GivenName>
+ <EmailAddress>jeff.kelley@blackboard.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Mike Kruft</GivenName>
+ <EmailAddress>mkruft@ue.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uicpilot.blackboard.com/auth-saml/saml/SSO/alias/_102_1">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uicpilot.blackboard.com/auth-saml/saml/login/alias/_102_1?disco=true" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UIC Blackboard SaaS Pilot</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UIC Blackboard SaaS Pilot</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.blackboard.com/index.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.blackboard.com/legal/privacy-policy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="149" width="458" xml:lang="en">https://www.blackboard.com/images/223/Bb_Signature_RevMed_tcm223-65543.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1, expires on Thu May 25 23:41:25 2028 GMT -->
+ <ds:X509Certificate>
+MIICrTCCAZWgAwIBAgIBATANBgkqhkiG9w0BAQsFADAaMRgwFgYDVQQDEw9CbGFja2JvYXJkIFNB TUwwHhcNMTgwNTI1MjM0MTI1WhcNMjgwNTI1MjM0MTI1WjAaMRgwFgYDVQQDEw9CbGFja2JvYXJk IFNBTUwwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCmqjyG8H4krbOvXw3WUph4FMDo k5oUbJQpCMduH7Wf3Qg5hLuBtuV7FUW/z05X7lhOB7ezV6Kp5d8gFStvGdp4L4Xq12br4eB9idmt enkp1YIKulEDBcFgAJRkvC0wlM48/U8F+ymXBIkJLbIDvKt6lWBJ2km+FSG4PAE/wv5ykADAbmYw /9WlBP5ZG0OXhiBfftN5KLHhYTAiowvQau7QT3XvG9/93riMy8D2koSzwvG8Ao/HYVOeVhLhxIAm nELBma4HACauR3a87pSXRGogRY0KkTJxP1KEsiO0efbaAvTS/ck9BGdopnSo3t/t7Wr9nN2Mx9pX 7h6JuDaCtY75AgMBAAEwDQYJKoZIhvcNAQELBQADggEBAE/Udsrao/noqLDa+9PnOxAqfzH17vgS vLkvIVUpsoEhkATBX4q4FOmXSTW0GC3S9Aju9alghiHCzLOcKWul51ncG2ssgeRpqGmBAR1wfLYN pSNW6XS1iwy8RAZ9e3VrRbdxT2zdWfxtKFWO1T3GlKHBY0zI3GmnuDvDujN/jldB5iwGhFZIWZp3 1hjKv5eYURJASQANQ9GTyKqDji7hCYjcxNbosppy0dq4EOEa5zgrX0PkofyWg4/0oZ1b4B/r0G0I T2vNZbu21lW5O7+vzklHp9aO+cjgpxZdzTbMSZdchuuUbyPDx+Lcdyh/F3GuyF8zDQvVW395dEtq n9WhaJE=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uicpilot.blackboard.com/auth-saml/saml/SingleLogout/alias/_102_1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uicpilot.blackboard.com/auth-saml/saml/SingleLogout/alias/_102_1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uicpilot.blackboard.com/auth-saml/saml/SSO/alias/_102_1" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uicpilot.blackboard.com/auth-saml/saml/SSO/alias/_102_1" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UIC Blackboard SaaS Pilot</ServiceName>
+ <ServiceDescription xml:lang="en">UIC Blackboard SaaS Pilot</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Blackboard, Inc</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Blackboard, Inc</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.blackboard.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeff Kelley</GivenName>
+ <EmailAddress>jeff.kelley@blackboard.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jeff Kelley</GivenName>
+ <EmailAddress>jeff.kelley@blackboard.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Jeff Kelley</GivenName>
+ <EmailAddress>jeff.kelley@blackboard.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jeff Kelley</GivenName>
+ <EmailAddress>jeff.kelley@blackboard.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Willamette University -->
+<EntityDescriptor entityID="https://idp.willamette.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">willamette.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Willamette University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://willamette.edu/offices/policies/tech/web-privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="65" width="65" xml:lang="en">https://willamette.edu/offices/comm/images/for-download/everyday-user/compass/small/compass-4c.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 441647710880942843024521774821904688700093326328, expires on Tue Dec 16 22:43:54 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.willamette.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.willamette.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.willamette.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.willamette.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Willamette University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Willamette University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.willamette.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>WITS System Administrators</GivenName>
+ <EmailAddress>sysadmin@willamette.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>WITS System Administrators</GivenName>
+ <EmailAddress>sysadmin@willamette.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>WITS System Administrators</GivenName>
+ <EmailAddress>sysadmin@willamette.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>WITS System Administrators</GivenName>
+ <EmailAddress>sysadmin@willamette.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Mayo Clinic -->
+<EntityDescriptor entityID="http://login.mayo.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mayo.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Mayo Clinic</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://signup.mayoclinic.org/register/privacypolicy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="88" width="77" xml:lang="en">https://www.mayoclinic.org/UniversalNav/Styles/img/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 269168493956031063484162850479358295430, expires on Thu Oct 3 23:59:59 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 183953494332547110919208603061272393805, expires on Thu Sep 2 23:59:59 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.mayo.edu/adfs/services/trust/artifactresolution" index="1"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.mayo.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.mayo.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Mayo Clinic</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Mayo Clinic</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.mayo.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IDMP Access Control</GivenName>
+ <EmailAddress>rstgpsidm@mayo.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Sandy Outcalt</GivenName>
+ <EmailAddress>Outcalt.Sandra@mayo.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Troy Wirth</GivenName>
+ <EmailAddress>wirth.troy@mayo.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IDMP Access Control</GivenName>
+ <EmailAddress>rstgpsidm@mayo.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Yale University -->
+<EntityDescriptor entityID="https://auth.yale.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">yale.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Yale University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Yale University's Primary Identity Provider for InCommon federation.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://registrar.yale.edu/yale-university-statement-disclosure-directory-information</mdui:PrivacyStatementURL>
+ <mdui:Logo height="76" width="169" xml:lang="en">https://www.yale.edu/sites/all/themes/yale_blue/images/logo-print.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1216049893817027884421350429562168173418171956420, expires on Mon Sep 10 17:47:10 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://auth.yale.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://auth.yale.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://auth.yale.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.yale.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.yale.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://auth.yale.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">yale.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1216049893817027884421350429562168173418171956420, expires on Mon Sep 10 17:47:10 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://auth.yale.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://auth.yale.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Yale University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Yale University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.yale.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity Management Team</GivenName>
+ <EmailAddress>idm.techsupport@yale.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Identity Management Team</GivenName>
+ <EmailAddress>idm.techsupport@yale.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity Management Team</GivenName>
+ <EmailAddress>idm.techsupport@yale.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Team</GivenName>
+ <EmailAddress>Information.security@yale.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://spinup-000622.yu.yale.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://spinup-000622.yu.yale.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Test SP for Gateway</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://registrar.yale.edu/yale-university-statement-disclosure-directory-information</mdui:PrivacyStatementURL>
+ <mdui:Logo height="76" width="169" xml:lang="en">https://www.yale.edu/sites/all/themes/yale_blue/images/logo-print.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16685387699968927970, expires on Sun Jul 18 00:48:12 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://spinup-000622.yu.yale.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Yale University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Yale University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.yale.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Amit Poddar</GivenName>
+ <EmailAddress>amit.poddar@yale.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Andrew Newman</GivenName>
+ <EmailAddress>newman-andy@yale.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Amit Poddar</GivenName>
+ <EmailAddress>amit.poddar@yale.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Andrew Newman</GivenName>
+ <EmailAddress>newman-andy@yale.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Texas Tech University -->
+<EntityDescriptor entityID="https://idp.shibboleth.ttu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ttu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Texas Tech University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ttu.edu/policy/privacy.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.ttu.edu/_ttu-template/dblT__InCommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1375674084095819215623951402621687657737534099408, expires on Sun Apr 1 14:29:54 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.shibboleth.ttu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.shibboleth.ttu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.shibboleth.ttu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.shibboleth.ttu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.shibboleth.ttu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ttu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1375674084095819215623951402621687657737534099408, expires on Sun Apr 1 14:29:54 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.shibboleth.ttu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Texas Tech University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Texas Tech University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ttu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Telecommunications Network Systems</GivenName>
+ <EmailAddress>nis@ttu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Telecommunications Network Systems</GivenName>
+ <EmailAddress>nis@ttu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Telecommunications Network Systems</GivenName>
+ <EmailAddress>nis@ttu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Enterprise IT Security</GivenName>
+ <EmailAddress>security@ttu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Wayne State University -->
+<EntityDescriptor entityID="https://academica.aws.wayne.edu/saml2/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wayne.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Wayne State University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://wayne.edu/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="883" width="1365" xml:lang="en">https://mac.wayne.edu/images/wsu_primary_stacked_color.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12377269598880568435, expires on Tue Aug 5 17:29:04 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://academica.aws.wayne.edu/saml2/logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://academica.aws.wayne.edu/saml2/http_redirect"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://academica.aws.wayne.edu/saml2/http_post"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Wayne State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Wayne State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wayne.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Gregorowicz</GivenName>
+ <EmailAddress>ak1520@wayne.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rob Thompson</GivenName>
+ <EmailAddress>rob@wayne.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kevin Hayes</GivenName>
+ <EmailAddress>krhayes@wayne.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>C&amp;IT Help Desk</GivenName>
+ <EmailAddress>helpdesk@wayne.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kevin Hayes</GivenName>
+ <EmailAddress>krhayes@wayne.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- The University of Montana -->
+<EntityDescriptor entityID="https://login.umt.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umt.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">The University of Montana</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Montana federated identity provider via InCommon.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.umt.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.umt.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="163" xml:lang="en">https://www.umt.edu/_common/assets/imx/um_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+<!-- Serial No. 314157479562442480959239960776544663136890316305, expires on Fri Jun 23 21:16:11 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.umt.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.umt.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.umt.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.umt.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.umt.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umt.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+<!-- Serial No. 314157479562442480959239960776544663136890316305, expires on Fri Jun 23 21:16:11 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.umt.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The University of Montana</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">The University of Montana</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umt.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Josh O'Dowd</GivenName>
+ <EmailAddress>josh.odowd@umontana.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gary Trethewey</GivenName>
+ <EmailAddress>gary.trethewey@umontana.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:icmd="http://id.incommon.org/metadata" contactType="other" icmd:contactType="http://id.incommon.org/metadata/contactType/security">
+ <GivenName>Adrian Irish</GivenName>
+ <EmailAddress>adrian.irish@umontana.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Reed College -->
+<EntityDescriptor entityID="https://idp.reed.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">reed.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Reed College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.reed.edu/policies/privacy_policy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.reed.edu/global_assets/images/logo/reed-logo-incommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1436057704132286545280692765488647974552328418457, expires on Sun Oct 13 18:15:22 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.reed.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.reed.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.reed.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.reed.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.reed.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">reed.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1436057704132286545280692765488647974552328418457, expires on Sun Oct 13 18:15:22 2030 GMT -->
+ <ds:X509Certificate>
+MIIDHDCCAgSgAwIBAgIVAPuLDfin459bH1TviFJwMkClxzSZMA0GCSqGSIb3DQEB
+BQUAMBcxFTATBgNVBAMTDGlkcC5yZWVkLmVkdTAeFw0xMDEwMTMxODE1MjJaFw0z
+MDEwMTMxODE1MjJaMBcxFTATBgNVBAMTDGlkcC5yZWVkLmVkdTCCASIwDQYJKoZI
+hvcNAQEBBQADggEPADCCAQoCggEBAI0JgYyDRVnupzwsap5SRjk6vQc4KY3A4GcT
+aWmwkbLILkXsK7+LqiJDcfQtyHQwZoJqJVBnd7NDXb1wPidAitC3m+bgOmf0SCM3
+cJ1u0giQGXxKqWW4Netq5ZWG/fZE7wR4rNqbYtQ31WPl5s5dkqVrq6na9NDKyCNb
+6qLd9306BiSCjAagJYN+xyMfCwZ2J2uBPwa1cTlv6B1M9k77v78PlwHeZTRBXQ7z
+J385E+iMnxhuyKhj6bHjFplPJmHTBF1NcK1HLBuraocmwyhyXt6hc/pG1fLhhZ6+
+7RtgsH5RLQgE15MSW0e6UDbZHgxze0g13LfaQBa92KZOesO7V5kCAwEAAaNfMF0w
+PAYDVR0RBDUwM4IMaWRwLnJlZWQuZWR1hiNodHRwczovL2lkcC5yZWVkLmVkdS9p
+ZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU+ZuMoVaqb0MEU+U21XvPJLeCVlowDQYJ
+KoZIhvcNAQEFBQADggEBAC1ygplLdMG2sQC47jxquc0L/QJEZsn91dPv4pb5RbhP
+ICvwKMhHqbG+4gc97ZRa5EzyuGNceHLJaG/MH18MPOyz06KlOL0zy3SdvFpRJMBV
+PfPWTRB/moSkz5lnBadHX3TQqdo/1AZvlzoPrWjz8lOu8//pIP7MxnzMxlm2KNuI
+Tg5D2SHhV9dQur/QGSlkJ2REjrqKhyw9yAogB3AH0IY3rGnpmbmAc3ian+C6IZXH
+BpQPMrLCFksiKP4tBOH88PLItWn3uFc4Q8f1s+5qDxVIqWVTdjOkZnysMRob1y+w
+ROMyInz+7gYPcFok9V3ghjhHj3POw+ZqlJA25Ap6v9Y=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.reed.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.reed.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Reed College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Reed College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://reed.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Ben Poliakoff</GivenName>
+ <EmailAddress>benp@reed.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Marianne Colgrove</GivenName>
+ <EmailAddress>mcolgrov@reed.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Computer User Services</GivenName>
+ <EmailAddress>cus@reed.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Technology Infrastucture Services</GivenName>
+ <EmailAddress>tis@reed.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jacqueline Pitter</GivenName>
+ <EmailAddress>pitter@reed.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- South Dakota State University -->
+<EntityDescriptor entityID="https://icarus.sdstate.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sdstate.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">South Dakota State University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.sdstate.edu/sites/default/files/technology/upload/SDSUInCommonPOP.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="96" width="96" xml:lang="en">https://sso.sdstate.edu/idp/sdsu-images/logo-32-80.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 535870134457106171262338496161481804087776954235, expires on Sat Oct 4 15:45:14 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.sdstate.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.sdstate.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.sdstate.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.sdstate.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.sdstate.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sso.sdstate.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">South Dakota State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">South Dakota State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www3.sdstate.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kevin Brandt</GivenName>
+ <EmailAddress>Kevin.Brandt@sdstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ryan Knutson</GivenName>
+ <EmailAddress>Ryan.Knutson@sdstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Wendy Cradduck</GivenName>
+ <EmailAddress>Wendy.Cradduck@SDSTATE.EDU</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Samuel Gould</GivenName>
+ <EmailAddress>Samuel.Gould@sdstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mavhu Chidaushe</GivenName>
+ <EmailAddress>sdsu.security@sdstate.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Vassar College -->
+<EntityDescriptor entityID="http://idp.vassar.edu/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">vassar.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Vassar College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://computing.vassar.edu/policies/responsible-use.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://computing.vassar.edu/docs/Vassar-Seal-150x150.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 228806602213004470875707857214926458027098128305, expires on Tue Oct 14 02:57:40 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vcsso.vassar.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vcsso.vassar.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Vassar College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Vassar College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.vassar.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Vassar Service Desk</GivenName>
+ <EmailAddress>servicedesk@vassar.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Emily Harris</GivenName>
+ <EmailAddress>emharris@vassar.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Romanovsky</GivenName>
+ <EmailAddress>romanovsky@vassar.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Carlos Garcia</GivenName>
+ <EmailAddress>cgarcia@vassar.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Southern Methodist University -->
+<EntityDescriptor entityID="https://idp.smu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">smu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Southern Methodist University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Logon service for Southern Methodist University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.smu.edu/AboutSMU</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.smu.edu/LegalDisclosures/PrivacyStatement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="200" xml:lang="en">https://idp.smu.edu/idp/images/SMU-wordmark-whiteB.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 279251228592267583561637047409956568629304410299, expires on Sun May 30 05:24:16 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.smu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.smu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.smu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Southern Methodist University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Southern Methodist University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.smu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Tommy Doan</GivenName>
+ <EmailAddress>oitiam@smu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Allen Hughes</GivenName>
+ <EmailAddress>oitiam@smu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Tommy Doan</GivenName>
+ <EmailAddress>oitiam@smu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Allen Hughes</GivenName>
+ <EmailAddress>oitiam@smu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Arkansas Main Campus -->
+<EntityDescriptor entityID="https://idp.uark.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.uark.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uark.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Arkansas</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Arkansas, Fayetteville</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.uark.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://its.uark.edu/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="72" width="300" xml:lang="en">https://its.uark.edu/personal/uark-central-login/ualogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1435572751636216676600247711011886500574623525495, expires on Tue Oct 14 20:57:52 2031 GMT -->
+ <ds:X509Certificate>
+MIIDHDCCAgSgAwIBAgIVAPt1Tv1bYP4+r/4oWy1Mih/6SWp3MA0GCSqGSIb3DQEB
+BQUAMBcxFTATBgNVBAMTDGlkcC51YXJrLmVkdTAeFw0xMTEwMTQyMDU3NTJaFw0z
+MTEwMTQyMDU3NTJaMBcxFTATBgNVBAMTDGlkcC51YXJrLmVkdTCCASIwDQYJKoZI
+hvcNAQEBBQADggEPADCCAQoCggEBAJaaUOTHkbmeB+65zFM9TvW1GJIjta5iMHFM
+Z48+iSMvvzEEipS3PAOHlv0S9kjC5tltNp0MLK53u2RM2x35fzLBTw6cJX++AeSF
+R0huFlnlSO1mn+UBcyTUQ8sPc0Um7DHhXykVo92a/vrPWiEOcaNVYj5YYgpBgTky
+nZpH5cxjFv5NvsClXEOis7iS+deCKFmpbwg3Ahxque+jZ2mWEHZOrOKujrdMI7fo
+FeozmcPSfIAyWMM+FdBQNcU0sWazWNWryRKSCwv8BEUb+4JUS++pue+LNb6Ad+El
+hvHQJhM0CvJb6ohL9eCVIue54x8/P3GONugW/u88zwes3P2F4EkCAwEAAaNfMF0w
+PAYDVR0RBDUwM4IMaWRwLnVhcmsuZWR1hiNodHRwczovL2lkcC51YXJrLmVkdS9p
+ZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQUnvF+6HJDc36mcLNHeby0AZVjPU8wDQYJ
+KoZIhvcNAQEFBQADggEBAAjNGo4LedfEkQFyUtXllN5PZHVw24/GMIjZhXfuk+wJ
+RrVheFjV7PmJLps5gM0h+dH0wBo9ZDeER7T+jqWcsig1zuvi2jOPMzlZi6Cgus8M
+dW8C9uy9PKEPCI9HFidVkrU4E8nbF2LNsDlYoclyliMb1wALKFpsOIvxYE4DR10F
+Drl/RShq++Sd9n5AQT3X66WvXuoaeLsA0Et4gh+fUtY4vu2/hRO10yiCCaiyMSEE
+VWXbuzfaz3iJqNG1rs/lOMzysDqAxzZHZKYYtnwvQYyhfSkpBKlTCRjr2vDG1k4M
+JkNZiOnZ+OBZcqrcpzW0N93Twh4aoOHdO7qTCafVe0M=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.uark.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.uark.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.uark.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uark.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uark.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uark.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1435572751636216676600247711011886500574623525495, expires on Tue Oct 14 20:57:52 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.uark.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Arkansas Main Campus</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Arkansas</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uark.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>System Administrator</GivenName>
+ <EmailAddress>root@uark.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@uark.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@uark.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Rensselaer Polytechnic Institute -->
+<EntityDescriptor entityID="https://shib-idp.rpi.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">rpi.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Rensselaer Polytechnic Institute</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://scer.rpi.edu/privacypolicy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="66" width="346" xml:lang="en">https://www.rpi.edu/dept/NewsComm/graphics/downloads/mac/lgplogo2c.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1203887042333736343508093456296726147395752421994, expires on Mon Oct 7 16:55:29 2030 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib-idp.rpi.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-idp.rpi.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib-idp.rpi.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib-idp.rpi.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib-idp.rpi.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">rpi.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1203887042333736343508093456296726147395752421994, expires on Mon Oct 7 16:55:29 2030 GMT -->
+ <ds:X509Certificate>
+MIIDLDCCAhSgAwIBAgIVANLgKXs6iKtLWK5YzJ889P9ABepqMA0GCSqGSIb3DQEB
+BQUAMBsxGTAXBgNVBAMTEHNoaWItaWRwLnJwaS5lZHUwHhcNMTAxMDA3MTY1NTI5
+WhcNMzAxMDA3MTY1NTI5WjAbMRkwFwYDVQQDExBzaGliLWlkcC5ycGkuZWR1MIIB
+IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAjtNkbDoVYnm25A/D11tmoj2A
+4B4Le9Ckb0qOU5RajFnbr+h8NBHWzGHDF2nvjjmSX81h12nGY8X8a7Gn7ELABRQU
+kWPsGhljomBjD78xeZyrOAi38Klg+9MJP0DVg09SaJns9NQppG0uhwXEqpCXqO+9
+iF0QDFS3xNM9hXyONGCWgCKkoSSVmNrjIcyFuqGTWDzngEnqwBh2K2xenopluFp9
+NrHSyT/X8KgqUk/PCn3OxPxf1isySvpnPvEhuLcXJGophWbYi8V7RbO0kTIQtV2b
+RpCAj+X1zcPh3n/zQR+UUWnirQrbVYhk8111tTbv6j9JE5Ei7jh3NRNHpKPfgwID
+AQABo2cwZTBEBgNVHREEPTA7ghBzaGliLWlkcC5ycGkuZWR1hidodHRwczovL3No
+aWItaWRwLnJwaS5lZHUvaWRwL3NoaWJib2xldGgwHQYDVR0OBBYEFDED2miSXLhk
+Z1y9moAKrxbxM+j3MA0GCSqGSIb3DQEBBQUAA4IBAQBO4D8pHBfgLS6B8Q3TWuaU
+fPVUU5eRVoJMWWf+3BLW+lVUxudyTzRrUhREVwokroUvNQHwTQOTXU1CHZoAbsKz
+G+VDAqk7Ywb4/vrH74siaiZDRGemJ+IkcvmHsAhfH44ZyluuEvQVANtv5iVKJ6HA
+ETfd87oqwGzPJmfcMzDuxemHaQx9GRxaDbVt90Dun2rjZvwn6eJl4vzGzUQRn7tD
+pLAzcXdj85j7T2prc171AicsqFiKs7H0BbZJWzuby8mM0mSyydQot4AjKSEn3XjH
+tft1Upc9k4NmeGcokAOPbfZsqCBW8ESJxCqBQsrfVHb/8s5Za9BCRXlwKZYezeK6
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib-idp.rpi.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-idp.rpi.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Rensselaer Polytechnic Institute</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Rensselaer Polytechnic Institute</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rpi.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Alan Powell</GivenName>
+ <EmailAddress>powela@rpi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Alan Powell</GivenName>
+ <EmailAddress>powela@rpi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jon Finke</GivenName>
+ <EmailAddress>finkej@rpi.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Elon University -->
+<EntityDescriptor entityID="https://idp.elon.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">elon.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Elon University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.elon.edu/u/about/policies-and-core-documents/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="45" width="130" xml:lang="en">https://idp.elon.edu/images/elon-signature-incommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 106701462830563345399081684401919487473859120270, expires on Sat Apr 26 15:28:23 2031 GMT -->
+ <ds:X509Certificate>
+MIIDGzCCAgOgAwIBAgIUErCouPRaW5QGkEHS598bwC7vTI4wDQYJKoZIhvcNAQEF
+BQAwFzEVMBMGA1UEAxMMaWRwLmVsb24uZWR1MB4XDTExMDQyNjE1MjgyM1oXDTMx
+MDQyNjE1MjgyM1owFzEVMBMGA1UEAxMMaWRwLmVsb24uZWR1MIIBIjANBgkqhkiG
+9w0BAQEFAAOCAQ8AMIIBCgKCAQEA19/GTJENTS8CCrh87Fr89XSbtgJo24ctlQ0k
+12sB6jOsFDIO+U0I0/nO4WcIouDfAjgtzquEAiv92ZCbpMVhA+r86LWqUbF94tTD
+BBdAI7JTXEwPNnFVttpI8w15kRVKBIL7uewQI8UhYtPPnzbOuFq2PgCd1CAaRL2s
+2ly2Ttb1eBRYjnq1aCW0vKLW36u/6Doupes/q6bA9dD3r4ThfZRNuEw4Y7yM+th+
+eVPisEnMHMI+hcTlM0GfQwi9f3YBsskq5t+G+4wk29IPwadKP1LMWdKkQtmLNiWU
+wHoJjFvsKcchuh1zsd3T7jTEgbVjIjgv9hXUu8PV1upYF1vTwQIDAQABo18wXTA8
+BgNVHREENTAzggxpZHAuZWxvbi5lZHWGI2h0dHBzOi8vaWRwLmVsb24uZWR1L2lk
+cC9zaGliYm9sZXRoMB0GA1UdDgQWBBQYxrFRiIbMBJGM8kQ2vH7o70KWhzANBgkq
+hkiG9w0BAQUFAAOCAQEAK6w0oQT3rB9jYH1D32om2DDBY1ecKuTCOJMtbghdNkeU
+de+AXFvDUWPCLkhVeRVa1vYEmpp32wx0opb0TeK98JWbJ1nwoQ7jxv2YElpVkEA5
+GuHD95osYhVhWG8ME5JvjOqaXU+78GJ7AFJOaIejrG6dhg5++lC26M/M406njKbu
+smWmOQNGuBMna6h+vWWNc7DDSCEkL47jn86mGMhfivdMEsWAsixio2Oqi8/bf64G
+nxN2pAEY7/jalr7ldm6HDj+Cq6DzsUKGeY+eUFwa2DDwhdkDZI6W56v+2/zVxV6d
+pPnfmAnNrKnsHEet6lA93TS62NXQGgBuT0K69ASB/w==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.elon.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.elon.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.elon.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.elon.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.elon.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">elon.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 106701462830563345399081684401919487473859120270, expires on Sat Apr 26 15:28:23 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.elon.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Elon University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Elon University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.elon.edu/home/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Greg Colby</GivenName>
+ <EmailAddress>gcolby@elon.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Greg Colby</GivenName>
+ <EmailAddress>gcolby@elon.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@elon.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Greg Colby</GivenName>
+ <EmailAddress>gcolby@elon.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Texas State University - San Marcos -->
+<EntityDescriptor entityID="https://authentic.txstate.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">txstate.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Texas State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Texas State University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://infosecurity.txstate.edu/policies/uni_std_guides/incommon-pop.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.tr.txstate.edu/privacy-statement.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="119" width="708" xml:lang="en">https://authentic.txstate.edu/idp/images/Texas_State_Secondary_H_3color.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 233983570304112288900536429847453563454908074666, expires on Sun Jul 8 15:25:25 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://authentic.txstate.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://authentic.txstate.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://authentic.txstate.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://authentic.txstate.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://authentic.txstate.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://authentic.txstate.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://authentic.txstate.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">txstate.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 233983570304112288900536429847453563454908074666, expires on Sun Jul 8 15:25:25 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://authentic.txstate.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Texas State University - San Marcos</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Texas State University - San Marcos</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.txstate.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Information Security Office</GivenName>
+ <EmailAddress>infosecurity@txstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dan Owen</GivenName>
+ <EmailAddress>do13@txstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Core Systems</GivenName>
+ <EmailAddress>unixteam@txstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Core Systems</GivenName>
+ <EmailAddress>unixteam@txstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Office</GivenName>
+ <EmailAddress>infosecurity@txstate.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Ball State University -->
+<EntityDescriptor entityID="http://shibboleth.bsu.edu/sso">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://shibboleth.bsu.edu/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bsu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ball State University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.bsu.edu/about/administrativeoffices/general-counsel/policies-and-legal-information/website-privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="4900" width="4430" xml:lang="en">https://apps.bsu.edu/incommonbsugraphic/BSU-logo-vert-Red-RGB.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11533423160192638716, expires on Fri Apr 16 17:07:26 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.bsu.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.bsu.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.bsu.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ball State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ball State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://cms.bsu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Scott Linton</GivenName>
+ <EmailAddress>slinton@bsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Matt Stum</GivenName>
+ <EmailAddress>mstum@bsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Tobey Coffman</GivenName>
+ <EmailAddress>TCOFFMAN@bsu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Vermont State Colleges -->
+<EntityDescriptor entityID="https://myid.vsc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">vsc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Vermont State Colleges</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.vsc.edu/web-privacy-statement/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="62" width="301" xml:lang="en">https://images.vsc.edu/logos/vscs-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 89404822120866843031402542077452581780937585642, expires on Sat Mar 8 18:39:44 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myid.vsc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://myid.vsc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://myid.vsc.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://myid.vsc.edu/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Vermont State Colleges</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Vermont State Colleges</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.vsc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kevin Conroy</GivenName>
+ <EmailAddress>Kevin.Conroy@vsc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Martel</GivenName>
+ <EmailAddress>michael.martel@vsc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Martel</GivenName>
+ <EmailAddress>michael.martel@vsc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Accessible Information Management, LLC -->
+<EntityDescriptor entityID="https://andes.accessiblelearning.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://andes.accessiblelearning.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Accessible Information Management, LLC</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.accessiblelearning.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.accessiblelearning.com/Policies.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://common.accessiblelearning.com/Shibboleth/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 7790460128940708505, expires on Fri Jun 4 04:30:12 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://andes.accessiblelearning.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://andes.accessiblelearning.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://andes.accessiblelearning.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://andes.accessiblelearning.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Accessible Information Management, LLC</ServiceName>
+ <ServiceDescription xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Accessible Information Management, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Accessible Information Management, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://accessiblelearning.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rob Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://augusta.accessiblelearning.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://augusta.accessiblelearning.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Accessible Information Management, LLC</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.accessiblelearning.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.accessiblelearning.com/Policies.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://www.accessiblelearning.com/Shibboleth/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17295109963302019973, expires on Thu Nov 19 23:58:29 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://augusta.accessiblelearning.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://augusta.accessiblelearning.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://augusta.accessiblelearning.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://augusta.accessiblelearning.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Accessible Information Management, LLC</ServiceName>
+ <ServiceDescription xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Accessible Information Management, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Accessible Information Management, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://accessiblelearning.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://bachelor.accessiblelearning.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://bachelor.accessiblelearning.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Accessible Information Management, LLC</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.accessiblelearning.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.accessiblelearning.com/Policies.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://www.accessiblelearning.com/Shibboleth/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14085525262215997861, expires on Sat Sep 4 05:22:12 2021 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bachelor.accessiblelearning.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://bachelor.accessiblelearning.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bachelor.accessiblelearning.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bachelor.accessiblelearning.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Accessible Information Management, LLC</ServiceName>
+ <ServiceDescription xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Accessible Information Management, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Accessible Information Management, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://accessiblelearning.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://bear.accessiblelearning.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://bear.accessiblelearning.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Accessible Information Management, LLC</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.accessiblelearning.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.accessiblelearning.com/Policies.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://www.accessiblelearning.com/Shibboleth/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17641102308165174239, expires on Thu Apr 23 05:18:38 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bear.accessiblelearning.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://bear.accessiblelearning.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bear.accessiblelearning.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bear.accessiblelearning.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Accessible Information Management, LLC</ServiceName>
+ <ServiceDescription xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Accessible Information Management, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Accessible Information Management, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://accessiblelearning.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cascade.accessiblelearning.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cascade.accessiblelearning.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Accessible Information Management, LLC</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.accessiblelearning.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.accessiblelearning.com/Policies.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://www.accessiblelearning.com/Shibboleth/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12652736565108457389, expires on Fri May 22 05:53:38 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cascade.accessiblelearning.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cascade.accessiblelearning.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cascade.accessiblelearning.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cascade.accessiblelearning.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Accessible Information Management, LLC</ServiceName>
+ <ServiceDescription xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Accessible Information Management, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Accessible Information Management, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://accessiblelearning.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://denali.accessiblelearning.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://denali.accessiblelearning.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Accessible Information Management, LLC</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.accessiblelearning.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.accessiblelearning.com/Policies.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://www.accessiblelearning.com/Shibboleth/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12356419113398897012, expires on Wed Sep 9 06:08:45 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://denali.accessiblelearning.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://denali.accessiblelearning.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://denali.accessiblelearning.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://denali.accessiblelearning.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Accessible Information Management, LLC</ServiceName>
+ <ServiceDescription xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Accessible Information Management, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Accessible Information Management, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://accessiblelearning.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://hood.accessiblelearning.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://hood.accessiblelearning.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Accessible Information Management, LLC</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences. </mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.accessiblelearning.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.accessiblelearning.com/Policies.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://www.accessiblelearning.com/Shibboleth/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9778207733499046230, expires on Wed Sep 9 06:07:43 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hood.accessiblelearning.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hood.accessiblelearning.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hood.accessiblelearning.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://hood.accessiblelearning.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Accessible Information Management, LLC</ServiceName>
+ <ServiceDescription xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences. </ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Accessible Information Management, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Accessible Information Management, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://accessiblelearning.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://olympic.accessiblelearning.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://olympic.accessiblelearning.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Accessible Information Management, LLC</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.accessiblelearning.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.accessiblelearning.com/Policies.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://www.accessiblelearning.com/Shibboleth/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 7027090230954366761, expires on Tue May 19 05:46:06 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://olympic.accessiblelearning.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://olympic.accessiblelearning.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://olympic.accessiblelearning.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://olympic.accessiblelearning.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Accessible Information Management, LLC</ServiceName>
+ <ServiceDescription xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Accessible Information Management, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Accessible Information Management, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://accessiblelearning.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://rainier.accessiblelearning.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rainier.accessiblelearning.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Accessible Information Management, LLC</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.accessiblelearning.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.accessiblelearning.com/Policies.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://www.accessiblelearning.com/Shibboleth/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11234677450935279895, expires on Sat May 16 04:36:00 2020 GMT -->
+ <ds:X509Certificate>
+MIIFZjCCBE6gAwIBAgIJAJvpl54lFqEXMA0GCSqGSIb3DQEBCwUAMIG0MQswCQYD
+VQQGEwJVUzEQMA4GA1UECBMHQXJpem9uYTETMBEGA1UEBxMKU2NvdHRzZGFsZTEa
+MBgGA1UEChMRR29EYWRkeS5jb20sIEluYy4xLTArBgNVBAsTJGh0dHA6Ly9jZXJ0
+cy5nb2RhZGR5LmNvbS9yZXBvc2l0b3J5LzEzMDEGA1UEAxMqR28gRGFkZHkgU2Vj
+dXJlIENlcnRpZmljYXRlIEF1dGhvcml0eSAtIEcyMB4XDTE3MDUxNjA0MzYwMFoX
+DTIwMDUxNjA0MzYwMFowTDEhMB8GA1UECxMYRG9tYWluIENvbnRyb2wgVmFsaWRh
+dGVkMScwJQYDVQQDEx5yYWluaWVyLmFjY2Vzc2libGVsZWFybmluZy5jb20wggEi
+MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCwh2E4gnFehP2gq+eWTqR2QHMI
+I3cpwP7RQmO3mlOkgfNmsdd+V3xXxIcn7uJn6HBuHP+QsIkyipX5N6ecwVXxa40t
+B/Iquu/NC5fnsqJ29s6CoBhxTwMQOSarPG+P+eRcZ0hMCdAUcbAzuD2M4wjM3/Dl
+04CtTlvon9wzmnE3L6Y2X4lJoTTNeYCQx7BQQIFmtuHs2iN4+NzX+8pbJ37Z3/8d
+NLborddKtM7oxgPNrKcpKf7I9LM5qjG2qe7/hhmxVUZs3/W3ivvwXsJNgoXq/+fb
+QuitEJ2EwSc1unUBuPpb5juZC7ik+bwx/gyC7LsjQ3s49LU7BJT6BkrjTuCjAgMB
+AAGjggHgMIIB3DAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggr
+BgEFBQcDAjAOBgNVHQ8BAf8EBAMCBaAwNwYDVR0fBDAwLjAsoCqgKIYmaHR0cDov
+L2NybC5nb2RhZGR5LmNvbS9nZGlnMnMxLTUxNS5jcmwwXQYDVR0gBFYwVDBIBgtg
+hkgBhv1tAQcXATA5MDcGCCsGAQUFBwIBFitodHRwOi8vY2VydGlmaWNhdGVzLmdv
+ZGFkZHkuY29tL3JlcG9zaXRvcnkvMAgGBmeBDAECATB2BggrBgEFBQcBAQRqMGgw
+JAYIKwYBBQUHMAGGGGh0dHA6Ly9vY3NwLmdvZGFkZHkuY29tLzBABggrBgEFBQcw
+AoY0aHR0cDovL2NlcnRpZmljYXRlcy5nb2RhZGR5LmNvbS9yZXBvc2l0b3J5L2dk
+aWcyLmNydDAfBgNVHSMEGDAWgBRAwr0njsw0gzCiM9f7bLPwtCyAzjBNBgNVHREE
+RjBEgh5yYWluaWVyLmFjY2Vzc2libGVsZWFybmluZy5jb22CInd3dy5yYWluaWVy
+LmFjY2Vzc2libGVsZWFybmluZy5jb20wHQYDVR0OBBYEFMVIvM+kSbWBcq81GuXJ
+/AEq6oeMMA0GCSqGSIb3DQEBCwUAA4IBAQAKhcMXPRHIiIOcHRRirRYdt5g4mAc6
+TeC/Qh2zn2+NNchobCkhzw5MIvAERgUEderut1VdM15FDNyJzDDwSOB74h2i08ms
+AyFY+5tO4u9Q1yQeKQjpq2qixY7UiYgkbelDYs9NPmcpj0Gqu5A6ddpj42kkvgTq
+ke/7kMw3AMhuh+wxC5XY6jOmeyLiV933g8Pw9l+zK9omRiOFrs5QJeAgIwMUK4F7
+NDJ4ExPIxTZrFrlf9YkQvPvmQEfCb96Rdj0/P/Q6cwpzs2+W+Kp+pUIWv6WQJmb3
+DlpbWt9G5161IPjuX/zvCPQe7r5cvBjdUFT0GlB6jut4TOdF3lt/Y+xY
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15445256976226283254, expires on Wed May 19 03:20:10 2021 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rainier.accessiblelearning.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rainier.accessiblelearning.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rainier.accessiblelearning.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rainier.accessiblelearning.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Accessible Information Management, LLC</ServiceName>
+ <ServiceDescription xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Accessible Information Management, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Accessible Information Management, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://accessiblelearning.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://shasta.accessiblelearning.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shasta.accessiblelearning.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Accessible Information Management, LLC</mdui:DisplayName>
+ <mdui:Description xml:lang="en"> AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences. </mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.accessiblelearning.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.accessiblelearning.com/Policies.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://www.accessiblelearning.com/Shibboleth/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 2199918542396939579, expires on Fri Sep 4 05:20:00 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 3475958140255685172, expires on Wed May 19 03:20:10 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shasta.accessiblelearning.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shasta.accessiblelearning.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shasta.accessiblelearning.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shasta.accessiblelearning.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Accessible Information Management, LLC</ServiceName>
+ <ServiceDescription xml:lang="en"> AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences. </ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Accessible Information Management, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Accessible Information Management, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://accessiblelearning.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sierra.accessiblelearning.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sierra.accessiblelearning.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Accessible Information Management, LLC</mdui:DisplayName>
+ <mdui:Description xml:lang="en"> AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences. </mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.accessiblelearning.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.accessiblelearning.com/Policies.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://www.accessiblelearning.com/Shibboleth/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 5088802702997552404, expires on Thu Feb 11 07:33:00 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sierra.accessiblelearning.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sierra.accessiblelearning.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sierra.accessiblelearning.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sierra.accessiblelearning.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sierra.accessiblelearning.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Accessible Information Management, LLC</ServiceName>
+ <ServiceDescription xml:lang="en"> AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences. </ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Accessible Information Management, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Accessible Information Management, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://accessiblelearning.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://teton.accessiblelearning.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://teton.accessiblelearning.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Accessible Information Management, LLC</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.accessiblelearning.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.accessiblelearning.com/Policies.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://www.accessiblelearning.com/Shibboleth/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12934872517857136122, expires on Tue Dec 1 06:10:17 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://teton.accessiblelearning.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://teton.accessiblelearning.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://teton.accessiblelearning.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://teton.accessiblelearning.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Accessible Information Management, LLC</ServiceName>
+ <ServiceDescription xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Accessible Information Management, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Accessible Information Management, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://accessiblelearning.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://whitney.accessiblelearning.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://whitney.accessiblelearning.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Accessible Information Management, LLC</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.accessiblelearning.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.accessiblelearning.com/Policies.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://common.accessiblelearning.com/Shibboleth/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13532819828159559656, expires on Thu Jul 9 06:50:30 2020 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://whitney.accessiblelearning.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://whitney.accessiblelearning.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://whitney.accessiblelearning.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://whitney.accessiblelearning.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Accessible Information Management, LLC</ServiceName>
+ <ServiceDescription xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Accessible Information Management, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Accessible Information Management, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://accessiblelearning.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://yukon.accessiblelearning.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://yukon.accessiblelearning.com/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Accessible Information Management, LLC</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.accessiblelearning.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.accessiblelearning.com/Policies.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://common.accessiblelearning.com/Shibboleth/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13875654495004773273, expires on Fri Jun 4 04:32:16 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://yukon.accessiblelearning.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://yukon.accessiblelearning.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://yukon.accessiblelearning.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://yukon.accessiblelearning.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Accessible Information Management, LLC</ServiceName>
+ <ServiceDescription xml:lang="en">AIM LLC provides software and support, systems implementation and integration, strategic consulting, and technology management services to help colleges and universities build, unify, and manage their disability services accommodations. Enterprise solutions for administration and recordkeeping. Portal solutions to enhance Web-based experiences and support community building Technology management services to better manage technology resources and provide metrics on demand. Bringing together people, processes, and technology, AIM LLC works with colleges and universities to help them strengthen performance and services through improved data accuracy and integrity, increased accountability, and enhanced educational experiences.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Accessible Information Management, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Accessible Information Management, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://accessiblelearning.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rob Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Haris Gunadi</GivenName>
+ <EmailAddress>haris.gunadi@dsaim.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Robert Armas</GivenName>
+ <EmailAddress>rob.armas@dsaim.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Millersville University of Pennsylvania -->
+<EntityDescriptor entityID="https://idp.millersville.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">millersville.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Millersville University of Pennsylvania</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Millersville University Shibboleth Identity Provider</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.millersville.edu/registrar/faculty/ferpa.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="64" xml:lang="en">https://www.millersville.edu/ucm/img/identity/spirit-mark.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11130607025955382141, expires on Mon Feb 12 20:34:56 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14961601728215603579, expires on Thu Feb 20 01:11:11 2014 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.millersville.edu:9443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.millersville.edu:9443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.millersville.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.millersville.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.millersville.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.millersville.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">millersville.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11130607025955382141, expires on Mon Feb 12 20:34:56 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14961601728215603579, expires on Thu Feb 20 01:11:11 2014 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.millersville.edu:9443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.millersville.edu:9443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Millersville University of Pennsylvania</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Millersville University of Pennsylvania</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.millersville.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephanie Ayers</GivenName>
+ <EmailAddress>stephanie.ayers@millersville.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Josh Hartranft</GivenName>
+ <EmailAddress>josh.hartranft@millersville.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Todd Echterling</GivenName>
+ <EmailAddress>todd.echterling@millersville.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Institute for Advanced Study -->
+<EntityDescriptor entityID="https://idp.ias.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ias.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Institute for Advanced Study</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ias.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://idp.ias.edu/ias_tiny.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 902416703628999067426565454046509809761045310219, expires on Tue Mar 25 19:11:25 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ias.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ias.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.ias.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ias.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ias.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ias.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ias.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 902416703628999067426565454046509809761045310219, expires on Tue Mar 25 19:11:25 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ias.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Institute for Advanced Study</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Institute for Advanced Study</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ias.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jeffrey Berliner</GivenName>
+ <EmailAddress>idpadmin@ias.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Federated Authentication Support Team</GivenName>
+ <EmailAddress>idptech@ias.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Federated Authentication Support</GivenName>
+ <EmailAddress>idphelp@ias.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IAS Federated Security Support Team</GivenName>
+ <EmailAddress>idpsecurity@ias.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Lehigh University -->
+<EntityDescriptor entityID="https://sso.cc.lehigh.edu/sso/saml2/idp/metadata.php">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://sso.cc.lehigh.edu/error" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lehigh.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Lehigh University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Lehigh University IDP (SimpleSAMLPHP)</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.lehigh.edu/help</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://lts.lehigh.edu/services/explanation/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="44" width="200" xml:lang="en">https://sso.cc.lehigh.edu/sso/resources/lehightheme/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17740193558161835248, expires on Mon Dec 21 19:24:38 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.cc.lehigh.edu/sso/saml2/idp/SSOService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.cc.lehigh.edu/sso/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lehigh University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lehigh University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lehigh.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Schwartz</GivenName>
+ <EmailAddress>das1@lehigh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Keith Erekson</GivenName>
+ <EmailAddress>kbe2@lehigh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Colin Foley</GivenName>
+ <EmailAddress>caf209@lehigh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Identity and Access Management Team</GivenName>
+ <EmailAddress>iniam@Lehigh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Colin Foley</GivenName>
+ <EmailAddress>caf209@lehigh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Eric Zematis</GivenName>
+ <EmailAddress>ciso@lehigh.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Santa Barbara Community College District -->
+<EntityDescriptor entityID="http://canvas.sbcc.edu/saml2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Santa Barbara City College - Canvas</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.canvaslms.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.canvaslms.com/policies/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="220" width="220" xml:lang="en">https://canvas.instructure.com/images/canvas/header_canvas_logo@2x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16169809372008530891, expires on Sat Apr 22 01:00:00 2017 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://canvas.sbcc.edu/login/saml/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://canvas.sbcc.edu/saml_consume" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://canvas.sbcc.edu/login/saml" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Santa Barbara City College - Canvas</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Santa Barbara Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Santa Barbara Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sbcc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Canvas Support</GivenName>
+ <EmailAddress>support@instructure.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Canvas Support</GivenName>
+ <EmailAddress>support@instructure.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Canvas Support</GivenName>
+ <EmailAddress>support@instructure.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Canvas Support</GivenName>
+ <EmailAddress>support@instructure.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://idp.sbcc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sbcc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Santa Barbara City College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Santa Barbara City College Shibboleth </mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.sbcc.edu/boardoftrustees/files/policies/AP%203720%20Electronic%20Communication%20Procedures.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://www.sbcc.edu/images/sbcc-80-60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 278354547445813212186528993849014442050495443568, expires on Sun Mar 30 22:06:40 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.sbcc.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.sbcc.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.sbcc.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.sbcc.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.sbcc.edu/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.sbcc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.sbcc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.sbcc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sbcc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 278354547445813212186528993849014442050495443568, expires on Sun Mar 30 22:06:40 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.sbcc.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Santa Barbara Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Santa Barbara Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sbcc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Ghens</GivenName>
+ <EmailAddress>mghens@sbcc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Ghens</GivenName>
+ <EmailAddress>mghens@sbcc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brett Wutzke</GivenName>
+ <EmailAddress>tbwutzke@pipeline.sbcc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Miami -->
+<EntityDescriptor entityID="https://caneid.miami.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">miami.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Miami</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://welcome.miami.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://welcome.miami.edu/privacy-and-legal/privacy/index.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="81" width="160" xml:lang="en">https://ucomm.miami.edu/_assets/images/tools-and-resources/signatures/umiami_prime.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1393750045549885469928185371758269716571318701617, expires on Sat Jul 5 17:44:36 2031 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://caneid.miami.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://caneid.miami.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://caneid.miami.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://caneid.miami.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://caneid.miami.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">miami.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1393750045549885469928185371758269716571318701617, expires on Sat Jul 5 17:44:36 2031 GMT -->
+ <ds:X509Certificate>
+MIIDLDCCAhSgAwIBAgIVAPQh6d6BZ9YFBFUWqakLfYnEdM4xMA0GCSqGSIb3DQEB
+BQUAMBsxGTAXBgNVBAMTEGNhbmVpZC5taWFtaS5lZHUwHhcNMTEwNzA1MTc0NDM2
+WhcNMzEwNzA1MTc0NDM2WjAbMRkwFwYDVQQDExBjYW5laWQubWlhbWkuZWR1MIIB
+IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1rzg7ZatkXxqJ/zgNGeewolU
+dHPcTL/K5qF+pR3oFCPy9OFFLSdilEQlvM1Tlbk/mtChIhL2EtkA0EXyFqQdDAmf
+jw94nYJEHn35T98K1fZxdbATFnZCXWmofTW7h45gV5rROFZApd9PyzC0saTYOco9
+1/yqftPdT2gbLStY4ygQmjJfbTcuSNxW764WSx10ZfuQYi3opJdHWt2erv6hX/jK
+AXQxVXFWxknMaAQsX4Ux9T2XenRYCzN89+hiOrHXf/HCNLYQRy4iDDQL+JlhYYeV
+8lJZy+8YIZycMtxzfDusivTDNtZVxzs4a5887JBgTZ9e04i6ShKF+6RaQ7YQnwID
+AQABo2cwZTBEBgNVHREEPTA7ghBjYW5laWQubWlhbWkuZWR1hidodHRwczovL2Nh
+bmVpZC5taWFtaS5lZHUvaWRwL3NoaWJib2xldGgwHQYDVR0OBBYEFJyoHhDM6V21
+xYU2zaZW8N1Z07u0MA0GCSqGSIb3DQEBBQUAA4IBAQC2YOObmOvCRPLeixpeGhoM
+Nnw3Kn9U4F1jBtZlRWTOXJmbi1BmBibgMJKBdelh1zsPZnUWaolMhjimmEMHkNmX
+ELyvC+9VpS5QX/27ct1thtHIwKn8lb2ZlBf8gfYOS9piL3Fq57JpUQIzvYSYfJNh
+/mnixpoGtqPtt3FYqBR40+HJxhF8xFg3cbsqOZZelXdeyh2vkUcQYSEaecI762qE
+ik202ny3EMaI0Inw9Wc8Toppy2R91Bz/bh0SCYqsCrcJygRoZ4ROwvUZ/DBoyixB
+1JB2M6xRO0un23rAAyIUk2T0YZtXuDvbwqN6wUOWj5oHvbtXGF4eg8KmyIozGx5n
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://caneid.miami.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Miami</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Miami</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.miami.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sigurdur Petursson</GivenName>
+ <EmailAddress>spetursson@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Christopher A. Slanker</GivenName>
+ <EmailAddress>cslanker@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Sigurdur Petursson</GivenName>
+ <EmailAddress>spetursson@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Christopher A. Slanker</GivenName>
+ <EmailAddress>cslanker@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Pavel Hernandez</GivenName>
+ <EmailAddress>phernandez2@miami.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cas.cgcent.miami.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">miami.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Miami - Non-production</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The non-production authentication system.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://welcome.miami.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://welcome.miami.edu/privacy-and-legal/privacy/index.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="40" xml:lang="en">https://ucomm.miami.edu/_assets/images/tools-and-resources/signatures/umiami_prime.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 96060080357906574687788763764442804869754519128, expires on Sun Jun 15 13:26:11 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cas.cgcent.miami.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas.cgcent.miami.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://cas.cgcent.miami.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas.cgcent.miami.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas.cgcent.miami.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">miami.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 96060080357906574687788763764442804869754519128, expires on Sun Jun 15 13:26:11 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cas.cgcent.miami.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Miami</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Miami</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.miami.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sigurdur Petursson</GivenName>
+ <EmailAddress>spetursson@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Sigurdur Petursson</GivenName>
+ <EmailAddress>spetursson@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Pavel Hernandez</GivenName>
+ <EmailAddress>phernandez2@miami.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Kentucky -->
+<EntityDescriptor entityID="https://ukidp.uky.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uky.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Kentucky</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.uky.edu/see/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="221" width="850" xml:lang="en">https://www.uky.edu/UKHome/2015assets/img/uklogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11218018776447569819, expires on Wed Oct 17 19:49:44 2012 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17135586759084529919, expires on Sun Mar 7 14:33:55 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://ukidp.uky.edu:9443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ukidp.uky.edu:9443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://ukidp.uky.edu:443/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ukidp.uky.edu:443/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ukidp.uky.edu:443/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ukidp.uky.edu:443/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uky.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11218018776447569819, expires on Wed Oct 17 19:49:44 2012 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17135586759084529919, expires on Sun Mar 7 14:33:55 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://ukidp.uky.edu:9443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ukidp.uky.edu:9443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Kentucky</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Kentucky</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uky.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Tracy Cerise</GivenName>
+ <EmailAddress>tracy@uky.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tracy Cerise</GivenName>
+ <EmailAddress>tracy@uky.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Wayne Beech</GivenName>
+ <EmailAddress>wayne@uky.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>John Lewis</GivenName>
+ <EmailAddress>jcle238@uky.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Lewis</GivenName>
+ <EmailAddress>jcle238@uky.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>George Insko</GivenName>
+ <EmailAddress>gfinsk0@uky.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Wisconsin-Superior -->
+<EntityDescriptor entityID="https://portal.uwsuper.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwsuper.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Wisconsin-Superior Login Portal</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Login portal for the University of Wisconsin - Superior</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uwsuper.edu/technology/resources/policies/privacy-statement.cfm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="88" width="200" xml:lang="en">https://www.uwsuper.edu/uws/customcf/incommon/uwslogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14950217479278154003, expires on Thu Mar 16 19:40:23 2028 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portal.uwsuper.edu/sso/go.ashx"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.uwsuper.edu/sso/go.ashx"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin-Superior</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin-Superior</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uwsuper.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ross J Eaton</GivenName>
+ <EmailAddress>reaton2@uwsuper.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Ross J Eaton</GivenName>
+ <EmailAddress>reaton2@uwsuper.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ross J Eaton</GivenName>
+ <EmailAddress>reaton2@uwsuper.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Kansas -->
+<EntityDescriptor entityID="https://shibidp.ku.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://shibidp.ku.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ku.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Kansas</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The University of Kansas</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.ku.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://policy.ku.edu/IT/info-access-control-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="157" width="180" xml:lang="en">https://shibidp.ku.edu/images/ku-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 68859010241319226642487606903039598170984542165, expires on Fri Sep 24 21:29:22 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibidp.ku.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibidp.ku.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibidp.ku.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Kansas</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Kansas</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ku.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Information Technology Customer Service Center</GivenName>
+ <EmailAddress>itcsc@ku.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>InCommon Admin</GivenName>
+ <EmailAddress>incommon-admin@ku.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>SSO Administration</GivenName>
+ <EmailAddress>idm.sso@ku.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>SSO Security</GivenName>
+ <EmailAddress>sso.sec@ku.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Idaho -->
+<EntityDescriptor entityID="http://sts.uidaho.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uidaho.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Idaho</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uidaho.edu/apm/30/10</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="42" xml:lang="en">https://webpages.uidaho.edu/InCommonFederation/logo/uidaho-gold.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 141487710481634261371549364895322189644, expires on Sun Nov 19 02:03:40 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sts.uidaho.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sts.uidaho.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sts.uidaho.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sts.uidaho.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Idaho</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Idaho</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uidaho.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Systems Team</GivenName>
+ <EmailAddress>systems@uidaho.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Security Office</GivenName>
+ <EmailAddress>its-security@uidaho.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Office</GivenName>
+ <EmailAddress>its-security@uidaho.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Information Technology Services</GivenName>
+ <EmailAddress>support@uidaho.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- A. T. Still University -->
+<EntityDescriptor entityID="https://my.atsu.edu/swPublicSSO/SAML/incommon">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://my.atsu.edu/errors/401.jsp" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">atsu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">A. T. Still University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">A.T. Still University of Health Sciences serves as a learning-centered university dedicated to preparing highly competent professionals through innovative academic programs with a commitment to continue its osteopathic heritage and focus on whole person healthcare, scholarship, community health, interprofessional education, diversity, and underserved populations</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.atsu.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.atsu.edu/policies/privacy_policy.htm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="42" width="375" xml:lang="en">https://www.atsu.edu/themes/atsu/images/logo_atsu.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 3405691582, expires on Tue Mar 14 14:14:26 2023 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://my.atsu.edu/doLogout.jsp"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://my.atsu.edu/doLogout.jsp"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://my.atsu.edu/swPublicSSO/SAML/incommon"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://my.atsu.edu/swPublicSSO/SAML/incommon"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">A. T. Still University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">A. T. Still University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.atsu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bryan Krusniak</GivenName>
+ <EmailAddress>bkrusniak@atsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Timothy Johnson</GivenName>
+ <EmailAddress>tjohnson@atsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Dustin Usher</GivenName>
+ <EmailAddress>dusher@atsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Tammy Weidenbenner</GivenName>
+ <EmailAddress>tweidenbenner@atsu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- CollegeNET, Inc. -->
+<EntityDescriptor entityID="https://shibboleth-idp.collegenet.com/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://applyweb.collegenet.com/account/error" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">collegenet.com</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CollegeNET, Inc.</mdui:DisplayName>
+ <mdui:Description xml:lang="en">CollegeNET, Inc. is a leading developer of web-based systems for higher education and non-profit organizations, serving more than 1,300 clients worldwide.
+CollegeNET products include course and event scheduling, space and resource management, web calendar publishing, e-commerce and contributions, accounting, online admission application processing, online course evaluation, and commencement services.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://corp.collegenet.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://corp.collegenet.com/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="51" width="200" xml:lang="en">https://corp.collegenet.com/img-link/CN_blue-small.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 112547024765059836018976852064318457597134832081, expires on Mon Feb 11 23:15:32 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth-idp.collegenet.com/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth-idp.collegenet.com/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth-idp.collegenet.com/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth-idp.collegenet.com/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">CollegeNET, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">CollegeNET, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://collegenet.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CollegeNET IT Administrator</GivenName>
+ <EmailAddress>admins@collegenet.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>CollegeNET Help Desk</GivenName>
+ <EmailAddress>maint@collegenet.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>CollegeNET IT Administrator</GivenName>
+ <EmailAddress>admins@collegenet.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>CollegeNET IT Administrator</GivenName>
+ <EmailAddress>admins@collegenet.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Worcester Polytechnic Institute -->
+<EntityDescriptor entityID="https://idp.wpi.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wpi.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Worcester Polytechnic Institute</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.wpi.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.wpi.edu/about/policies/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="489" xml:lang="en">https://web.wpi.edu/Images/template/wpilogo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 580906912814671961002810652218411974518657604493, expires on Tue Mar 4 18:29:20 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.wpi.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.wpi.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.wpi.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.wpi.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.wpi.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wpi.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 580906912814671961002810652218411974518657604493, expires on Tue Mar 4 18:29:20 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.wpi.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.wpi.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Worcester Polytechnic Institute</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Worcester Polytechnic Institute</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wpi.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Taylor</GivenName>
+ <EmailAddress>mtaylor@wpi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Thomas Collins</GivenName>
+ <EmailAddress>tcollins@wpi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>its@wpi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Eric Martin</GivenName>
+ <EmailAddress>ejmartin2@wpi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Sean O'Connor</GivenName>
+ <EmailAddress>soconnor@wpi.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Boston University -->
+<EntityDescriptor entityID="https://shib.bu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Boston University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.bu.edu/policies/information-security-home/digital-privacy-statement/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="112" xml:lang="en">https://www.bu.edu/brand/files/2012/10/master-logo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 707910743112002367133516444342485846352579915451, expires on Sat Jun 21 16:01:49 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.bu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.bu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.bu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Boston University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Boston University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.bu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>BU IT Help Center</GivenName>
+ <EmailAddress>ithelp@bu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>BU IT Help Center</GivenName>
+ <EmailAddress>ithelp@bu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>BU Information Security</GivenName>
+ <EmailAddress>buinfosec@bu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Kansas -->
+<EntityDescriptor entityID="https://cas.kumc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://cas.kumc.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">kumc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Kansas Medical Center</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Kansas Medical Center</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.kumc.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.kumc.edu/privacy-statement.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="125" width="160" xml:lang="en">https://www.kumc.edu/directory/Content/images/kumc-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 460554654342728633668728187156008637376476568386, expires on Tue Mar 6 18:37:47 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cas.kumc.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas.kumc.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://cas.kumc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas.kumc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas.kumc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">kumc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 460554654342728633668728187156008637376476568386, expires on Tue Mar 6 18:37:47 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cas.kumc.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Kansas</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Kansas Medical Center</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.kumc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity and Data Integration</GivenName>
+ <EmailAddress>IDM-University@kumc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity and Data Integration</GivenName>
+ <EmailAddress>IDM-University@kumc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Identity and Data Integration</GivenName>
+ <EmailAddress>IDM-University@kumc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>kumc-security@kumc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Shippensburg University -->
+<EntityDescriptor entityID="https://idp.ship.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.ship.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ship.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Shippensburg University of Pennsylvania</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Shippensburg, Pennsylvania</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.ship.edu/technology</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.ship.edu/Technology/Policies/Computing_and_Information_Network_Usage_Policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="900" width="1200" xml:lang="en">https://www.ship.edu/Static/img/logo-stacked.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 43255401083548594298100707441131422138, expires on Fri Dec 8 23:59:59 2017 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 62231508122966123197913510121133837740, expires on Tue Dec 8 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
+MIIFWzCCBEOgAwIBAgIQLtFaPUxl1dUdCLVgWbwNrDANBgkqhkiG9w0BAQsFADB2
+MQswCQYDVQQGEwJVUzELMAkGA1UECBMCTUkxEjAQBgNVBAcTCUFubiBBcmJvcjES
+MBAGA1UEChMJSW50ZXJuZXQyMREwDwYDVQQLEwhJbkNvbW1vbjEfMB0GA1UEAxMW
+SW5Db21tb24gUlNBIFNlcnZlciBDQTAeFw0xNzEyMDkwMDAwMDBaFw0yMDEyMDgy
+MzU5NTlaMIGYMQswCQYDVQQGEwJVUzEOMAwGA1UEERMFMTcyNTcxCzAJBgNVBAgT
+AlBBMRUwEwYDVQQHEwxTaGlwcGVuc2J1cmcxHDAaBgNVBAkTEzE4NzEgT2xkIE1h
+aW4gRHJpdmUxIDAeBgNVBAoTF1NoaXBwZW5zYnVyZyBVbml2ZXJzaXR5MRUwEwYD
+VQQDEwxpZHAuc2hpcC5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
+AQC40/uUZbIlC/K4wvHgdeKfJi9+NS9nHFT7etNwNnzHO2280Hi5DBzyKMNIm1JA
+TP8JZxnNCA+vuno/sb4nzCeHcRbxdEL9r/lBu7lqImcjRH28Uh9mQ8rekzx6n/Wd
+HG6U/B3/nj9Erg14BpzJPlNl26BWNjFvwuxEI6OeKzWHL9jvb+3gHYs7V+bL9bLY
+JYdtCr5cHeIET2FZRTLBukom+CVYkz+8I57suw4+wppj1ySd3iuES9v4x9h89fcj
+yBRxTTu8W8UzOdpNv0U3ab8c4zJlyvSwkL6UFS/5QcwD3tgM++6BEOB9lA8S1gAH
+bZmHVhIeBgrQgiTd/y3CHWFxAgMBAAGjggHAMIIBvDAfBgNVHSMEGDAWgBQeBaN3
+j2yW4luHS6a0hqxxAAznODAdBgNVHQ4EFgQUF932xOn/KljdAcwYXCfAlxEpANkw
+DgYDVR0PAQH/BAQDAgWgMAwGA1UdEwEB/wQCMAAwHQYDVR0lBBYwFAYIKwYBBQUH
+AwEGCCsGAQUFBwMCMGcGA1UdIARgMF4wUgYMKwYBBAGuIwEEAwEBMEIwQAYIKwYB
+BQUHAgEWNGh0dHBzOi8vd3d3LmluY29tbW9uLm9yZy9jZXJ0L3JlcG9zaXRvcnkv
+Y3BzX3NzbC5wZGYwCAYGZ4EMAQICMEQGA1UdHwQ9MDswOaA3oDWGM2h0dHA6Ly9j
+cmwuaW5jb21tb24tcnNhLm9yZy9JbkNvbW1vblJTQVNlcnZlckNBLmNybDB1Bggr
+BgEFBQcBAQRpMGcwPgYIKwYBBQUHMAKGMmh0dHA6Ly9jcnQudXNlcnRydXN0LmNv
+bS9JbkNvbW1vblJTQVNlcnZlckNBXzIuY3J0MCUGCCsGAQUFBzABhhlodHRwOi8v
+b2NzcC51c2VydHJ1c3QuY29tMBcGA1UdEQQQMA6CDGlkcC5zaGlwLmVkdTANBgkq
+hkiG9w0BAQsFAAOCAQEAF6cE0BmLPLX2XZvhzMZcTcBF9+gfQ5majRnBfON/OuFi
+TI0LkF+UvQ4XhcRmbxHLrlxQsZXdwh5EGtlqsXC40Vm3xVqO97OnoOCabksQvqJN
+HQqGt4dqHaOBVRh/3SPqLqGq1kwjSR7BIGgGt2uLwZuvL1J8XPKBV3wAbZLoDXCp
+TOyh2kai/likjHj4ixr3dC0/aHgw3T22dqQG/OVMtqVMf7zfuQ9m6N3W+BduMjGQ
+jfQCWiGEikupMM+Ugx0spKHj+2ksrpUZElc/FY0CqFSGBn7fHIYiaRuR3nIihaV6
+EgTbrBkWyq/NRYlgZjBTWZ0EAR+6BL1y0fWWaKj/cw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ship.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ship.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ship.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ship.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.ship.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ship.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 43255401083548594298100707441131422138, expires on Fri Dec 8 23:59:59 2017 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 62231508122966123197913510121133837740, expires on Tue Dec 8 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
+MIIFWzCCBEOgAwIBAgIQLtFaPUxl1dUdCLVgWbwNrDANBgkqhkiG9w0BAQsFADB2
+MQswCQYDVQQGEwJVUzELMAkGA1UECBMCTUkxEjAQBgNVBAcTCUFubiBBcmJvcjES
+MBAGA1UEChMJSW50ZXJuZXQyMREwDwYDVQQLEwhJbkNvbW1vbjEfMB0GA1UEAxMW
+SW5Db21tb24gUlNBIFNlcnZlciBDQTAeFw0xNzEyMDkwMDAwMDBaFw0yMDEyMDgy
+MzU5NTlaMIGYMQswCQYDVQQGEwJVUzEOMAwGA1UEERMFMTcyNTcxCzAJBgNVBAgT
+AlBBMRUwEwYDVQQHEwxTaGlwcGVuc2J1cmcxHDAaBgNVBAkTEzE4NzEgT2xkIE1h
+aW4gRHJpdmUxIDAeBgNVBAoTF1NoaXBwZW5zYnVyZyBVbml2ZXJzaXR5MRUwEwYD
+VQQDEwxpZHAuc2hpcC5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
+AQC40/uUZbIlC/K4wvHgdeKfJi9+NS9nHFT7etNwNnzHO2280Hi5DBzyKMNIm1JA
+TP8JZxnNCA+vuno/sb4nzCeHcRbxdEL9r/lBu7lqImcjRH28Uh9mQ8rekzx6n/Wd
+HG6U/B3/nj9Erg14BpzJPlNl26BWNjFvwuxEI6OeKzWHL9jvb+3gHYs7V+bL9bLY
+JYdtCr5cHeIET2FZRTLBukom+CVYkz+8I57suw4+wppj1ySd3iuES9v4x9h89fcj
+yBRxTTu8W8UzOdpNv0U3ab8c4zJlyvSwkL6UFS/5QcwD3tgM++6BEOB9lA8S1gAH
+bZmHVhIeBgrQgiTd/y3CHWFxAgMBAAGjggHAMIIBvDAfBgNVHSMEGDAWgBQeBaN3
+j2yW4luHS6a0hqxxAAznODAdBgNVHQ4EFgQUF932xOn/KljdAcwYXCfAlxEpANkw
+DgYDVR0PAQH/BAQDAgWgMAwGA1UdEwEB/wQCMAAwHQYDVR0lBBYwFAYIKwYBBQUH
+AwEGCCsGAQUFBwMCMGcGA1UdIARgMF4wUgYMKwYBBAGuIwEEAwEBMEIwQAYIKwYB
+BQUHAgEWNGh0dHBzOi8vd3d3LmluY29tbW9uLm9yZy9jZXJ0L3JlcG9zaXRvcnkv
+Y3BzX3NzbC5wZGYwCAYGZ4EMAQICMEQGA1UdHwQ9MDswOaA3oDWGM2h0dHA6Ly9j
+cmwuaW5jb21tb24tcnNhLm9yZy9JbkNvbW1vblJTQVNlcnZlckNBLmNybDB1Bggr
+BgEFBQcBAQRpMGcwPgYIKwYBBQUHMAKGMmh0dHA6Ly9jcnQudXNlcnRydXN0LmNv
+bS9JbkNvbW1vblJTQVNlcnZlckNBXzIuY3J0MCUGCCsGAQUFBzABhhlodHRwOi8v
+b2NzcC51c2VydHJ1c3QuY29tMBcGA1UdEQQQMA6CDGlkcC5zaGlwLmVkdTANBgkq
+hkiG9w0BAQsFAAOCAQEAF6cE0BmLPLX2XZvhzMZcTcBF9+gfQ5majRnBfON/OuFi
+TI0LkF+UvQ4XhcRmbxHLrlxQsZXdwh5EGtlqsXC40Vm3xVqO97OnoOCabksQvqJN
+HQqGt4dqHaOBVRh/3SPqLqGq1kwjSR7BIGgGt2uLwZuvL1J8XPKBV3wAbZLoDXCp
+TOyh2kai/likjHj4ixr3dC0/aHgw3T22dqQG/OVMtqVMf7zfuQ9m6N3W+BduMjGQ
+jfQCWiGEikupMM+Ugx0spKHj+2ksrpUZElc/FY0CqFSGBn7fHIYiaRuR3nIihaV6
+EgTbrBkWyq/NRYlgZjBTWZ0EAR+6BL1y0fWWaKj/cw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ship.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Shippensburg University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Shippensburg University of Pennsylvania</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://ship.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Shippensburg University Computing Technologies Center</GivenName>
+ <EmailAddress>idp@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shippensburg University Computing Technologies Center</GivenName>
+ <EmailAddress>idp@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Shippensburg University Help Desk</GivenName>
+ <EmailAddress>helpdesk@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shippensburg Univeristy IDP</GivenName>
+ <EmailAddress>idp@ship.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Weill Cornell Medical College -->
+<EntityDescriptor entityID="https://ipm.weill.cornell.edu/federated-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pmkb.weill.cornell.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pmkb-local.weill.cornell.edu/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pmkb-s.weill.cornell.edu/Shibboleth.sso/Login" index="3"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Weill Cornell Institute for Precision Medicine</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://ipm.weill.cornell.edu/about/about-institute</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://weill.cornell.edu/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="51" width="234" xml:lang="en">https://weill.cornell.edu/sites/all/themes/wcm_edu/images/WCM_2Line_CoBrand_RGB.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18059702431074309519, expires on Sun Feb 22 20:38:42 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pmkb.weill.cornell.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pmkb-local.weill.cornell.edu/Shibboleth.sso/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pmkb.weill.cornell.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pmkb-local.weill.cornell.edu/Shibboleth.sso/SAML2/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ipm-saml-test.weill.cornell.edu/Shibboleth.sso/SAML2/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pmkb-s.weill.cornell.edu/Shibboleth.sso/SAML2/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://xits-ipmd02.med.cornell.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pmkb-d.weill.cornell.edu/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Weill Cornell Institute for Precision Medicine</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Weill Cornell Medical College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Weill Cornell Medical College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.med.cornell.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Linda Huang</GivenName>
+ <EmailAddress>lih3001@med.cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Alexandros Sigaras</GivenName>
+ <EmailAddress>als2076@med.cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Linda Huang</GivenName>
+ <EmailAddress>lih3001@med.cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Linda Huang</GivenName>
+ <EmailAddress>lih3001@med.cornell.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://shib.med.cornell.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.weill.cornell.edu/idp/module.php/wcmccore/federation-error.php" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">med.cornell.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Weill Cornell Medical College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://weill.cornell.edu/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="300" width="1357" xml:lang="en">https://weill.cornell.edu/sites/all/themes/wcm_edu/images/WCM_2Line_CoBrand_RGB.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1050238455598857724825568606052835286957332931880, expires on Fri Dec 12 23:43:01 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.med.cornell.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.med.cornell.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.med.cornell.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.med.cornell.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.med.cornell.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">med.cornell.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1050238455598857724825568606052835286957332931880, expires on Fri Dec 12 23:43:01 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.med.cornell.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Weill Cornell Medical College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Weill Cornell Medical College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.med.cornell.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>ITS Service Desk</GivenName>
+ <EmailAddress>Support@med.cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brian Tschinkel</GivenName>
+ <EmailAddress>brt2008@med.cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kevin McCormack</GivenName>
+ <EmailAddress>kem2028@med.cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>David Asekoff</GivenName>
+ <EmailAddress>ada2018@med.cornell.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- NERSC (National Energy Scientific Computing Center) -->
+<EntityDescriptor entityID="https://spot-dev.nersc.gov/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://spot-api-dev.nersc.gov/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SPOT Suite Portal</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.lbl.gov/disclaimers/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="338" width="766" xml:lang="en">https://spot-dev.nersc.gov/images/spot-transparent.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11226545640901341735, expires on Fri Nov 3 01:35:55 2028 GMT -->
+ <ds:X509Certificate>
+MIIENDCCApygAwIBAgIJAJvMs8eUonInMA0GCSqGSIb3DQEBCwUAMCExHzAdBgNV
+BAMTFnNwb3QtYXBpLWRldi5uZXJzYy5nb3YwHhcNMTgxMTA2MDEzNTU1WhcNMjgx
+MTAzMDEzNTU1WjAhMR8wHQYDVQQDExZzcG90LWFwaS1kZXYubmVyc2MuZ292MIIB
+ojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAsOjRrewVgChoJpg82WOxrDZA
+kNL/qX4Zf6uQk+Ap0I8uZUE6p0+0jz2RZadZieSiJ+RuwmjCxHOZvD+jIUT3xqTf
+fzwQWWdPdmZF7nJBpXGF/Bsjl8Ki7TBgU9HaTqEBpqGNDru6VBsTdfIjNAsVsZCX
+2c+pbpMC6zkK4C1NTNff1LVZDuf8pQG/gn0pTY4d9zCnJuKx4KGPaXVFO1sjS16j
+0206P9+NyH4fNfdaTGJqiMhIsHInJkEDGVFmJRvKfIErpBDhrKMkI/gAmb/vBVNw
++hXmkD8iPd3Krse1bjPAgo2+pkkqQNa63ZnaVWtPzcj5nKW+BJPFtqvrWs32/0FT
+qU4aLtEcMnRpcV/eHD9yHoTDg6WrCuxKFCLsduIwRlIYxkvT9b21undEzYH+FxhD
+O7KXBxromPqFYHa68aLaYwUeYLrTzlJlllCXdBkuIGIehVP/qG0sYuZAqxURqbxs
+UPvA9vtM7nsidymcNnsU0d7buUT8aOJkDPgkZB8xAgMBAAGjbzBtMEwGA1UdEQRF
+MEOCFnNwb3QtYXBpLWRldi5uZXJzYy5nb3aGKWh0dHBzOi8vc3BvdC1hcGktZGV2
+Lm5lcnNjLmdvdi9zaGliYm9sZXRoMB0GA1UdDgQWBBQcXwEqrpP3KfeG6VW4p7Pm
+47OfxTANBgkqhkiG9w0BAQsFAAOCAYEAilCZl3VmfjsxaxqJQSXqM7jNXDTKSoCK
+TWLcpStXYz1rs9NdRatv+G3B+VZQAdIhoQvv9J4PzTzfg4uE8JdtEdV55TOO/aW1
+HUYZgOyNvyxV9c4pkQ1NbSHfaQuSXyn5YPbRgyyNW8+SH+66RTNI4kAaZGs5x/dh
+FiSPYb78ZSH30eezDA3gEA83MOTAlLfoYVeeGzcsFK1Cze+jlWzUEbVXLtygInXG
+Xb/+5FdRHy9TvvUVa+tyDkeILjSDvdC3T/yEfLIB5AcLzf93ug7QyvlyzRUHWdaq
+JyL9Z882xZuAQtYP3hUxXa5PwovDY5kSQNGp4beBjsorgllow2+Sr+YvQECAY48R
+Pa8eha0h+qXVP2uBjzEimQQEBKG2DGOLqjUSB+/xC2OluygI1bR0/y59cqAocoUa
+nyGqs4lrMy7EN9fk0tIhG8CeGSTGik9XOJ3QCH9o/nzcpTncpTKQ4M2gcUo1KYSp
+8Lbq0V/B8A6JyQGZfzgFPKlLrURIQ54K
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://spot-api-dev.nersc.gov/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SPOT Suite Portal</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NERSC (National Energy Scientific Computing Center)</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NERSC (National Energy Scientific Computing Center)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nersc.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>NERSC ISG</GivenName>
+ <EmailAddress>nersc-isg@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>NERSC ISG</GivenName>
+ <EmailAddress>nersc-isg@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>NERSC Security</GivenName>
+ <EmailAddress>nersc-sec@lbl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>NERSC ISG</GivenName>
+ <EmailAddress>nersc-isg@lbl.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of St. Thomas -->
+<EntityDescriptor entityID="https://idp.stthom.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">stthom.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of St. Thomas</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of St. Thomas - Houston, TX</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.stthom.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.stthom.edu/About/Privacy-Statement/Privacy-Statement.aqf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="110" width="300" xml:lang="en">https://idp.stthom.edu/idp/images/ust_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1070649288196859265209017700773635056665116480253, expires on Sun Feb 1 00:49:13 2037 GMT -->
+ <ds:X509Certificate>
+MIIDJDCCAgygAwIBAgIVALuJkxL34RTkHxdmKjuc7fyf9xL9MA0GCSqGSIb3DQEB
+CwUAMBkxFzAVBgNVBAMMDmlkcC5zdHRob20uZWR1MB4XDTE3MDIwMTAwNDkxM1oX
+DTM3MDIwMTAwNDkxM1owGTEXMBUGA1UEAwwOaWRwLnN0dGhvbS5lZHUwggEiMA0G
+CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCK9XGMVHtGo7wzvrXfW4wx1Wbn1NBm
+71D4lj/BxnSp+rXIMsAJ8zB/+rM7x/Bx8QMjq+LmY4wR69WPkQJ0GSip0+PrdHUu
+SgIkOG0r8zVsch3xNA96oz7CMdI/2nc3u8O6rI//g54RIPP41AjIqDzQPdhCOtm9
+8Ntep0V6Rm2ryeSIBki50fYPhpExG6YvbDZHB6piui/lJI2l9P0nHkTroUkaZchD
+0ywPUKY3Wwf25XPUKSx+OWRkUo+xKKX57GXNbGlS97gcYwvwiLQsReOlMxvVx02T
+gEq2VW28gh2yytQTVJ//dYMvciHOCc1XRKctCvTX1FZPbz3OgoyhaJMLAgMBAAGj
+YzBhMB0GA1UdDgQWBBR+gke0QGduogf/XMqXlKqOG3CCQDBABgNVHREEOTA3gg5p
+ZHAuc3R0aG9tLmVkdYYlaHR0cHM6Ly9pZHAuc3R0aG9tLmVkdS9pZHAvc2hpYmJv
+bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEASwIIOUA28j7PGD3rbsngQKJmjeiiHamw
+acWNa5vdrAcNDMmXoHWjQ7qqdhaGYy73upZHmoY3WjH1sH/f8AJFc1WPdKCe5TMz
+pDIx/27uFmwQZglHIIhaNi8I/2PQFaI+KjbnZ4nGUmlrqhmwI7TaZALUAOgqXPY9
+7eHfBHdvNLZz9acDx6Q3njIrdr6+QucRWtzSPV1k5k3DqNYv+9KrNDy2q0TzL1nS
+JxQmOC81aFHbxXJGIoZkpTapADSmtFFYkOsTwFY8zDePTnTJMzFhhn1QDruHGyLq
+mtZ2SHxiAxq2+q0ihs6L2Oaud6SOzRpI9hhJhVeDpM3SPq2LAtNaCA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.stthom.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.stthom.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of St. Thomas</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of St. Thomas</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.stthom.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Neil Gaede</GivenName>
+ <EmailAddress>neil@stthom.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Neil Gaede</GivenName>
+ <EmailAddress>neil@stthom.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Neil Gaede</GivenName>
+ <EmailAddress>neil@stthom.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Neil Gaede</GivenName>
+ <EmailAddress>neil@stthom.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Nazareth College of Rochester -->
+<EntityDescriptor entityID="https://ssofed.naz.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">naz.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Nazareth College of Rochester</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Nazareth College</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www2.naz.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www2.naz.edu/web-policies/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="148" width="480" xml:lang="en">https://www2.naz.edu/files/7613/9990/6239/nazareth-college_shield_web.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 55334998999360994024958450093786002375604316040, expires on Mon May 4 18:54:39 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ssofed.naz.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ssofed.naz.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Nazareth College of Rochester</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Nazareth College of Rochester</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.naz.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>its_tech</GivenName>
+ <EmailAddress>its_tech@naz.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>its_tech</GivenName>
+ <EmailAddress>its_tech@naz.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>its_tech</GivenName>
+ <EmailAddress>its_tech@naz.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>its_tech</GivenName>
+ <EmailAddress>its_tech@naz.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Franklin & Marshall College -->
+<EntityDescriptor entityID="https://login.fandm.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fandm.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Franklin &amp; Marshall College</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.fandm.edu/its/policies</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.fandm.edu/its/policies</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="69" xml:lang="en">https://password.fandm.edu/style/fandm-idp.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11549373675944687432, expires on Sat Feb 2 20:30:11 2013 GMT -->
+ <ds:X509Certificate>
+MIIDWDCCAkACCQCgR54qxO43SDANBgkqhkiG9w0BAQUFADBuMRgwFgYDVQQDDA9s
+b2dpbi5mYW5kbS5lZHUxJDAiBgNVBAoMG0ZyYW5rbGluICYgTWFyc2hhbGwgQ29s
+bGVnZTELMAkGA1UEBhMCVVMxCzAJBgNVBAgMAlBBMRIwEAYDVQQHDAlMYW5jYXN0
+ZXIwHhcNMTIwMjAzMjAzMDExWhcNMTMwMjAyMjAzMDExWjBuMRgwFgYDVQQDDA9s
+b2dpbi5mYW5kbS5lZHUxJDAiBgNVBAoMG0ZyYW5rbGluICYgTWFyc2hhbGwgQ29s
+bGVnZTELMAkGA1UEBhMCVVMxCzAJBgNVBAgMAlBBMRIwEAYDVQQHDAlMYW5jYXN0
+ZXIwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDeIVrJ8OaD1iYdxU9a
+MfRmN6bKvRiv+oV4yHr9CXBb8sZL7uIWasZj45jmPPq3zhCLtEifDyl9oq8KzMtW
+HNGFqTPM6e5YrxmJClU4JofxE1MkIPpEpYM3CeIK39+BvkPlsqr8OWD+sCmZJcF+
+fm3seCY99LMCTZeQnFZ3WiJwdr2WBtHHiIEB9NXv/++eYX9JwWmD9mSftuLJGx4o
+2hIkC67Nr2RyFTofof9qTSLfcUefsvk2ftVrIWRLxp9FOjGqjhts5ETFjWIOxcMg
+SazmG5MqAgYrVMvLUYttK8rzN6nzjS4siYyXapnSbS+w9p6APCiNbISJggPRkLfY
+zXrPAgMBAAEwDQYJKoZIhvcNAQEFBQADggEBAMxccWoHFHDZYhlS04qc2AeT8kK7
+rQnsQ0jMt8kplrdxf3kG+xdyJisZJ6AcpQ+ALZAOIIOYIfuqtmlO29Ygz68/MZQp
+1WPkDGlEmkbZky440kSB9Sk/yGx3hV8kMPICOij3NwD50AeJeEte8gBajMi4FQri
+PKzE57kTpjjW07EiRyJoX5ZJgEAahuqnHr6oiPte03+wTNsggU/GPXtdHoLbuMb9
+Zu6vJeprCmXU9SY6J15CXDaG0QVXnwBgmYJSE6DJyjDRm/DQx8f2d2zA0AUueVRL
+Tst5Vgudzgfdi5v2XmFJxVABbku9IJRRBBIDfChUtC2b8LJl7PA34qknhMg=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16652661362188236206, expires on Thu Jan 12 14:00:22 2023 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.fandm.edu:9443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.fandm.edu:9443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.fandm.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.fandm.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.fandm.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.fandm.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fandm.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11549373675944687432, expires on Sat Feb 2 20:30:11 2013 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16652661362188236206, expires on Thu Jan 12 14:00:22 2023 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.fandm.edu:9443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.fandm.edu:9443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Franklin &amp; Marshall College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Franklin &amp; Marshall College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.fandm.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Alan Sutter</GivenName>
+ <EmailAddress>sysman@fandm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Alan Bowen</GivenName>
+ <EmailAddress>ciso@fandm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>System Administrators</GivenName>
+ <EmailAddress>sysman@fandm.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Ames Laboratory -->
+<EntityDescriptor entityID="https://idp.ameslab.gov/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ameslab.gov</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ames Laboratory</mdui:DisplayName>
+ <mdui:Description xml:lang="en">IDP at Ames Laboratory</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ameslab.gov/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="72" width="283" xml:lang="en">https://www.ameslab.gov/sites/all/themes/al2014/images/logo_banner.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 918246805150493708345828220121758489265652429044, expires on Mon Jun 21 17:42:12 2038 GMT -->
+ <ds:X509Certificate>
+MIIDKDCCAhCgAwIBAgIVAKDXnF5JnLwC6vCynbUrX5HA7PD0MA0GCSqGSIb3DQEB
+CwUAMBoxGDAWBgNVBAMMD2lkcC5hbWVzbGFiLmdvdjAeFw0xODA2MjExNzQyMTJa
+Fw0zODA2MjExNzQyMTJaMBoxGDAWBgNVBAMMD2lkcC5hbWVzbGFiLmdvdjCCASIw
+DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJRhxD6Tgx0A9lN9ePMOomB7K8JS
+7fr3cWQDwbBS6KskTvOxh1eNm1BEjBdoxxlyUBM3S9oWuspaH3g471IZgUG221wp
+Ix8aVT1er1+1hWaMb7gTnNUwoE65LEFHL8R4nhEa6tJFicgy6NQ4l8dbcG3uYVkP
+VSZzvt5Mv9vy8PjnmRpxLUANHVRvzsrs2gkFs+j2UCrK6mBqcNrGfuyaabhQ0Dvm
+qjLfcLEzxBVPOFWfv5rZ2MySP+SHkzVtdEuIYtHYgVgXVE0NPaT0Md3lvkImoim6
+k+PopH6G9AyADZIQVAZ522fvUkBHjEdbmy9rRogZIbv427lu3bDz1o1bYacCAwEA
+AaNlMGMwHQYDVR0OBBYEFBohj3UBR9zFG0r+OxbXei2Di/ZnMEIGA1UdEQQ7MDmC
+D2lkcC5hbWVzbGFiLmdvdoYmaHR0cHM6Ly9pZHAuYW1lc2xhYi5nb3YvaWRwL3No
+aWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBAJH+qqtK4o5VsxTNv2SRFfqUBIK3
+VF+99piAAF71LQHrvuLCOW7kQzTbiwcvZNTarl1DwGXIGxAD3WPp1c0I3KdZPC4O
+Y1xBw28hmonyZkbdXf315JJ7qoeHYMDcW33SyDGnIIRQvmykFIZbEGjhb/SpfIb1
+dWrIpcrjbYea+vxuuYgfkLlorlekqIWKkLgAHTg1kW5ZTEaMKLHouCeDt1FdLquN
+eyKxNHZPWYpYQDoWqTcRMaLJbJdN0Qp4GaUTc7iL8hx9XphAMRyBmTX9daDSVsXu
+s7ziKn/tA76XK84pIK2/rDq++ohTkzTZen11jx/d8FMtw0Qnu/g7Hv0R2CM=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ameslab.gov/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ameslab.gov/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ameslab.gov/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ameslab.gov/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.ameslab.gov/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ameslab.gov/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ameslab.gov</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 918246805150493708345828220121758489265652429044, expires on Mon Jun 21 17:42:12 2038 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ameslab.gov/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ameslab.gov/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ames Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ames Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ameslab.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ames Laboratory Enterprise Information Services</GivenName>
+ <EmailAddress>eis@ameslab.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Ames Laboratory Server Support</GivenName>
+ <EmailAddress>is-server-admins@ameslab.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ames Laboratory Cyber Security</GivenName>
+ <EmailAddress>cybersec@ameslab.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Edublogs -->
+<EntityDescriptor entityID="https://american.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://edspace-test.american.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">American University - CampusPress</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://edspace-test.american.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://edspace-test.american.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://edspace-test.american.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://edspace-test.american.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://edspace-test.american.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">American University - CampusPress</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Oskar Kossuth</GivenName>
+ <EmailAddress>oskar@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://baylor.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Blogs @ Baylor University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="100" xml:lang="en">https://campus2016.edublogs.org/files/2016/02/cropped-cp_logo_c-1ojv0u9.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs.baylor.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://blogs.baylor.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://blogs.baylor.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://blogs.baylor.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.baylor.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.baylor.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.baylor.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.baylor.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://soefaculty.baylor.edu/Shibboleth.sso/SAML2/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://soefaculty.baylor.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://soefaculty.baylor.edu/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://soefaculty.baylor.edu/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portfolio.baylor.edu/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portfolio.baylor.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portfolio.baylor.edu/Shibboleth.sso/SAML2/Artifact" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portfolio.baylor.edu/Shibboleth.sso/SAML2/ECP" index="16"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Blogs @ Baylor University</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub Sysadmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://broward.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.broward.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Broward University - CampusPress</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.broward.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.broward.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.broward.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.broward.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.broward.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Broward University - CampusPress</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Oskar Kossuth</GivenName>
+ <EmailAddress>oskar@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://brown.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites-dev.brown.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Brown University Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="58" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.brown.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.brown.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.brown.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.brown.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-dev.brown.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites-dev.brown.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites-dev.brown.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites-dev.brown.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Brown University Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Oskar Kossuth</GivenName>
+ <EmailAddress>oskar@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub Sysadmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://carleton.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://carleton.campus.auth.edublogs.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Carleton College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="100" xml:lang="en">https://campus2016.edublogs.org/files/2016/02/cropped-cp_logo_c-1ojv0u9.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>
+MIIDNjCCAh6gAwIBAgIJAKM2cbcExPy2MA0GCSqGSIb3DQEBCwUAMDAxLjAsBgNV
+BAMTJW1lZGl1bS1wZWVyMS5jYW1wdXMuYXV0aC5lZHVibG9ncy5vcmcwHhcNMTcw
+MTE0MTEyMjQzWhcNMjcwMTEyMTEyMjQzWjAwMS4wLAYDVQQDEyVtZWRpdW0tcGVl
+cjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAu8Tpp+s2C2cdnAPDkNJHJcbrkGB+8ejiDOPNQ1mRdTkaIBAm
+roI/VjLldGXUNB0S2kLJmH5gIel/o943KLEjrGNjclPmOvvQD/T0XnFI0oquSs0S
+iucU2B9/5hIm9s+2IybjQ20rLDlzJmas4QO9dsu6jrY5MTSeS0xtsO6f0dbEjSnt
+evSl9mm7/7rf7Dc/lnNgu0MT+RVvw+Vna3BvGkRmOa9osRognF9B9qUcdLr8nFd0
+wVvuu4HmzSZAonOLUQvVYAVPhS7mC1Qm82XJA/op8qKG8vq458etLdUqLKYCEuKf
+nCVaVKSj7DoThSf44ng7IK0pCLUBji9vSiOmrQIDAQABo1MwUTAwBgNVHREEKTAn
+giVtZWRpdW0tcGVlcjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMB0GA1UdDgQW
+BBQ3B8fF4B/z8iUXdOFzizkRMl2BVDANBgkqhkiG9w0BAQsFAAOCAQEAghUZMmHW
+4Ebve6lS3SJ/BiwUAl1/TZdm8Y29Io9+9tWBTnQApf4l3s8+ct16Jlyob7a8AoCG
+M0L/SUFrLh4w+X9KDvqDCdLaYVuZCROMYw6QeTOZurCJY+S319a425VXDjk7jHbb
+X4+1WzyWbE6C68wrCAh+L/3A4D5D+WhqtQxzPBRXtQYSnyuetq69fTtgdFnBGCow
+Y5WEuSq1VMXMMWpb7y2JBhkl3dEu3132cXwS4Hj9FDaAjISEqX8kUKbdGr4Z8ZyP
+FanMwmoTcnGVSRarx+7G1T+8zfo9djmXhSqginUlifMS2dEPhhsOwlIAzhp/3MQZ
+SEnHPV7S7g6dzQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs.carleton.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://blogs.carleton.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://blogs.carleton.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://blogs.carleton.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Carleton College</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub Sysadmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cmc.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.cmc.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites-test.cmc.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Claremont McKenna College Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>
+MIIC+DCCAeCgAwIBAgIBADANBgkqhkiG9w0BAQUFADAeMRwwGgYDVQQDExNzZXJ2
+ZXIuZWR1YmxvZ3Mub3JnMB4XDTEwMDYyNTA4MTA1MVoXDTIwMDYyMjA4MTA1MVow
+HjEcMBoGA1UEAxMTc2VydmVyLmVkdWJsb2dzLm9yZzCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBAOaYDriYsPgqMP6ouII952HxrBuaeEiBOkU3Te5kYFv6
+B/EKWUbqpEXnC7FCx0H+nb1/LS4QcG0MPcIay/tNsm2YpiNoKy+a29f4uG7kVvta
+YV8UJc0BT00CHA3KSMuM00cFJkT2UxiY0YSP9Sgm5aZ8vZQYEE5trLyARIUM3J8A
+a+q4C0bDxRCcf8fYA9YrobmhgKT8fuhkT3MvOnoiWG8TwM8DDpFn/YCxSS7cno7n
+bfc0BbQ5ca7bgGW2oB3jwjURG9ICddwMbOvQHq1j6v2nJFBZd0N0mzKdsVAl3wSO
+Xq4nhk2U2GAbsMfLufOp83V0DiTjXat6m8NYi0sBvjcCAwEAAaNBMD8wHgYDVR0R
+BBcwFYITc2VydmVyLmVkdWJsb2dzLm9yZzAdBgNVHQ4EFgQUqgrJUTjleYcd5it2
+MBXfCp7Kw/swDQYJKoZIhvcNAQEFBQADggEBAC+00yHK1AF/hPIjDXk8QYoHWdPF
++wG3MPe78x1eo2o+r24/1gBniHSaTyEgTlfSi6GJgZm/mR2nkc4B13ARXPORHM40
+MJQEam/7018/v38DBZjW514kjpxkw3RfSvfw5qDliMnLhMPUVd0eYdExzT1nLAAU
+Xa6dJE/AGlotJKUdcVNCU+HdkUJ7YiJ8D9GOOrjxguDgvdv0Oea5WTn0StxVLsUH
+GzqBsxkby8F8ArSNnf61vvK6Ki7ayLDAF1eeLBFmAoEmA80xRhXHGvOPNYGyx9C0
+HqC5bwUfTUv2MOSaztChadCPF7WVsL2Rhp3bBKzxaBcVV1bwtWRbTQk5bXA=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.cmc.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.cmc.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.cmc.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.cmc.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.cmc.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.cmc.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.cmc.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites-test.cmc.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites-test.cmc.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites-test.cmc.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Claremont McKenna College Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub Sysadmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cornell.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://blogs.cornell.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.coecis.cornell.edu/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.as.cornell.edu/Shibboleth.sso/Login" index="3"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Cornell University Blog Service</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>
+MIIC+DCCAeCgAwIBAgIBADANBgkqhkiG9w0BAQUFADAeMRwwGgYDVQQDExNzZXJ2
+ZXIuZWR1YmxvZ3Mub3JnMB4XDTEwMDYyNTA4MTA1MVoXDTIwMDYyMjA4MTA1MVow
+HjEcMBoGA1UEAxMTc2VydmVyLmVkdWJsb2dzLm9yZzCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBAOaYDriYsPgqMP6ouII952HxrBuaeEiBOkU3Te5kYFv6
+B/EKWUbqpEXnC7FCx0H+nb1/LS4QcG0MPcIay/tNsm2YpiNoKy+a29f4uG7kVvta
+YV8UJc0BT00CHA3KSMuM00cFJkT2UxiY0YSP9Sgm5aZ8vZQYEE5trLyARIUM3J8A
+a+q4C0bDxRCcf8fYA9YrobmhgKT8fuhkT3MvOnoiWG8TwM8DDpFn/YCxSS7cno7n
+bfc0BbQ5ca7bgGW2oB3jwjURG9ICddwMbOvQHq1j6v2nJFBZd0N0mzKdsVAl3wSO
+Xq4nhk2U2GAbsMfLufOp83V0DiTjXat6m8NYi0sBvjcCAwEAAaNBMD8wHgYDVR0R
+BBcwFYITc2VydmVyLmVkdWJsb2dzLm9yZzAdBgNVHQ4EFgQUqgrJUTjleYcd5it2
+MBXfCp7Kw/swDQYJKoZIhvcNAQEFBQADggEBAC+00yHK1AF/hPIjDXk8QYoHWdPF
++wG3MPe78x1eo2o+r24/1gBniHSaTyEgTlfSi6GJgZm/mR2nkc4B13ARXPORHM40
+MJQEam/7018/v38DBZjW514kjpxkw3RfSvfw5qDliMnLhMPUVd0eYdExzT1nLAAU
+Xa6dJE/AGlotJKUdcVNCU+HdkUJ7YiJ8D9GOOrjxguDgvdv0Oea5WTn0StxVLsUH
+GzqBsxkby8F8ArSNnf61vvK6Ki7ayLDAF1eeLBFmAoEmA80xRhXHGvOPNYGyx9C0
+HqC5bwUfTUv2MOSaztChadCPF7WVsL2Rhp3bBKzxaBcVV1bwtWRbTQk5bXA=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs.cornell.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.coecis.cornell.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.as.cornell.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs.cornell.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://blogs.cornell.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://blogs.cornell.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://blogs.cornell.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.coecis.cornell.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.coecis.cornell.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.coecis.cornell.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.coecis.cornell.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.as.cornell.edu/Shibboleth.sso/SAML2/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.as.cornell.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.as.cornell.edu/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.as.cornell.edu/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Cornell University Blog Service</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub Sysadmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://gatech.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpdemo.gatech.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Georgia Tech - CampusPress</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>
+MIIDNjCCAh6gAwIBAgIJAKM2cbcExPy2MA0GCSqGSIb3DQEBCwUAMDAxLjAsBgNV
+BAMTJW1lZGl1bS1wZWVyMS5jYW1wdXMuYXV0aC5lZHVibG9ncy5vcmcwHhcNMTcw
+MTE0MTEyMjQzWhcNMjcwMTEyMTEyMjQzWjAwMS4wLAYDVQQDEyVtZWRpdW0tcGVl
+cjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAu8Tpp+s2C2cdnAPDkNJHJcbrkGB+8ejiDOPNQ1mRdTkaIBAm
+roI/VjLldGXUNB0S2kLJmH5gIel/o943KLEjrGNjclPmOvvQD/T0XnFI0oquSs0S
+iucU2B9/5hIm9s+2IybjQ20rLDlzJmas4QO9dsu6jrY5MTSeS0xtsO6f0dbEjSnt
+evSl9mm7/7rf7Dc/lnNgu0MT+RVvw+Vna3BvGkRmOa9osRognF9B9qUcdLr8nFd0
+wVvuu4HmzSZAonOLUQvVYAVPhS7mC1Qm82XJA/op8qKG8vq458etLdUqLKYCEuKf
+nCVaVKSj7DoThSf44ng7IK0pCLUBji9vSiOmrQIDAQABo1MwUTAwBgNVHREEKTAn
+giVtZWRpdW0tcGVlcjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMB0GA1UdDgQW
+BBQ3B8fF4B/z8iUXdOFzizkRMl2BVDANBgkqhkiG9w0BAQsFAAOCAQEAghUZMmHW
+4Ebve6lS3SJ/BiwUAl1/TZdm8Y29Io9+9tWBTnQApf4l3s8+ct16Jlyob7a8AoCG
+M0L/SUFrLh4w+X9KDvqDCdLaYVuZCROMYw6QeTOZurCJY+S319a425VXDjk7jHbb
+X4+1WzyWbE6C68wrCAh+L/3A4D5D+WhqtQxzPBRXtQYSnyuetq69fTtgdFnBGCow
+Y5WEuSq1VMXMMWpb7y2JBhkl3dEu3132cXwS4Hj9FDaAjISEqX8kUKbdGr4Z8ZyP
+FanMwmoTcnGVSRarx+7G1T+8zfo9djmXhSqginUlifMS2dEPhhsOwlIAzhp/3MQZ
+SEnHPV7S7g6dzQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpdemo.gatech.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpdemo.gatech.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cpdemo.gatech.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpdemo.gatech.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cpdemo.gatech.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Georgia Tech - CampusPress</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Oskar Kossuth</GivenName>
+ <EmailAddress>oskar@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://gsu.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.gsu.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Georgia State University Sites</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.gsu.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.gsu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.gsu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.gsu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.gsu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Georgia State University Sites</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub Sysadmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://gwu.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://blogs.gwu.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">The George Washington University Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs.gwu.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs.gwu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://blogs.gwu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://blogs.gwu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://blogs.gwu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">The George Washington University Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub Sysadmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://harvard.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://blogs.harvard.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://blogs-test.harvard.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">blogs.harvard.edu</mdui:DisplayName>
+ <mdui:Description xml:lang="en">WordPress hosted by CampusPress</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs.harvard.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs-test.harvard.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs.harvard.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://blogs.harvard.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://blogs.harvard.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://blogs.harvard.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs-test.harvard.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://blogs-test.harvard.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://blogs-test.harvard.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://blogs-test.harvard.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">blogs.harvard.edu</ServiceName>
+ <ServiceDescription xml:lang="en">WordPress hosted by CampusPress</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://iu.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://blogs.iu.edu/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://test.blogs.iu.edu/Shibboleth.sso/Login" index="3"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Indiana University Educational blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>
+MIIDNjCCAh6gAwIBAgIJAKM2cbcExPy2MA0GCSqGSIb3DQEBCwUAMDAxLjAsBgNV
+BAMTJW1lZGl1bS1wZWVyMS5jYW1wdXMuYXV0aC5lZHVibG9ncy5vcmcwHhcNMTcw
+MTE0MTEyMjQzWhcNMjcwMTEyMTEyMjQzWjAwMS4wLAYDVQQDEyVtZWRpdW0tcGVl
+cjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAu8Tpp+s2C2cdnAPDkNJHJcbrkGB+8ejiDOPNQ1mRdTkaIBAm
+roI/VjLldGXUNB0S2kLJmH5gIel/o943KLEjrGNjclPmOvvQD/T0XnFI0oquSs0S
+iucU2B9/5hIm9s+2IybjQ20rLDlzJmas4QO9dsu6jrY5MTSeS0xtsO6f0dbEjSnt
+evSl9mm7/7rf7Dc/lnNgu0MT+RVvw+Vna3BvGkRmOa9osRognF9B9qUcdLr8nFd0
+wVvuu4HmzSZAonOLUQvVYAVPhS7mC1Qm82XJA/op8qKG8vq458etLdUqLKYCEuKf
+nCVaVKSj7DoThSf44ng7IK0pCLUBji9vSiOmrQIDAQABo1MwUTAwBgNVHREEKTAn
+giVtZWRpdW0tcGVlcjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMB0GA1UdDgQW
+BBQ3B8fF4B/z8iUXdOFzizkRMl2BVDANBgkqhkiG9w0BAQsFAAOCAQEAghUZMmHW
+4Ebve6lS3SJ/BiwUAl1/TZdm8Y29Io9+9tWBTnQApf4l3s8+ct16Jlyob7a8AoCG
+M0L/SUFrLh4w+X9KDvqDCdLaYVuZCROMYw6QeTOZurCJY+S319a425VXDjk7jHbb
+X4+1WzyWbE6C68wrCAh+L/3A4D5D+WhqtQxzPBRXtQYSnyuetq69fTtgdFnBGCow
+Y5WEuSq1VMXMMWpb7y2JBhkl3dEu3132cXwS4Hj9FDaAjISEqX8kUKbdGr4Z8ZyP
+FanMwmoTcnGVSRarx+7G1T+8zfo9djmXhSqginUlifMS2dEPhhsOwlIAzhp/3MQZ
+SEnHPV7S7g6dzQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs.iu.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.blogs.iu.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs.iu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://blogs.iu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://blogs.iu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://blogs.iu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.blogs.iu.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://test.blogs.iu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test.blogs.iu.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test.blogs.iu.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Indiana University Educational blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub Sysadmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://iup.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://iblog.iup.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Indiana University of Pennsylvania Educational blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iblog.iup.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iblog.iup.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://iblog.iup.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iblog.iup.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://iblog.iup.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Indiana University of Pennsylvania Educational blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub Sysadmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://jmu.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.lib.jmu.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">James Madison University Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9492843328146532973, expires on Sat Jan 23 15:31:15 2027 GMT -->
+ <ds:X509Certificate>
+MIIDADCCAeigAwIBAgIJAIO9WrYynGptMA0GCSqGSIb3DQEBCwUAMB4xHDAaBgNV
+BAMTE2NhbXB1c3ByZXNzLWFuc2libGUwHhcNMTcwMTI1MTUzMTE1WhcNMjcwMTIz
+MTUzMTE1WjAeMRwwGgYDVQQDExNjYW1wdXNwcmVzcy1hbnNpYmxlMIIBIjANBgkq
+hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1NkRwEhHHiegEUONd0gos2M6EePxdVVH
+9g6D3/ChMj16RwmYtPOCuzmlQ+VvlvBCAa2AnuRK4CS1HfLWnbScdYRAZsBOMAzK
+XLjZgl+swxlxl8LbyclwGTZpHgCqTq4L1g49UNwt1+eJgYtjcXsx5rGMKF3Q4lEU
+ZaRlGQ12MnqELX2kwGIV4N0MCjkg8zjhbaR398KgIab5G0qcdIIRMl/GM5iZGJLs
+I2s1vrOCqbxnW9axRd6PphiLXvk952JSJH063Fpas2TUxofcHDuFHj/dbzCjDwQN
+11+SnzGD9frD6yHgJzLSKbsO1r6sh1P03Qy2s1HAdXZKybcLXPC4zwIDAQABo0Ew
+PzAeBgNVHREEFzAVghNjYW1wdXNwcmVzcy1hbnNpYmxlMB0GA1UdDgQWBBSGbKje
++bLh7HZiuvSECSlP7Hu4aDANBgkqhkiG9w0BAQsFAAOCAQEA0y3YkpQWgLCaDKWK
+m5hF3S8GKzV7jYMsDpHlf5+s6HV1OOcOfZV98VKHwYUsXgAWfSWYxCf6sJ13fj0Q
+6nqu84yf8EZSeStclK0MftyJtFyxseL+ypCibZdkorv3bihMShu1VlsQlkvAAYqQ
+6C3iMy7k8O0AgrZoG1G4lm4GWYO3RtsBbyhw6bFGuFB5AlExPkqGiPXLa9oYmTA/
+giHGDtP4QUzeAqVnNidgQzOjY+olF5d2TX0iPdolVLzJ9o9lm1RSDBHmWPMZY4mD
+M8n9dc57U3EZAjpgw5frQrLOc5MREncDXb0ol7cbfUle2l5Os+o5tIkuB976HPJz
+dDgDFw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.lib.jmu.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.lib.jmu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.lib.jmu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.lib.jmu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.lib.jmu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">James Madison University Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://lehigh.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wordpress.lehigh.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Lehigh Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wordpress.lehigh.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wordpress.lehigh.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wordpress.lehigh.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wordpress.lehigh.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wordpress.lehigh.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Lehigh Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ligo.uwm.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://press.ligo.uwm.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ligo Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://press.ligo.uwm.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://press.ligo.uwm.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://press.ligo.uwm.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://press.ligo.uwm.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Ligo Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub Sysadmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://macewan.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://newsites.macewan.ca/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">MacEwan University - CampusPress</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16613365130674498347, expires on Thu Jan 11 21:17:27 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://newsites.macewan.ca/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://newsites.macewan.ca/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://newsites.macewan.ca/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://newsites.macewan.ca/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://newsites.macewan.ca/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">MacEwan University - CampusPress</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Oskar Kossuth</GivenName>
+ <EmailAddress>oskar@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://maine.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://faculty.umaine.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wpsites.maine.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Maine System Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>
+MIIDNjCCAh6gAwIBAgIJAKM2cbcExPy2MA0GCSqGSIb3DQEBCwUAMDAxLjAsBgNV
+BAMTJW1lZGl1bS1wZWVyMS5jYW1wdXMuYXV0aC5lZHVibG9ncy5vcmcwHhcNMTcw
+MTE0MTEyMjQzWhcNMjcwMTEyMTEyMjQzWjAwMS4wLAYDVQQDEyVtZWRpdW0tcGVl
+cjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAu8Tpp+s2C2cdnAPDkNJHJcbrkGB+8ejiDOPNQ1mRdTkaIBAm
+roI/VjLldGXUNB0S2kLJmH5gIel/o943KLEjrGNjclPmOvvQD/T0XnFI0oquSs0S
+iucU2B9/5hIm9s+2IybjQ20rLDlzJmas4QO9dsu6jrY5MTSeS0xtsO6f0dbEjSnt
+evSl9mm7/7rf7Dc/lnNgu0MT+RVvw+Vna3BvGkRmOa9osRognF9B9qUcdLr8nFd0
+wVvuu4HmzSZAonOLUQvVYAVPhS7mC1Qm82XJA/op8qKG8vq458etLdUqLKYCEuKf
+nCVaVKSj7DoThSf44ng7IK0pCLUBji9vSiOmrQIDAQABo1MwUTAwBgNVHREEKTAn
+giVtZWRpdW0tcGVlcjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMB0GA1UdDgQW
+BBQ3B8fF4B/z8iUXdOFzizkRMl2BVDANBgkqhkiG9w0BAQsFAAOCAQEAghUZMmHW
+4Ebve6lS3SJ/BiwUAl1/TZdm8Y29Io9+9tWBTnQApf4l3s8+ct16Jlyob7a8AoCG
+M0L/SUFrLh4w+X9KDvqDCdLaYVuZCROMYw6QeTOZurCJY+S319a425VXDjk7jHbb
+X4+1WzyWbE6C68wrCAh+L/3A4D5D+WhqtQxzPBRXtQYSnyuetq69fTtgdFnBGCow
+Y5WEuSq1VMXMMWpb7y2JBhkl3dEu3132cXwS4Hj9FDaAjISEqX8kUKbdGr4Z8ZyP
+FanMwmoTcnGVSRarx+7G1T+8zfo9djmXhSqginUlifMS2dEPhhsOwlIAzhp/3MQZ
+SEnHPV7S7g6dzQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wpsites.maine.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://faculty.umaine.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wpsites.maine.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wpsites.maine.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wpsites.maine.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wpsites.maine.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://faculty.umaine.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://faculty.umaine.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://faculty.umaine.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://faculty.umaine.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Maine System Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@zinglix.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Edublogs Support</GivenName>
+ <EmailAddress>support@edublogs.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://neu.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://its-dev.northeastern.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://express.northeastern.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Northeastern University Blog</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://express.northeastern.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://its-dev.northeastern.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://its-dev.northeastern.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://its-dev.northeastern.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://its-dev.northeastern.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://its-dev.northeastern.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://express.northeastern.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://express.northeastern.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://express.northeastern.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://express.northeastern.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Northeastern University Blog</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub Sysadmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://northampton.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mypaddev.northampton.ac.uk/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Northampton University - CampusPress</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Northampton University sites by CampusPress.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9683126206204652313, expires on Thu Oct 26 17:18:55 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mypaddev.northampton.ac.uk/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mypaddev.northampton.ac.uk/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mypaddev.northampton.ac.uk/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mypaddev.northampton.ac.uk/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mypaddev.northampton.ac.uk/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Northampton University - CampusPress</ServiceName>
+ <ServiceDescription xml:lang="en">Northampton University sites by CampusPress.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Oskar Kossuth</GivenName>
+ <EmailAddress>oskar@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://olemiss.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://edblogs.olemiss.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">The University of Mississippi Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>
+MIIC+DCCAeCgAwIBAgIBADANBgkqhkiG9w0BAQUFADAeMRwwGgYDVQQDExNzZXJ2
+ZXIuZWR1YmxvZ3Mub3JnMB4XDTEwMDYyNTA4MTA1MVoXDTIwMDYyMjA4MTA1MVow
+HjEcMBoGA1UEAxMTc2VydmVyLmVkdWJsb2dzLm9yZzCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBAOaYDriYsPgqMP6ouII952HxrBuaeEiBOkU3Te5kYFv6
+B/EKWUbqpEXnC7FCx0H+nb1/LS4QcG0MPcIay/tNsm2YpiNoKy+a29f4uG7kVvta
+YV8UJc0BT00CHA3KSMuM00cFJkT2UxiY0YSP9Sgm5aZ8vZQYEE5trLyARIUM3J8A
+a+q4C0bDxRCcf8fYA9YrobmhgKT8fuhkT3MvOnoiWG8TwM8DDpFn/YCxSS7cno7n
+bfc0BbQ5ca7bgGW2oB3jwjURG9ICddwMbOvQHq1j6v2nJFBZd0N0mzKdsVAl3wSO
+Xq4nhk2U2GAbsMfLufOp83V0DiTjXat6m8NYi0sBvjcCAwEAAaNBMD8wHgYDVR0R
+BBcwFYITc2VydmVyLmVkdWJsb2dzLm9yZzAdBgNVHQ4EFgQUqgrJUTjleYcd5it2
+MBXfCp7Kw/swDQYJKoZIhvcNAQEFBQADggEBAC+00yHK1AF/hPIjDXk8QYoHWdPF
++wG3MPe78x1eo2o+r24/1gBniHSaTyEgTlfSi6GJgZm/mR2nkc4B13ARXPORHM40
+MJQEam/7018/v38DBZjW514kjpxkw3RfSvfw5qDliMnLhMPUVd0eYdExzT1nLAAU
+Xa6dJE/AGlotJKUdcVNCU+HdkUJ7YiJ8D9GOOrjxguDgvdv0Oea5WTn0StxVLsUH
+GzqBsxkby8F8ArSNnf61vvK6Ki7ayLDAF1eeLBFmAoEmA80xRhXHGvOPNYGyx9C0
+HqC5bwUfTUv2MOSaztChadCPF7WVsL2Rhp3bBKzxaBcVV1bwtWRbTQk5bXA=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://edblogs.olemiss.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://edblogs.olemiss.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://edblogs.olemiss.edu/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://edblogs.olemiss.edu/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://edblogs.olemiss.edu/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">The University of Mississippi Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://osu.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://org.osu.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://u.osu.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ohio State's Professional Website Platform</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>
+MIIDNjCCAh6gAwIBAgIJAKM2cbcExPy2MA0GCSqGSIb3DQEBCwUAMDAxLjAsBgNV
+BAMTJW1lZGl1bS1wZWVyMS5jYW1wdXMuYXV0aC5lZHVibG9ncy5vcmcwHhcNMTcw
+MTE0MTEyMjQzWhcNMjcwMTEyMTEyMjQzWjAwMS4wLAYDVQQDEyVtZWRpdW0tcGVl
+cjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAu8Tpp+s2C2cdnAPDkNJHJcbrkGB+8ejiDOPNQ1mRdTkaIBAm
+roI/VjLldGXUNB0S2kLJmH5gIel/o943KLEjrGNjclPmOvvQD/T0XnFI0oquSs0S
+iucU2B9/5hIm9s+2IybjQ20rLDlzJmas4QO9dsu6jrY5MTSeS0xtsO6f0dbEjSnt
+evSl9mm7/7rf7Dc/lnNgu0MT+RVvw+Vna3BvGkRmOa9osRognF9B9qUcdLr8nFd0
+wVvuu4HmzSZAonOLUQvVYAVPhS7mC1Qm82XJA/op8qKG8vq458etLdUqLKYCEuKf
+nCVaVKSj7DoThSf44ng7IK0pCLUBji9vSiOmrQIDAQABo1MwUTAwBgNVHREEKTAn
+giVtZWRpdW0tcGVlcjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMB0GA1UdDgQW
+BBQ3B8fF4B/z8iUXdOFzizkRMl2BVDANBgkqhkiG9w0BAQsFAAOCAQEAghUZMmHW
+4Ebve6lS3SJ/BiwUAl1/TZdm8Y29Io9+9tWBTnQApf4l3s8+ct16Jlyob7a8AoCG
+M0L/SUFrLh4w+X9KDvqDCdLaYVuZCROMYw6QeTOZurCJY+S319a425VXDjk7jHbb
+X4+1WzyWbE6C68wrCAh+L/3A4D5D+WhqtQxzPBRXtQYSnyuetq69fTtgdFnBGCow
+Y5WEuSq1VMXMMWpb7y2JBhkl3dEu3132cXwS4Hj9FDaAjISEqX8kUKbdGr4Z8ZyP
+FanMwmoTcnGVSRarx+7G1T+8zfo9djmXhSqginUlifMS2dEPhhsOwlIAzhp/3MQZ
+SEnHPV7S7g6dzQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://u.osu.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://org.osu.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://u.osu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://u.osu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://u.osu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://u.osu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://org.osu.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://org.osu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://org.osu.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://org.osu.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Ohio State's Professional Website Platform</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://pace.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://blogs.pace.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://blogsdev.pace.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Pace University Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>
+MIIDNjCCAh6gAwIBAgIJAKM2cbcExPy2MA0GCSqGSIb3DQEBCwUAMDAxLjAsBgNV
+BAMTJW1lZGl1bS1wZWVyMS5jYW1wdXMuYXV0aC5lZHVibG9ncy5vcmcwHhcNMTcw
+MTE0MTEyMjQzWhcNMjcwMTEyMTEyMjQzWjAwMS4wLAYDVQQDEyVtZWRpdW0tcGVl
+cjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAu8Tpp+s2C2cdnAPDkNJHJcbrkGB+8ejiDOPNQ1mRdTkaIBAm
+roI/VjLldGXUNB0S2kLJmH5gIel/o943KLEjrGNjclPmOvvQD/T0XnFI0oquSs0S
+iucU2B9/5hIm9s+2IybjQ20rLDlzJmas4QO9dsu6jrY5MTSeS0xtsO6f0dbEjSnt
+evSl9mm7/7rf7Dc/lnNgu0MT+RVvw+Vna3BvGkRmOa9osRognF9B9qUcdLr8nFd0
+wVvuu4HmzSZAonOLUQvVYAVPhS7mC1Qm82XJA/op8qKG8vq458etLdUqLKYCEuKf
+nCVaVKSj7DoThSf44ng7IK0pCLUBji9vSiOmrQIDAQABo1MwUTAwBgNVHREEKTAn
+giVtZWRpdW0tcGVlcjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMB0GA1UdDgQW
+BBQ3B8fF4B/z8iUXdOFzizkRMl2BVDANBgkqhkiG9w0BAQsFAAOCAQEAghUZMmHW
+4Ebve6lS3SJ/BiwUAl1/TZdm8Y29Io9+9tWBTnQApf4l3s8+ct16Jlyob7a8AoCG
+M0L/SUFrLh4w+X9KDvqDCdLaYVuZCROMYw6QeTOZurCJY+S319a425VXDjk7jHbb
+X4+1WzyWbE6C68wrCAh+L/3A4D5D+WhqtQxzPBRXtQYSnyuetq69fTtgdFnBGCow
+Y5WEuSq1VMXMMWpb7y2JBhkl3dEu3132cXwS4Hj9FDaAjISEqX8kUKbdGr4Z8ZyP
+FanMwmoTcnGVSRarx+7G1T+8zfo9djmXhSqginUlifMS2dEPhhsOwlIAzhp/3MQZ
+SEnHPV7S7g6dzQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs.pace.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogsdev.pace.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs.pace.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://blogs.pace.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://blogs.pace.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://blogs.pace.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogsdev.pace.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://blogsdev.pace.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://blogsdev.pace.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://blogsdev.pace.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Pace University Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://psu.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites-test.psu.edu/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.psu.edu/Shibboleth.sso/Login" index="3"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PennState Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.psu.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.psu.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.psu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites-test.psu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites-test.psu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites-test.psu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.psu.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.psu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.psu.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.psu.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PennState Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sitesuwm.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.uwm.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites-test.uwm.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Milwaukee Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.uwm.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.uwm.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.uwm.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.uwm.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.uwm.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.uwm.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.uwm.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites-test.uwm.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites-test.uwm.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites-test.uwm.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Milwaukee Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sjsu.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://blogs.sjsu.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SJSU Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs.sjsu.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blogs.sjsu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://blogs.sjsu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://blogs.sjsu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://blogs.sjsu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SJSU Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub Sysadmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://smu.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://blog-test.smu.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://people-test.smu.edu/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://people.smu.edu/Shibboleth.sso/Login" index="3"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://blog.smu.edu/Shibboleth.sso/Login" index="4"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://smulawjournals.org/Shibboleth.sso/Login" index="5"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.smulawjournals.org/Shibboleth.sso/Login" index="6"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SMU Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="58" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>
+MIIDNjCCAh6gAwIBAgIJAKM2cbcExPy2MA0GCSqGSIb3DQEBCwUAMDAxLjAsBgNV
+BAMTJW1lZGl1bS1wZWVyMS5jYW1wdXMuYXV0aC5lZHVibG9ncy5vcmcwHhcNMTcw
+MTE0MTEyMjQzWhcNMjcwMTEyMTEyMjQzWjAwMS4wLAYDVQQDEyVtZWRpdW0tcGVl
+cjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAu8Tpp+s2C2cdnAPDkNJHJcbrkGB+8ejiDOPNQ1mRdTkaIBAm
+roI/VjLldGXUNB0S2kLJmH5gIel/o943KLEjrGNjclPmOvvQD/T0XnFI0oquSs0S
+iucU2B9/5hIm9s+2IybjQ20rLDlzJmas4QO9dsu6jrY5MTSeS0xtsO6f0dbEjSnt
+evSl9mm7/7rf7Dc/lnNgu0MT+RVvw+Vna3BvGkRmOa9osRognF9B9qUcdLr8nFd0
+wVvuu4HmzSZAonOLUQvVYAVPhS7mC1Qm82XJA/op8qKG8vq458etLdUqLKYCEuKf
+nCVaVKSj7DoThSf44ng7IK0pCLUBji9vSiOmrQIDAQABo1MwUTAwBgNVHREEKTAn
+giVtZWRpdW0tcGVlcjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMB0GA1UdDgQW
+BBQ3B8fF4B/z8iUXdOFzizkRMl2BVDANBgkqhkiG9w0BAQsFAAOCAQEAghUZMmHW
+4Ebve6lS3SJ/BiwUAl1/TZdm8Y29Io9+9tWBTnQApf4l3s8+ct16Jlyob7a8AoCG
+M0L/SUFrLh4w+X9KDvqDCdLaYVuZCROMYw6QeTOZurCJY+S319a425VXDjk7jHbb
+X4+1WzyWbE6C68wrCAh+L/3A4D5D+WhqtQxzPBRXtQYSnyuetq69fTtgdFnBGCow
+Y5WEuSq1VMXMMWpb7y2JBhkl3dEu3132cXwS4Hj9FDaAjISEqX8kUKbdGr4Z8ZyP
+FanMwmoTcnGVSRarx+7G1T+8zfo9djmXhSqginUlifMS2dEPhhsOwlIAzhp/3MQZ
+SEnHPV7S7g6dzQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://people-test.smu.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blog.smu.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://people.smu.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blog-test.smu.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.smulawjournals.org/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://smulawjournals.org/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blog-test.smu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://blog-test.smu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://blog-test.smu.edu/Shibboleth.sso/SAML2/Artifac" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://blog-test.smu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://people-test.smu.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://people-test.smu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://people-test.smu.edu/Shibboleth.sso/SAML2/Artifac" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://people-test.smu.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blog.smu.edu/Shibboleth.sso/SAML2/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://blog.smu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://blog.smu.edu/Shibboleth.sso/SAML2/Artifac" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://blog.smu.edu/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://people.smu.edu/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://people.smu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://people.smu.edu/Shibboleth.sso/SAML2/Artifac" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://people.smu.edu/Shibboleth.sso/SAML2/ECP" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://smulawjournals.org/Shibboleth.sso/SAML2/POST" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.smulawjournals.org/Shibboleth.sso/SAML2/POST" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://smulawjournals.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.smulawjournals.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="20"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://smulawjournals.org/Shibboleth.sso/SAML2/Artifact" index="21"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.smulawjournals.org/Shibboleth.sso/SAML2/Artifact" index="22"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://smulawjournals.org/Shibboleth.sso/SAML2/ECP" index="23"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.smulawjournals.org/Shibboleth.sso/SAML2/ECP" index="24"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SMU Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub Sysadmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://stonybrook.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://you.stonybrook.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stonybrook University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://you.stonybrook.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://you.stonybrook.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://you.stonybrook.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://you.stonybrook.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://you.stonybrook.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Stonybrook University</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>GB</GivenName>
+ <EmailAddress>gb@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://towson.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wptest.towson.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wp.towson.edu/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wpstudents.towson.edu/Shibboleth.sso/Login" index="3"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Towson University Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>
+MIIDNjCCAh6gAwIBAgIJAKM2cbcExPy2MA0GCSqGSIb3DQEBCwUAMDAxLjAsBgNV
+BAMTJW1lZGl1bS1wZWVyMS5jYW1wdXMuYXV0aC5lZHVibG9ncy5vcmcwHhcNMTcw
+MTE0MTEyMjQzWhcNMjcwMTEyMTEyMjQzWjAwMS4wLAYDVQQDEyVtZWRpdW0tcGVl
+cjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAu8Tpp+s2C2cdnAPDkNJHJcbrkGB+8ejiDOPNQ1mRdTkaIBAm
+roI/VjLldGXUNB0S2kLJmH5gIel/o943KLEjrGNjclPmOvvQD/T0XnFI0oquSs0S
+iucU2B9/5hIm9s+2IybjQ20rLDlzJmas4QO9dsu6jrY5MTSeS0xtsO6f0dbEjSnt
+evSl9mm7/7rf7Dc/lnNgu0MT+RVvw+Vna3BvGkRmOa9osRognF9B9qUcdLr8nFd0
+wVvuu4HmzSZAonOLUQvVYAVPhS7mC1Qm82XJA/op8qKG8vq458etLdUqLKYCEuKf
+nCVaVKSj7DoThSf44ng7IK0pCLUBji9vSiOmrQIDAQABo1MwUTAwBgNVHREEKTAn
+giVtZWRpdW0tcGVlcjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMB0GA1UdDgQW
+BBQ3B8fF4B/z8iUXdOFzizkRMl2BVDANBgkqhkiG9w0BAQsFAAOCAQEAghUZMmHW
+4Ebve6lS3SJ/BiwUAl1/TZdm8Y29Io9+9tWBTnQApf4l3s8+ct16Jlyob7a8AoCG
+M0L/SUFrLh4w+X9KDvqDCdLaYVuZCROMYw6QeTOZurCJY+S319a425VXDjk7jHbb
+X4+1WzyWbE6C68wrCAh+L/3A4D5D+WhqtQxzPBRXtQYSnyuetq69fTtgdFnBGCow
+Y5WEuSq1VMXMMWpb7y2JBhkl3dEu3132cXwS4Hj9FDaAjISEqX8kUKbdGr4Z8ZyP
+FanMwmoTcnGVSRarx+7G1T+8zfo9djmXhSqginUlifMS2dEPhhsOwlIAzhp/3MQZ
+SEnHPV7S7g6dzQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wptest.towson.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wpstudents.towson.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wp.towson.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wptest.towson.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wptest.towson.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wptest.towson.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wptest.towson.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wpstudents.towson.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wpstudents.towson.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wpstudents.towson.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wpstudents.towson.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wp.towson.edu/Shibboleth.sso/SAML2/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wp.towson.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wp.towson.edu/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wp.towson.edu/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Towson University Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://txstate.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wp-test.txstate.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Texas State University - CampusPress</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>
+MIIDNjCCAh6gAwIBAgIJAKM2cbcExPy2MA0GCSqGSIb3DQEBCwUAMDAxLjAsBgNV
+BAMTJW1lZGl1bS1wZWVyMS5jYW1wdXMuYXV0aC5lZHVibG9ncy5vcmcwHhcNMTcw
+MTE0MTEyMjQzWhcNMjcwMTEyMTEyMjQzWjAwMS4wLAYDVQQDEyVtZWRpdW0tcGVl
+cjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAu8Tpp+s2C2cdnAPDkNJHJcbrkGB+8ejiDOPNQ1mRdTkaIBAm
+roI/VjLldGXUNB0S2kLJmH5gIel/o943KLEjrGNjclPmOvvQD/T0XnFI0oquSs0S
+iucU2B9/5hIm9s+2IybjQ20rLDlzJmas4QO9dsu6jrY5MTSeS0xtsO6f0dbEjSnt
+evSl9mm7/7rf7Dc/lnNgu0MT+RVvw+Vna3BvGkRmOa9osRognF9B9qUcdLr8nFd0
+wVvuu4HmzSZAonOLUQvVYAVPhS7mC1Qm82XJA/op8qKG8vq458etLdUqLKYCEuKf
+nCVaVKSj7DoThSf44ng7IK0pCLUBji9vSiOmrQIDAQABo1MwUTAwBgNVHREEKTAn
+giVtZWRpdW0tcGVlcjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMB0GA1UdDgQW
+BBQ3B8fF4B/z8iUXdOFzizkRMl2BVDANBgkqhkiG9w0BAQsFAAOCAQEAghUZMmHW
+4Ebve6lS3SJ/BiwUAl1/TZdm8Y29Io9+9tWBTnQApf4l3s8+ct16Jlyob7a8AoCG
+M0L/SUFrLh4w+X9KDvqDCdLaYVuZCROMYw6QeTOZurCJY+S319a425VXDjk7jHbb
+X4+1WzyWbE6C68wrCAh+L/3A4D5D+WhqtQxzPBRXtQYSnyuetq69fTtgdFnBGCow
+Y5WEuSq1VMXMMWpb7y2JBhkl3dEu3132cXwS4Hj9FDaAjISEqX8kUKbdGr4Z8ZyP
+FanMwmoTcnGVSRarx+7G1T+8zfo9djmXhSqginUlifMS2dEPhhsOwlIAzhp/3MQZ
+SEnHPV7S7g6dzQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wp-test.txstate.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wp-test.txstate.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wp-test.txstate.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wp-test.txstate.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wp-test.txstate.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Texas State University - CampusPress</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Oskar Kossuth</GivenName>
+ <EmailAddress>oskar@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Moha</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uark.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites-test.uark.edu/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.uark.edu/Shibboleth.sso/Login" index="3"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rso.uark.edu/Shibboleth.sso/Login" index="4"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wordpressua.uark.edu/Shibboleth.sso/Login" index="5"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Arkansas</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9492843328146532973, expires on Sat Jan 23 15:31:15 2027 GMT -->
+ <ds:X509Certificate>
+MIIDADCCAeigAwIBAgIJAIO9WrYynGptMA0GCSqGSIb3DQEBCwUAMB4xHDAaBgNV
+BAMTE2NhbXB1c3ByZXNzLWFuc2libGUwHhcNMTcwMTI1MTUzMTE1WhcNMjcwMTIz
+MTUzMTE1WjAeMRwwGgYDVQQDExNjYW1wdXNwcmVzcy1hbnNpYmxlMIIBIjANBgkq
+hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1NkRwEhHHiegEUONd0gos2M6EePxdVVH
+9g6D3/ChMj16RwmYtPOCuzmlQ+VvlvBCAa2AnuRK4CS1HfLWnbScdYRAZsBOMAzK
+XLjZgl+swxlxl8LbyclwGTZpHgCqTq4L1g49UNwt1+eJgYtjcXsx5rGMKF3Q4lEU
+ZaRlGQ12MnqELX2kwGIV4N0MCjkg8zjhbaR398KgIab5G0qcdIIRMl/GM5iZGJLs
+I2s1vrOCqbxnW9axRd6PphiLXvk952JSJH063Fpas2TUxofcHDuFHj/dbzCjDwQN
+11+SnzGD9frD6yHgJzLSKbsO1r6sh1P03Qy2s1HAdXZKybcLXPC4zwIDAQABo0Ew
+PzAeBgNVHREEFzAVghNjYW1wdXNwcmVzcy1hbnNpYmxlMB0GA1UdDgQWBBSGbKje
++bLh7HZiuvSECSlP7Hu4aDANBgkqhkiG9w0BAQsFAAOCAQEA0y3YkpQWgLCaDKWK
+m5hF3S8GKzV7jYMsDpHlf5+s6HV1OOcOfZV98VKHwYUsXgAWfSWYxCf6sJ13fj0Q
+6nqu84yf8EZSeStclK0MftyJtFyxseL+ypCibZdkorv3bihMShu1VlsQlkvAAYqQ
+6C3iMy7k8O0AgrZoG1G4lm4GWYO3RtsBbyhw6bFGuFB5AlExPkqGiPXLa9oYmTA/
+giHGDtP4QUzeAqVnNidgQzOjY+olF5d2TX0iPdolVLzJ9o9lm1RSDBHmWPMZY4mD
+M8n9dc57U3EZAjpgw5frQrLOc5MREncDXb0ol7cbfUle2l5Os+o5tIkuB976HPJz
+dDgDFw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.uark.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.uark.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rso.uark.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wordpressua.uark.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.uark.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites-test.uark.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites-test.uark.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites-test.uark.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.uark.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.uark.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.uark.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.uark.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rso.uark.edu/Shibboleth.sso/SAML2/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rso.uark.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rso.uark.edu/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rso.uark.edu/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wordpressua.uark.edu/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wordpressua.uark.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wordpressua.uark.edu/Shibboleth.sso/SAML2/Artifact" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wordpressua.uark.edu/Shibboleth.sso/SAML2/ECP" index="16"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Arkansas</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uchastings.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.uchastings.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UC Hastings College of the Law</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.uchastings.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.uchastings.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.uchastings.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.uchastings.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.uchastings.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UC Hastings College of the Law</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uchicago.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://voices.uchicago.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://voices-dev.uchicago.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Chicago Sites</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>
+MIIDNjCCAh6gAwIBAgIJAKM2cbcExPy2MA0GCSqGSIb3DQEBCwUAMDAxLjAsBgNV
+BAMTJW1lZGl1bS1wZWVyMS5jYW1wdXMuYXV0aC5lZHVibG9ncy5vcmcwHhcNMTcw
+MTE0MTEyMjQzWhcNMjcwMTEyMTEyMjQzWjAwMS4wLAYDVQQDEyVtZWRpdW0tcGVl
+cjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAu8Tpp+s2C2cdnAPDkNJHJcbrkGB+8ejiDOPNQ1mRdTkaIBAm
+roI/VjLldGXUNB0S2kLJmH5gIel/o943KLEjrGNjclPmOvvQD/T0XnFI0oquSs0S
+iucU2B9/5hIm9s+2IybjQ20rLDlzJmas4QO9dsu6jrY5MTSeS0xtsO6f0dbEjSnt
+evSl9mm7/7rf7Dc/lnNgu0MT+RVvw+Vna3BvGkRmOa9osRognF9B9qUcdLr8nFd0
+wVvuu4HmzSZAonOLUQvVYAVPhS7mC1Qm82XJA/op8qKG8vq458etLdUqLKYCEuKf
+nCVaVKSj7DoThSf44ng7IK0pCLUBji9vSiOmrQIDAQABo1MwUTAwBgNVHREEKTAn
+giVtZWRpdW0tcGVlcjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMB0GA1UdDgQW
+BBQ3B8fF4B/z8iUXdOFzizkRMl2BVDANBgkqhkiG9w0BAQsFAAOCAQEAghUZMmHW
+4Ebve6lS3SJ/BiwUAl1/TZdm8Y29Io9+9tWBTnQApf4l3s8+ct16Jlyob7a8AoCG
+M0L/SUFrLh4w+X9KDvqDCdLaYVuZCROMYw6QeTOZurCJY+S319a425VXDjk7jHbb
+X4+1WzyWbE6C68wrCAh+L/3A4D5D+WhqtQxzPBRXtQYSnyuetq69fTtgdFnBGCow
+Y5WEuSq1VMXMMWpb7y2JBhkl3dEu3132cXwS4Hj9FDaAjISEqX8kUKbdGr4Z8ZyP
+FanMwmoTcnGVSRarx+7G1T+8zfo9djmXhSqginUlifMS2dEPhhsOwlIAzhp/3MQZ
+SEnHPV7S7g6dzQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://voices.uchicago.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://voices-dev.uchicago.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://voices.uchicago.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://voices.uchicago.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://voices.uchicago.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://voices.uchicago.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://voices-dev.uchicago.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://voices-dev.uchicago.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://voices-dev.uchicago.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://voices-dev.uchicago.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Chicago Sites</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPerss Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucla.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://research.seas.ucla.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ucla - CampusPress</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://research.seas.ucla.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://research.seas.ucla.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://research.seas.ucla.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://research.seas.ucla.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://research.seas.ucla.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Ucla - CampusPress</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Oskar Kossuth</GivenName>
+ <EmailAddress>oskar@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucsc.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.ucsc.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites-test.ucsc.edu/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wp.ucsc.edu/Shibboleth.sso/Login" index="3"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://slugsites.ucsc.edu/Shibboleth.sso/Login" index="4"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">sites.ucsc.edu</mdui:DisplayName>
+ <mdui:Description xml:lang="en">WordPress hosted by CampusPress</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.ucsc.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.ucsc.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wp.ucsc.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slugsites.ucsc.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.ucsc.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.ucsc.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.ucsc.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.ucsc.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.ucsc.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites-test.ucsc.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites-test.ucsc.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites-test.ucsc.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wp.ucsc.edu/Shibboleth.sso/SAML2/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wp.ucsc.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wp.ucsc.edu/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wp.ucsc.edu/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slugsites.ucsc.edu/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://slugsites.ucsc.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slugsites.ucsc.edu/Shibboleth.sso/SAML2/Artifact" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://slugsites.ucsc.edu/Shibboleth.sso/SAML2/ECP" index="16"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">sites.ucsc.edu</ServiceName>
+ <ServiceDescription xml:lang="en">WordPress hosted by CampusPress</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://udel.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.udel.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Delaware Edublogs Site</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.udel.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.udel.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.udel.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.udel.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.udel.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Delaware Edublogs Site</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://udel-test.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites-test.udel.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Udel Test Site</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.udel.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.udel.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites-test.udel.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites-test.udel.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites-test.udel.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Udel Test Site</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umassd.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites-test.umassd.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.umassd.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Massachusetts Dartmouth Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>
+MIIDNjCCAh6gAwIBAgIJAKM2cbcExPy2MA0GCSqGSIb3DQEBCwUAMDAxLjAsBgNV
+BAMTJW1lZGl1bS1wZWVyMS5jYW1wdXMuYXV0aC5lZHVibG9ncy5vcmcwHhcNMTcw
+MTE0MTEyMjQzWhcNMjcwMTEyMTEyMjQzWjAwMS4wLAYDVQQDEyVtZWRpdW0tcGVl
+cjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAu8Tpp+s2C2cdnAPDkNJHJcbrkGB+8ejiDOPNQ1mRdTkaIBAm
+roI/VjLldGXUNB0S2kLJmH5gIel/o943KLEjrGNjclPmOvvQD/T0XnFI0oquSs0S
+iucU2B9/5hIm9s+2IybjQ20rLDlzJmas4QO9dsu6jrY5MTSeS0xtsO6f0dbEjSnt
+evSl9mm7/7rf7Dc/lnNgu0MT+RVvw+Vna3BvGkRmOa9osRognF9B9qUcdLr8nFd0
+wVvuu4HmzSZAonOLUQvVYAVPhS7mC1Qm82XJA/op8qKG8vq458etLdUqLKYCEuKf
+nCVaVKSj7DoThSf44ng7IK0pCLUBji9vSiOmrQIDAQABo1MwUTAwBgNVHREEKTAn
+giVtZWRpdW0tcGVlcjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMB0GA1UdDgQW
+BBQ3B8fF4B/z8iUXdOFzizkRMl2BVDANBgkqhkiG9w0BAQsFAAOCAQEAghUZMmHW
+4Ebve6lS3SJ/BiwUAl1/TZdm8Y29Io9+9tWBTnQApf4l3s8+ct16Jlyob7a8AoCG
+M0L/SUFrLh4w+X9KDvqDCdLaYVuZCROMYw6QeTOZurCJY+S319a425VXDjk7jHbb
+X4+1WzyWbE6C68wrCAh+L/3A4D5D+WhqtQxzPBRXtQYSnyuetq69fTtgdFnBGCow
+Y5WEuSq1VMXMMWpb7y2JBhkl3dEu3132cXwS4Hj9FDaAjISEqX8kUKbdGr4Z8ZyP
+FanMwmoTcnGVSRarx+7G1T+8zfo9djmXhSqginUlifMS2dEPhhsOwlIAzhp/3MQZ
+SEnHPV7S7g6dzQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.umassd.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.umassd.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites-test.umassd.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites-test.umassd.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites-test.umassd.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Massachusetts Dartmouth Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Oskar Kossuth</GivenName>
+ <EmailAddress>oskar@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umd.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://blog.umd.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UMD Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blog.umd.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blog.umd.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://blog.umd.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://blog.umd.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://blog.umd.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UMD Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umn.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wpsites.design.umn.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">College of Design Sites</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>
+MIIC+DCCAeCgAwIBAgIBADANBgkqhkiG9w0BAQUFADAeMRwwGgYDVQQDExNzZXJ2
+ZXIuZWR1YmxvZ3Mub3JnMB4XDTEwMDYyNTA4MTA1MVoXDTIwMDYyMjA4MTA1MVow
+HjEcMBoGA1UEAxMTc2VydmVyLmVkdWJsb2dzLm9yZzCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBAOaYDriYsPgqMP6ouII952HxrBuaeEiBOkU3Te5kYFv6
+B/EKWUbqpEXnC7FCx0H+nb1/LS4QcG0MPcIay/tNsm2YpiNoKy+a29f4uG7kVvta
+YV8UJc0BT00CHA3KSMuM00cFJkT2UxiY0YSP9Sgm5aZ8vZQYEE5trLyARIUM3J8A
+a+q4C0bDxRCcf8fYA9YrobmhgKT8fuhkT3MvOnoiWG8TwM8DDpFn/YCxSS7cno7n
+bfc0BbQ5ca7bgGW2oB3jwjURG9ICddwMbOvQHq1j6v2nJFBZd0N0mzKdsVAl3wSO
+Xq4nhk2U2GAbsMfLufOp83V0DiTjXat6m8NYi0sBvjcCAwEAAaNBMD8wHgYDVR0R
+BBcwFYITc2VydmVyLmVkdWJsb2dzLm9yZzAdBgNVHQ4EFgQUqgrJUTjleYcd5it2
+MBXfCp7Kw/swDQYJKoZIhvcNAQEFBQADggEBAC+00yHK1AF/hPIjDXk8QYoHWdPF
++wG3MPe78x1eo2o+r24/1gBniHSaTyEgTlfSi6GJgZm/mR2nkc4B13ARXPORHM40
+MJQEam/7018/v38DBZjW514kjpxkw3RfSvfw5qDliMnLhMPUVd0eYdExzT1nLAAU
+Xa6dJE/AGlotJKUdcVNCU+HdkUJ7YiJ8D9GOOrjxguDgvdv0Oea5WTn0StxVLsUH
+GzqBsxkby8F8ArSNnf61vvK6Ki7ayLDAF1eeLBFmAoEmA80xRhXHGvOPNYGyx9C0
+HqC5bwUfTUv2MOSaztChadCPF7WVsL2Rhp3bBKzxaBcVV1bwtWRbTQk5bXA=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wpsites.design.umn.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wpsites.design.umn.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wpsites.design.umn.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wpsites.design.umn.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wpsites.design.umn.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">College of Design Sites</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://upenn.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://web.sas.upenn.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Pennsylvania</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://web.sas.upenn.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://web.sas.upenn.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://web.sas.upenn.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://web.sas.upenn.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://web.sas.upenn.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Pennsylvania</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://usc.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites-test.usc.edu/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.usc.edu/Shibboleth.sso/Login" index="3"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Southern California</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>
+MIIC+DCCAeCgAwIBAgIBADANBgkqhkiG9w0BAQUFADAeMRwwGgYDVQQDExNzZXJ2
+ZXIuZWR1YmxvZ3Mub3JnMB4XDTEwMDYyNTA4MTA1MVoXDTIwMDYyMjA4MTA1MVow
+HjEcMBoGA1UEAxMTc2VydmVyLmVkdWJsb2dzLm9yZzCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBAOaYDriYsPgqMP6ouII952HxrBuaeEiBOkU3Te5kYFv6
+B/EKWUbqpEXnC7FCx0H+nb1/LS4QcG0MPcIay/tNsm2YpiNoKy+a29f4uG7kVvta
+YV8UJc0BT00CHA3KSMuM00cFJkT2UxiY0YSP9Sgm5aZ8vZQYEE5trLyARIUM3J8A
+a+q4C0bDxRCcf8fYA9YrobmhgKT8fuhkT3MvOnoiWG8TwM8DDpFn/YCxSS7cno7n
+bfc0BbQ5ca7bgGW2oB3jwjURG9ICddwMbOvQHq1j6v2nJFBZd0N0mzKdsVAl3wSO
+Xq4nhk2U2GAbsMfLufOp83V0DiTjXat6m8NYi0sBvjcCAwEAAaNBMD8wHgYDVR0R
+BBcwFYITc2VydmVyLmVkdWJsb2dzLm9yZzAdBgNVHQ4EFgQUqgrJUTjleYcd5it2
+MBXfCp7Kw/swDQYJKoZIhvcNAQEFBQADggEBAC+00yHK1AF/hPIjDXk8QYoHWdPF
++wG3MPe78x1eo2o+r24/1gBniHSaTyEgTlfSi6GJgZm/mR2nkc4B13ARXPORHM40
+MJQEam/7018/v38DBZjW514kjpxkw3RfSvfw5qDliMnLhMPUVd0eYdExzT1nLAAU
+Xa6dJE/AGlotJKUdcVNCU+HdkUJ7YiJ8D9GOOrjxguDgvdv0Oea5WTn0StxVLsUH
+GzqBsxkby8F8ArSNnf61vvK6Ki7ayLDAF1eeLBFmAoEmA80xRhXHGvOPNYGyx9C0
+HqC5bwUfTUv2MOSaztChadCPF7WVsL2Rhp3bBKzxaBcVV1bwtWRbTQk5bXA=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>
+MIIDNjCCAh6gAwIBAgIJAKM2cbcExPy2MA0GCSqGSIb3DQEBCwUAMDAxLjAsBgNV
+BAMTJW1lZGl1bS1wZWVyMS5jYW1wdXMuYXV0aC5lZHVibG9ncy5vcmcwHhcNMTcw
+MTE0MTEyMjQzWhcNMjcwMTEyMTEyMjQzWjAwMS4wLAYDVQQDEyVtZWRpdW0tcGVl
+cjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAu8Tpp+s2C2cdnAPDkNJHJcbrkGB+8ejiDOPNQ1mRdTkaIBAm
+roI/VjLldGXUNB0S2kLJmH5gIel/o943KLEjrGNjclPmOvvQD/T0XnFI0oquSs0S
+iucU2B9/5hIm9s+2IybjQ20rLDlzJmas4QO9dsu6jrY5MTSeS0xtsO6f0dbEjSnt
+evSl9mm7/7rf7Dc/lnNgu0MT+RVvw+Vna3BvGkRmOa9osRognF9B9qUcdLr8nFd0
+wVvuu4HmzSZAonOLUQvVYAVPhS7mC1Qm82XJA/op8qKG8vq458etLdUqLKYCEuKf
+nCVaVKSj7DoThSf44ng7IK0pCLUBji9vSiOmrQIDAQABo1MwUTAwBgNVHREEKTAn
+giVtZWRpdW0tcGVlcjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMB0GA1UdDgQW
+BBQ3B8fF4B/z8iUXdOFzizkRMl2BVDANBgkqhkiG9w0BAQsFAAOCAQEAghUZMmHW
+4Ebve6lS3SJ/BiwUAl1/TZdm8Y29Io9+9tWBTnQApf4l3s8+ct16Jlyob7a8AoCG
+M0L/SUFrLh4w+X9KDvqDCdLaYVuZCROMYw6QeTOZurCJY+S319a425VXDjk7jHbb
+X4+1WzyWbE6C68wrCAh+L/3A4D5D+WhqtQxzPBRXtQYSnyuetq69fTtgdFnBGCow
+Y5WEuSq1VMXMMWpb7y2JBhkl3dEu3132cXwS4Hj9FDaAjISEqX8kUKbdGr4Z8ZyP
+FanMwmoTcnGVSRarx+7G1T+8zfo9djmXhSqginUlifMS2dEPhhsOwlIAzhp/3MQZ
+SEnHPV7S7g6dzQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.usc.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.usc.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.usc.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites-test.usc.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites-test.usc.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites-test.usc.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.usc.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.usc.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.usc.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.usc.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Southern California</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uta.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://blog.uta.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas in Arlington blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blog.uta.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blog.uta.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://blog.uta.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://blog.uta.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://blog.uta.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Texas in Arlington blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://utk.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portfolios.utk.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Tennessee Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portfolios.utk.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portfolios.utk.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portfolios.utk.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portfolios.utk.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portfolios.utk.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Tennessee Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uw.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.uw.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites-test.uw.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Washington Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>
+MIIDNjCCAh6gAwIBAgIJAKM2cbcExPy2MA0GCSqGSIb3DQEBCwUAMDAxLjAsBgNV
+BAMTJW1lZGl1bS1wZWVyMS5jYW1wdXMuYXV0aC5lZHVibG9ncy5vcmcwHhcNMTcw
+MTE0MTEyMjQzWhcNMjcwMTEyMTEyMjQzWjAwMS4wLAYDVQQDEyVtZWRpdW0tcGVl
+cjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAu8Tpp+s2C2cdnAPDkNJHJcbrkGB+8ejiDOPNQ1mRdTkaIBAm
+roI/VjLldGXUNB0S2kLJmH5gIel/o943KLEjrGNjclPmOvvQD/T0XnFI0oquSs0S
+iucU2B9/5hIm9s+2IybjQ20rLDlzJmas4QO9dsu6jrY5MTSeS0xtsO6f0dbEjSnt
+evSl9mm7/7rf7Dc/lnNgu0MT+RVvw+Vna3BvGkRmOa9osRognF9B9qUcdLr8nFd0
+wVvuu4HmzSZAonOLUQvVYAVPhS7mC1Qm82XJA/op8qKG8vq458etLdUqLKYCEuKf
+nCVaVKSj7DoThSf44ng7IK0pCLUBji9vSiOmrQIDAQABo1MwUTAwBgNVHREEKTAn
+giVtZWRpdW0tcGVlcjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMB0GA1UdDgQW
+BBQ3B8fF4B/z8iUXdOFzizkRMl2BVDANBgkqhkiG9w0BAQsFAAOCAQEAghUZMmHW
+4Ebve6lS3SJ/BiwUAl1/TZdm8Y29Io9+9tWBTnQApf4l3s8+ct16Jlyob7a8AoCG
+M0L/SUFrLh4w+X9KDvqDCdLaYVuZCROMYw6QeTOZurCJY+S319a425VXDjk7jHbb
+X4+1WzyWbE6C68wrCAh+L/3A4D5D+WhqtQxzPBRXtQYSnyuetq69fTtgdFnBGCow
+Y5WEuSq1VMXMMWpb7y2JBhkl3dEu3132cXwS4Hj9FDaAjISEqX8kUKbdGr4Z8ZyP
+FanMwmoTcnGVSRarx+7G1T+8zfo9djmXhSqginUlifMS2dEPhhsOwlIAzhp/3MQZ
+SEnHPV7S7g6dzQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.uw.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.uw.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.uw.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.uw.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.uw.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.uw.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.uw.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites-test.uw.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites-test.uw.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites-test.uw.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Washington Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uwgb.edu.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://blog-dev.uwgb.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Wisconsin Green Bay - CampusPress</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blog-dev.uwgb.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://blog-dev.uwgb.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://blog-dev.uwgb.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://blog-dev.uwgb.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://blog-dev.uwgb.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Wisconsin Green Bay - CampusPress</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Oskar Kossuth</GivenName>
+ <EmailAddress>oskar@incsub.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uwm.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://people.uwm.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UWM Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://people.uwm.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://people.uwm.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://people.uwm.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://people.uwm.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://people.uwm.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UWM Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wustl.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites.wustl.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sites-test.wustl.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Washington University in St. Louis Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>
+MIIDNjCCAh6gAwIBAgIJAKM2cbcExPy2MA0GCSqGSIb3DQEBCwUAMDAxLjAsBgNV
+BAMTJW1lZGl1bS1wZWVyMS5jYW1wdXMuYXV0aC5lZHVibG9ncy5vcmcwHhcNMTcw
+MTE0MTEyMjQzWhcNMjcwMTEyMTEyMjQzWjAwMS4wLAYDVQQDEyVtZWRpdW0tcGVl
+cjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAu8Tpp+s2C2cdnAPDkNJHJcbrkGB+8ejiDOPNQ1mRdTkaIBAm
+roI/VjLldGXUNB0S2kLJmH5gIel/o943KLEjrGNjclPmOvvQD/T0XnFI0oquSs0S
+iucU2B9/5hIm9s+2IybjQ20rLDlzJmas4QO9dsu6jrY5MTSeS0xtsO6f0dbEjSnt
+evSl9mm7/7rf7Dc/lnNgu0MT+RVvw+Vna3BvGkRmOa9osRognF9B9qUcdLr8nFd0
+wVvuu4HmzSZAonOLUQvVYAVPhS7mC1Qm82XJA/op8qKG8vq458etLdUqLKYCEuKf
+nCVaVKSj7DoThSf44ng7IK0pCLUBji9vSiOmrQIDAQABo1MwUTAwBgNVHREEKTAn
+giVtZWRpdW0tcGVlcjEuY2FtcHVzLmF1dGguZWR1YmxvZ3Mub3JnMB0GA1UdDgQW
+BBQ3B8fF4B/z8iUXdOFzizkRMl2BVDANBgkqhkiG9w0BAQsFAAOCAQEAghUZMmHW
+4Ebve6lS3SJ/BiwUAl1/TZdm8Y29Io9+9tWBTnQApf4l3s8+ct16Jlyob7a8AoCG
+M0L/SUFrLh4w+X9KDvqDCdLaYVuZCROMYw6QeTOZurCJY+S319a425VXDjk7jHbb
+X4+1WzyWbE6C68wrCAh+L/3A4D5D+WhqtQxzPBRXtQYSnyuetq69fTtgdFnBGCow
+Y5WEuSq1VMXMMWpb7y2JBhkl3dEu3132cXwS4Hj9FDaAjISEqX8kUKbdGr4Z8ZyP
+FanMwmoTcnGVSRarx+7G1T+8zfo9djmXhSqginUlifMS2dEPhhsOwlIAzhp/3MQZ
+SEnHPV7S7g6dzQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.wustl.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.wustl.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites.wustl.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites.wustl.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites.wustl.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites.wustl.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sites-test.wustl.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sites-test.wustl.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sites-test.wustl.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sites-test.wustl.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Washington University in St. Louis Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wwu.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wp.wwu.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Western Washington University Blogs</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>
+MIIC+DCCAeCgAwIBAgIBADANBgkqhkiG9w0BAQUFADAeMRwwGgYDVQQDExNzZXJ2
+ZXIuZWR1YmxvZ3Mub3JnMB4XDTEwMDYyNTA4MTA1MVoXDTIwMDYyMjA4MTA1MVow
+HjEcMBoGA1UEAxMTc2VydmVyLmVkdWJsb2dzLm9yZzCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBAOaYDriYsPgqMP6ouII952HxrBuaeEiBOkU3Te5kYFv6
+B/EKWUbqpEXnC7FCx0H+nb1/LS4QcG0MPcIay/tNsm2YpiNoKy+a29f4uG7kVvta
+YV8UJc0BT00CHA3KSMuM00cFJkT2UxiY0YSP9Sgm5aZ8vZQYEE5trLyARIUM3J8A
+a+q4C0bDxRCcf8fYA9YrobmhgKT8fuhkT3MvOnoiWG8TwM8DDpFn/YCxSS7cno7n
+bfc0BbQ5ca7bgGW2oB3jwjURG9ICddwMbOvQHq1j6v2nJFBZd0N0mzKdsVAl3wSO
+Xq4nhk2U2GAbsMfLufOp83V0DiTjXat6m8NYi0sBvjcCAwEAAaNBMD8wHgYDVR0R
+BBcwFYITc2VydmVyLmVkdWJsb2dzLm9yZzAdBgNVHQ4EFgQUqgrJUTjleYcd5it2
+MBXfCp7Kw/swDQYJKoZIhvcNAQEFBQADggEBAC+00yHK1AF/hPIjDXk8QYoHWdPF
++wG3MPe78x1eo2o+r24/1gBniHSaTyEgTlfSi6GJgZm/mR2nkc4B13ARXPORHM40
+MJQEam/7018/v38DBZjW514kjpxkw3RfSvfw5qDliMnLhMPUVd0eYdExzT1nLAAU
+Xa6dJE/AGlotJKUdcVNCU+HdkUJ7YiJ8D9GOOrjxguDgvdv0Oea5WTn0StxVLsUH
+GzqBsxkby8F8ArSNnf61vvK6Ki7ayLDAF1eeLBFmAoEmA80xRhXHGvOPNYGyx9C0
+HqC5bwUfTUv2MOSaztChadCPF7WVsL2Rhp3bBKzxaBcVV1bwtWRbTQk5bXA=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wp.wwu.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wp.wwu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wp.wwu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wp.wwu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wp.wwu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Western Washington University Blogs</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohanjith Sudirikku Hannadige</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPress Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://yale.campus.auth.edublogs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Yale CampusPress</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://incsub.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="242" xml:lang="en">https://campuspress.com/wp-content/themes/campuspress-divi-2016/assets/images/logo-header.png?ver=2</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Mon Jun 22 08:10:51 2020 GMT -->
+ <ds:X509Certificate>
+MIIC+DCCAeCgAwIBAgIBADANBgkqhkiG9w0BAQUFADAeMRwwGgYDVQQDExNzZXJ2
+ZXIuZWR1YmxvZ3Mub3JnMB4XDTEwMDYyNTA4MTA1MVoXDTIwMDYyMjA4MTA1MVow
+HjEcMBoGA1UEAxMTc2VydmVyLmVkdWJsb2dzLm9yZzCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBAOaYDriYsPgqMP6ouII952HxrBuaeEiBOkU3Te5kYFv6
+B/EKWUbqpEXnC7FCx0H+nb1/LS4QcG0MPcIay/tNsm2YpiNoKy+a29f4uG7kVvta
+YV8UJc0BT00CHA3KSMuM00cFJkT2UxiY0YSP9Sgm5aZ8vZQYEE5trLyARIUM3J8A
+a+q4C0bDxRCcf8fYA9YrobmhgKT8fuhkT3MvOnoiWG8TwM8DDpFn/YCxSS7cno7n
+bfc0BbQ5ca7bgGW2oB3jwjURG9ICddwMbOvQHq1j6v2nJFBZd0N0mzKdsVAl3wSO
+Xq4nhk2U2GAbsMfLufOp83V0DiTjXat6m8NYi0sBvjcCAwEAAaNBMD8wHgYDVR0R
+BBcwFYITc2VydmVyLmVkdWJsb2dzLm9yZzAdBgNVHQ4EFgQUqgrJUTjleYcd5it2
+MBXfCp7Kw/swDQYJKoZIhvcNAQEFBQADggEBAC+00yHK1AF/hPIjDXk8QYoHWdPF
++wG3MPe78x1eo2o+r24/1gBniHSaTyEgTlfSi6GJgZm/mR2nkc4B13ARXPORHM40
+MJQEam/7018/v38DBZjW514kjpxkw3RfSvfw5qDliMnLhMPUVd0eYdExzT1nLAAU
+Xa6dJE/AGlotJKUdcVNCU+HdkUJ7YiJ8D9GOOrjxguDgvdv0Oea5WTn0StxVLsUH
+GzqBsxkby8F8ArSNnf61vvK6Ki7ayLDAF1eeLBFmAoEmA80xRhXHGvOPNYGyx9C0
+HqC5bwUfTUv2MOSaztChadCPF7WVsL2Rhp3bBKzxaBcVV1bwtWRbTQk5bXA=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11760712507797601462, expires on Tue Jan 12 11:22:43 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://campuspress-test.yale.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://campuspress.yale.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://canvaspress.yale.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://canvaspress-test.yale.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://campuspress.yale.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://campuspress.yale.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://campuspress.yale.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://campuspress.yale.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://campuspress-test.yale.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://campuspress-test.yale.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://campuspress-test.yale.edu/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://campuspress-test.yale.edu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://canvaspress.yale.edu/Shibboleth.sso/SAML2/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://canvaspress.yale.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://canvaspress.yale.edu/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://canvaspress.yale.edu/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://canvaspress-test.yale.edu/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://canvaspress-test.yale.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://canvaspress-test.yale.edu/Shibboleth.sso/SAML2/Artifact" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://canvaspress-test.yale.edu/Shibboleth.sso/SAML2/ECP" index="16"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Yale CampusPress</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edublogs</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edublogs</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://edublogs.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>S H Mohanjith</GivenName>
+ <EmailAddress>moha@mohanjith.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CampusPerss Support</GivenName>
+ <EmailAddress>contact@campuspress.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incsub SysAdmins</GivenName>
+ <EmailAddress>sysadmins@incsub.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Cincinnati Children's Hospital Medical Center -->
+<EntityDescriptor entityID="https://access.research.cchmc.org/fed/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.research.cchmc.org/pub/apperror.aspx" protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cchmc.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Cincinnati Children's Hospital Medical Center</mdui:DisplayName>
+ <mdui:Description xml:lang="en">CCHMC Research IdP</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cincinnatichildrens.org/site</mdui:PrivacyStatementURL>
+ <mdui:Logo height="292" width="864" xml:lang="en">https://research.cchmc.org/metadata/CCHMCLogo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Tue May 3 15:22:48 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 172120766205015220504262858865610704664122679796, expires on Sun Sep 4 18:48:04 2039 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://access.research.cchmc.org/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://access.research.cchmc.org/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://access.research.cchmc.org/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://access.research.cchmc.org/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://access.research.cchmc.org/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://access.research.cchmc.org/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://access.research.cchmc.org/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://access.research.cchmc.org/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Cincinnati Children's Hospital Medical Center</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Cincinnati Children's Hospital Medical Center</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cincinnatichildrens.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Prakash Velayutham</GivenName>
+ <EmailAddress>prakash.velayutham@cchmc.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kevin Sandy</GivenName>
+ <EmailAddress>Kevin.Sandy@cchmc.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Zimmerly</GivenName>
+ <EmailAddress>john.zimmerly@cchmc.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michal Kouril</GivenName>
+ <EmailAddress>Michal.Kouril@cchmc.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://shib.rarediseasesnetwork.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">RDCRN</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rarediseasesnetwork.org/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rarediseasesnetwork.org/accessibility-disclaimer</mdui:PrivacyStatementURL>
+ <mdui:Logo height="131" width="216" xml:lang="en">https://www.rarediseasesnetwork.org/sites/default/files/RDCRN-NIH_Logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12459581435949240323, expires on Thu Aug 9 15:30:15 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://members.rarediseasesnetwork.org/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://members.rarediseasesnetwork.org/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://members.rarediseasesnetwork.org/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://members.rarediseasesnetwork.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://members.rarediseasesnetwork.org/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.rarediseasesnetwork.org/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">RDCRN</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Cincinnati Children's Hospital Medical Center</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Cincinnati Children's Hospital Medical Center</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cincinnatichildrens.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michal Kouril</GivenName>
+ <EmailAddress>michal.kouril@cchmc.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Prakash Velayutham</GivenName>
+ <EmailAddress>prakash.velayutham@cchmc.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Gavin Durman</GivenName>
+ <EmailAddress>gavin.durman@cchmc.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of New Mexico -->
+<EntityDescriptor entityID="https://unmpidp.unm.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://help.unm.edu" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unm.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of New Mexico</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Primary IDP for the University of New Mexico</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://policy.unm.edu/regents-policies/index.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="348" xml:lang="en">https://webcore.unm.edu/v2/images/unm-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 172933961520644937208552536654321501087620354000, expires on Sun Jan 11 18:55:56 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://unmpidp.unm.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unmpidp.unm.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://unmpidp.unm.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of New Mexico</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of New Mexico</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unm.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jared Galbraith</GivenName>
+ <EmailAddress>jagalb@unm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jared Galbraith</GivenName>
+ <EmailAddress>jagalb@unm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Incident Response</GivenName>
+ <EmailAddress>security@unm.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Wake Forest University -->
+<EntityDescriptor entityID="https://webauth.wfunet.wfu.edu/saml/saml2/idp/metadata.php">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wfu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Wake Forest University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">A collegiate university in Winston-Salem, North Carolina distinguished by small classes and faculty-student engagement.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.wfu.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://about.wfu.edu/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="145" xml:lang="en">https://webauth.wfunet.wfu.edu/content/incommon/incommon-wfulogo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15907078899593011446, expires on Fri Apr 9 20:21:31 2027 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.wfunet.wfu.edu/saml/saml2/idp/SSOService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.wfunet.wfu.edu/saml/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Wake Forest University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Wake Forest University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wfu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IS SAML Admin</GivenName>
+ <EmailAddress>is-saml-admin@wfu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IS SAML Admin</GivenName>
+ <EmailAddress>is-saml-admin@wfu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Information Systems Service Desk</GivenName>
+ <EmailAddress>help@wfu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Systems - Security</GivenName>
+ <EmailAddress>infosec@wfu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Notre Dame -->
+<EntityDescriptor entityID="https://login.nd.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">nd.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Notre Dame</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policy.nd.edu</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="300" xml:lang="en">https://static.nd.edu/images/marks/blue/ndmark300.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 277998609910531432266839296328445360524424795500, expires on Sun Sep 28 19:36:12 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.nd.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.nd.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.nd.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Notre Dame</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Notre Dame</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nd.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>OIT Identity Management</GivenName>
+ <EmailAddress>eds@nd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>OIT Identity Management</GivenName>
+ <EmailAddress>eds@nd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>OIT Info Security</GivenName>
+ <EmailAddress>infosec@nd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>OIT Identity Management</GivenName>
+ <EmailAddress>eds@nd.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wiki-cswarm.crc.nd.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CSWARM Wiki Instance</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The Wiki server used by the C-SWARM project. Developers use it for reporting on their progress of their tasks and to collaborate.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policy.nd.edu</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="300" xml:lang="en">https://static.nd.edu/images/marks/blue/ndmark300.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15759456960363816424, expires on Sat Oct 25 16:59:36 2025 GMT -->
+ <ds:X509Certificate>
+MIIDITCCAgmgAwIBAgIJANq01pu3iuXoMA0GCSqGSIb3DQEBBQUAMCkxJzAlBgNV
+BAMTHndpa2ktY3N3YXJtLnZpcnR1YWwuY3JjLm5kLmVkdTAeFw0xNTEwMjgxNjU5
+MzZaFw0yNTEwMjUxNjU5MzZaMCkxJzAlBgNVBAMTHndpa2ktY3N3YXJtLnZpcnR1
+YWwuY3JjLm5kLmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKRp
+CuOp4pW8+1gPe/2SCZJ0Lx5HboS8QjVjSH9bj2SkDmB7MKGGNOIxioLUBXOKDfOu
+cdFydZmJwF0Lg+T/5Eu783JFeHgXEaLWjuJ1T20Gh8/VcKd6BF+GWP5HxHWwC/1i
+tQnNbxyyNNne7wS/I5woz7ocEZ80ujtmmwV7wc/C5bVI9NeaileFKE0OIQhl6qMr
+qmCJr/xMh4D0Ko1IUnVU7d8qM70VAYTJzjysYg9hqKzGkprd36q5Kij2K9GFQwOS
+nfFsaS5UVAxV/idMs8xeWwvL39AdT4V79uAglktpdPm2cFsRM3Lc8iWkUiCFXOlE
+UNO5lFO9ZtG/3UMFMT0CAwEAAaNMMEowKQYDVR0RBCIwIIIed2lraS1jc3dhcm0u
+dmlydHVhbC5jcmMubmQuZWR1MB0GA1UdDgQWBBQ+QtSY7u8Y/LGbT39AdOBgqFrH
+8TANBgkqhkiG9w0BAQUFAAOCAQEAJMtvrO94Q6aBOW/KPhYC7RaQ1KhnZZFmgNuA
+dWIe9Z/C5Ufe5ffv+7RF8YQksYmbnD1yg1XfXlQXnAoiEqnvqsIOyaBO+NGSq0QW
+xbYh9EM0OPCqgUNl/ea3zl8hUbr/Glf4pkB13176Q4d82cib1x09NRqZTT6sA/So
+ZGYxADLpdUyM2Hc2ShuG6EIWbrj+8+Spl7/0FhyXJneBVDCZ5utPedSF2kVU7LUi
+q20EjYgBqitT37jf7A+xGxQbWOLA8KCiqoeuJmf1yaCSVRKYHc1DviPtgpg4P1wL
+VLYCFWSF1zm/rknkR1j+w0KNisGpbK3TqeBCxNGPt1uT0TvxLw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiki-cswarm.crc.nd.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wiki-cswarm.crc.nd.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wiki-cswarm.crc.nd.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wiki-cswarm.crc.nd.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wiki-cswarm.crc.nd.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wiki-cswarm.crc.nd.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CSWARM Wiki Instance</ServiceName>
+ <ServiceDescription xml:lang="en">The Wiki server used by the C-SWARM project. Developers use it for reporting on their progress of their tasks and to collaborate.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Notre Dame</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Notre Dame</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nd.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Antelmo Aguilar</GivenName>
+ <EmailAddress>aaguilar@nd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Scott Hampton</GivenName>
+ <EmailAddress>shampton@nd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>OIT Info Security</GivenName>
+ <EmailAddress>infosec@nd.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Colby College -->
+<EntityDescriptor entityID="https://idp.colby.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.colby.edu/search_cs/search.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">colby.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Colby College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Colby College Shibboleth Identity Provider Service</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.colby.edu/administration_cs/its/policies/index.cfm</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.colby.edu/its/policies-and-procedures/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="149" xml:lang="en">https://www.colby.edu/images/ColbyLogo_280_1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18311287396780450537, expires on Sat Dec 2 22:09:04 2023 GMT -->
+ <ds:X509Certificate>
+MIIDojCCAooCCQD+HsLeuS+i6TANBgkqhkiG9w0BAQUFADCBkjELMAkGA1UEBhMC
+VVMxCzAJBgNVBAgMAk1FMRMwEQYDVQQHDApXYXRlcnZpbGxlMRYwFAYDVQQKDA1D
+b2xieSBDb2xsZWdlMQwwCgYDVQQLDANJVFMxFjAUBgNVBAMMDWlkcC5jb2xieS5l
+ZHUxIzAhBgkqhkiG9w0BCQEWFGluY29tbW9uY2FAY29sYnkuZWR1MB4XDTEzMTIw
+MjIyMDkwNFoXDTIzMTIwMjIyMDkwNFowgZIxCzAJBgNVBAYTAlVTMQswCQYDVQQI
+DAJNRTETMBEGA1UEBwwKV2F0ZXJ2aWxsZTEWMBQGA1UECgwNQ29sYnkgQ29sbGVn
+ZTEMMAoGA1UECwwDSVRTMRYwFAYDVQQDDA1pZHAuY29sYnkuZWR1MSMwIQYJKoZI
+hvcNAQkBFhRpbmNvbW1vbmNhQGNvbGJ5LmVkdTCCASIwDQYJKoZIhvcNAQEBBQAD
+ggEPADCCAQoCggEBAMPz3tu+BESQZNcAXXWLf+WVD4JozBF4bKvQnYYiPMrKc/ay
+sqwWRasGtfazdPb+npbeHrGmd8EXOfi2jIxyq2LPWvX9pS4mHxmCWyNs63mYgs2U
+uE0dpC6kBJea0dQEJ+9o3PXlG9VlVZQ4JnuVsOMlz0WNCyYGp9tJ+HhJHn9If2Rt
+XNgioCpNVdmyJ1n8GXzcuv7hb4MDbxzzRy4VAAXI062OURs4w6ZRgQ2Q7KRSeVB6
+IdK5hoTOsoLEgn8qvYgNoQCaBGW84F6njc0jZx/a9TV24Zci+sC0ivRKgEjSDp3r
+dAYUeenUxJ1x8uOdJoQgUtIC7kmOtpQ/JKEk/hECAwEAATANBgkqhkiG9w0BAQUF
+AAOCAQEAqFxpW7m89Hh7DOIfmhrJk5nH/2JSsWjaKI0FP2H7uaWZgqtsF8L0xWMU
+pf8DrAsEn7tMGp8f19vcxW/d4lTFU7t28DZiUEV0m4+ClILwZdkneT6zE/VUeEhz
+2mNFlSzJrUJUiieRRCtrAHe/gSJ5voxrzs90zFNe1JNO9TuO5Itb5kp+kJAtOHkY
+Hpab4IvZysoebT5U//OQ3Ct5e0tyj8jZkEeBDGvyHQ15+uszE7N+fteM2ezplDU/
+1GuxzsqRMQG9RlzDIWJPv8kek9V7eBcMjg5q+28ahgx/lY1Fs4SbVqk3WbaPbdF0
+PK29MmCAAwy8UHLt802YOYiAxSCvTw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.colby.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.colby.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.colby.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.colby.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.colby.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.colby.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">colby.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18311287396780450537, expires on Sat Dec 2 22:09:04 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14916548114841283461, expires on Sat Dec 14 20:17:03 2013 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.colby.edu:9443/idp/profile/SAML1/SOAP/ArtifactResolution"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.colby.edu:9443/idp/profile/SAML2/SOAP/ArtifactResolution"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Colby College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Colby College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.colby.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Colby College ITS PCSS</GivenName>
+ <EmailAddress>support@colby.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Colby College ITS Shibboleth</GivenName>
+ <EmailAddress>shibboleth@colby.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Colby College ITS Shibboleth</GivenName>
+ <EmailAddress>shibboleth@colby.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Colby College Information Security</GivenName>
+ <EmailAddress>informationsecurity@colby.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Kansas State University -->
+<EntityDescriptor entityID="https://signin.k-state.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://signin.k-state.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ksu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Kansas State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Kansas State University Shibboleth Identity Provider</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.k-state.edu/its/security/procedures/incommon.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.k-state.edu/its/policies/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="65" width="200" xml:lang="en">https://www.k-state.edu/images/kstate-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 672792922730863780176564648675107779880729646166, expires on Sat Jun 5 15:40:09 2032 GMT -->
+ <ds:X509Certificate>
+MIIDMzCCAhugAwIBAgIUddkT+9u91blTGSOr4CVwQBZ/FFYwDQYJKoZIhvcNAQEF
+BQAwHTEbMBkGA1UEAxMSc2lnbmluLmstc3RhdGUuZWR1MB4XDTEyMDYwNTE1NDAw
+OVoXDTMyMDYwNTE1NDAwOVowHTEbMBkGA1UEAxMSc2lnbmluLmstc3RhdGUuZWR1
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAhiD6+w540j8uCiAKz+4k
+1D8woOO+GFe/iqMU1PH4YPSqTmyrnegaHrvcQDi/V1DKkuXZEU+j/g/Ln1i95Huf
+voIZrcc5suKa5yu2hVPELGAjq7qOaVfwX9kZKUVcAH9o1Gus3pleZ5JreH9mj7HC
+ZQMKQoJ43064g904mJcI/+k9KEf5Tbs/pmAYvTG6xrTSPbJ0RecXZRDkPV2s88zZ
+Qgyt9tdvOuRFHkPyDsYPmaU+A6gVuq+/MtTDu7y856u/LNQv91mFUga5fAtyXcls
+5L01nl615wxqPSwtd+L6LOZ9nZX0deUtyGYS2cpyuBROy62DNuDWwAlV++9yK9e1
+kQIDAQABo2swaTBIBgNVHREEQTA/ghJzaWduaW4uay1zdGF0ZS5lZHWGKWh0dHBz
+Oi8vc2lnbmluLmstc3RhdGUuZWR1L2lkcC9zaGliYm9sZXRoMB0GA1UdDgQWBBTX
+SOMqCmNFaAmMokhDAJjuyKid+zANBgkqhkiG9w0BAQUFAAOCAQEAe7JTysS5hWbj
+Bh2LDgGV7Ct9fjbv+HpL9B60F3WBWGQlWndsyXXZDqJ9TNZ6TfGJFtn4irmcd8II
+dJb1HrIzVNVmR8Vtzx9Q/zeU5kgAcBcmjU5GQxWTU5dEIi/uKTj55KyW8+TkkQWa
+0Lj4Qwez629onnih6UOeC6yZ/M2NClNupvxBZXE6nl91djmT6qvSR0GiWi/Tssrm
+UKw8tiWpALVruSodJQw9Guq0Mpmic3daaI/TjD5rl3k6rXDlr5aXHpCRdpZynQGx
+ABEpAgjaGHvTyEOi849GB2Tewhzj8HGIyx1TfT175MtFN2kfVCDznA+zPXZUg73f
+ymGADBlpjg==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://signin.k-state.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://signin.k-state.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://signin.k-state.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://signin.k-state.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://signin.k-state.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://signin.k-state.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ksu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 672792922730863780176564648675107779880729646166, expires on Sat Jun 5 15:40:09 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://signin.k-state.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://signin.k-state.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Kansas State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Kansas State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ksu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Support Team</GivenName>
+ <EmailAddress>idm-dev-l@ksu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@ksu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Enterprise Server Technologies</GivenName>
+ <EmailAddress>dressman@ksu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information and Security Compliance</GivenName>
+ <EmailAddress>security@ksu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Towson University -->
+<EntityDescriptor entityID="https://shib.towson.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://shib.towson.edu/errorpage.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">towson.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Towson University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The Towson University Shibboleth Identity Provider allows TU faculty, staff and students to access external service providers using their TU NetID.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://shib.towson.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.towson.edu/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="52" width="225" xml:lang="en">https://shib.towson.edu/tulogo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18091845067452750620, expires on Tue Apr 1 13:36:04 2031 GMT -->
+ <ds:X509Certificate>
+MIIDqDCCApACCQD7EyU78OybHDANBgkqhkiG9w0BAQsFADCBlTELMAkGA1UEBhMC
+TUQxETAPBgNVBAgMCE1hcnlsYW5kMQ8wDQYDVQQHDAZUb3dzb24xGjAYBgNVBAoM
+EVRvd3NvbiBVbml2ZXJzaXR5MQwwCgYDVQQLDANPVFMxGDAWBgNVBAMMD3NoaWIu
+dG93c29uLmVkdTEeMBwGCSqGSIb3DQEJARYPc2hpYkB0b3dzb24uZWR1MB4XDTE2
+MDQwNDEzMzYwNFoXDTMxMDQwMTEzMzYwNFowgZUxCzAJBgNVBAYTAk1EMREwDwYD
+VQQIDAhNYXJ5bGFuZDEPMA0GA1UEBwwGVG93c29uMRowGAYDVQQKDBFUb3dzb24g
+VW5pdmVyc2l0eTEMMAoGA1UECwwDT1RTMRgwFgYDVQQDDA9zaGliLnRvd3Nvbi5l
+ZHUxHjAcBgkqhkiG9w0BCQEWD3NoaWJAdG93c29uLmVkdTCCASIwDQYJKoZIhvcN
+AQEBBQADggEPADCCAQoCggEBAL04yIK83uQvaKr6XZtHz42YYwcfr2WtOqr0k40Z
+2+3Leb1gShnQGjRl4ZtUmUw0chH27ZrvJL8YUTf+IfZTOv3vkoRuQ1Y43BQ8FYPd
+SN0rHzjHqjU3i9SI85iuNzTcCiqwwNnyMrYt1fi5LT6dXAviN2E+bEBmMplX9Qjc
+SwJWYHs3YA27+R3PS66JNPw5ApsO4T4l1x4+Dc2R7W7g5X/PX+nURwSeR/Cz9NYh
+y8x2QwQrk5azrRU5TLJFlE7EXGqx92JsMDO0Lv7eg7ia6ipbk0av3obWtERA4fcu
+7b6RYARuqUBxiUhGWS5DIemN04Fr1pQIUkH2gf/arE26cDECAwEAATANBgkqhkiG
+9w0BAQsFAAOCAQEAO9F5iz4qGu4DOnvRxdWIttozkfgXlqJEGEexiNb2SW8vmvv+
+27vCt7MdmSYDPA99Gb/ECs/jt9y5X7i2+1LJpTgOKIRtJPswZlyeqgwqKKV+ISjG
+sI9OoViscW+B1t4MQPVgq4B0KR8P/OXQsdJ34jth2LD1w0sUCgd9WNklZqc3OrCp
+Tpt+FOsZ+xFe0nqAU81kchOoOjgR02OY0CoYERX6oaQDblw1mhyw7xM4U+j2Qjkh
+CvmuHM+tUlsm9qISuZCNGXwplGakkjduF5PQ9UXI/otLC2hiuAnA0R2QWpWI9cn0
+cgveWZLPjJi18fsuQa7S0C4bslW+fhWIwqzYVA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.towson.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.towson.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.towson.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.towson.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.towson.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.towson.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">towson.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18091845067452750620, expires on Tue Apr 1 13:36:04 2031 GMT -->
+ <ds:X509Certificate>
+MIIDqDCCApACCQD7EyU78OybHDANBgkqhkiG9w0BAQsFADCBlTELMAkGA1UEBhMC
+TUQxETAPBgNVBAgMCE1hcnlsYW5kMQ8wDQYDVQQHDAZUb3dzb24xGjAYBgNVBAoM
+EVRvd3NvbiBVbml2ZXJzaXR5MQwwCgYDVQQLDANPVFMxGDAWBgNVBAMMD3NoaWIu
+dG93c29uLmVkdTEeMBwGCSqGSIb3DQEJARYPc2hpYkB0b3dzb24uZWR1MB4XDTE2
+MDQwNDEzMzYwNFoXDTMxMDQwMTEzMzYwNFowgZUxCzAJBgNVBAYTAk1EMREwDwYD
+VQQIDAhNYXJ5bGFuZDEPMA0GA1UEBwwGVG93c29uMRowGAYDVQQKDBFUb3dzb24g
+VW5pdmVyc2l0eTEMMAoGA1UECwwDT1RTMRgwFgYDVQQDDA9zaGliLnRvd3Nvbi5l
+ZHUxHjAcBgkqhkiG9w0BCQEWD3NoaWJAdG93c29uLmVkdTCCASIwDQYJKoZIhvcN
+AQEBBQADggEPADCCAQoCggEBAL04yIK83uQvaKr6XZtHz42YYwcfr2WtOqr0k40Z
+2+3Leb1gShnQGjRl4ZtUmUw0chH27ZrvJL8YUTf+IfZTOv3vkoRuQ1Y43BQ8FYPd
+SN0rHzjHqjU3i9SI85iuNzTcCiqwwNnyMrYt1fi5LT6dXAviN2E+bEBmMplX9Qjc
+SwJWYHs3YA27+R3PS66JNPw5ApsO4T4l1x4+Dc2R7W7g5X/PX+nURwSeR/Cz9NYh
+y8x2QwQrk5azrRU5TLJFlE7EXGqx92JsMDO0Lv7eg7ia6ipbk0av3obWtERA4fcu
+7b6RYARuqUBxiUhGWS5DIemN04Fr1pQIUkH2gf/arE26cDECAwEAATANBgkqhkiG
+9w0BAQsFAAOCAQEAO9F5iz4qGu4DOnvRxdWIttozkfgXlqJEGEexiNb2SW8vmvv+
+27vCt7MdmSYDPA99Gb/ECs/jt9y5X7i2+1LJpTgOKIRtJPswZlyeqgwqKKV+ISjG
+sI9OoViscW+B1t4MQPVgq4B0KR8P/OXQsdJ34jth2LD1w0sUCgd9WNklZqc3OrCp
+Tpt+FOsZ+xFe0nqAU81kchOoOjgR02OY0CoYERX6oaQDblw1mhyw7xM4U+j2Qjkh
+CvmuHM+tUlsm9qISuZCNGXwplGakkjduF5PQ9UXI/otLC2hiuAnA0R2QWpWI9cn0
+cgveWZLPjJi18fsuQa7S0C4bslW+fhWIwqzYVA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.towson.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.towson.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Towson University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Towson University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://towson.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Technical Issues</GivenName>
+ <EmailAddress>shib@towson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Student Computing Services</GivenName>
+ <EmailAddress>scs@towson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>OTS Help Center</GivenName>
+ <EmailAddress>helpcenter@towson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Technical Issues</GivenName>
+ <EmailAddress>shib@towson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Security Issues</GivenName>
+ <EmailAddress>shib@towson.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Oklahoma -->
+<EntityDescriptor entityID="https://shib.ou.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://ouitservices.service-now.com/ess_portal/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ou.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Oklahoma</mdui:DisplayName>
+ <mdui:Description xml:lang="en">
+Founded in 1890, the University of Oklahoma is a public research university located in Norman, Oklahoma just 20 mins. south of Oklahoma City. OU’s Norman undergraduate population is just over 20,000, giving students a major university experience in a private college atmosphere. With three campuses in Oklahoma, OU also offers study abroad opportunities at several locations and OU campuses overseas.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.ou.edu/ouit/shared-services.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.ou.edu/content/publicaffairs/webpolicies/privacypolicy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="124" width="94" xml:lang="en">https://shib.ou.edu/oxauth/img/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15917512067684375806, expires on Sat Dec 8 13:03:37 2012 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.ou.edu:9443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.ou.edu:9443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.ou.edu:443/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.ou.edu:443/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.ou.edu:443/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.ou.edu:443/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ou.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15917512067684375806, expires on Sat Dec 8 13:03:37 2012 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.ou.edu:9443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.ou.edu:9443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Oklahoma</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Oklahoma</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ou.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>David Horton</GivenName>
+ <EmailAddress>david-horton@ouhsc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Pat Amburn</GivenName>
+ <EmailAddress>pat-amburn@ouhsc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Mark McClellan</GivenName>
+ <EmailAddress>mmcclellan@ou.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Christoper Melton</GivenName>
+ <EmailAddress>christopher-melton@ouhsc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Unicon, Inc. -->
+<EntityDescriptor entityID="https://idp.unicon.net/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.unicon.net/Unicon's_IdP_Privacy_Policy/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unicon.net</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Unicon, Inc.</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Login service for Unicon Employees</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.unicon.net/Unicon's_IdP_Privacy_Policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="88" width="600" xml:lang="en">https://www.unicon.net/sites/default/files/logo_135_0.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 184155676572056142001764246121901689212305856685, expires on Sat Sep 13 03:23:16 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.unicon.net/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.unicon.net/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.unicon.net/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.unicon.net/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Unicon, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Unicon, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unicon.net/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IdP Administrator</GivenName>
+ <EmailAddress>idp-admin@unicon.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Blakley</GivenName>
+ <EmailAddress>blakley@unicon.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations</GivenName>
+ <EmailAddress>sec-ops@unicon.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Illinois At Springfield -->
+<EntityDescriptor entityID="https://uisshibb1.uis.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://answers.uillinois.edu/page.php?id=69304" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uis.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Illinois At Springfield</mdui:DisplayName>
+ <mdui:Description xml:lang="en">User Identification Service @ Illinois Springfield</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.uis.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.uis.edu/informationtechnologyservices/about/policies.html#acceptuse</mdui:PrivacyStatementURL>
+ <mdui:Logo height="183" width="131" xml:lang="en">https://uofi.box.com/shared/static/l5b0pac3r6fgffnybw4olbrs68dwwxar.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 923751356436323298322193136868589922946965479010, expires on Fri Nov 21 23:24:13 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uisshibb1.uis.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uisshibb1.uis.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://uisshibb1.uis.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uisshibb1.uis.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uisshibb1.uis.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Illinois At Springfield</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Illinois At Springfield</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uis.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Tulio Llosa</GivenName>
+ <EmailAddress>tllos1@uis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tulio Llosa</GivenName>
+ <EmailAddress>tllos1@uis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Tulio Llosa</GivenName>
+ <EmailAddress>tllos1@uis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Clay Bellot</GivenName>
+ <EmailAddress>cbell1@uis.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Bridgewater College -->
+<EntityDescriptor entityID="http://bcadfs.bridgewater.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bridgewater.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Bridgewater College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.bridgewater.edu/legal/computer-use-and-file-sharing-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="58" width="365" xml:lang="en">https://www.bridgewater.edu/wp-content/themes/bc-template/img/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11236238256363901841, expires on Tue Feb 12 19:34:50 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 2720272879088307526, expires on Fri Feb 12 19:34:50 2021 GMT -->
+ <ds:X509Certificate>
+MIIGvDCCBaSgAwIBAgIIJcBZxVowDUYwDQYJKoZIhvcNAQELBQAwgbQxCzAJBgNV
+BAYTAlVTMRAwDgYDVQQIEwdBcml6b25hMRMwEQYDVQQHEwpTY290dHNkYWxlMRow
+GAYDVQQKExFHb0RhZGR5LmNvbSwgSW5jLjEtMCsGA1UECxMkaHR0cDovL2NlcnRz
+LmdvZGFkZHkuY29tL3JlcG9zaXRvcnkvMTMwMQYDVQQDEypHbyBEYWRkeSBTZWN1
+cmUgQ2VydGlmaWNhdGUgQXV0aG9yaXR5IC0gRzIwHhcNMTkwMTE2MTQzMjE3WhcN
+MjEwMjEyMTkzNDUwWjA/MSEwHwYDVQQLExhEb21haW4gQ29udHJvbCBWYWxpZGF0
+ZWQxGjAYBgNVBAMMESouYnJpZGdld2F0ZXIuZWR1MIIBIjANBgkqhkiG9w0BAQEF
+AAOCAQ8AMIIBCgKCAQEA3TZETeDNCeSQTXQ/KuliOA66j9rrd+IbTdEsw+RNEoQh
+LCKqNiiUiIj2hUSPfp44LUpoTubNeM4dGO0zJk/ruDwu0l8vhRZbMgvmJfxBv8N7
+0YUfcGpsO+VlX4Qu0xpv6h33gqOFJb5Y68UXDE8aVHPg2R9wpnYhtzQYHYUBzAG/
+A0HDRlrYuMl/gpPDdjjvkuZJOx2z3nui2Sg9v+q2UzLK7r1XmP/j+oeHb0Up4Y1b
+97feynCd15HJ0oAJ0bJLTJx5R9djsy74tV/qXT9eKcOwGNujBdPMlidBdvK2L4um
+gPkjsaAPUiqcKycIKC598aoqsNonU39c7auNqc37tQIDAQABo4IDRDCCA0AwDAYD
+VR0TAQH/BAIwADAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwDgYDVR0P
+AQH/BAQDAgWgMDcGA1UdHwQwMC4wLKAqoCiGJmh0dHA6Ly9jcmwuZ29kYWRkeS5j
+b20vZ2RpZzJzMS05MDcuY3JsMF0GA1UdIARWMFQwSAYLYIZIAYb9bQEHFwEwOTA3
+BggrBgEFBQcCARYraHR0cDovL2NlcnRpZmljYXRlcy5nb2RhZGR5LmNvbS9yZXBv
+c2l0b3J5LzAIBgZngQwBAgEwdgYIKwYBBQUHAQEEajBoMCQGCCsGAQUFBzABhhho
+dHRwOi8vb2NzcC5nb2RhZGR5LmNvbS8wQAYIKwYBBQUHMAKGNGh0dHA6Ly9jZXJ0
+aWZpY2F0ZXMuZ29kYWRkeS5jb20vcmVwb3NpdG9yeS9nZGlnMi5jcnQwHwYDVR0j
+BBgwFoAUQMK9J47MNIMwojPX+2yz8LQsgM4wLQYDVR0RBCYwJIIRKi5icmlkZ2V3
+YXRlci5lZHWCD2JyaWRnZXdhdGVyLmVkdTAdBgNVHQ4EFgQU+KmoGReJYb9RkV1Y
+VfMaVYNdGJ0wggGABgorBgEEAdZ5AgQCBIIBcASCAWwBagB3AKS5CZC0GFgUh7sT
+osxncAo8NZgE+RvfuON3zQ7IDdwQAAABaFcTv+MAAAQDAEgwRgIhAPPrZr64/aEn
+Hq6ZXpsIMEIvgYC4QhFk3hme5nFREcZsAiEArV/F8eDbO08ej871Y9JNbWwSeGBC
+cWM8jkHCq0vAlFIAdgDuS723dc5guuFCaR+r4Z5mow9+X7By2IMAxHuJeqj9ywAA
+AWhXE8JEAAAEAwBHMEUCIQDdEroqvUB1K+Hi6izoYaVnIM30Yoj1F4uDrB7wx1s5
+6AIgPovZAsHN6HSbhaiRpQbdutxSUcbF4YD/obwWChu6dGAAdwBElGUusO7Or8RA
+B9io/ijA2uaCvtjLMbU/0zOWtbaBqAAAAWhXE8giAAAEAwBIMEYCIQDaK3MwcnHK
+PTUqgaXi0NpnsQHOn/roq5R2XPcEtEJkvwIhALrXY6x7E/G27PL42k4cMUpoVIE3
++RxKnpFLMg9Tqk+dMA0GCSqGSIb3DQEBCwUAA4IBAQBaVoLPlrxQWUXhfxBqa+E0
+/zIz5WQbjcde2djgv3le2+AKjBt+V6fQwyVSxuNp1ye9P5rKoXY3m05ZSbzVovsu
+LFC+NpwmJ1E6csS5T0W2Ahk987KdrJGo8ujnSK8Oa7tV1QoeGdr2ID48zrZaOS06
+NqeX9xQ3tlfV0H+fhEcZH20Gq84u6UJq919s0iZaJQzxalyH5xeCA97TvQKGsLMt
+m4q5r9fu07B8BbRJIvmKnBk7Zj+QtjHGDiASxV6vhA4uc9neXaG4g6C/qFVHfjZv
+0kx1nUEu2dkFag3d5yDNzoCOt8o5kvR2MIFXyG87sJZulfKKpYvO93rQsXq74kSQ
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://bcadfs.bridgewater.edu/adfs/services/trust/artifactresolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://bcadfs.bridgewater.edu/adfs/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bcadfs.bridgewater.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://bcadfs.bridgewater.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bcadfs.bridgewater.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Bridgewater College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Bridgewater College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.bridgewater.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IT Helpdesk</GivenName>
+ <EmailAddress>help@bridgewater.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tyler S. Weisman</GivenName>
+ <EmailAddress>tweisman@bridgewater.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Joseph A. Meslovich, Jr.</GivenName>
+ <EmailAddress>joe@bridgewater.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Northern Illinois University -->
+<EntityDescriptor entityID="https://idp.niu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">niu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Northern Illinois University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://doit.niu.edu/doit/policies_root/privacy_policy.shtml</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="300" xml:lang="en">https://niu.edu/email/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 242421601011542276476419525040871659911486219324, expires on Fri Jun 25 21:23:42 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.niu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.niu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.niu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.niu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.niu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">niu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 242421601011542276476419525040871659911486219324, expires on Fri Jun 25 21:23:42 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.niu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Northern Illinois University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Northern Illinois University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.niu.edu/index.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Thomas Schmauch</GivenName>
+ <EmailAddress>tschmauch@niu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Thomas Schmauch</GivenName>
+ <EmailAddress>tschmauch@niu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Bertolani</GivenName>
+ <EmailAddress>bertolani@niu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Andrew Johnson</GivenName>
+ <EmailAddress>ajohnson55@niu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of North Texas System -->
+<EntityDescriptor entityID="http://adfs.untsystem.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://adfs.untsystem.edu/adfs/ls/IdpInitiatedSignon.aspx" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UNT System ADFS Service Provder</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This server provides federated access to the UNT System SharePoint web site.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.untsystem.edu/privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="39" width="250" xml:lang="en">https://www.untsystem.edu/sites/default/files/unt_system_wordmark_web240_1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 110930841956959919913392691423413578741, expires on Fri Aug 9 00:00:00 2013 GMT -->
+ <ds:X509Certificate>
+MIIC6DCCAdCgAwIBAgIQU3SAxnMVNbZEOsIvyeyr9TANBgkqhkiG9w0BAQUFADAd
+MRswGQYDVQQDExJHQUJBREZTLmFkLnVudC5lZHUwHhcNMTIwODA5MTUzODQ0WhcN
+MTMwODA5MDAwMDAwWjAdMRswGQYDVQQDExJHQUJBREZTLmFkLnVudC5lZHUwggEi
+MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDnDu2Y3irT3qcUcjgJFowKbDyO
+p2ZM3BkJMA2tem7ebH+Aket3/7tGs2dvDkC0pmhCsxZ9NpPuroqI/yBi6hIlofgo
+8f1TiIe7imn681xvxmzuNj/M0S7ma4qwKlkTNc8rFuLw1pJMyluq4QvNtDahZSWB
+wPjoiLRcexbUO/5zahrsPT0PlZxRd/Hbk2BkmzsGebU77Fxe0h6HlmuOqWCRMV/d
+7x7ddY6VJOke7nxCTIQtmfmEo07HQsuSIhrCWKpBIoOAjQVpDar8HqZ5yYchSyfT
+7M6VMWE2qTIN9snbzuqUyJHr+peRK44YbOZZCABLjJdDZrq8TBKiQo6LIN8DAgMB
+AAGjJDAiMAsGA1UdDwQEAwIEMDATBgNVHSUEDDAKBggrBgEFBQcDATANBgkqhkiG
+9w0BAQUFAAOCAQEAbcjjsNw8VqWCtu2YJPBxqyZUprIwjZMTpzFdHW1q/uFK8dmm
+ffRtJ/4pmh9HEzb8PagVhDnKjjO8UyFhNmDMKtIUw+sf8DFb6eizFefl8Owi+U00
+QZjcTmefcUpVg/G3lAhgnvud85vgYob/Lv9q+rrEFJwCC/cZuxXP+odcuvtK8Lsl
+MaEj8DZtR6W3SDX3L1v+Cz/lug+VJonQqL6XkFa1oEOdCXEjvnMUS7yE5J5udeQ5
+EOI9N8vlsYdoyzzL9PAwrVwB7w+bBbZ4ScSb02pF9x18+wIvxcodJYLW82rQq54T
+0hDPi4kLWA3kdddAgCK0icH40BHI9TwysyOsnQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adfs.untsystem.edu/adfs/ls/" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UNT System ADFS Service Provder</ServiceName>
+ <ServiceDescription xml:lang="en">This server provides federated access to the UNT System SharePoint web site.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of North Texas System</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of North Texas System</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://untsystem.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UNT System Directory Services Team</GivenName>
+ <EmailAddress>shibboleth@untsystem.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Yancey Yeargan</GivenName>
+ <EmailAddress>shibboleth@untsystem.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UNT System Directory Services Team</GivenName>
+ <EmailAddress>shibboleth@untsystem.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UNT Helpdesk</GivenName>
+ <EmailAddress>helpdesk@unt.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sso.unt.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://sso.unt.edu/error/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">untsystem.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">unt.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">unthsc.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">untsystem.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">untdallas.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of North Texas System</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity Provider for UNT (Denton), UNT Health Science Center, UNT Dallas, and UNT System.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://itss.untsystem.edu/divisions/mrs/policies/privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="39" width="250" xml:lang="en">https://www.untsystem.edu/sites/default/files/unt_system_wordmark_web240_1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1398083757524952978587532537604279799482732450323, expires on Tue Oct 1 18:28:32 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.unt.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.unt.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of North Texas System</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of North Texas System</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://untsystem.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UNT System Directory Services Team</GivenName>
+ <EmailAddress>shibboleth@untsystem.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Yancey Yeargan</GivenName>
+ <EmailAddress>shibboleth@untsystem.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UNT Helpdesk</GivenName>
+ <EmailAddress>helpdesk@unt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UNT System Directory Services Team</GivenName>
+ <EmailAddress>shibboleth@untsystem.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- American Chemical Society -->
+<EntityDescriptor entityID="https://pubs.acs.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">American Publications</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Publishes products and services for the practice and advancement of the chemical sciences.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://pubs.acs.org/page/about-us.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.acs.org/content/acs/en/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="130" xml:lang="en">https://pubs.acs.org/pb-assets/images/pubslogo-big.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17067634095525537464, expires on Fri Nov 17 18:55:03 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://pubs.acs.org/action/samlACS" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pubs.acs.org/action/saml2post" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pubs.acs.org/action/saml2artifact" index="3"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">American Chemical Society</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Chemical Abstracts Service (CAS)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.acs.org</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>ACS Pubs SAML support</GivenName>
+ <EmailAddress>acssaml@acs.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>ACS Pubs SAML technical</GivenName>
+ <EmailAddress>acssaml@acs.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>ACS Pubs SAML admin</GivenName>
+ <EmailAddress>acssaml@acs.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ACS Pubs SAML security</GivenName>
+ <EmailAddress>acssaml@acs.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- LIGO Scientific Collaboration -->
+<EntityDescriptor entityID="https://cds-dev-liam.ligo.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cds-dev-liam.ligo.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LIGO CDS Development Machine</mdui:DisplayName>
+ <mdui:Description xml:lang="en">A place to develop essential discovery service solution for LIGO. </mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://cds-dev-liam.ligo.org/SpInfo</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://cds-dev-liam.ligo.org/SpPrivacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login.ligo.org/SAML2/metadata/ui/ligologo80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9613034024766218729, expires on Tue Dec 2 22:33:12 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cds-dev-liam.ligo.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cds-dev-liam.ligo.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cds-dev-liam.ligo.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cds-dev-liam.ligo.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">LIGO CDS Development Machine</ServiceName>
+ <ServiceDescription xml:lang="en">A place to develop essential discovery service solution for LIGO. </ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">LIGO Scientific Collaboration</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">LIGO Scientific Collaboration</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ligo.caltech.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Warren Anderson</GivenName>
+ <EmailAddress>warren.anderson@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Manske</GivenName>
+ <EmailAddress>michael.manske@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LIGO Identity Management Help Desk</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Security Committee</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://dcc-test.ligo.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dcc-test.ligo.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LIGO DCC TEST</mdui:DisplayName>
+ <mdui:Description xml:lang="en">TEST DCC instance of LIGO</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://dcc.ligo.org/cgi-bin/DocDB/ShowDocument?docid=89286</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://dcc.ligo.org/cgi-bin/DocDB/ShowDocument?docid=89243</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login.ligo.org/SAML2/metadata/ui/ligologo80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 105, expires on Sat Jul 9 16:29:14 2022 GMT -->
+ <ds:X509Certificate>
+MIIEZTCCA02gAwIBAgIBaTANBgkqhkiG9w0BAQUFADCBhzETMBEGCgmSJomT8ixk ARkWA29yZzEUMBIGCgmSJomT8ixkARkWBGxpZ28xDTALBgNVBAoTBExJR08xIDAe BgNVBAsTF0NlcnRpZmljYXRlIEF1dGhvcml0aWVzMRUwEwYDVQQLEwxXZWIgU2Vy dmljZXMxEjAQBgNVBAMTCUxJR08gQ0EgMTAeFw0xMjA3MDkxNjI5MTRaFw0yMjA3 MDkxNjI5MTRaMG0xEzARBgoJkiaJk/IsZAEZFgNvcmcxFDASBgoJkiaJk/IsZAEZ FgRsaWdvMQ0wCwYDVQQKEwRMSUdPMRUwEwYDVQQLEwxXZWIgU2VydmljZXMxGjAY BgNVBAMTEWRjYy10ZXN0LmxpZ28ub3JnMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8A MIIBCgKCAQEAtOCNuG8ulLFEaLpKIhYaUxRSYBBgqEgZk2yLSlHLwzagFWhGphP8 KPIoQZ0M0ZdkkyKl7QIzcNv32f0MKqG5zZuweWLrTikFHJGSq0076g8w4LficNum 9XCd0VT40xat+dU4oukLq5LVzcGnZTy60vxBSjWzMCRUXCuVK8B0rj6S6Y+edH60 fADRJiv4+AfStr56+GQFFPY/wE//TvRbjK6BCcxcdl31FZYestw9lYzznN4Qi/AS FeYgi8VERLgfQY+3K2xO6DX4+TztBLkmx9njevyKlqe6gPgWXWaa0syzMMbFiJS5 al1FEmVTSuy/fNmACnxnZrMlTzqOTv5lcwIDAQABo4H0MIHxMAwGA1UdEwEB/wQC MAAwDgYDVR0PAQH/BAQDAgSwMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcD AjAZBgNVHSAEEjAQMA4GDCsGAQQBgfpGAgECATA5BgNVHR8EMjAwMC6gLKAqhiho dHRwOi8vY2EubGlnby5vcmcvNTQxNDA0YzMvNTQxNDA0YzMuY3JsMB8GA1UdIwQY MBaAFFJu3Xuqb4VcCCLTl5+tfyNWHmrRMDsGA1UdEQQ0MDKCFWRjYy10ZXN0Lmxp Z28ub3JnLmNzcoEZamJhcmF5b2dAbGlnby5jYWx0ZWNoLmVkdTANBgkqhkiG9w0B AQUFAAOCAQEAfxWCSaqPhr3tOh8usdqB6HHoYcKugU+mkNziZMKzvq1N19juOfg8 DGr3qf4pvlsb7yvJsNGqsQ2fyUOVIJ9rEIqRKzCvT+HAETqcnu0ve25JtKu7ZHy1 sO7JAYhXCfldpz9ydaCTs/pBo1wEk8QwRwi+TG7rnekdwMT/KfBCowD1QMCFIfsk eSj/oXrQGH2Hp1Kj5mMnRYHyIUXT44QPLTFOJQNZgYUXf3Crs3BZaKgXMAMbAL0z 748hgH0gG3XZE8on8ZYYGQb0utM0EJMlrGknCvGJTaRDSNS44a9cuM7eUWPdDiAd 1dlClQiiQmUom2IEM5ihXcsfvCpos0VE7w==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dcc-test.ligo.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dcc-test.ligo.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dcc-test.ligo/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dcc-test.ligo.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dcc3.ligo.org/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dcc3.ligo.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dcc3.ligo.org/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dcc3.ligo.org/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">LIGO DCC TEST</ServiceName>
+ <ServiceDescription xml:lang="en">TEST DCC instance of LIGO</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">LIGO Scientific Collaboration</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">LIGO Scientific Collaboration</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ligo.caltech.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stuart Anderson</GivenName>
+ <EmailAddress>Stuart.Anderson@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Juan Barayoga</GivenName>
+ <EmailAddress>juan.barayoga@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Randy Trudeau</GivenName>
+ <EmailAddress>Randy.Trudeau@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Melody Araya</GivenName>
+ <EmailAddress>Melody.Araya@ligo.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://federation-proxy.ligo.org/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://federation-proxy.ligo.org/saml/disco" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LIGO Federation Proxy</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This SAML service provider (SP) operates as the SP interface for the LIGO SAML proxy service. The service proxies SAML authentication flows for SPs operated by members of the LIGO Scientific Collaboration.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://federation-proxy.ligo.org/sp-info/sp-info.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://federation-proxy.ligo.org/sp-info/sp-privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://federation-proxy.ligo.org/sp-info/ligologo80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 274191189986956157938206427677676585199252739796, expires on Thu Nov 15 11:42:12 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://federation-proxy.ligo.org/saml/acs/post" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">LIGO Federation Proxy</ServiceName>
+ <ServiceDescription xml:lang="en">This SAML service provider (SP) operates as the SP interface for the LIGO SAML proxy service. The service proxies SAML authentication flows for SPs operated by members of the LIGO Scientific Collaboration.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">LIGO Scientific Collaboration</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">LIGO Scientific Collaboration</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ligo.caltech.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>LIGO Identity Management Help Desk</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>LIGO Identity Management Help Desk</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Security Committee</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LIGO Identity Management Help Desk</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://federation-proxy-test.ligo.org/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://federation-proxy-test.ligo.org/saml/disco" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LIGO Federation Proxy TEST</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This SAML service provider (SP) operates as the SP interface for the LIGO SAML proxy service (TEST). The service proxies SAML authentication flows for SPs operated by members of the LIGO Scientific Collaboration. </mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://federation-proxy-test.ligo.org/sp-info/sp-info.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://federation-proxy-test.ligo.org/sp-info/sp-privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://federation-proxy-test.ligo.org/sp-info/ligologo80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17682941404675463888, expires on Sun Sep 30 13:34:20 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://federation-proxy-test.ligo.org/saml/acs/post" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">LIGO Federation Proxy TEST</ServiceName>
+ <ServiceDescription xml:lang="en">This SAML service provider (SP) operates as the SP interface for the LIGO SAML proxy service (TEST). The service proxies SAML authentication flows for SPs operated by members of the LIGO Scientific Collaboration. </ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">LIGO Scientific Collaboration</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">LIGO Scientific Collaboration</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ligo.caltech.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>LIGO Identity Management Help Desk</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>LIGO Identity Management Help Desk</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Security Committee</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LIGO Identity Management Help Desk</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://gracedb.ligo.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gracedb.ligo.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Gravitational-wave Candidate Event Database</mdui:DisplayName>
+ <mdui:Description xml:lang="en">GraceDB organizes candidate events from gravitational-wave searches and provides an environment to record information about follow-ups. </mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://gracedb.ligo.org/SPInfo</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://gracedb.ligo.org/SPPrivacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login.ligo.org/SAML2/metadata/ui/ligologo80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17948695144737693479, expires on Thu Oct 17 15:28:46 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gracedb.ligo.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gracedb.ligo.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gracedb.ligo.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gracedb.ligo.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gracedb.ligo.org/lvem_view/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gracedb.ligo.org/lvem_view/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gracedb.ligo.org/lvem_view/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gracedb.ligo.org/lvem_view/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Gravitational-wave Candidate Event Database</ServiceName>
+ <ServiceDescription xml:lang="en">GraceDB organizes candidate events from gravitational-wave searches and provides an environment to record information about follow-ups. </ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">LIGO Scientific Collaboration</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">LIGO Scientific Collaboration</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ligo.caltech.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Warren Anderson</GivenName>
+ <EmailAddress>warren.anderson@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LIGO Identity Management Help Desk</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Security Committee</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tanner Prestegard</GivenName>
+ <EmailAddress>tanner.prestegard@ligo.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://gracedb-test.ligo.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gracedb-test.ligo.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Gravitational-wave Candidate Event Database Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">GraceDB organizes candidate events from gravitational-wave searches and provides an environment to record information about follow-ups. This SP supports a test deployment.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://gracedb-test.ligo.org/SPInfo</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://gracedb-test.ligo.org/SPPrivacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login.ligo.org/SAML2/metadata/ui/ligologo80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13865376345585229168, expires on Sat Sep 1 15:45:19 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gracedb-test.ligo.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gracedb-test.ligo.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gracedb-test.ligo.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gracedb-test.ligo.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gracedb-test.ligo.org/lvem_view/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gracedb-test.ligo.org/lvem_view/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gracedb-test.ligo.org/lvem_view/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gracedb-test.ligo.org/lvem_view/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Gravitational-wave Candidate Event Database Test</ServiceName>
+ <ServiceDescription xml:lang="en">GraceDB organizes candidate events from gravitational-wave searches and provides an environment to record information about follow-ups. This SP supports a test deployment.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">LIGO Scientific Collaboration</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">LIGO Scientific Collaboration</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ligo.caltech.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Warren Anderson</GivenName>
+ <EmailAddress>warren.anderson@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tanner Prestegard</GivenName>
+ <EmailAddress>tanner.prestegard@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LIGO Identity Management Help Desk</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Security Committee</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ligo.org/ligovirgo/cbcnote/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.lsc-group.phys.uwm.edu/ligovirgo/cbcnote/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LIGO CBC Wiki</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Wiki for the LIGO/Virgo Compact Binary Coalescence Data Analysis Working Group</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://dcc.ligo.org/cgi-bin/DocDB/ShowDocument?docid=89286</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://dcc.ligo.org/cgi-bin/DocDB/ShowDocument?docid=89243</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login.ligo.org/SAML2/metadata/ui/ligologo80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 44, expires on Tue Jan 5 23:24:52 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.lsc-group.phys.uwm.edu/ligovirgo/cbcnote/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.lsc-group.phys.uwm.edu/ligovirgo/cbcnote/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.lsc-group.phys.uwm.edu/ligovirgo/cbcnote/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.lsc-group.phys.uwm.edu/ligovirgo/cbcnote/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">LIGO CBC Wiki</ServiceName>
+ <ServiceDescription xml:lang="en">Wiki for the LIGO/Virgo Compact Binary Coalescence Data Analysis Working Group</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">LIGO Scientific Collaboration</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">LIGO Scientific Collaboration</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ligo.caltech.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Scott Koranda</GivenName>
+ <EmailAddress>scott.koranda@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Warren Anderson</GivenName>
+ <EmailAddress>warren.anderson@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LIGO Identity Management Help Desk</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Security Committee</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://login.ligo.org/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.ligo.org/support.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ligo.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LIGO Scientific Collaboration</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Laser Interferometer Gravitational-Wave Observatory (LIGO)</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://dcc.ligo.org/cgi-bin/DocDB/ShowDocument?docid=89286</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://dcc.ligo.org/cgi-bin/DocDB/ShowDocument?docid=89243</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login.ligo.org/SAML2/metadata/ui/ligologo80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 156, expires on Sun Nov 12 21:36:27 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 41, expires on Sat Dec 19 19:43:21 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login1.ligo.org:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ligo.org/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.ligo.org/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.ligo.org/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.ligo.org/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ligo.org</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 156, expires on Sun Nov 12 21:36:27 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 41, expires on Sat Dec 19 19:43:21 2020 GMT -->
+ <ds:X509Certificate>
+MIIEaTCCA1GgAwIBAgIBKTANBgkqhkiG9w0BAQUFADCBhzETMBEGCgmSJomT8ixk
+ARkWA29yZzEUMBIGCgmSJomT8ixkARkWBGxpZ28xDTALBgNVBAoTBExJR08xIDAe
+BgNVBAsTF0NlcnRpZmljYXRlIEF1dGhvcml0aWVzMRUwEwYDVQQLEwxXZWIgU2Vy
+dmljZXMxEjAQBgNVBAMTCUxJR08gQ0EgMTAeFw0xMDEyMjAxOTQzMjFaFw0yMDEy
+MTkxOTQzMjFaMHMxEzARBgoJkiaJk/IsZAEZFgNvcmcxFDASBgoJkiaJk/IsZAEZ
+FgRsaWdvMQ0wCwYDVQQKEwRMSUdPMRUwEwYDVQQLEwxXZWIgU2VydmljZXMxIDAe
+BgNVBAMTF2xpZ28tbG9naW4ucGh5cy51d20uZWR1MIIBIjANBgkqhkiG9w0BAQEF
+AAOCAQ8AMIIBCgKCAQEA5aWnGpOBykQtq5ybHIORdGTB+2VZ/2btQDb28/c3ClCI
+XmDte4OSxxon33EVPZcdWWAts03dWvvR3EZCsIqUADwAsG97pyCPqJ5A44/Cp3XN
+Yc2sGnnn8/iKdjaTuiD0huf075a/QcqO6qhE6RQ0Zybw9UmV//iYCb1CqG0NbuTZ
+sBm+SK/9MkkLYaKYXP5dR1qxiHRDcH1WRn/lcTG3Ln6WOrwJn+e7dVRObGMAIDzi
+NJH/2B4PcgEW4Gc/FwghkcZ61Qj15NpuTg0Y9NwsCrpuXaTkuwVKU8w8rS7gOgdl
+OCa+aMeU6sKVvjDxmQC5FboZUwlGIAwAHkT2pVCv9wIDAQABo4HyMIHvMAwGA1Ud
+EwEB/wQCMAAwDgYDVR0PAQH/BAQDAgSwMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggr
+BgEFBQcDAjAZBgNVHSAEEjAQMA4GDCsGAQQBgfpGAgECATA5BgNVHR8EMjAwMC6g
+LKAqhihodHRwOi8vY2EubGlnby5vcmcvNTQxNDA0YzMvNTQxNDA0YzMuY3JsMB8G
+A1UdIwQYMBaAFFJu3Xuqb4VcCCLTl5+tfyNWHmrRMDkGA1UdEQQyMDCCLmxpZ28t
+bG9naW4ucGh5cy51d20uZWR1OnNjb3R0LmtvcmFuZGFAbGlnby5vcmcwDQYJKoZI
+hvcNAQEFBQADggEBADd3Vkq5UNNf0q0Tm4tM19o8Zo5vSA9qA09qOHH270MKakVh
+NXeikHm4FMJKE731D8vwqUDFX0PqN9ndkWLqI9+vtPstqbl7xEbhXfFAjvAj6ieP
+AlKinu+VwG8lqcSRzrgDl40DGZbxYwcqaLqkY3DvJQphcL9+cMVNwixR+2ceACVU
+9nJhBjNdtVo5HiayNy1qIHoVnyxfRJcET5Z9fl9WoTGBkQgd2+XNBxe3ECLpe4gw
+GKBexp0LpbBvqRLMito7jIbPE5NzCjw69NpcIE+COkQc+ifV8FbD0OQOin06/qDi
+0+fCAYmI2uE8jfuGOhKWTsSUWe35LFWIOuaIPZo=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login1.ligo.org:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">LIGO Scientific Collaboration</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">LIGO Scientific Collaboration</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ligo.caltech.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Scott Koranda</GivenName>
+ <EmailAddress>scott.koranda@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Warren Anderson</GivenName>
+ <EmailAddress>warren.anderson@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LIGO Identity Management Help Desk</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Security Committee</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://saml-proxy.ligo.org/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://saml-proxy.ligo.org/Saml2/disco" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LIGO Scientific Collaboration Proxy</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The LIGO Scientific Collaboration Proxy service provider\
+ is a SAML proxy enabling federation between eduGAIN identity servers and service providers that support collaboration services for the LIGO Scientifc Collaboration.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://saml-proxy.ligo.org/sp_info.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://dcc.ligo.org/cgi-bin/DocDB/ShowDocument?docid=89243</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login.ligo.org/SAML2/metadata/ui/ligologo80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16908991981101432444, expires on Sun Jan 21 08:38:32 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saml-proxy.ligo.org/Saml2/acs/post" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saml-proxy.ligo.org/Saml2/acs/artifact" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">LIGO Scientific Collaboration Proxy</ServiceName>
+ <ServiceDescription xml:lang="en">The LIGO Scientific Collaboration Proxy service provider\
+ is a SAML proxy enabling federation between eduGAIN identity servers and service providers that support collaboration services for the LIGO Scientifc Collaboration.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">LIGO Scientific Collaboration</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">LIGO Scientific Collaboration</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ligo.caltech.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>LIGO Identity Management Help Desk</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>LIGO Identity Management Help Desk</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Security Committee</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LIGO Identity Management Help Desk</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wiki-dev1.ligo.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wiki-dev1.ligo.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LIGO Dev Wiki</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Dev LIGO Scientific Collaboration wiki</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://wiki-dev1.ligo.org/Main/SPInformationURL</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://dcc.ligo.org/cgi-bin/DocDB/ShowDocument?docid=89243</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login.ligo.org/SAML2/metadata/ui/ligologo80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16327449953962367225, expires on Sun Apr 11 18:03:27 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiki-dev1.ligo.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wiki-dev1.ligo.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wiki-dev1.ligo.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wiki-dev1.ligo.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">LIGO Dev Wiki</ServiceName>
+ <ServiceDescription xml:lang="en">Dev LIGO Scientific Collaboration wiki</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">LIGO Scientific Collaboration</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">LIGO Scientific Collaboration</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ligo.caltech.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Contact</GivenName>
+ <EmailAddress>uwm-help@cgca.uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Adminstrative</GivenName>
+ <EmailAddress>uwm-help@cgca.uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Security</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO IAM Support</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wiki.ligo.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wiki.ligo.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LIGO Wiki</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Primary LIGO Scientific Collaboration wiki</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://wiki.ligo.org/Main/SPInformationURL</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://dcc.ligo.org/cgi-bin/DocDB/ShowDocument?docid=89243</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login.ligo.org/SAML2/metadata/ui/ligologo80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1, expires on Mon Feb 3 20:02:10 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiki.ligo.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wiki.ligo.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wiki.ligo.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wiki.ligo.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">LIGO Wiki</ServiceName>
+ <ServiceDescription xml:lang="en">Primary LIGO Scientific Collaboration wiki</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">LIGO Scientific Collaboration</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">LIGO Scientific Collaboration</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ligo.caltech.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Warren Anderson</GivenName>
+ <EmailAddress>warren.anderson@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Scott Koranda</GivenName>
+ <EmailAddress>scott.koranda@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LIGO Identity Management Help Desk</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Security Committee</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wiki-test.ligo.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wiki-test.ligo.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LIGO Test Wiki</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test LIGO Scientific Collaboration wiki</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://wiki-test.ligo.org/Main/SPInformationURL</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://dcc.ligo.org/cgi-bin/DocDB/ShowDocument?docid=89243</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login.ligo.org/SAML2/metadata/ui/ligologo80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16224777152172674823, expires on Sun Mar 7 21:02:39 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiki-test.ligo.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wiki-test.ligo.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wiki-test.ligo.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wiki-test.ligo.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">LIGO Test Wiki</ServiceName>
+ <ServiceDescription xml:lang="en">Test LIGO Scientific Collaboration wiki</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">LIGO Scientific Collaboration</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">LIGO Scientific Collaboration</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ligo.caltech.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Contact</GivenName>
+ <EmailAddress>uwm-help@cgca.uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Adminstrative</GivenName>
+ <EmailAddress>uwm-help@cgca.uwm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LIGO Security</GivenName>
+ <EmailAddress>lsc-seccomm@ligo.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LIGO IAM Support</GivenName>
+ <EmailAddress>rt-auth@ligo.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Oak Ridge National Laboratory -->
+<EntityDescriptor entityID="https://sp.ornl.gov">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Oak Ridge National Laboratory SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Oak Ridge National Laboratory SAML 2.0 Service Provider</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ornl.gov/ornl/contact-us/Security--Privacy-Notice</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="142" xml:lang="en">https://info.ornl.gov/sites/ornl/InCommon/ORNL-Stacked_color_small.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1501506953990, expires on Sat Jan 21 14:15:53 2023 GMT -->
+ <ds:X509Certificate>
+MIIFkjCCA3qgAwIBAgIGAV2YyeMGMA0GCSqGSIb3DQEBCwUAMIGJMQswCQYDVQQGEwJVUzESMBAG
+A1UECBMJVGVubmVzc2VlMRIwEAYDVQQHEwlPYWsgUmlkZ2UxJjAkBgNVBAoTHU9hayBSaWRnZSBO
+YXRpb25hbCBMYWJvcmF0b3J5MQ0wCwYDVQQLEwRJVFNEMRswGQYDVQQDExJkZXZleHRpZHAub3Ju
+bC5nb3YwHhcNMTcwNzMxMTMxNTUzWhcNMjMwMTIxMTQxNTUzWjCBiTELMAkGA1UEBhMCVVMxEjAQ
+BgNVBAgTCVRlbm5lc3NlZTESMBAGA1UEBxMJT2FrIFJpZGdlMSYwJAYDVQQKEx1PYWsgUmlkZ2Ug
+TmF0aW9uYWwgTGFib3JhdG9yeTENMAsGA1UECxMESVRTRDEbMBkGA1UEAxMSZGV2ZXh0aWRwLm9y
+bmwuZ292MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAidQbUfchIbhst24J5dm4N40f
+JeDDF04uyIgQ9EN0epGEw9epyVVJXEMCNrumn4QhCzc1b0g/rmNzD485F/1XSuKnNg4DqELCVrIl
+W3YDw6CNGQtwA7cjdC/xc6PSBiMPC4tLnFCak7umodH3U4phsbGgJcZ7hzycue90GdIGFQwdyHOK
+S0Tz+fFc/zpCeP3xtT1BSjUAzI7iJaNw4bjIC+kYvIq3/zXPYW1NzrrUw3ce60NQeL12TypL8eHg
+cgEMrKhGQGibUqTQRSZozzwjuv9xvG49nYu/rDVvc4w3oe/gmCWyV/xZRrMdoKuyve0lGjPRp/IQ
+3wE8f0ULDqNmXvksx8xPmObHQO7j/SKE08WsAkR7zpvMcoQtJlLcomhTJcnGUbQf7xWIUspVIun5
+3p2SJDlFhoJyqjPmXexKoXH0ALDKDEm5aEBpm+919xLJK3Evu2I/Wi7VUFpLBKiRpYgE5cSmdyw8
+kvpBWXrpInu9fuJDBxRox4E5Ep5yzBvEkVLR/mUwWiC+1XgvLKqK8N0LHps6yRTn5idasne6TE7b
+l+DQHd22xGaESVqcPsRZ95iOHWRUlYjvYjjIxmKzEB+OuTHKc2pD/bBhXPLeGqBjW/DnF4YmHXs8
+nvAxmjXqS+ohMaKSmqGbhIASlg8tz2LuUUTPcimspb50DiPct/ECAwEAATANBgkqhkiG9w0BAQsF
+AAOCAgEAfzjIUkqFGNPumQ82PVLUvE8xUFyKJuij63H8SNv/4LRvzc/3NWsH4OJ6Pczc1sFTHMIJ
+AZ1Qv3OZ23fTsO8e6z9lr8dmJCBY3OdQEuULO3AsqWAbUFeWGrksHY3LVV3zaReEHJ/Zka79fN3n
+JvMutBWVJjKklTuIZQm2DNx2C/gc3y7ASzRRCddx6JP8Z32BEifqxCRCGA2kyjVuU9jX8Fz5seWj
+Kh7i516lXgz3TvmHQzZmuKlJyC5zoQ4oqGEgblelz3mTrTXxpDmbKvvLN8q+tKNEqVu/pdYEL0za
+vXAHQ584PRgObXzwOOnRkVvQmKwSrn+lXC8ES2lhLNrP34L1s5aoP48q+pyaS/g4k8mXbnb+MnWF
++zCcTlByb4cH8yc5gL9gePJ6LOE5UiDquw3IgHUn7ETuO6XNN/01c/BzgZyFxe40wuhs8TGVM9Bv
+7SUnneq2htxDsCT6P/E5PBW+gaQ8mJEs1ZD5iiOq3W+U9XMUgvXHC0SxkbLrgPRf7qtdRtqOVsR4
+ZepEZFBHfbtsviRyiYGsHMVs0JEvvgcHYCuP3KMGt6KU85uYTzFLM3CRt6lK/vjDJcfT6JseG0Wt
+70QJUyIT7sNR79OiQocqZWtsf+Q7zBiYquNXQAltVNCxg1zeV36fqVMoRbecxWE0HRyEJEre8TiJ
+KZAE/eY=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://devextidp.ornl.gov/sp/ACS.saml2" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://devextidp.ornl.gov:9031/sp/ACS.saml2" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Oak Ridge National Laboratory SP</ServiceName>
+ <ServiceDescription xml:lang="en">Oak Ridge National Laboratory SAML 2.0 Service Provider</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Oak Ridge National Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Oak Ridge National Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ornl.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>David Cashion</GivenName>
+ <EmailAddress>ping-admin@ornl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>ORNL Helpdesk</GivenName>
+ <EmailAddress>solution@ornl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ORNL Cybersecurity</GivenName>
+ <EmailAddress>security@ornl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jim Rhyne</GivenName>
+ <EmailAddress>ping-admin@ornl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Steve Couston</GivenName>
+ <EmailAddress>coustonsc@ornl.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sso.ornl.gov/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Oak Ridge National Laboratory Service Provider</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ORNL SAML 2.0 Service Provider </mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ornl.gov/ornl/contact-us/Security--Privacy-Notice</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="142" xml:lang="en">https://info.ornl.gov/sites/ornl/InCommon/ORNL-Stacked_color_small.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1502196055445, expires on Sun Jan 29 13:40:55 2023 GMT -->
+ <ds:X509Certificate>
+MIIFjDCCA3SgAwIBAgIGAV3B3L2VMA0GCSqGSIb3DQEBCwUAMIGGMQswCQYDVQQGEwJVUzESMBAG
+A1UECBMJVGVubmVzc2VlMRIwEAYDVQQHEwlPYWsgUmlkZ2UxJjAkBgNVBAoTHU9hayBSaWRnZSBO
+YXRpb25hbCBMYWJvcmF0b3J5MQ0wCwYDVQQLEwRJVFNEMRgwFgYDVQQDEw9leHRpZHAub3JubC5n
+b3YwHhcNMTcwODA4MTI0MDU1WhcNMjMwMTI5MTM0MDU1WjCBhjELMAkGA1UEBhMCVVMxEjAQBgNV
+BAgTCVRlbm5lc3NlZTESMBAGA1UEBxMJT2FrIFJpZGdlMSYwJAYDVQQKEx1PYWsgUmlkZ2UgTmF0
+aW9uYWwgTGFib3JhdG9yeTENMAsGA1UECxMESVRTRDEYMBYGA1UEAxMPZXh0aWRwLm9ybmwuZ292
+MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAgAmMlzjSKYEb+AuB0xSQajgDQ/VTdjlR
+YQw4zpuhee+103SMf0Jmd7SvNNTBbU0369ATv651FFJBqzll05MiQ5TB6Zmn2IzXE/LrsUNglt5D
+4tjGlCxuWN2mgsWtNgxbEyrpLhc3Wpm/eO6+S3FeMHqR2xYherMVrHYVnwnoL0MJCGJdB6g51hCl
+6S6seKFaHp2Pg13ZlbiuQikPQpE6TF3iqMKSq0i1wlvkDSf1R7xMrytHRsq/3Alfqfy9B36sh+NG
+MxTw3KeASAUF1lFjNmq3WeY8OhTu0Va50V9Fw4faHB05wxlXt2f4Y0QTsdDRU6SbK3NCf6wTvrC1
+QGhmDpokdQ42blmxb/P/uDrd7RnHzjoq3+O+PDlcI9GGVRolC8EtVftl9BQ+yRP9sqf1OrelnN07
+UnHux/C8zME3ZDvV0Li0YJU8zcxZ7vLFe3qQ2yWWoThbVdfVqQdrSFOtUiPtvIfy6+jfh9UGxsO7
+7Crwz8aav/JfVKl6z7Fu2eEgKuKmJrQ5vq4NJFrDmwttdWW5i9eWiA/5OgSYcXm91QhFC29SF0MD
+KgpOs6nvV+pmT2YZ6ZApTs/kkfVg18U48VOSemnlQceKrG+e845OgAid+Dt+Sj61aYUEMN/k3s4s
+WZCaopnke5er1dSSosHWo7b4hJGzwlJQxt7WHIcv7QUCAwEAATANBgkqhkiG9w0BAQsFAAOCAgEA
+dNtNJHroPKJbeXKPVKk6dgUxWGB3FPU2m+dfylix9NCi228Gn31fbmEqGDS1BwxC2I+Cx7jqHMwL
+oAn0o7CX+shYA0jMoaOORB9oEtOovicx2s9UXA5xDVVNDiY4DmdaYdf1+OlA+xexLwK2Dd9zqkNr
+QFK1SRdJb3VuWepiTrH47pXS/mD27sCr1gLjgJQ6nbCUsqDMvO2O2ctbBrbzW46ibJwW84sYKBrD
+B4Iq/unOHj97di9CtceR1XtWGtLVElKOD5XwEnUPIW+2F8TzoUpur62sj8w1TE2LTfKN4dXoxYVs
+LIdvh7K3Qp9Xa1ZHDGHfpkIBkdUotFCzKITodg1nOBxzF2HF/SW/FY88FrAKBnCciEGZxQSlLDG+
+adU58d77e5lhxmkcSN77Bo3TMYXfCHqjCO2cSa5BCV5+Khsojpz01GTDc8yuuAt1ZsPJFywNyYvF
+o/izLR3Q5qZpEiPU8zmwe0uZdn0Sfn8CMu7GwOAW1K6rQ9Y8JEy9dwqDSd+SnJQg1FW/6/cF3DMa
+5o8JzfbYbqIXwShW1NG3hX07QvZzXyBQrtB8Jv8EvpPgha9NwPtnzW60vHCpQlh2J1bKOMhYfKit
+Wt4s6GTJ5smI4nyvzvh9AnVxwrpLydpCOS5x/dC7EXu6GQWh2d9B9u4+EA19B77JPnaRcAEIjUE=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://extidp.ornl.gov:9031/sp/ACS.saml2" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Oak Ridge National Laboratory Service Provider</ServiceName>
+ <ServiceDescription xml:lang="en">ORNL SAML 2.0 Service Provider </ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Oak Ridge National Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Oak Ridge National Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ornl.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>David Cashion</GivenName>
+ <EmailAddress>ping-admin@ornl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>ORNL Solution Center</GivenName>
+ <EmailAddress>solution@ornl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ORNL Cybersecurity</GivenName>
+ <EmailAddress>security@ornl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Steve Couston</GivenName>
+ <EmailAddress>coustonsc@ornl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jim Rhyne</GivenName>
+ <EmailAddress>ping-admin@ornl.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Creighton University -->
+<EntityDescriptor entityID="https://auth.creighton.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">creighton.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Creighton University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.creighton.edu/fileadmin/user/GeneralCounsel/docs/Web_Privacy_Policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="160" xml:lang="en">https://auth.creighton.edu/idp/images/cu_logo_sm.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1040077987207815561422330915031268929459787204760, expires on Tue Aug 6 16:01:50 2030 GMT -->
+ <ds:X509Certificate>
+MIIDNDCCAhygAwIBAgIVALYutb/xiaSJQYhFEZztGzttPQiYMA0GCSqGSIb3DQEB
+BQUAMB0xGzAZBgNVBAMTEmF1dGguY3JlaWdodG9uLmVkdTAeFw0xMDA4MDYxNjAx
+NTBaFw0zMDA4MDYxNjAxNTBaMB0xGzAZBgNVBAMTEmF1dGguY3JlaWdodG9uLmVk
+dTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANhJqHK+SEJjfVTz2lmV
+g03xgDRh4jL0JLwACofJtdz0W9mr5fhRw8a2zXansvQoFP12E+UO2GahhPZCElcG
+L6zRZUfSlb0KcnP6JtBp45AtTeDiOZ0DJIsNwhYKL8JUsj+3UTO5Aol/CQi4CMAh
+vz5+LyurEWOQXOSRwZZ26Ou/HoLTevBS+wOdJ/ygRczZzy1GbXarHCfJRaomkqqC
+ZazBGwRaJ25phGqQczdGwS7KJNSwqrPbJ9F+3hlSMvf+rVk3ebgmiFO0SqePMDJX
+FYMsHc1vXFJ02/NP0G3zErPuy560oZL3Nt0Nd98uLT3tS1tlGWTy0UXRDqmBq9TV
+GxMCAwEAAaNrMGkwSAYDVR0RBEEwP4ISYXV0aC5jcmVpZ2h0b24uZWR1hilodHRw
+czovL2F1dGguY3JlaWdodG9uLmVkdS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU
+W4FcvnGbLi/+v4v7EJbU6cQOhc4wDQYJKoZIhvcNAQEFBQADggEBAKu6nJ9/lEm6
+9/aGgFt4UVXLMf+ROxl5jX613BAZNDsCNdv5J7K5dtHZIifxtTuiw1cnWpPCM9ZP
+qaJmn+am9f60N6cDQOWIpWne7ItRlzcslfSG4u7vLWeIMmxasYJVSXceES8+HjXz
+zV0uTMTSncUUYeCA22RjoJarD+wMM5hkJ4pgXC85bLiDrCWNzSsWtDCmmBk+J+Zl
+YkxSHxmSoP7i5MikR+xIK5cL0GoN/5JeEvrUEpP/NPz8xWMjseoN5xqqQqyPwY0M
+B2t+c1HUlXTChLy6ntg0E/kSQxOSXpG9ymyxSfl6YDlPLY4uH1BxhvfmjIMo4VvA
+2x9R41E75LU=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://auth.creighton.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.creighton.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.creighton.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Creighton University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Creighton University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.creighton.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bryan McLaughlin</GivenName>
+ <EmailAddress>infosec@creighton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Information Security Team</GivenName>
+ <EmailAddress>infosec@creighton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Creighton Service Desk</GivenName>
+ <EmailAddress>servicedesk@creighton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Team</GivenName>
+ <EmailAddress>infosec@creighton.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Western Michigan University -->
+<EntityDescriptor entityID="https://idp.wmich.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.wmich.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wmich.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Western Michigan University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Western Michigan University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.wmich.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://wmich.edu/policies/computing-resources-acceptable-use</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="172" xml:lang="en">https://idp.wmich.edu/idp/images/wmu-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 613739579758959885275316687490930474035873443182, expires on Sun Aug 1 19:24:51 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.wmich.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.wmich.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.wmich.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.wmich.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.wmich.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wmich.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 613739579758959885275316687490930474035873443182, expires on Sun Aug 1 19:24:51 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.wmich.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Western Michigan University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Western Michigan University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wmich.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>WMU OIT Shibboleth Authentication Support</GivenName>
+ <EmailAddress>oit-shibadmin@wmich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>WMU OIT Shibboleth Authentication Support</GivenName>
+ <EmailAddress>oit-shibadmin@wmich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>WMU Help Desk</GivenName>
+ <EmailAddress>helpdesk@wmich.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>WMU OIT Security</GivenName>
+ <EmailAddress>oit-security@wmich.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Syracuse University -->
+<EntityDescriptor entityID="https://shibidp.syr.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">syr.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Syracuse University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.syracuse.edu/about/site/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="300" width="220" xml:lang="en">https://shibidp.syr.edu/idp/images/block-s.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 487207916590561777032414177514713397328777860430, expires on Sat Mar 26 12:03:03 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibidp.syr.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibidp.syr.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibidp.syr.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibidp.syr.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibidp.syr.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibidp.syr.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">syr.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 487207916590561777032414177514713397328777860430, expires on Sat Mar 26 12:03:03 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibidp.syr.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibidp.syr.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Syracuse University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Syracuse University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.syr.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cynthia Hoalcraft</GivenName>
+ <EmailAddress>clhoalcr@syr.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kelly Fallon</GivenName>
+ <EmailAddress>kjfallon@syr.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Christopher Croad</GivenName>
+ <EmailAddress>ccroad@syr.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dawn Havill</GivenName>
+ <EmailAddress>dmhavill@syr.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Yavapai College -->
+<EntityDescriptor entityID="https://sso.yc.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">yc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Yavapai College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.yc.edu/v5content/policies/online-privacy-policy.htm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="74" width="250" xml:lang="en">https://idp.yc.edu/idp/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12238479002908999018, expires on Mon Aug 9 21:44:31 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.yc.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.yc.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.yc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.yc.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Yavapai College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Yavapai College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.yc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Patrick Burns</GivenName>
+ <EmailAddress>patrick.burns@yc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Matt Borja</GivenName>
+ <EmailAddress>matt.borja@yc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sean Hagan</GivenName>
+ <EmailAddress>sean.hagan@yc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Nebraska at Omaha -->
+<EntityDescriptor entityID="https://auth.unomaha.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unomaha.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Nebraska at Omaha</mdui:DisplayName>
+ <mdui:Description xml:lang="en">IDP for the University of Nebraska Omaha.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.unomaha.edu/about-uno/index.php</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.unomaha.edu/campus-policies/privacy-policy.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="101" xml:lang="en">https://auth.unomaha.edu/idp/images/uno/lockup-header-m.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 794515408640421902451313347324651579835940691661, expires on Sun Jan 30 20:34:16 2033 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.unomaha.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.unomaha.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.unomaha.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://auth.unomaha.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://auth.unomaha.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Nebraska at Omaha</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Nebraska at Omaha</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unomaha.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brett Bieber</GivenName>
+ <EmailAddress>bbieber2@unl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity &amp; Access Management Team</GivenName>
+ <EmailAddress>its-sec-iam@nebraska.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Identity &amp; Access Management Team</GivenName>
+ <EmailAddress>its-sec-iam@nebraska.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS Security</GivenName>
+ <EmailAddress>ITS-Sec@nebraska.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Woods Hole Oceanographic Institution -->
+<EntityDescriptor entityID="https://shibidp.whoi.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">whoi.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Woods Hole Oceanographic Institution</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.whoi.edu/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="204" width="221" xml:lang="en">https://www.whoi.edu/images/whoi_logo_med_small_white.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1000981047309414949228833340623932848028907881178, expires on Mon May 2 14:17:36 2033 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.whoi.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.whoi.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.whoi.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.whoi.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.whoi.edu:8443/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.whoi.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.whoi.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.whoi.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">whoi.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1000981047309414949228833340623932848028907881178, expires on Mon May 2 14:17:36 2033 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.whoi.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Woods Hole Oceanographic Institution</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Woods Hole Oceanographic Institution</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.whoi.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark Jones</GivenName>
+ <EmailAddress>mark@whoi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>David Gaylord</GivenName>
+ <EmailAddress>dgaylord@whoi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>David Gaylord</GivenName>
+ <EmailAddress>dgaylord@whoi.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.external.whoi.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">WHOI External - Test</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.whoi.edu/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="204" width="221" xml:lang="en">https://www.whoi.edu/images/whoi_logo_med_small_white.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12995675714732520834, expires on Sun Apr 23 19:29:56 2028 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://external.whoi.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://external.whoi.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://external.whoi.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://external.whoi.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://external.whoi.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://external.whoi.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Woods Hole Oceanographic Institution</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Woods Hole Oceanographic Institution</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.whoi.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>David Gaylord</GivenName>
+ <EmailAddress>dgaylord@whoi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>David Gaylord</GivenName>
+ <EmailAddress>dgaylord@whoi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark Jones</GivenName>
+ <EmailAddress>mdjones@whoi.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.ooi-website-test.whoi.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">WHOI OOI -Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test instance of the Ocean Observatories Initiative website.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://ooi-website-test.whoi.edu/about/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.whoi.edu/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="204" width="221" xml:lang="en">https://www.whoi.edu/images/whoi_logo_med_small_white.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14407454011091899877, expires on Fri Apr 7 17:56:30 2028 GMT -->
+ <ds:X509Certificate>
+MIIDDDCCAfSgAwIBAgIJAMfxjxbQ6NXlMA0GCSqGSIb3DQEBBQUAMCIxIDAeBgNV
+BAMTF2plc3NpZXByb3Rvd2ViLndob2kuZWR1MB4XDTE4MDQxMDE3NTYzMFoXDTI4
+MDQwNzE3NTYzMFowIjEgMB4GA1UEAxMXamVzc2llcHJvdG93ZWIud2hvaS5lZHUw
+ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDQHrsyJBuIUTXTME8MKdpd
+83gwt9xUz3gGkvbXUXuIu3gpzHZEiDvuApTj5BTjcaqKEFspfYEobGVZrMLPNxwD
+xopgbb8Zf6DnXVHXwfGDNFYAfVIPLp1sYe1e9G2XGjdgInoUPrJoOpeCj+ij4xn8
+2z+XogcjaweZkSmsMcR1kS7x33r668MmcbL/2zHiXZ48hxCVaYeX5hrqhPWfAVGi
+pQ6IOfS6LFja5H3kh41PVGEy3Z/WYyKxJgEtMjuG+g5xLRboKVe3ycnj/8AhIQmR
+cTDLT90yQtuJmFbyzmiJuPqbB3ikGmUyldC9AgkgcrIwly2UlZ6GfdL9X7jXA74R
+AgMBAAGjRTBDMCIGA1UdEQQbMBmCF2plc3NpZXByb3Rvd2ViLndob2kuZWR1MB0G
+A1UdDgQWBBS9XgSIzRz1HKLkTp5kyq06RfKLrjANBgkqhkiG9w0BAQUFAAOCAQEA
+gpB2FEvMNxZzxKeGOw1zDqLArj1sutJP5xM4CxJIGfqBSuHLRhyECuFqCmEiMQ8u
+ecV8TnZV/n2/iwh+QrDfvPW/cInp//7dj7XUCSuIXlzZCZtxmzeKAWA2b7aL3TBv
+N2VTPkXISjKQ3LeOWAuXPfmc4SmzOkc5X+rz1p27QoSkOKaBs0n+YH5UljJU1cCV
+xF2x6Y+I3oFohnqMoKaoIsQpWFfywugK/eRqtSoD9yyv5Jko5CnJ/7dsIQp6wdNO
+jCjvB3IKIXri3LZIPalgrWLkPp3BBoi2UrfmspqYwINqvfYZyelBkA+fE0RQNeCB
++mJFb+ZSHL9IYH5e/bf5VQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ooi-website-test.whoi.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ooi-website-test.whoi.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ooi-website-test.whoi.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ooi-website-test.whoi.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ooi-website-test.whoi.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ooi-website-test.whoi.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">WHOI OOI -Test</ServiceName>
+ <ServiceDescription xml:lang="en">Test instance of the Ocean Observatories Initiative website.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Woods Hole Oceanographic Institution</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Woods Hole Oceanographic Institution</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.whoi.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>David Gaylord</GivenName>
+ <EmailAddress>dgaylord@whoi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>David Gaylord</GivenName>
+ <EmailAddress>dgaylord@whoi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark Jones</GivenName>
+ <EmailAddress>mdjones@whoi.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Furman University -->
+<EntityDescriptor entityID="https://sonny.furman.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://sonny.furman.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">furman.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Furman University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://furman.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www2.furman.edu/academics/enrollment-services/policies/Pages/Student-Information-Release.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="391" width="1000" xml:lang="en">https://www.furman.edu/wp-content/uploads/2018/10/Furman%20University%20Logo/RGB-WEB/Furman-University-Bell-Tower-Wordmark-RGB.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 806569261155879007717026928752378980491563825721, expires on Sun Mar 21 16:24:45 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sonny.furman.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sonny.furman.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sonny.furman.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sonny.furman.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sonny.furman.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sonny.furman.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">furman.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 806569261155879007717026928752378980491563825721, expires on Sun Mar 21 16:24:45 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sonny.furman.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sonny.furman.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Furman University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Furman University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www2.furman.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Randy Dill</GivenName>
+ <EmailAddress>randy.dill@furman.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Clayton Burton</GivenName>
+ <EmailAddress>clayton.burton@furman.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Service Center</GivenName>
+ <EmailAddress>service.center@furman.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Dexter Caldwell</GivenName>
+ <EmailAddress>dexter.caldwell@furman.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- East Stroudsburg University of Pennsylvania -->
+<EntityDescriptor entityID="https://incommon.esu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">esu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">East Stroudsburg University of Pennsylvania</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ESU Shib IdPv3 for Incommon Federation purposes.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://quantum.esu.edu/IncommonFederation/ESU_Incommon_Federation_POP_061516.pdf</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.esu.edu/about/notices.cfm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="185" width="140" xml:lang="en">https://www.esu.edu/images/esu_logo99.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 139650181295319936380495737067064685712791523814, expires on Tue Jun 17 13:54:07 2036 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://incommon.esu.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://incommon.esu.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://incommon.esu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://incommon.esu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://incommon.esu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">East Stroudsburg University of Pennsylvania</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">East Stroudsburg University of Pennsylvania</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www4.esu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Alan Angulo</GivenName>
+ <EmailAddress>alan@esu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gus Nylander</GivenName>
+ <EmailAddress>gnylander@esu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert D'Aversa</GivenName>
+ <EmailAddress>rfdb@esu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Allie Angulo</GivenName>
+ <EmailAddress>alan@esu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Bloomsburg University of Pennsylvania -->
+<EntityDescriptor entityID="https://shibidp.bloomu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://sso.bloomu.edu/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bloomu.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">huskies.bloomu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Bloomsburg University of Pennsylvania</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity provider for all faculty, staff, and students of Bloomsburg University, one of the fourteen universities in the Pennsylvania State System of Higher Education (PASSHE).</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.bloomu.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.bloomu.edu/policies_procedures</mdui:PrivacyStatementURL>
+ <mdui:Logo height="137" width="259" xml:lang="en">https://sso.bloomu.edu/idp/images/bu.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 613292274826135633217280519542009958758962170955, expires on Mon Feb 7 21:33:15 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.bloomu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.bloomu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.bloomu.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.bloomu.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.bloomu.edu:8443/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.bloomu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.bloomu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sso.bloomu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.bloomu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.bloomu.edu:444/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bloomu.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">huskies.bloomu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 613292274826135633217280519542009958758962170955, expires on Mon Feb 7 21:33:15 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.bloomu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.bloomu.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Bloomsburg University of Pennsylvania</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Bloomsburg University of Pennsylvania</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.bloomu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Vincent Kozlek</GivenName>
+ <EmailAddress>idp-admin@bloomu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Vincent Kozlek</GivenName>
+ <EmailAddress>idp-admin@bloomu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Vincent Kozlek</GivenName>
+ <EmailAddress>idp-admin@bloomu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Vincent Kozlek</GivenName>
+ <EmailAddress>idp-admin@bloomu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Owens Community College -->
+<EntityDescriptor entityID="https://auth.owens.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">owens.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Owens Community College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.owens.edu/records/ferpa/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="120" width="83" xml:lang="en">https://auth.owens.edu/idp/images/logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 594290336049198095911077210356636863743144212496, expires on Mon May 3 04:21:47 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.owens.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.owens.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Owens Community College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Owens Community College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.owens.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>System Admins</GivenName>
+ <EmailAddress>sysadmins@owens.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>System Admins</GivenName>
+ <EmailAddress>sysadmins@owens.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>System Admins</GivenName>
+ <EmailAddress>sysadmins@owens.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- DePaul University -->
+<EntityDescriptor entityID="https://shib.is.depaul.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">depaul.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DePaul University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DePaul University Shibboleth Identity Provider</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://go.depaul.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="131" width="200" xml:lang="en">https://shib.is.depaul.edu/dpulogo-200-131.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 668764702297371120985375486419435786475757357593, expires on Mon Aug 18 19:38:34 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.is.depaul.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.is.depaul.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.is.depaul.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DePaul University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DePaul University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.depaul.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>DePaul University Information Services IAM Team</GivenName>
+ <EmailAddress>iamteam@depaul.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>DePaul University Information Services IAM Team</GivenName>
+ <EmailAddress>iamteam@depaul.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>DePaul University Information Services IAM Team</GivenName>
+ <EmailAddress>iamteam@depaul.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>DePaul University Information Services IAM Team</GivenName>
+ <EmailAddress>iamteam@depaul.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Gonzaga University -->
+<EntityDescriptor entityID="https://idp.gonzaga.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">gonzaga.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Gonzaga University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Gonzaga University Main Identity Provider</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.gonzaga.edu/about/offices-services/policy-planning-administration/gonzaga-university-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="288" width="434" xml:lang="en">https://www.gonzaga.edu/ui/images/logo-footer-gonzaga-university.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9610893059468207650, expires on Tue May 30 00:07:25 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gonzaga-bridge.proxy.cirrusidentity.com/saml2/idp/SSOService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gonzaga-bridge.proxy.cirrusidentity.com/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Gonzaga University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Gonzaga University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.gonzaga.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tom Buck</GivenName>
+ <EmailAddress>buck@gonzaga.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tom Buck</GivenName>
+ <EmailAddress>buck@gonzaga.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Tom Buck</GivenName>
+ <EmailAddress>buck@gonzaga.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Maryland University College -->
+<EntityDescriptor entityID="https://sso.umuc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umuc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Maryland University College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.umuc.edu/terms-and-conditions/privacy-policy.cfm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="85" width="170" xml:lang="en">https://www.umuc.edu/ui/images/signature/umuc-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 600422215881628536482238784809460752175729192907, expires on Sat Nov 15 20:03:00 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.umuc.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.umuc.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sso.umuc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.umuc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.umuc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umuc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 600422215881628536482238784809460752175729192907, expires on Sat Nov 15 20:03:00 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.umuc.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Maryland University College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Maryland University College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umuc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Server Operations Group</GivenName>
+ <EmailAddress>SOP@umuc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Rocky Giannini</GivenName>
+ <EmailAddress>Rocky.Giannini@umuc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Rustom Kaovasia</GivenName>
+ <EmailAddress>rustom.kaovasia@umuc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>SecOps Team</GivenName>
+ <EmailAddress>secops@umuc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Terra Dotta, LLC -->
+<EntityDescriptor entityID="https://ncl-ac-uk-mobility.terradotta.com/sp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://international.ncl.ac.uk/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Newcastle University Study Abroad software by Terra Dotta</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Newcastle University Study Abroad software provided by Terra Dotta</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.terradotta.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.terradotta.com/privacy-policy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="36" width="200" xml:lang="en">https://www.terradotta.com/graphics/TDS-powered-by-logo-100px@2x.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10170532808096037340, expires on Sat Apr 6 22:16:07 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://international.ncl.ac.uk/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://international.ncl.ac.uk/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://international.ncl.ac.uk/Shibboleth.sso/SAML2/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://international.ncl.ac.uk/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://international.ncl.ac.uk/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://international.ncl.ac.uk/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Newcastle University Study Abroad software by Terra Dotta</ServiceName>
+ <ServiceDescription xml:lang="en">Newcastle University Study Abroad software provided by Terra Dotta</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Terra Dotta, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Terra Dotta, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.terradotta.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Sunny Howe</GivenName>
+ <EmailAddress>sunny.howe@terradotta.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Scott Burkett</GivenName>
+ <EmailAddress>scottb@terradotta.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brendan Haggerty</GivenName>
+ <EmailAddress>brendan.haggerty@terradotta.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Maine System -->
+<EntityDescriptor entityID="https://idp.maine.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">um.maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">uma.maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umf.maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umfk.maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umm.maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umpi.maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">usm.maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">ums.maine.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Maine System</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.maine.edu/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="180" width="250" xml:lang="en">https://identity.maine.edu/cas/images/UMS_logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10385222549773303282, expires on Sun Jun 24 20:08:13 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.maine.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.maine.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.maine.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.maine.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.maine.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.maine.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.maine.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">um.maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">uma.maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umf.maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umfk.maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umm.maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">umpi.maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">usm.maine.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">ums.maine.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10385222549773303282, expires on Sun Jun 24 20:08:13 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.maine.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.maine.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Maine System</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Maine System</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.maine.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Steven Premeau</GivenName>
+ <EmailAddress>steven.premeau@maine.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UMS SSO Support</GivenName>
+ <EmailAddress>sso-support@maine.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UMS SSO Support</GivenName>
+ <EmailAddress>sso-support@maine.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Office</GivenName>
+ <EmailAddress>infosecurity@maine.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Ohio Technology Consortium ("OH-TECH") -->
+<EntityDescriptor entityID="https://idp.oh-tech.org/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">oh-tech.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ohio Technology Consortium (OH-TECH)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">InCommon Federation Identity Provider for the Ohio Technology Consortium, an activity of the Ohio Department of Higher Education</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://iamohio.net/content/oh_tech_web_identity_services</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://ohio.gov/policies/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="80" xml:lang="en">https://idp.oh-tech.org/images/full_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 690828252202986332682097830711876231895417570356, expires on Fri Jul 30 06:48:32 2038 GMT -->
+ <ds:X509Certificate>
+MIIDJzCCAg+gAwIBAgIUeQHPaaHy4ZWd3e+ol9Gl/PW3RDQwDQYJKoZIhvcNAQEL
+BQAwGjEYMBYGA1UEAwwPaWRwLm9oLXRlY2gub3JnMB4XDTE4MDczMDA2NDgzMloX
+DTM4MDczMDA2NDgzMlowGjEYMBYGA1UEAwwPaWRwLm9oLXRlY2gub3JnMIIBIjAN
+BgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAhFlnIPPIbCNWhriyX6m4XAFJ+qTQ
+Yhrq42qR0TxrEkmPvxeM3K1/K2kibo0Vpr5dQV8InnaMZTEv2Uic32bzueZtFztZ
+BV35YS/x4dYDYs3XBhHEVL7lSdcCtrIRYMVD+dsoUcjbpk/Q/0p232+mq9b4+jve
+lgj5RbW2W3E2eGs9DoLm7zk5Rex50WqvIGc4BQiW//OTflzo3wo9W36Yt2hl6xpb
+yaMBrMfukrjHRHViyj118Ey12I1NNiD52Tdz1lKo2PdZYNIXRQ0P8ZDiwTIeDX1i
+USWBQnAzuXin6HShOs8BfQNGeDxcFpSwOo/jmR1KwADH+4k7xfoc8zEYuQIDAQAB
+o2UwYzAdBgNVHQ4EFgQUX5IesZXiL6kEXLsYfcaF6uOkwrQwQgYDVR0RBDswOYIP
+aWRwLm9oLXRlY2gub3JnhiZodHRwczovL2lkcC5vaC10ZWNoLm9yZy9pZHAvc2hp
+YmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAZaillBghq+R+2FktykzWGVIJ1xvn
+R/8Cj2xzzLLftIoWMyeu3oyCRJ/pZjAmhwEgtVu/7/OwITa/dotfyh7xAdOo9awy
+EBe7Ja2/NSRchYnFx83/FDGWwY0iKZXjsL0bISQ9XiqMAD9CxsO4S+LD0GJCSqfG
+kG1yUBpU2JUNPM+0hsAJpyfkVbtwEyclMQTp+MR4g1WJB6emrnxxuAVBlamZltZA
++I0nyaihZYeovKyXhsvMtY2ONdrHZ4RBGkoXHMobuHdVev+LNVKWFBnxMjckog/s
+Zi/f6cPP3m9LDNUKDsz6qCNZUPfh3i2pQtrjulujRE/rHmGYPwCjvQlwWg==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.oh-tech.org/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.oh-tech.org/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.oh-tech.org/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.oh-tech.org/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">oh-tech.org</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 301312093581631191972350121853695390274428109710, expires on Fri Jul 30 06:48:33 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.oh-tech.org:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ohio Technology Consortium ("OH-TECH")</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ohio Technology Consortium (OH-TECH)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://oh-tech.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mark Beadles</GivenName>
+ <EmailAddress>mbeadles@oar.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Alan Edmonds</GivenName>
+ <EmailAddress>edmonds@oh-tech.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>OARnet Support</GivenName>
+ <EmailAddress>support@oar.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>OARnet Support</GivenName>
+ <EmailAddress>support@oar.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://idp.osc.edu/auth/realms/osc">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">osc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ohio Supercomputer Center (OSC)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">InCommon Federation Identity Provider for the Ohio Supercomputer Center</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://iamohio.net/content/oh_tech_web_identity_services</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.oh-tech.org/content/privacy_notice</mdui:PrivacyStatementURL>
+ <mdui:Logo height="85" width="554" xml:lang="en">https://www.osc.edu/sites/default/themes/contrib/osc/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1499280216470, expires on Mon Jul 5 18:43:36 2027 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.osc.edu/auth/realms/osc/protocol/saml"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.osc.edu/auth/realms/osc/protocol/saml"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ohio Technology Consortium ("OH-TECH")</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ohio Technology Consortium (OH-TECH)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://oh-tech.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mark Beadles</GivenName>
+ <EmailAddress>mbeadles@oar.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Doug Johnson</GivenName>
+ <EmailAddress>djohnson@osc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kyle Earley</GivenName>
+ <EmailAddress>kearley@osc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>OSC Help</GivenName>
+ <EmailAddress>oschelp@osc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Capella University -->
+<EntityDescriptor entityID="https://idp.capella.edu/ic">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">capella.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Capella University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.capella.edu/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="36" width="170" xml:lang="en">https://s2.q4cdn.com/585385277/files/design/logos/capella-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1001318844, expires on Sat Apr 3 20:35:32 2027 GMT -->
+ <ds:X509Certificate>
+MIIDjzCCAnegAwIBAgIEO67pvDANBgkqhkiG9w0BAQsFADB4MQswCQYDVQQGEwJVUzESMBAGA1UE
+CBMJTWlubmVzb3RhMRQwEgYDVQQHEwtNaW5uZWFwb2xpczEbMBkGA1UEChMSQ2FwZWxsYSBVbml2
+ZXJzaXR5MQ0wCwYDVQQLEwRVT1BTMRMwEQYDVQQDEwpDYXBlbGxhIElUMB4XDTE3MDQwNTIwMzUz
+MloXDTI3MDQwMzIwMzUzMloweDELMAkGA1UEBhMCVVMxEjAQBgNVBAgTCU1pbm5lc290YTEUMBIG
+A1UEBxMLTWlubmVhcG9saXMxGzAZBgNVBAoTEkNhcGVsbGEgVW5pdmVyc2l0eTENMAsGA1UECxME
+VU9QUzETMBEGA1UEAxMKQ2FwZWxsYSBJVDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEB
+AKi414taSmCWG8e4zS2Q4Aazb3F8brHGea4J3aWk0f06ihr78+EP8dhBV7MQ70YwODwfo1hwD1l7
+EZBTf9OA/qQohwc9zTjZF2emaka0XDyvjWqxTt9TJWT4ublPbvJRzNIzj+ykBQohxPlmYD2QzSm0
+WFLrDWFpH5Q39fwCkHrsTZjXqxwSiEpE2xcoPAIZT/m9T6mkHsu4kmgZITJJDalYdSPHi2YhEFRi
+oSTvQxjh0xM0UtG2SF2v0IMQHlwDxxD7au6IZtmXuw2RDa4nrt64e2DFqgfP6jkHnR6kIbRm3p94
+cqPxzq/r1iNvq0JsskLxgRU7bNjVIcF/VsOVL5UCAwEAAaMhMB8wHQYDVR0OBBYEFNpPtgSnvoRn
+ldiPFHZ6xpc5meJkMA0GCSqGSIb3DQEBCwUAA4IBAQAj8lLq1MrX27bQhKIinH07uP4tc/M7XsrB
+3DSYiJZNdmgwW0CbsjDAOCv68Di/9Vpxl1DjyWISJxcpylz6u8hIUmnNtMivlHbrFJueOvyjCZfc
+MILaQVyuYweBxwIJdrFuoM0q2umRw+aAjyradsBh24ww5T9ZPkNW7kc+ejwzdzoGlBBljU3uYeiu
+pJY02Z9sowvyldoIQ8cy7cP/iD4yAgvF/L9GKxckx0cxpilloFNOEP0m6aNBPP8Z1pKoJ214GFlp
+Z2tzdQfACM5Mdfgi5MqRyT+TsTLU2EpfsT28vT6smdAJQyxNl3VBQ34+GXxlcC9yRdvgVAEMqU7E
+54X9
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso3.capella.edu:443/openam/ArtifactResolver/metaAlias/idp3" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso3.capella.edu:443/openam/IDPSloRedirect/metaAlias/idp3"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso3.capella.edu:443/openam/IDPSloPOST/metaAlias/idp3"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso3.capella.edu:443/openam/SSORedirect/metaAlias/idp3"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso3.capella.edu:443/openam/SSOPOST/metaAlias/idp3"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso3.capella.edu:443/openam/SSOSoap/metaAlias/idp"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Capella University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Capella University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.capella.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Angie Quitter</GivenName>
+ <EmailAddress>Angie.Quitter@capella.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mike Walstrom</GivenName>
+ <EmailAddress>Mike.Walstrom@capella.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Angie Quitter</GivenName>
+ <EmailAddress>angie.quitter@capella.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Alabama, The -->
+<EntityDescriptor entityID="https://idp.ua.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.ua.edu/idp/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ua.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Alabama, The</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.ua.edu/about/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ua.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="500" width="500" xml:lang="en">https://www.ua.edu/assets/img/ua-square-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 300671262825228681244882009830805773935048498138, expires on Fri Jul 2 15:32:12 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.ua.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ua.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ua.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.ua.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Alabama, The</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Alabama, The</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ua.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>itsd@ua.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mike Shelton</GivenName>
+ <EmailAddress>mshelton@fa.ua.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Joey Stowe</GivenName>
+ <EmailAddress>jbstowe@ua.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>OIT Security</GivenName>
+ <EmailAddress>security@ua.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Goucher College -->
+<EntityDescriptor entityID="https://idp.goucher.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">goucher.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Goucher College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.goucher.edu/about-this-website/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="126" width="252" xml:lang="en">https://www.goucher.edu/office-of-communications/images/logos/GoucherCollege-Logo-2c-Stacked.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16331611885688407272, expires on Sat Jan 14 16:22:41 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 249368136331559031072523862903041033733556413371, expires on Sat Nov 8 18:28:58 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.goucher.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.goucher.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.goucher.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.goucher.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.goucher.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.goucher.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">goucher.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16331611885688407272, expires on Sat Jan 14 16:22:41 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 249368136331559031072523862903041033733556413371, expires on Sat Nov 8 18:28:58 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.goucher.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.goucher.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Goucher College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Goucher College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://goucher.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bill Leimbach</GivenName>
+ <EmailAddress>bleimbach@goucher.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Patrick O'Laughlin</GivenName>
+ <EmailAddress>patrick.olaughlin@goucher.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tom Mentzel</GivenName>
+ <EmailAddress>tmentzel@goucher.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Bill Leimbach</GivenName>
+ <EmailAddress>bleimbach@goucher.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- MiraCosta Community College District -->
+<EntityDescriptor entityID="https://idp.miracosta.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">miracosta.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">MiraCosta Community College District</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.miracosta.edu/officeofthepresident/board/downloads/5040BP-StudentRecords-DirectoryInformation-Privacy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="170" xml:lang="en">https://pg.cloud.miracosta.edu/_layouts/images/PG/images/MCC%20Logo_RGB.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 926303344809943594354553625794834831898569603083, expires on Fri Oct 31 16:01:58 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.miracosta.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.miracosta.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.miracosta.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.miracosta.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.miracosta.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.miracosta.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">MiraCosta Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">MiraCosta Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.miracosta.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Anthony Ginger</GivenName>
+ <EmailAddress>aginger@miracosta.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Steve Schultz</GivenName>
+ <EmailAddress>sschultz@miracosta.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Erich Donze</GivenName>
+ <EmailAddress>edonze@miracosta.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Morgan State University -->
+<EntityDescriptor entityID="https://idp.morgan.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.morgan.edu/idp/broken.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">morgan.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Morgan State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Morgan State University, a coeducational institution, is located in a residential section of Baltimore, Maryland. The campus covers an area of more than 143 acres.
+
+The University offers a comprehensive range of academic programs through the doctorate. Morgan is also a founding member of the Mid-Eastern Athletic Conference (MEAC).</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.morgan.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.morgan.edu/privacy_statement.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="241" xml:lang="en">https://idp.morgan.edu/idp/images/msulogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 58390483045199603681497443913252408201286586532, expires on Sun May 23 19:23:45 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.morgan.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.morgan.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Morgan State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Morgan State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.morgan.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bisi Oladipupo</GivenName>
+ <EmailAddress>bisi.oladipupo@morgan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Alexandre Magno Adao</GivenName>
+ <EmailAddress>alexandre.adao@morgan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Alexandre Magno Adao</GivenName>
+ <EmailAddress>alexandre.adao@morgan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Service Desk Tech Team</GivenName>
+ <EmailAddress>tech.team@morgan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Vamshidhar Gaddameedi</GivenName>
+ <EmailAddress>vamshi.gaddameedi@morgan.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Brookhaven National Laboratory -->
+<EntityDescriptor entityID="https://idp.bnl.gov/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.bnl.gov/idp_error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bnl.gov</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Brookhaven National Laboratory</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Brookhaven National Laboratory - BNL.GOV</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.bnl.gov/bnlweb/security-notice.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="145" width="396" xml:lang="en">https://idp.bnl.gov/images/logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1288135427905121038062299984200300262104971672757, expires on Tue Oct 5 17:48:28 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.bnl.gov/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.bnl.gov/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.bnl.gov/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.bnl.gov/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.bnl.gov/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bnl.gov</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1288135427905121038062299984200300262104971672757, expires on Tue Oct 5 17:48:28 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.bnl.gov/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.bnl.gov/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Brookhaven National Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Brookhaven National Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.bnl.gov/world/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>David Cortijo</GivenName>
+ <EmailAddress>dcortijo@bnl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>David Cortijo</GivenName>
+ <EmailAddress>dcortijo@bnl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>David Cortijo</GivenName>
+ <EmailAddress>dcortijo@bnl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>BNL Security Team</GivenName>
+ <EmailAddress>security@bnl.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Wisconsin - Green Bay -->
+<EntityDescriptor entityID="https://shibidp.uwgb.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwgb.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Wisconsin - Green Bay</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Wisconsin - Green Bay</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.uwgb.edu/UWGBCMS/media/policies/files/privacy-policy.pdf?ext=.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="364" width="447" xml:lang="en">https://www.uwgb.edu/UWGB_Logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 235155876793033279228694849817190997832133888918, expires on Sun Sep 6 01:23:27 2037 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibidp.uwgb.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibidp.uwgb.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibidp.uwgb.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibidp.uwgb.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibidp.uwgb.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin - Green Bay</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin - Green Bay</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uwgb.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Patrick Goggins</GivenName>
+ <EmailAddress>gogginsp@uwgb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Paula Ganyard</GivenName>
+ <EmailAddress>ganyardp@uwgb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@uwgb.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Travis Albrecht</GivenName>
+ <EmailAddress>albrecht@uwgb.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Pacific University -->
+<EntityDescriptor entityID="https://sso.pacificu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://sso.pacificu.edu/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pacificu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Pacific University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Pacific University's Identity Provider for production environments.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.pacificu.edu/legal-disclaimers/internet-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="118" width="175" xml:lang="en">https://sso.pacificu.edu/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 363624020653068674916814540423887523118785343477, expires on Fri Dec 16 16:12:41 2033 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sso.pacificu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.pacificu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.pacificu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.pacificu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pacificu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 363624020653068674916814540423887523118785343477, expires on Fri Dec 16 16:12:41 2033 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.pacificu.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.pacificu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pacific University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pacific University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.pacificu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Brandon M. Browning</GivenName>
+ <EmailAddress>browning@pacificu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ted Krupicka</GivenName>
+ <EmailAddress>tedk@pacificu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Technology Information Center</GivenName>
+ <EmailAddress>help@pacificu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chief Information Security Officer</GivenName>
+ <EmailAddress>ciso@pacificu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Quinnipiac University -->
+<EntityDescriptor entityID="http://sso.quinnipiac.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/assurance/bronze</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.qu.edu/SSOerror" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">quinnipiac.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Quinnipiac University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Quinnipiac University IDP and SSO</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.qu.edu/site-security-privacy-policy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="97" width="360" xml:lang="en">https://portalapps.quinnipiac.edu/portalapps/incommon/qu_ss_w.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 39904711830362878422974343037033545219, expires on Mon Jan 25 03:13:08 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.quinnipiac.edu/adfs/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.quinnipiac.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.quinnipiac.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.quinnipiac.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">quinnipiac.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 39904711830362878422974343037033545219, expires on Mon Jan 25 03:13:08 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.quinnipiac.edu/adfs/ls/"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.quinnipiac.edu/adfs/ls/"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Quinnipiac University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Quinnipiac University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.quinnipiac.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>K MacDougall</GivenName>
+ <EmailAddress>issystems@quinnipiac.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>K MacDougall</GivenName>
+ <EmailAddress>issystems@quinnipiac.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>B Kelly</GivenName>
+ <EmailAddress>is-security@quinnipiac.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Mount Holyoke College -->
+<EntityDescriptor entityID="https://idp.mtholyoke.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mtholyoke.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Mount Holyoke College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.mtholyoke.edu/policies/digital-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="325" xml:lang="en">https://idp.mtholyoke.edu/idp/images/dummylogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 837955911729492572295272763677780807867094056578, expires on Sun Apr 6 13:46:34 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.mtholyoke.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mtholyoke.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.mtholyoke.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.mtholyoke.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.mtholyoke.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mtholyoke.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 837955911729492572295272763677780807867094056578, expires on Sun Apr 6 13:46:34 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.mtholyoke.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Mount Holyoke College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Mount Holyoke College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.mtholyoke.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Barnard</GivenName>
+ <EmailAddress>mbarnard@mtholyoke.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Joel Broyles</GivenName>
+ <EmailAddress>jbroyles@mtholyoke.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Michael Barnard</GivenName>
+ <EmailAddress>mbarnard@mtholyoke.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Barnard</GivenName>
+ <EmailAddress>mbarnard@mtholyoke.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- The Juilliard School -->
+<EntityDescriptor entityID="https://idp.juilliard.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.juilliard.edu/juilliards-incommon-federated-id-system" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">juilliard.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">The Juilliard School</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The identity provider for InCommon operations.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.juilliard.edu/juilliard-website-privacy-policy-your-privacy-rights</mdui:PrivacyStatementURL>
+ <mdui:Logo height="109" width="300" xml:lang="en">https://idp.juilliard.edu/idp/images/jlogo2011.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 682390004045530863254896188175726780075572886098, expires on Mon Mar 1 20:14:09 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.juilliard.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.juilliard.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.juilliard.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.juilliard.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.juilliard.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">juilliard.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 682390004045530863254896188175726780075572886098, expires on Mon Mar 1 20:14:09 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.juilliard.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The Juilliard School</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">The Juilliard School</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.juilliard.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeremy Pinquist</GivenName>
+ <EmailAddress>jpinquist@juilliard.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Steve Doty</GivenName>
+ <EmailAddress>sdoty@juilliard.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dmitriy Aminov</GivenName>
+ <EmailAddress>daminov@juilliard.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Dmitriy Aminov</GivenName>
+ <EmailAddress>daminov@juilliard.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Meredith College -->
+<EntityDescriptor entityID="https://webauth.meredith.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">meredith.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Meredith College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.meredith.com/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="68" width="342" xml:lang="en">https://webauth.meredith.edu/idp/images/logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1429444538599236509922222889333059864444108333319, expires on Sat Sep 18 13:24:40 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.meredith.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webauth.meredith.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://webauth.meredith.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.meredith.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.meredith.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">meredith.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1429444538599236509922222889333059864444108333319, expires on Sat Sep 18 13:24:40 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.meredith.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Meredith College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Meredith College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.meredith.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Victor Fayed</GivenName>
+ <EmailAddress>techservices@meredith.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Technology Services</GivenName>
+ <EmailAddress>cio@meredith.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Technology Services</GivenName>
+ <EmailAddress>netadmin@meredith.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Eastern Washington University -->
+<EntityDescriptor entityID="https://sso.ewu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ewu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Eastern Washington University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://access.ewu.edu/OIT/Services/Accounts-Passwords.xml</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ewu.edu/Privacy-Policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="180" xml:lang="en">https://sso.ewu.edu/idp/images/dummylogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12640316132819240441, expires on Mon Jul 31 21:51:11 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.ewu.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.ewu.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.ewu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.ewu.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Eastern Washington University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Eastern Washington University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ewu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Scott Green</GivenName>
+ <EmailAddress>sgreen25@ewu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Scott Green</GivenName>
+ <EmailAddress>sgreen25@ewu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Colin Turnbull</GivenName>
+ <EmailAddress>cturnbull@ewu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- eZuce, Inc. -->
+<EntityDescriptor entityID="https://vibe.ezuce.com/incommon">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vibe.ezuce.com/incommon/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">VIBE Service Provider</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://ezuce.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="200" xml:lang="en">https://ezuce.com/media/uploads/EZU_Logo_Ezuce_WhiteBackground-e1437582361536.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15155918986183165130, expires on Thu Jul 6 21:43:59 2028 GMT -->
+ <ds:X509Certificate>
+MIID5TCCAs2gAwIBAgIJANJUpAS4C8TKMA0GCSqGSIb3DQEBCwUAMIGIMQswCQYD
+VQQGEwJVUzELMAkGA1UECAwCQ0ExFDASBgNVBAcMC0xvcyBBbmdlbGVzMRIwEAYD
+VQQKDAllWnVjZSBJbmMxFzAVBgNVBAMMDnZpYmUuZXp1Y2UuY29tMSkwJwYJKoZI
+hvcNAQkBFhp2bGFkaW1pci5saXR2aW5lQGV6dWNlLmNvbTAeFw0xODA3MDkyMTQz
+NTlaFw0yODA3MDYyMTQzNTlaMIGIMQswCQYDVQQGEwJVUzELMAkGA1UECAwCQ0Ex
+FDASBgNVBAcMC0xvcyBBbmdlbGVzMRIwEAYDVQQKDAllWnVjZSBJbmMxFzAVBgNV
+BAMMDnZpYmUuZXp1Y2UuY29tMSkwJwYJKoZIhvcNAQkBFhp2bGFkaW1pci5saXR2
+aW5lQGV6dWNlLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAOOf
+FK0/i5JIy+79Df+rC6jbWA890hcRKsRlKJ/doRyVOi+2Sq3K4MdemhcvJ4UnzDdg
+qnynLVcJ4L8wec1RU2ldO0sOkA8d5pW4Hg7ofZrDoLY4zqvWcjFKt/ENjMYb/Et/
+txVYFz+coIy3bdSbsslexLUh3KQXBxUkFkpfZEQl5Le06KRNUG+i61GNMmbLjEhz
+ireWQREVcdOsJgnt82b/ppG2qdPysgPjllUjUSQyOMTHIsHVrWMqY/vQoo5jsFW0
+KXR27DlzR8YfQz6g+cRLM8M0NmgKhLpbe6exK3GFfxUdc4pIlSyTISnioL3hFITM
+tvu0k3Cz8qzEyrB17AECAwEAAaNQME4wHQYDVR0OBBYEFBY+hdQ4BhNKXXSOXTQW
+EYJBpoUNMB8GA1UdIwQYMBaAFBY+hdQ4BhNKXXSOXTQWEYJBpoUNMAwGA1UdEwQF
+MAMBAf8wDQYJKoZIhvcNAQELBQADggEBAMwTF0nRZ5rhWMtDiAqLhsQsz94Kvfcn
+Rod4SIDUnivDgCi4fqwdV9cX/5R6ZclQObWiQPgcMRnnxuSE7FWfZJJAmc8eHM2r
+JU/MLvgrAQa5f6/JLQdggUi54xj0S/4G1tyjhZsEHnT2dKaU2Xv4oYqfVd+b8lpq
+2pnogiRic/34omQEDVfiGONJBx/N+QOy6ehN2Qcsd7lMdN/8aznkX1e3KFR3GG4I
+WIByaEnEW/mfSGTWGZpkexovyiEwRS+cyPrZaVH9w64WX8Z7Cic4Z2La6xQX5ugp
+kdianE4tDE0GcS8xYho1wafUm+DpTi2wCOheTed03JPQJIqXoWMhfU8=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vibe.ezuce.com/incommon/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://vibe.ezuce.com/incommon/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vibe.ezuce.com/incommon/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://vibe.ezuce.com/incommon/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://vibe.ezuce.com/incommon/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://vibe.ezuce.com/incommon/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">VIBE Service Provider</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">eZuce, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">eZuce, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://ezuce.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Philippe Galvez</GivenName>
+ <EmailAddress>pgalvez@ezuce.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Vladimir Litvine</GivenName>
+ <EmailAddress>vladimir.litvine@ezuce.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Philippe Galvez</GivenName>
+ <EmailAddress>pgalvez@ezuce.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://vibe.ezuce.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vibe.ezuce.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">VIBE Service Provider</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://ezuce.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="200" xml:lang="en">https://ezuce.com/media/uploads/EZU_Logo_Ezuce_WhiteBackground-e1437582361536.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15155918986183165130, expires on Thu Jul 6 21:43:59 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vibe.ezuce.com/incommon/Shibboleth.sso/SAML2/ECP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vibe.ezuce.com/incommon/Shibboleth.sso/SAML/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vibe.ezuce.com/incommon/Shibboleth.sso/SAML/Artifact"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vibe.ezuce.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://vibe.ezuce.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vibe.ezuce.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://vibe.ezuce.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">VIBE Service Provider</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">eZuce, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">eZuce, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://ezuce.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Philippe Galvez</GivenName>
+ <EmailAddress>pgalvez@ezuce.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Vladimir Litvine</GivenName>
+ <EmailAddress>vladimir.litvine@ezuce.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Philippe Galvez</GivenName>
+ <EmailAddress>pgalvez@ezuce.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://vibe.ezuce.com/wp-content/plugins/miniorange-saml-20-single-sign-on/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vibe.ezuce.com/" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">VIBE Service Provider</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Vibe Collaboration and Communication Services</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://vibe.ezuce.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://ezuce.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="200" xml:lang="en">https://ezuce.com/media/uploads/EZU_Logo_Ezuce_WhiteBackground-e1437582361536.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14351986319509508889, expires on Wed Oct 28 10:54:48 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vibe.ezuce.com/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://vibe.ezuce.com/"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vibe.ezuce.com/" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">VIBE Service Provider</ServiceName>
+ <ServiceDescription xml:lang="en">Vibe Collaboration and Communication Services</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">eZuce, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">eZuce, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://ezuce.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Philippe Galvez</GivenName>
+ <EmailAddress>pgalvez@ezuce.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Laurent Le Page</GivenName>
+ <EmailAddress>laurent.lepage@ezuce.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Philippe Galvez</GivenName>
+ <EmailAddress>pgalvez@ezuce.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Vladimir Litvine</GivenName>
+ <EmailAddress>vladimir.litvine@ezuce.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://viewme.ezuce.com/incommon">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://viewme.ezuce.com/incommon/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Viewme Service Provider</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://ezuce.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="200" xml:lang="en">https://ezuce.com/media/uploads/EZU_Logo_Ezuce_WhiteBackground-e1437582361536.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11136120402749836207, expires on Thu May 8 16:21:01 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://viewme.ezuce.com/incommon/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://viewme.ezuce.com/incommon/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://viewme.ezuce.com/incommon/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://viewme.ezuce.com/incommon/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://viewme.ezuce.com/incommon/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://viewme.ezuce.com/incommon/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Viewme Service Provider</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">eZuce, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">eZuce, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://ezuce.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Vladimir Litvine</GivenName>
+ <EmailAddress>vladimir.litvine@ezuce.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Philippe Galvez</GivenName>
+ <EmailAddress>pgalvez@ezuce.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Philippe Galvez</GivenName>
+ <EmailAddress>pgalvez@ezuce.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Rowan University -->
+<EntityDescriptor entityID="https://logindev.rowan.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">rowan.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Rowan University (TEST)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test IdP for Rowan University</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://confluence.rowan.edu/display/POLICY/Home</mdui:PrivacyStatementURL>
+ <mdui:Logo height="58" width="393" xml:lang="en">https://sites.rowan.edu/rowan/_files/_files/images/RowanLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1391983698648880345311876161996933371216965854698, expires on Mon May 18 15:35:47 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://logindev.rowan.edu/cas/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://logindev.rowan.edu/cas/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://logindev.rowan.edu/cas/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://logindev.rowan.edu/cas/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Rowan University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Rowan University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rowan.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Josh Grochowski</GivenName>
+ <EmailAddress>grochowski@rowan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Josh Grochowski</GivenName>
+ <EmailAddress>grochowski@rowan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Josh Grochowski</GivenName>
+ <EmailAddress>grochowski@rowan.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://login.rowan.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">rowan.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Rowan University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Single Sign-On at Rowan University</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://confluence.rowan.edu/display/POLICY/Home</mdui:PrivacyStatementURL>
+ <mdui:Logo height="58" width="393" xml:lang="en">https://sites.rowan.edu/rowan/_files/_files/images/RowanLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1391983698648880345311876161996933371216965854698, expires on Mon May 18 15:35:47 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.rowan.edu/cas/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.rowan.edu/cas/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.rowan.edu/cas/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.rowan.edu/cas/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Rowan University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Rowan University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rowan.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Josh Grochowski</GivenName>
+ <EmailAddress>grochowski@rowan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Josh Grochowski</GivenName>
+ <EmailAddress>grochowski@rowan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Josh Grochowski</GivenName>
+ <EmailAddress>grochowski@rowan.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Harvard College -->
+<EntityDescriptor entityID="https://beta.dataverse.org/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Harvard Dataverse Beta</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Open for all researchers worldwide from all disciplines to deposit data</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://dataverse.harvard.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://best-practices.dataverse.org/harvard-policies/harvard-privacy-policy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="191" width="500" xml:lang="en">https://dataverse.org/files/dataverseorg/files/dataverse_r_project.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13141303072783786035, expires on Sat Jul 26 22:00:50 2025 GMT -->
+ <ds:X509Certificate>
+MIIDGDCCAgCgAwIBAgIJALZfSYTjBuAzMA0GCSqGSIb3DQEBBQUAMCYxJDAiBgNV
+BAMTG2R2bi1iZXRhLTEuaG1kYy5oYXJ2YXJkLmVkdTAeFw0xNTA3MjkyMjAwNTBa
+Fw0yNTA3MjYyMjAwNTBaMCYxJDAiBgNVBAMTG2R2bi1iZXRhLTEuaG1kYy5oYXJ2
+YXJkLmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJnZppnFevsY
+6b5a+n/MpvuOklxg9ZZwfhwi/PhjlotYxlloitEYDenZnfCnhTsmmeH0PDGmTMZ8
+uzRwYOGvKhdLfjb6p8aN++uZq8ugZyrkfdkzRrT6hIdqblsJFD7nvJU5iLCdDAg8
+1xTPCT9JlWAdPQMCklYQAgqkuvfSqOcQuRDXh8mppxUf5XWvwzV6va+YlMn3g5yu
+ZncXve5nl6Ks3rT+4YURJQPv3me+pvpKB/fmR4OQJfqbszS1OGvPsM5wkohqCOm+
+3CGNQs/0YlE2CxA7Ed8F5fS8FUVMnqdS+2CQvs/0AL1lfkvNIzf5nEXp3PfyzYZh
+3fDjvdGm9McCAwEAAaNJMEcwJgYDVR0RBB8wHYIbZHZuLWJldGEtMS5obWRjLmhh
+cnZhcmQuZWR1MB0GA1UdDgQWBBRpOLMfDnzpGObpash4hXujAjCBzzANBgkqhkiG
+9w0BAQUFAAOCAQEAWikAxQxnQ0vVVSBvNSzC+yeWPxkXBZcWOsRz5naHkx73NDVF
+5V+KBrD83/7LZyvRFs7uoQW7ADhtjY2tSyWwhV+sAppKm/G/WfOsJyQ18p0Rpnic
+DdFr54S9UAknLqvhw7Z0kc+D1ceClDc/F27subPah/Vo9VFd4cr/UV/EHMbOAaqB
+Wlpe5ku4zkJqwGQBtBHxkwtTUN8kygJ/Hu0EyOanGlAckzbUu6CwJ+FCmzMdzO5M
+JpiD7Dd1g4eXHy80BI2UYcokpq1s5W/aEJs8DkgAICXKy38JZcsmqjwgvQHqM54/
+7uzXtuSY75zJLsX4ITy6C5V5om3cKyYQaxJwfg==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://beta.dataverse.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://beta.dataverse.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://beta.dataverse.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://beta.dataverse.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Harvard Dataverse Beta</ServiceName>
+ <ServiceDescription xml:lang="en">Open for all researchers worldwide from all disciplines to deposit data</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Harvard College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Harvard University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.harvard.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Dataverse Support Team</GivenName>
+ <EmailAddress>support@dataverse.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dataverse Support Team</GivenName>
+ <EmailAddress>support@dataverse.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Dataverse Support Team</GivenName>
+ <EmailAddress>support@dataverse.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Dataverse Support Team</GivenName>
+ <EmailAddress>support@dataverse.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://dataverse.harvard.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Harvard Dataverse</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Open for all researchers worldwide from all disciplines to deposit data</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://dataverse.harvard.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://best-practices.dataverse.org/harvard-policies/harvard-privacy-policy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="310" xml:lang="en">https://dataverse.harvard.edu/logos/navbar/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16476254169538531036, expires on Sun Feb 22 19:48:45 2026 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dataverse.harvard.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dataverse.harvard.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dataverse.harvard.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dataverse.harvard.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Harvard Dataverse</ServiceName>
+ <ServiceDescription xml:lang="en">Open for all researchers worldwide from all disciplines to deposit data</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Harvard College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Harvard University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.harvard.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Dataverse Support Team</GivenName>
+ <EmailAddress>support@dataverse.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dataverse Support Team</GivenName>
+ <EmailAddress>support@dataverse.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Dataverse Support Team</GivenName>
+ <EmailAddress>support@dataverse.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Dataverse Support Team</GivenName>
+ <EmailAddress>support@dataverse.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://demo.dataverse.org/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Harvard Dataverse Demo</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Open for all researchers worldwide from all disciplines to deposit data</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://dataverse.harvard.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://best-practices.dataverse.org/harvard-policies/harvard-privacy-policy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="191" width="500" xml:lang="en">https://dataverse.org/files/dataverseorg/files/dataverse_r_project.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10982718504888819007, expires on Thu Sep 26 18:54:38 2024 GMT -->
+ <ds:X509Certificate>
+MIIDJDCCAgygAwIBAgIJAJhqdEqQAd0/MA0GCSqGSIb3DQEBBQUAMCoxKDAmBgNV
+BAMTH2RhdGF2ZXJzZS1kZW1vLmhtZGMuaGFydmFyZC5lZHUwHhcNMTQwOTI5MTg1
+NDM4WhcNMjQwOTI2MTg1NDM4WjAqMSgwJgYDVQQDEx9kYXRhdmVyc2UtZGVtby5o
+bWRjLmhhcnZhcmQuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+rQkxPOPT71zjFCpdyjaw9cnOWgzJn0QWswjgKiA4A67tlmEA/5YOwbv/4/xfV2Bb
+wHJP9z+0ik44VOwfHIotnUh1Ihie5+3+f3c1Zxr40eL0gAwcRcLvxGS+D6D44dN9
+5fmt/BkkgLIBP9WG1RhtOYJzbYAG8iwxmT/3b3HSo6sEEHUPJHpcvInKfacB6NqB
+XnISn8dFGaLiJTzpmS63SLrtPnRAw8Ra7qNHltmxDiSkOWbmPlj9lpP/zmdA3YNy
+Ns5FGuy8qwevp9duKhgSkamY4p/YF14EyM6v5Uu8psykdnC3YYPITMubeyZ9LFpX
+DGTVHUMVgJ8WloECTx4TVQIDAQABo00wSzAqBgNVHREEIzAhgh9kYXRhdmVyc2Ut
+ZGVtby5obWRjLmhhcnZhcmQuZWR1MB0GA1UdDgQWBBTudJa+Kgg2TWXFVK+Qecmh
+LkB3ZTANBgkqhkiG9w0BAQUFAAOCAQEACbGbfZvBEY1kVElaeafZxN8bNGLndQXo
+kbwmzQjfyirRMOjv2EeFgAlhabQGd7w5ILpWaT1v9i4NXOr3K5aJvVmc9JdkakxK
+SgXkrmgI4HP5GAjq6F0Q3XPNOAbCK8ImN0eqatNeYvs9FL4yZjqv3i1FgLxH6bCx
+bVW9tVYi9eAn+Fx0eS1zRDF0EF4QlT2gK72j09gMcI8CTRBZFhPc0W0Ags3d/Yu4
+6aepZOL4z7Hok3d+PvGuGku24o8IqDSeugkZpypqtNQ5GAmG29lfYEXeLCAkA0KH
+Cr9/dP65JFWFEALmGt12ntbULZFPQc3+19NyK9gFFYnhTG9YFRwWHA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://demo.dataverse.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://demo.dataverse.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://demo.dataverse.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://demo.dataverse.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Harvard Dataverse Demo</ServiceName>
+ <ServiceDescription xml:lang="en">Open for all researchers worldwide from all disciplines to deposit data</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Harvard College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Harvard University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.harvard.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Dataverse Support Team</GivenName>
+ <EmailAddress>support@dataverse.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dataverse Support Team</GivenName>
+ <EmailAddress>support@dataverse.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Dataverse Support Team</GivenName>
+ <EmailAddress>support@dataverse.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Dataverse Support Team</GivenName>
+ <EmailAddress>support@dataverse.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://fed.huit.harvard.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/assurance/bronze</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://key-idp.iam.harvard.edu/idp/support.jsp" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">harvard.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Harvard University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://iam.harvard.edu/resources/iam-policies-standards-print</mdui:PrivacyStatementURL>
+ <mdui:Logo height="83" width="320" xml:lang="en">https://key-idp.iam.harvard.edu/idp/images/Harvard_University_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 670623938602053084882801132026664214164432199983, expires on Mon Jun 9 20:24:12 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://key-idp.iam.harvard.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://key-idp.iam.harvard.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://key-idp.iam.harvard.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Harvard College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Harvard University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.harvard.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>IdP Support Team</GivenName>
+ <EmailAddress>idp_support@harvard.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IdP Support Team</GivenName>
+ <EmailAddress>idp_support@harvard.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IdP Support Team</GivenName>
+ <EmailAddress>idp_support@harvard.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Team</GivenName>
+ <EmailAddress>itsec-incommon@harvard.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Clarion University -->
+<EntityDescriptor entityID="https://idp.clarion.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">clarion.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Clarion University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Clarion University is a member of the Pennsylvania State System of Higher Education</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.clarion.edu/about-clarion/policies/cu-policies/acceptable-use-of-technology-resources-policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="68" width="207" xml:lang="en">https://idp.clarion.edu/idp/images/eagle_logo2.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 32288316497584969785944314462599193182821389723, expires on Sat Dec 18 15:07:47 2032 GMT -->
+ <ds:X509Certificate>
+MIIDJzCCAg+gAwIBAgIUBafbshnnIQs9vn04YDHVguyflZswDQYJKoZIhvcNAQEF
+BQAwGjEYMBYGA1UEAxMPaWRwLmNsYXJpb24uZWR1MB4XDTEyMTIxODE1MDc0N1oX
+DTMyMTIxODE1MDc0N1owGjEYMBYGA1UEAxMPaWRwLmNsYXJpb24uZWR1MIIBIjAN
+BgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAhQ1hrfd9TG7GUt01LXLCXY3Sb7we
+rvPCxnff63bJlvrDprQwhLU0gZcOYPxHgnj9xCglvGzfxHYN7k6b8rmtSYE+i/As
+eAmxIadE8UtFyhzQigpmbkuc26T/mrKBH4X5fJC6Shv7bhGMkxAdIVfVKVAk8z2e
+JV10baku4n3heyJ+FpmybPGmgkxAS1zbgC2MZJUkZAW+7C6+FoUgWCezCA0+VB87
+6QiMeX04Y6PG4FimGp6WJWDkW2KGPalIv6fdJAZOrOg3aJakpJFPyg1fUaEUHIPd
+1ip+P7DisITQeRwVqOiW5N9UTUktba0X6R0BqHuQlbfV5bIUDicSpP7iqwIDAQAB
+o2UwYzBCBgNVHREEOzA5gg9pZHAuY2xhcmlvbi5lZHWGJmh0dHBzOi8vaWRwLmNs
+YXJpb24uZWR1L2lkcC9zaGliYm9sZXRoMB0GA1UdDgQWBBQvjjlxOgaZw1afROEy
+0g3wElY5ZjANBgkqhkiG9w0BAQUFAAOCAQEABLcQuMrWaIjTiWPEowG+sQRwnewI
+OkmtVC/r2hAz7p/m0WvdPFzcciGY2h6j/jqfH+iy9sYH4yM9u4J9WAumQK1Q4GlI
+0IcvbzMS/z0J4c7DZMf5o2bOW2nNnYH+snLifzQ3oFdb/41ZHc4DJPmdUQrGe5zu
+R/+XlwCtHu5YnWULAF6CiyS7z1KXj12fT8a4brLHLV1WGDYeOP3Wt0gF0lalQ+0x
+EnfRqvXvlWlxTuzRLDqKXzowjyAsGsxCItlvmIwANgYxn1SxDBTW0ZwMZ6lVR0F2
+8ergXvj+UYo/oR2H/HIprHaREQadi68xBDCSKMaZVqbdk/DfFzNiUEeOyQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.clarion.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.clarion.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.clarion.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.clarion.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.clarion.edu:8443/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.clarion.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.clarion.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.clarion.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">clarion.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 32288316497584969785944314462599193182821389723, expires on Sat Dec 18 15:07:47 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.clarion.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Clarion University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Clarion University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.clarion.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IDP Tech</GivenName>
+ <EmailAddress>idp-tech@clarion.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IDP Admin</GivenName>
+ <EmailAddress>idp-admin@clarion.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IDP Security</GivenName>
+ <EmailAddress>idp-sec@clarion.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IDP Support</GivenName>
+ <EmailAddress>idp-support@clarion.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Amherst College -->
+<EntityDescriptor entityID="https://shibidp.amherst.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">amherst.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Amherst College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.amherst.edu/about/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="334" width="986" xml:lang="en">https://www.amherst.edu/system/files/styles/original/private/media/PrimaryTwoLine_Lockup_PurpleRGB_0.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 931615808453330696381586308339678274686028267303, expires on Fri Mar 29 17:40:23 2030 GMT -->
+ <ds:X509Certificate>
+MIIDODCCAiCgAwIBAgIVAKMvGP/vH0uzAwPfsNR+8twMxr8nMA0GCSqGSIb3DQEB
+BQUAMB4xHDAaBgNVBAMTE3NoaWJpZHAuYW1oZXJzdC5lZHUwHhcNMTAwMzI5MTc0
+MDIzWhcNMzAwMzI5MTc0MDIzWjAeMRwwGgYDVQQDExNzaGliaWRwLmFtaGVyc3Qu
+ZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAkNJ1nVz/FM/CchMM
+NfgW4ROHyNf3K15dT4LB1x+GVivrpYuvOHAY4eyhwoBfkm0t5NM19EHpsdFIVePO
+Cm80WYFwCpR1lCPcN/3/JelfCTKKcjKJM6RCHUiM7e0JUlTTV/f0PEdiDrNn01wM
+9kknwkAxkXCyN4TNKT/KTMhYNwxhCqTa4QVDThJMQWXJkIbOA7pJbgmVmCfdcJub
+4E8C9gtgPTWnQPXtXxRtfH2YYd8fRwPIIx6ASW9VThOSk+FNmcbEGLpxFSRjnfMO
++SPdVahROAhP6IAgASEBzjgp9qb4deqLjIpk1hIQhHkoKZELlUq5lezaraxOemJI
+KFoG4wIDAQABo20wazBKBgNVHREEQzBBghNzaGliaWRwLmFtaGVyc3QuZWR1hipo
+dHRwczovL3NoaWJpZHAuYW1oZXJzdC5lZHUvaWRwL3NoaWJib2xldGgwHQYDVR0O
+BBYEFMj2O62lcU/Ny7iWyJ/vDyYkzMJOMA0GCSqGSIb3DQEBBQUAA4IBAQAkppMI
+tdfWe60+4ipCZ+aT/Fg30auva3YgKZsWEsTRcJ8cMLcst27AvswP16DtKp+eksN1
+Pgq+CEj6ahY1O4Rtic8hKwBsyHlMY47VdjZK2lvWBA3Dh81636jmOePQVRFqIAfQ
+EpKiUdqXNpwy61ODSFRJ/XEyod2tN+J2f5Rq2Cej6VWSNZ5FatuemjZMlxEXNi5s
+gl7fU1fEoCtBURaLf/tkzMKykipuzzSpZVS3uq8slt2jVsQlddIXR60pkGyQgr6/
+Is8EDBRpRFjVojjmYbLxcdbgEVA3CteakwkNe5Gb4gJuhFiq6nGhxFOron13TF69
+fuOjmWpbYZwDGqld
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibidp.amherst.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibidp.amherst.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibidp.amherst.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibidp.amherst.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibidp.amherst.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibidp.amherst.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">amherst.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 931615808453330696381586308339678274686028267303, expires on Fri Mar 29 17:40:23 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibidp.amherst.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibidp.amherst.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Amherst College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Amherst College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.amherst.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Steffen Plotner</GivenName>
+ <EmailAddress>swplotner@amherst.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brian Holley</GivenName>
+ <EmailAddress>bholley@amherst.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>SNG</GivenName>
+ <EmailAddress>sng@amherst.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Aaron Coburn</GivenName>
+ <EmailAddress>acoburn@amherst.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Smith College -->
+<EntityDescriptor entityID="https://login.smith.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">smith.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Smith College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity Provider for Smith College Shibboleth users</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.smith.edu/about-smith/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="88" width="504" xml:lang="en">https://login.smith.edu/idp/images/logolargest.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 851278088452741820283163784983757817648208499879, expires on Sun Jul 15 14:25:49 2035 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.smith.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.smith.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.smith.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.smith.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.smith.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.smith.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">smith.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 851278088452741820283163784983757817648208499879, expires on Sun Jul 15 14:25:49 2035 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.smith.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Smith College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Smith College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.smith.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Karla Borecky</GivenName>
+ <EmailAddress>kborecky@smith.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Crowley</GivenName>
+ <EmailAddress>jcrowley@smith.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Eric Brewer</GivenName>
+ <EmailAddress>ebrewer@smith.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Service Center</GivenName>
+ <EmailAddress>4its@smith.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ben Marsden</GivenName>
+ <EmailAddress>bmarsden@smith.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Tufts University -->
+<EntityDescriptor entityID="https://shib-idp.tufts.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">tufts.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Tufts University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.tufts.edu/about/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="67" width="154" xml:lang="en">https://shib-idp.tufts.edu/tufts_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15856602614741419385, expires on Sun Jan 29 16:11:09 2023 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib-idp.tufts.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-idp.tufts.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib-idp.tufts.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib-idp.tufts.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib-idp.tufts.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib-idp.tufts.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">tufts.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15856602614741419385, expires on Sun Jan 29 16:11:09 2023 GMT -->
+ <ds:X509Certificate>
+MIIDujCCAqICCQDcDfgQ9DFFeTANBgkqhkiG9w0BAQUFADCBnjELMAkGA1UEBhMC
+VVMxFjAUBgNVBAgTDU1hc3NhY2h1c2V0dHMxEzARBgNVBAcTClNvbWVydmlsbGUx
+GTAXBgNVBAoTEFR1ZnRzIFVuaXZlcnNpdHkxDDAKBgNVBAsTA1VJVDEbMBkGA1UE
+AxMSc2hpYi1pZHAudHVmdHMuZWR1MRwwGgYJKoZIhvcNAQkBFg1lc3NAdHVmdHMu
+ZWR1MB4XDTEzMDEzMTE2MTEwOVoXDTIzMDEyOTE2MTEwOVowgZ4xCzAJBgNVBAYT
+AlVTMRYwFAYDVQQIEw1NYXNzYWNodXNldHRzMRMwEQYDVQQHEwpTb21lcnZpbGxl
+MRkwFwYDVQQKExBUdWZ0cyBVbml2ZXJzaXR5MQwwCgYDVQQLEwNVSVQxGzAZBgNV
+BAMTEnNoaWItaWRwLnR1ZnRzLmVkdTEcMBoGCSqGSIb3DQEJARYNZXNzQHR1ZnRz
+LmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKl/x1AF4NuRjPA2
+oEI/WMyzBf5XmVt9cy4T7ZH5MLdmeiRfmFIGLy9YdF4Q2KHBDGk+ZQlHVv06sHze
+UUKmYGt+QS2K14Frei3yaCV3rKb9aA/ukeiVWfnn7Wsxn5qWi+mvEZq55iq8xCnw
+kLij3Fx6nWrC8T9ACLo3mfx4s9GXFY1ZIXtXj1qxwI5r93NnXUI7gMGXdHVKX7Um
+VsxL155CCb3KQRGml+1f1jl5XEHbKVVvAKQT3KdrTaa9I2Ncsx2rqtDnztV3nOUz
+b8girjEOHXLyS8rxI/xkbFajZohpFBr2aXuXvDphUO20CG4fRotIfZlokK/LHGL6
+hL5WyMkCAwEAATANBgkqhkiG9w0BAQUFAAOCAQEAIy3sZ9gt86yIpmU71AFriz9P
+516u7R6F6jvvQiHNNcg5RB/6qA3LDZZrmxzHdgWGGnbSd5mWiyr6ebGoxRxWzYpu
+r9ZgIOxCK7D9Ec6rhlX0jxy+ouZ5YtgENiIgCsvJaKnrMLkQrePkiunedxSHsgap
+3gF4jSiY6YZ6XN0sfbxJf4jlaI4kl47XvxHkdkjf+u8WvW+sz1tfui5rj0xLtgWN
+h7eQBFk5zu2vH7IlJ+5NrUQPM5srLIyyAQPkX3TwCIu0imLAMKVb/QMpa3jfj0u4
+nx4gfZBsxdfXaIUPuLZsW1Ae7E8kqKmgkS5floclqDnC9ebJtliJqXqaGQr+/A==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib-idp.tufts.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-idp.tufts.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Tufts University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Tufts University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.tufts.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>George Turner</GivenName>
+ <EmailAddress>george.turner@tufts.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>ESS</GivenName>
+ <EmailAddress>ESS@tufts.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>George Turner</GivenName>
+ <EmailAddress>george.turner@tufts.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>PeiQuan Ho</GivenName>
+ <EmailAddress>PeiQuan.Ho@tufts.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jonathan Rice</GivenName>
+ <EmailAddress>jonathan.rice@tufts.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Mississippi -->
+<EntityDescriptor entityID="https://umshibp.olemiss.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">olemiss.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Mississippi</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://en.wikipedia.org/wiki/University_of_Mississippi</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://olemiss.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="110" width="454" xml:lang="en">https://common.olemiss.edu/_images/CrestUM_Web_2x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 897526461640321244194214477319944903356747968224, expires on Sat Jul 17 14:20:42 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://umshibp.olemiss.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://umshibp.olemiss.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://umshibp.olemiss.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umshibp.olemiss.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://umshibp.olemiss.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">olemiss.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 897526461640321244194214477319944903356747968224, expires on Sat Jul 17 14:20:42 2032 GMT -->
+ <ds:X509Certificate>
+MIIDODCCAiCgAwIBAgIVAJ02en1t5aWOCxE4dPI/WEGJxW7gMA0GCSqGSIb3DQEB
+BQUAMB4xHDAaBgNVBAMTE3Vtc2hpYnAub2xlbWlzcy5lZHUwHhcNMTIwNzE3MTQy
+MDQyWhcNMzIwNzE3MTQyMDQyWjAeMRwwGgYDVQQDExN1bXNoaWJwLm9sZW1pc3Mu
+ZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv04ygC3gn9pyefto
+MYGjHlyX2T2NNlOSDX3uGYyzAGeHngFrvEPxZD6wN/IO8nCRlGOm+JkKeqqg1OpQ
+VjpXthFqN1sxZwNtAxokfRSEaHFChl5t0ciCuxic4grnHvOQtJulonO/qwbXPMhm
+RkKKbRtYTRcn92uxoUcPH6MgriDUIgfSwDR01VRA03s3Y++Hs2Qyy1oqC1hHYvuL
+pXCp+6DoIdGsyksaZtskYrq4a9mSRXZ8q1Re/Ma7LB7lHTkOO0qD9xALLm7eLj71
+BpgFTlno2IHgZSZ/IaUsU0zUb6RXDanO+SKCkX6wwvq+WttrVxZ5Qyh+xQg2EZSg
+tttj/QIDAQABo20wazBKBgNVHREEQzBBghN1bXNoaWJwLm9sZW1pc3MuZWR1hipo
+dHRwczovL3Vtc2hpYnAub2xlbWlzcy5lZHUvaWRwL3NoaWJib2xldGgwHQYDVR0O
+BBYEFG6CZ99+tMD6Z1RRYWY9+WEEYsOCMA0GCSqGSIb3DQEBBQUAA4IBAQC6Clv4
++OLHTrPh4g6RbiZP7Q6uDyHwTdyPcpxB6g5YiQqMzfCqmlg1JO9LXcGnhO0ngjPw
+GS5fUCqUzQw14yXBD6Bq3IAK022afq6DkZkKpsvAv7s4EBFFhYSbg8iJfdheEQMb
+GV6aahGWm1VZToICFALOqFrkI9PteT7Mkksnc7kPXKifdYDMhajhP6ap/ANBQd0X
+kXK+zix7sCJdKO5v6bbmXuGSFT+KRQnHWEC/mDgfU/CwVtVcalFMLAamSa/Y8yzm
+7c2UaQVnu2J/dRQROe7fBs4XdIjF7/kaLlO0fQaNqrQ7PBJLgNbmGGn1vgVPrD47
+njcg/y96NdqwknJF
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://umshibp.olemiss.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Mississippi</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Mississippi</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.olemiss.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gabe Grissett</GivenName>
+ <EmailAddress>gpg@olemiss.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Gabe Grissett</GivenName>
+ <EmailAddress>gpg@olemiss.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:icmd="http://id.incommon.org/metadata" contactType="other" icmd:contactType="http://id.incommon.org/metadata/contactType/security">
+ <GivenName>IT Security</GivenName>
+ <EmailAddress>itsecurity@olemiss.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Helpdesk</GivenName>
+ <EmailAddress>helpdesk@olemiss.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Stevenson University -->
+<EntityDescriptor entityID="https://secure.stevenson.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">stevenson.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stevenson University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.stevenson.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.stevenson.edu/about/consumer-information/documents/acceptable-use-policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="65" width="226" xml:lang="en">https://secure.stevenson.edu/idp/images/logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 960018883912293362425854133646423273236984255190, expires on Sun Jul 18 18:45:24 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://secure.stevenson.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://secure.stevenson.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://secure.stevenson.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure.stevenson.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://secure.stevenson.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://secure.stevenson.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stevenson University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stevenson University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://stevenson.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>shibadmin@stevenson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>shibadmin@stevenson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>shibadmin@stevenson.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Pace University -->
+<EntityDescriptor entityID="https://shibboleth.pace.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pace.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Pace University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.pace.edu/web-site-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="91" width="220" xml:lang="en">https://www.pace.edu/sites/all/themes/pace7r/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 736107207945275094839929950557529598014304511004, expires on Tue Sep 21 19:34:55 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.pace.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.pace.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.pace.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.pace.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.pace.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pace.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 736107207945275094839929950557529598014304511004, expires on Tue Sep 21 19:34:55 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.pace.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pace University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pace University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.pace.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Tom Reivik</GivenName>
+ <EmailAddress>treivik@pace.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chris Bohlk</GivenName>
+ <EmailAddress>cbohlk@pace.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Matthew Racioppo</GivenName>
+ <EmailAddress>Mracioppo@pace.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- St. Olaf College -->
+<EntityDescriptor entityID="https://login.stolaf.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.stolaf.edu/services/iit/shibboleth/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">stolaf.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">St. Olaf College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">St. Olaf College Shibboleth Server</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://wp.stolaf.edu/it/shibboleth/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://wp.stolaf.edu/it/securing-college-data/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="144" width="360" xml:lang="en">https://www.stolaf.edu/files/sto_logo_email_sig.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9962525478480408163, expires on Sun Aug 8 15:38:38 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.stolaf.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.stolaf.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.stolaf.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">St. Olaf College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">St. Olaf College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://stolaf.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>St. Olaf Systems Team</GivenName>
+ <EmailAddress>root@stolaf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>St. Olaf Systems Team</GivenName>
+ <EmailAddress>root@stolaf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>St. Olaf Systems Team</GivenName>
+ <EmailAddress>root@stolaf.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- AppointLink Portal Solutions, Inc. -->
+<EntityDescriptor entityID="https://stanfordgsb-seatgen.appointlink.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://stanfordgsb-seatgen.appointlink.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">StanfordGSB SeatGen</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://trymylaw.com/wp-content/uploads/AppointLink-Terms-of-Service-clean-copyrev3.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="63" width="225" xml:lang="en">https://www.seatgen.com/wp-content/uploads/2018/04/SeatGen-Logo-x2-1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15183249381879800651, expires on Thu Aug 8 20:43:56 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stanfordgsb-seatgen.appointlink.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stanfordgsb-seatgen.appointlink.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stanfordgsb-seatgen.appointlink.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stanfordgsb-seatgen.appointlink.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">StanfordGSB SeatGen</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">AppointLink Portal Solutions, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">AppointLink Portal Solutions, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://appointlink.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jason Shoemaker</GivenName>
+ <EmailAddress>jason@appointlink.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Peter Zdrodowski</GivenName>
+ <EmailAddress>peterz@appointlink.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Tony Forsythe</GivenName>
+ <EmailAddress>tonyf@appointlink.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://zdapi.appointlink.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://zdapi.appointlink.com/SAML/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ZD API</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://trymylaw.com/wp-content/uploads/AppointLink-Terms-of-Service-clean-copyrev3.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="63" width="225" xml:lang="en">https://www.seatgen.com/wp-content/uploads/2018/04/SeatGen-Logo-x2-1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 211825310821623112992332015653011757523444851953, expires on Sat Nov 17 21:22:25 2029 GMT -->
+ <ds:X509Certificate>
+MIIECzCCAnOgAwIBAgIUJRqTUJR5wU3FKgYuk/nRk5HSZPEwDQYJKoZIhvcNAQEL
+BQAwHjEcMBoGA1UEAxMTemRob3N0MS5teWxhdy5sb2NhbDAeFw0xOTExMjAyMTIy
+MjVaFw0yOTExMTcyMTIyMjVaMB4xHDAaBgNVBAMTE3pkaG9zdDEubXlsYXcubG9j
+YWwwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDS6u2utUER8PGGIGTN
+bdnQdxpMMjxwafzyYluyR+tWNI452aNXaJtOXmbA8cCnymWAzohOFXA4iMwNLVlp
+iFRGTbsu3o5i2G3RGRfdWvokglnYwQ+b26VSpKKT3LFwRw/T7r1aL07Mzle/jgW9
+z5qMte62CaP+0R4OMUX1O+uunJyHy/X1D4ym6Mzp+7yLYnSXTKYwBUE1foPCFlX4
+KzGw653XRHBNz+eWP9V/EMm/fImyRHQ1O05OmhmR4AHtX/DTFB3AaMxXPnQIoNT4
+FwBRoevFpi/78fNyUQ2215Igevp37HjDNlZJXu5F/iNvPrkL3wEO/O+/lqjM83ry
+jCc74OQKpEdSu8lO4CBakI88ZD/BpsFYMz0Aav5RmcgXKQkfPJjHqoLvvX77gb6T
+xWqTmHyhzBKEddJztyMyU+p359d7tJHNNKC4p4cHuX8zzfYei3IcxPXsM5q7jU4Y
+4EWFZkbfKRDE4UzO4gcfroQDW1a3WgmtdgOCQyp6nueCBCUCAwEAAaNBMD8wHgYD
+VR0RBBcwFYITemRob3N0MS5teWxhdy5sb2NhbDAdBgNVHQ4EFgQUwhjb5NTwMP25
+4zDuHqZvIDXOQ28wDQYJKoZIhvcNAQELBQADggGBAABFn+t/uJ7yOsPZDeLBVyo4
+1OCUzMqQ7suVwkChkTswXG1BplqDZYdaa8apd20hNZLU4vlNbkRTCvdivtd5HsG6
+q0umSHCbWyu40xbOe54LxUr+ma8dRfniLZoJFCnwrbj0LzWqLeRKg7FMLh8q2Ax2
+DCIDE8+KQMlPPdCfzBkZzRrsRKyxDyz7TXEJDWNbMVVnqnwonOIhvlYb6u9p8n8h
+YbKVPbwbw7t9JuLmDy94RISJW7gEgp4LW1wZe/JSlgiJo4bXB+xpQ6rFCgf8zVDX
++/28RC7b4LXqnQh/Ljdb86OfmdE7T/RCIUviTwO3zDwn+8pdi+C4HRssroyrvMOe
+Jhuc7sc6g8gM48gJrFPebPlz7ykDW6XQlBOTVi6qEuilitJqL+kpZNl2ZaTK5ZtA
+94sct5G9WXxvesaibEK+hhZDAdTK9eiaSqCem13M7zzzkWvPluBS/fe7Rl/iuxJD
+/I+mA+DJqGhvmeUzU3sSLi3L5ImegfTMTwGZI5uzqw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zdapi.appointlink.com/SAML/SingleLogoutService"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zdapi.appointlink.com/SAML/AssertionConsumerService" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ZD API</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">AppointLink Portal Solutions, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">AppointLink Portal Solutions, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://appointlink.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Peter Zdrodowski</GivenName>
+ <EmailAddress>peterz@appointlink.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Peter Zdrodowski</GivenName>
+ <EmailAddress>peterz@appointlink.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Peter Zdrodowski</GivenName>
+ <EmailAddress>peterz@appointlink.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://zdtestapi.appointlink.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://zdtestapi.appointlink.com/SAML/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ZD Test API</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://trymylaw.com/wp-content/uploads/AppointLink-Terms-of-Service-clean-copyrev3.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="63" width="225" xml:lang="en">https://www.seatgen.com/wp-content/uploads/2018/04/SeatGen-Logo-x2-1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11695413253206624224, expires on Sat Oct 6 15:56:25 2029 GMT -->
+ <ds:X509Certificate>
+MIIERzCCAq+gAwIBAgIJAKJOdGOKxsfgMA0GCSqGSIb3DQEBCwUAMCYxJDAiBgNV
+BAMTG2Rldi1ob3N0LmFwcG9pbnRsaW5rZGV2LmxvYzAeFw0xOTEwMDkxNTU2MjVa
+Fw0yOTEwMDYxNTU2MjVaMCYxJDAiBgNVBAMTG2Rldi1ob3N0LmFwcG9pbnRsaW5r
+ZGV2LmxvYzCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAL/PUJDl8hZZ
+jEHnPgL96RkEd0zNQk65FOswqGbC/idLkQKvBCkoaKhNO8qn7ghviU1fF3jPFogt
+nllVEUopOLs3vEC3WuBNvxR+ABZMfJrsEd4qtHqCt2s9uXqReyn8iqFePnd0FKim
+tKAowksIh3nfJh8jDyJ7FvrNUqaQ/yMhvQfnltTxHo/Nmm2UpTbQqhYzq/geq340
+Jy3qnMoM0gTLI0e990PCkEblcpWCwL/BY2MsNToUDSkNQtCuJR75FyrTJKn5CG9H
+u6dCkRqKGvgaSdTJrzI1btiW9RNMka3lxZCrtg0Yu7T4r8XgTgaGQz6Vy77m2rfM
+R7iQhqEcySau+pGVs1t8LtaShqCZq35qBl7v21JT/pxvXFH1ov8aj8Nwqo9S+0ZY
+jgNkd7eHHYvaNqT2psUGssL0/feMVKuyZsImS2vsxPdQD8uGg7iTk32zjkQbbbau
+EFKxYBtThyWpZOF55h3kRS9ZoSorybrH/E3SzeZKr4OiVwH6BFzVmQIDAQABo3gw
+djBVBgNVHREETjBMghxkZXYtaG9zdC5hcHBvaW50bGlua19kZXYubG9jhixodHRw
+czovL3pkdGVzdGFwaS5hcHBvaW50bGluay5jb20vc2hpYmJvbGV0aDAdBgNVHQ4E
+FgQUlNHR+u/8/cYlyYCIrVPnxJEa6zEwDQYJKoZIhvcNAQELBQADggGBAGiu0sbX
+GLDmba6YzKDK97uM5E4qwd76w+HElv/SlwfsqZX6TXYq6YFGhn7pqtfjTKVLWC/0
+URG1Pbn4oTYNaaX3brJmqVHI9Bl62lmlNHKu50JfJGgGd7BhADHSzrLDYSa1VUVY
+X12I43YfruQ0SDxWzEa5ORwo5VHO8zMUNh1ch7NDsEsiP+sFSS65iftJ2Wq2nkXP
+5WapdZEE9+ioglOnxYCnKtnS8I2yqAzfYNJCJ5PF3VxhUJpAKC0j0nuWAQ04eM4I
+QGKLsHrMVlEivk7lW4+lJhNUeOAiP1DB/H+VazCCf1GFwH7ImKwGIvHGTNHS4tzO
+OIXglFg8pSzw4Q/NlfRIkFNsec1orb9GFNuVUkkM0dzVm7veMUJ/fWrj4pLyPy0a
+WP3z2GTkvfQzmyMUQDpoDqhb5Ke9D3IAoLdtUaWB+oSsloqBRQdBUNT2oiqiBbrs
+Km+YT1XZ8ukkhN+ozHcj8swnYXFC+8h353u32XdCHPekIYD22/uIuXqv+A==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zdtestapi.appointlink.com/SAML/SingleLogoutService"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zdtestapi.appointlink.com/SAML/AssertionConsumerService" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ZD Test API</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">AppointLink Portal Solutions, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">AppointLink Portal Solutions, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://appointlink.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Peter Zdrodowski</GivenName>
+ <EmailAddress>peterz@appointlink.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Peter Zdrodowski</GivenName>
+ <EmailAddress>peterz@appointlink.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Peter Zdrodowski</GivenName>
+ <EmailAddress>peterz@appointlink.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Thomas Jefferson National Accelerator Facility -->
+<EntityDescriptor entityID="https://jidp.jlab.org/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://jidp.jlab.org/error-main.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">jlab.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Thomas Jefferson National Accelerator Facility</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Jefferson Lab Federation / Single Sign-On server.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://jidp.jlab.org/info.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://jidp.jlab.org/notices/PrivacyAndSecurityNotice.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="74" width="294" xml:lang="en">https://jidp.jlab.org/images/jlab-logo-new.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 67439180124620124876820374370375990064464894659, expires on Fri Dec 5 18:36:19 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://jidp.jlab.org/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://jidp.jlab.org/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://jidp.jlab.org/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jidp.jlab.org/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://jidp.jlab.org/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://jidp.jlab.org/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jidp.jlab.org/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://jidp.jlab.org/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">jlab.org</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 67439180124620124876820374370375990064464894659, expires on Fri Dec 5 18:36:19 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://jidp.jlab.org/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://jidp.jlab.org/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Thomas Jefferson National Accelerator Facility</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Thomas Jefferson National Accelerator Facility</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.jlab.org</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>JLab IdP Technical Support</GivenName>
+ <EmailAddress>jidp-tech@jlab.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>JLab IdP Support Contact</GivenName>
+ <EmailAddress>jidp-support@jlab.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>JLab IdP Security Contact</GivenName>
+ <EmailAddress>jidp-security@jlab.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>JLab IdP Admin Contact</GivenName>
+ <EmailAddress>jidp-admin@jlab.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Auburn University -->
+<EntityDescriptor entityID="https://webauth.auburn.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">auburn.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Auburn University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity provider for Auburn University</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.auburn.edu/main/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="563" xml:lang="en">https://www.auburn.edu/images/auburn-univ-563x150.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1459040096222083071444918939509344080960320857114, expires on Sat Feb 5 17:03:36 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.auburn.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webauth.auburn.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://webauth.auburn.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.auburn.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.auburn.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">auburn.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1459040096222083071444918939509344080960320857114, expires on Sat Feb 5 17:03:36 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.auburn.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Auburn University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Auburn University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.auburn.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Brian Anderson</GivenName>
+ <EmailAddress>anderbr@auburn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brian Anderson</GivenName>
+ <EmailAddress>anderbr@auburn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>OIT Helpdesk</GivenName>
+ <EmailAddress>helpdesk@auburn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brian Anderson</GivenName>
+ <EmailAddress>anderbr@auburn.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Boston College -->
+<EntityDescriptor entityID="https://login.bc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.bc.edu/idp/support.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Boston College</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://bc.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.bc.edu/content/dam/files/offices/policies/pdf/policies/I/1-100-025.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="60" xml:lang="en">https://login.bc.edu/idp/images/seal_color_bc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 311974454176285739359053473796848489783858695147, expires on Sun Aug 22 11:53:21 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.bc.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.bc.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.bc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.bc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.bc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.bc.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 311974454176285739359053473796848489783858695147, expires on Sun Aug 22 11:53:21 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.bc.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Boston College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Boston College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.bc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>BC IAM Technical Team</GivenName>
+ <EmailAddress>itsstaff.iam.technical@bc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>BC IAM Support Team</GivenName>
+ <EmailAddress>itsstaff.iam.support@bc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>BC IAM Administrative Team</GivenName>
+ <EmailAddress>itsstaff.iam.administrative@bc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Response Team</GivenName>
+ <EmailAddress>security@bc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Georgia State University -->
+<EntityDescriptor entityID="https://idp.gsu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.gsu.edu/identity/feedback.htm" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">gsu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Georgia State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Georgia State University is located in the heart of downtown Atlanta. Georgia State is one of the country's leading urban research universities.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://idp.gsu.edu/idp/shibboleth</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.gsu.edu/privacy-notices/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="56" width="400" xml:lang="en">https://idp.gsu.edu/oxauth/img/login-form-image.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12349826021714309689, expires on Sat Aug 12 16:33:12 2023 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16184482575623291971, expires on Fri Aug 23 18:26:41 2013 GMT -->
+ <ds:X509Certificate>
+MIIDiDCCAnACCQDgmtUnSYaEQzANBgkqhkiG9w0BAQUFADCBhTELMAkGA1UEBhMC
+VVMxEDAOBgNVBAgMB0dlb3JnaWExEDAOBgNVBAcMB0F0bGFudGExDDAKBgNVBAoM
+A0dTVTENMAsGA1UECwwESVMmVDEUMBIGA1UEAwwLaWRwLmdzdS5lZHUxHzAdBgkq
+hkiG9w0BCQEWEHJyZWRkaXNoQGdzdS5lZHUwHhcNMTIwODIzMTgyNjQxWhcNMTMw
+ODIzMTgyNjQxWjCBhTELMAkGA1UEBhMCVVMxEDAOBgNVBAgMB0dlb3JnaWExEDAO
+BgNVBAcMB0F0bGFudGExDDAKBgNVBAoMA0dTVTENMAsGA1UECwwESVMmVDEUMBIG
+A1UEAwwLaWRwLmdzdS5lZHUxHzAdBgkqhkiG9w0BCQEWEHJyZWRkaXNoQGdzdS5l
+ZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC+iygvUXA1CzRqsw7P
+N9cFg/9h/Gw8TNlj/XR9Sv2RlEUdnuSNTMgF6lF7lbU5eqfjEG4aKyP2aI6Krdl7
+lqqYrXCY3WOrnHo8SfNUsdbdT8tmm46ye4n2S0dDVII0RuJ5POKdtSjhKF2TZWlo
+lk6DyltMAq6803bdWStsZN0L/sQyaqmLkWLIH7S0FCsus7ypS2EA4IjcZVbuWoy0
+ughOCRqmJCzLEkFaTysMzrVgSrAjT4WHrFFfBV9gBdalrJ9Kmqhr1BlUWOJmFLah
+TOW8Q81034cAApmY6DkiWVO69+IzUWxhsjrXk9Lt0tem4ovr/yMPdtxYJgsDJgAA
+TtDtAgMBAAEwDQYJKoZIhvcNAQEFBQADggEBAENAbC841AsHB1tQ1VjltsH4uWct
+woTLcdkuX4owoYLlddpG1IUk0iCr9ugjk2WIAK+kFbJzxB9IvXPYuWn9GQlWjlug
+LnLL6XizmhPUuHpAAkjM48RgJkxZkBlKdy+JyUK9Wz9syXx5SisfDBXadL4QsKx2
+Xz3sw2sFRwZfMd1Ir2BFufxHwyR1wDMISkLW4KIh2Y/A4T5PJnyr1gvqCuGFBmVa
+bnsCGHbhR1ukH8bdVEe3cfowAMDJEJHVZGEJYruqe0hjIa/ZDKXFWaDuyaknM5OD
+BCoW3mMYc0Wvo936Rx/CEhxnkL8hh/p+qdyWRZOJy3H1eHEP91+c5Uy+T7U=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.gsu.edu:9443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.gsu.edu:9443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.gsu.edu/identity/logout"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.gsu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.gsu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.gsu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.gsu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">gsu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12349826021714309689, expires on Sat Aug 12 16:33:12 2023 GMT -->
+ <ds:X509Certificate>
+MIIDiDCCAnACCQCrY2VVpigyOTANBgkqhkiG9w0BAQUFADCBhTELMAkGA1UEBhMC
+VVMxEDAOBgNVBAgMB0dlb3JnaWExEDAOBgNVBAcMB0F0bGFudGExDDAKBgNVBAoM
+A0dTVTENMAsGA1UECwwESVMmVDEUMBIGA1UEAwwLaWRwLmdzdS5lZHUxHzAdBgkq
+hkiG9w0BCQEWEHJyZWRkaXNoQGdzdS5lZHUwHhcNMTMwODEyMTYzMzEyWhcNMjMw
+ODEyMTYzMzEyWjCBhTELMAkGA1UEBhMCVVMxEDAOBgNVBAgMB0dlb3JnaWExEDAO
+BgNVBAcMB0F0bGFudGExDDAKBgNVBAoMA0dTVTENMAsGA1UECwwESVMmVDEUMBIG
+A1UEAwwLaWRwLmdzdS5lZHUxHzAdBgkqhkiG9w0BCQEWEHJyZWRkaXNoQGdzdS5l
+ZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCi46F3cO420nIJduG7
+bz9n2uBJQyyulhsMQ1NkV1AyZgjXhPWOf1eH8UgP1Z1w4qZiCEJZ2ESkmpGLOvCv
+XZOoF7Re+IZ+RcfNvTIkrsYmUi7QJMUdsmHojnFbgrygc/liFen50x3lB7YWz2hg
+Oh82QJ1LGeNLDy2UWXjBOsNQgZ0kLXBIoqRaGFoj7+DxsrPheaXnFGLEIQo0NHRt
+ZMJWOkDoLwadWBEprMcTiEgBQhyTDjinA1c9smZ8xHxhyUY/b8X6uLlPfQSTR2H3
+/bP3DdvUtjawOBD0fTGyaHHyVgKh9VHoprjpFzghPn2oS3/FNO1S8japHQYcQ4Yw
+Z2IJAgMBAAEwDQYJKoZIhvcNAQEFBQADggEBAEx2wJjdE2IR2j4ak4iHKvnEFBwP
+BERQgwVN3Hg652gZBEo0rjRWE2gojCf1Aw8cgi1qGH5mRys3I837WwBuQBRd9Q+E
+aoV966qWrbAkWUPpE0XXquXcCheSJIN3OzlHZesynoeFeFLRGLp4xYfSwAqQuIHt
+bjfhewGhe4cfwJlWByoS9RDQUVrHGl6MgMvk/l2wXIFn4I+6DqJYsHAWl/e1m9Zh
+tN0DE2kMdJnP9uo3P2zbnx1OjnhEKq8USicqfJ0WURaAf3pvB2CQlfHJpLyTk4su
+MaNh4Mq+DwonONJ2IrxNOVDGr1OizMya+fiAPFA2l+XvfveCYE4qgQrBubA=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16184482575623291971, expires on Fri Aug 23 18:26:41 2013 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.gsu.edu:9443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.gsu.edu:9443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Georgia State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Georgia State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.gsu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ron Reddish</GivenName>
+ <EmailAddress>rreddish@gsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeremy Mullins</GivenName>
+ <EmailAddress>mullins@gsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mick Chambers</GivenName>
+ <EmailAddress>mick@gsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Whitfield Samuel, Jr.</GivenName>
+ <EmailAddress>wsamuel@gsu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Marine Biological Laboratory -->
+<EntityDescriptor entityID="https://idp.mbl.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mbl.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Marine Biological Laboratory</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Marine Biological Laboratory Federated Single Sign-On Service</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.mbl.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.mbl.edu/it/files/2013/05/incommon_privacy_statement.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="94" width="499" xml:lang="en">https://idp.mbl.edu/idp/images/header_logo_new.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10795517775820365612, expires on Sun Jul 11 15:17:25 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.mbl.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mbl.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.mbl.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.mbl.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.mbl.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.mbl.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mbl.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10795517775820365612, expires on Sun Jul 11 15:17:25 2032 GMT -->
+ <ds:X509Certificate>
+MIIDeDCCAuGgAwIBAgIJAJXRYjhSMB8sMA0GCSqGSIb3DQEBBQUAMIGDMQswCQYD
+VQQGEwJVUzEWMBQGA1UECBMNTWFzc2FjaHVzZXR0czElMCMGA1UEChMcTWFyaW5l
+IEJpb2xvZ2ljYWwgTGFib3JhdG9yeTEfMB0GA1UECxMWSW5mb3JtYXRpb24gVGVj
+aG5vbG9neTEUMBIGA1UEAxMLaWRwLm1ibC5lZHUwHhcNMTIwNzE2MTUxNzI1WhcN
+MzIwNzExMTUxNzI1WjB3MQswCQYDVQQGEwJVUzEWMBQGA1UECBMNTWFzc2FjaHVz
+ZXR0czETMBEGA1UEBxMKV29vZHMgSG9sZTElMCMGA1UEChMcTWFyaW5lIEJpb2xv
+Z2ljYWwgTGFib3JhdG9yeTEUMBIGA1UEAxMLaWRwLm1ibC5lZHUwggEiMA0GCSqG
+SIb3DQEBAQUAA4IBDwAwggEKAoIBAQDf2IMVS6Uj/AY6Y0M/XlafcHbg0Io2mnqr
+E9rImOw7bx5x9mNZVERGP0IM4tQW8hIHI+OAivK8FhDW5LgLPqqcd0fSeJROFOBW
+u1+ssYXg7Qae+QkAbbkjP7qWV5pF4JSe+NfSZVptIllS/LEb2LThSx1muyKe7dvE
+uruYglpLwtELh9JJt7CFKd+0Z16J1C+mPjXr8v7YSbCEAeakV5EFGrUEx/VzzvRv
+MEn2E+6KM8e78Z6m3aYRKenRF0VryFHpiKkkKhwg3iDKf7Y2SEJf3CnshIxpoUEU
+/YPqr9KSGx4/RDG2Enu2EAAFoKDwZpSpGZqMCNJytauQnBzy+hR7AgMBAAGjezB5
+MAkGA1UdEwQCMAAwLAYJYIZIAYb4QgENBB8WHU9wZW5TU0wgR2VuZXJhdGVkIENl
+cnRpZmljYXRlMB0GA1UdDgQWBBQmngP4M69E0dBfby8kif3ltwOxrTAfBgNVHSME
+GDAWgBReurFgimXLG1EYKa8q4rJPb+X7tzANBgkqhkiG9w0BAQUFAAOBgQBWsE6q
+2ba1QbVCDTa7tSODC6vBZT5ioij1JUPeXyoZIS+RW8lvDmkGShG+4iRvEX21pUk2
+LfjdzGmLyOc+oHKS1CuQPe7hZS3IzC8U1fuyY/KIfqjba2zCk4ZyRFCP0vRlzxGc
+D9aaA2f9N+a9QmB0Bnwu75zgxjIrbQmLdJJp+A==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.mbl.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Marine Biological Laboratory</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Marine Biological Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.mbl.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Christopher Dematos</GivenName>
+ <EmailAddress>cdematos@mbl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Christopher Dematos</GivenName>
+ <EmailAddress>cdematos@mbl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Brian Cortright</GivenName>
+ <EmailAddress>bcortright@mbl.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Scott Koerner</GivenName>
+ <EmailAddress>skoerner@mbl.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Bucknell University -->
+<EntityDescriptor entityID="https://shib.bucknell.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bucknell.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Bucknell University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Bucknell University, founded in 1846, combines the personal liberal arts experience with first-class research facilities, global study opportunities and 110 fields of study.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.bucknell.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.departments.bucknell.edu/library_IT/InCommonPOP.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="95" width="181" xml:lang="en">https://www.bucknell.edu/images/system/bucknell_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 896874927642614266050326837702288269025274862370, expires on Sun Jun 29 20:01:09 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.bucknell.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.bucknell.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.bucknell.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.bucknell.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.bucknell.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bucknell.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 896874927642614266050326837702288269025274862370, expires on Sun Jun 29 20:01:09 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.bucknell.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.bucknell.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Bucknell University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Bucknell University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.bucknell.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Bucknell Systems</GivenName>
+ <EmailAddress>systems@bucknell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Bucknell Systems</GivenName>
+ <EmailAddress>systems@bucknell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Bucknell Information Security</GivenName>
+ <EmailAddress>infosec@bucknell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bucknell Systems</GivenName>
+ <EmailAddress>systems@bucknell.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Akron, Main Campus, The -->
+<EntityDescriptor entityID="https://id.uakron.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://auth.uakron.edu/zid/app/info_shibboleth.cgi" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uakron.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Akron, Main Campus, The</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uakron.edu/dotAsset/1344034.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="93" width="172" xml:lang="en">https://www.uakron.edu/global/application/velocity/shared/images/UAWordmark_blue.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 517586456158443250937524165535658863150292625215, expires on Tue Jul 31 18:51:31 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://id.uakron.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://id.uakron.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://id.uakron.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://id.uakron.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://id.uakron.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uakron.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 517586456158443250937524165535658863150292625215, expires on Tue Jul 31 18:51:31 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://id.uakron.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://id.uakron.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Akron, Main Campus, The</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Akron, Main Campus, The</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uakron.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shib Admin</GivenName>
+ <EmailAddress>shibadmin@uakron.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shib Tech</GivenName>
+ <EmailAddress>shibtech@uakron.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kurt Eckert</GivenName>
+ <EmailAddress>keckert@uakron.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- New Jersey Institute of Technology -->
+<EntityDescriptor entityID="https://webauth.njit.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://webauth.njit.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">njit.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">New Jersey Institute of Technology</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.njit.edu/about</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.njit.edu/policies/policy_computingresources.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://webauth.njit.edu/idp/images/njit-incommon-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10591760558839983211912994363124185651, expires on Tue May 17 23:59:59 2011 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.njit.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webauth.njit.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://webauth.njit.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.njit.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.njit.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">njit.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10591760558839983211912994363124185651, expires on Tue May 17 23:59:59 2011 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.njit.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">New Jersey Institute of Technology</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">New Jersey Institute of Technology</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.njit.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>University Information Systems</GivenName>
+ <EmailAddress>uis-systems@njit.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>University Information Systems</GivenName>
+ <EmailAddress>uis-systems@njit.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>University Information Systems</GivenName>
+ <EmailAddress>uis-systems@njit.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>University Information Systems</GivenName>
+ <EmailAddress>uis-systems@njit.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Imodules Software, Inc. -->
+<EntityDescriptor entityID="http://bentleystudentservices.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Bentley University 1888</mdui:DisplayName>
+ <mdui:Description xml:lang="en">iModules site 1888 Bentley University</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://bentleystudentservices.imodules.com/s/resources/templates/login/index.aspx?sid=1888&amp;pgid=230&amp;cid=157&amp;no_cookie=1</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -163245949562668363393988790791438008260, expires on Fri Jun 17 16:09:25 2039 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://securelb.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1888" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Production</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://bond-wstest.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">iModules Bond University test site</mdui:DisplayName>
+ <mdui:Description xml:lang="en">600865
+iModules Shibboleth Login</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="200" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 99392977528488816684413595688018632392, expires on Sat Sep 25 16:19:31 2038 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secureau.imodules.com/controls/login/AssertionConsumerService.aspx?sid=600865" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://cwpub2.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Current Work Test</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -68782710066608739900231940068719906794, expires on Sat Jun 10 21:18:56 2034 GMT -->
+ <ds:X509Certificate>
+MIIDBDCCAeygAwIBAgIQzEDukSw9R5BHpxVmr1UwFjANBgkqhkiG9w0BAQQFADAX
+MRUwEwYDVQQDEwxpbW9kdWxlcy5jb20wHhcNMTQwNjEwMjExODU3WhcNMzQwNjEw
+MjExODU2WjAXMRUwEwYDVQQDEwxpbW9kdWxlcy5jb20wggEiMA0GCSqGSIb3DQEB
+AQUAA4IBDwAwggEKAoIBAQDC5hlDfEQ7RoqQgtcZjOxN2FdUOMu4MI8hIeydiFDy
+1fT1t1jJHmFF5V4JDGpITIapK2caenljBcGl7CGC+Z6EXID8i0lxc7lLWOOrYkJb
+8PeuVOpbxTZfOxfkC3jf4IfLZPtBfDvWjYtVUPwDCpwLLE/GQzz6HySoMIcWAkQ9
+bPoAIITTRnDpo1f4J6nO81DKx0XjBVIbz6aTsF60pcXQzLJ69KGI5Jkh3DjmNbeq
+EXH6ENtq823q4JGXRrKvCPrTlt+79EI1p+ECSaRUx006raAYHktUTT2KY1oUlsuk
+qVA+LMmhX/+jF1fgOehHEurOiKQp2aGmeV4PnJ8pXKM9AgMBAAGjTDBKMEgGA1Ud
+AQRBMD+AEG94Y5yfOU4e+OzhpzVt1UyhGTAXMRUwEwYDVQQDEwxpbW9kdWxlcy5j
+b22CEMxA7pEsPUeQR6cVZq9VMBYwDQYJKoZIhvcNAQEEBQADggEBAFDDvIjK8eJO
+YjDqnY9DfzUEN6Vp80w3ZLhT/K49/McNbbGkt0bgg45MeJ78IxLdclTIhOEeHACN
+F71+XLb9PjRfISiB37V157w0nKF5MsMYU1dathFrVOzCIxvhERgoD4lMNtwZiKKH
+J/xYeczpnHz5iFpoiCvsvPTP5sZqAKvf5ovpermVcLyqEPJJHvLHe+TbwdwTuGMS
+pF2w1WQGpSgdbcxWWwmwpbeiF5ADI6UTS5txOfG0p8L2RTxgRJ6Nb7lNrelIEcup
+6nWHUla/60ENe+AN9qsqYh1vnknLi7kSMHwvtyzFQDHnXhwhLa9mkpsZVkeLEGsR
+MJlfQnuceWY=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oddpubsecure.imodules.com/controls/login/AssertionConsumerService.aspx?sid=13410&amp;gid=2" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oddpubsecure.imodules.com/controls/login/AssertionConsumerService.aspx?sid=13410&amp;gid=2&amp;samldebug=1" index="2"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Josh Wicoff</GivenName>
+ <EmailAddress>jwicoff@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://harvard.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Harvard Chan (PROD)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">1319</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 26570893142233693394489669423034301787, expires on Sat Dec 13 16:06:37 2036 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://securelb.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1319" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>David Weidner</GivenName>
+ <EmailAddress>dweidner@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://harvard-test.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Harvard Chan (TEST)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">601319</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 26570893142233693394489669423034301787, expires on Sat Dec 13 16:06:37 2036 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://securelb.imodules.com/controls/login/AssertionConsumerService.aspx?sid=601319" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>David Weidner</GivenName>
+ <EmailAddress>dweidner@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://hotfixpub1.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">iModules Hotfix Test</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -68782710066608739900231940068719906794, expires on Sat Jun 10 21:18:56 2034 GMT -->
+ <ds:X509Certificate>
+MIIDBDCCAeygAwIBAgIQzEDukSw9R5BHpxVmr1UwFjANBgkqhkiG9w0BAQQFADAX
+MRUwEwYDVQQDEwxpbW9kdWxlcy5jb20wHhcNMTQwNjEwMjExODU3WhcNMzQwNjEw
+MjExODU2WjAXMRUwEwYDVQQDEwxpbW9kdWxlcy5jb20wggEiMA0GCSqGSIb3DQEB
+AQUAA4IBDwAwggEKAoIBAQDC5hlDfEQ7RoqQgtcZjOxN2FdUOMu4MI8hIeydiFDy
+1fT1t1jJHmFF5V4JDGpITIapK2caenljBcGl7CGC+Z6EXID8i0lxc7lLWOOrYkJb
+8PeuVOpbxTZfOxfkC3jf4IfLZPtBfDvWjYtVUPwDCpwLLE/GQzz6HySoMIcWAkQ9
+bPoAIITTRnDpo1f4J6nO81DKx0XjBVIbz6aTsF60pcXQzLJ69KGI5Jkh3DjmNbeq
+EXH6ENtq823q4JGXRrKvCPrTlt+79EI1p+ECSaRUx006raAYHktUTT2KY1oUlsuk
+qVA+LMmhX/+jF1fgOehHEurOiKQp2aGmeV4PnJ8pXKM9AgMBAAGjTDBKMEgGA1Ud
+AQRBMD+AEG94Y5yfOU4e+OzhpzVt1UyhGTAXMRUwEwYDVQQDEwxpbW9kdWxlcy5j
+b22CEMxA7pEsPUeQR6cVZq9VMBYwDQYJKoZIhvcNAQEEBQADggEBAFDDvIjK8eJO
+YjDqnY9DfzUEN6Vp80w3ZLhT/K49/McNbbGkt0bgg45MeJ78IxLdclTIhOEeHACN
+F71+XLb9PjRfISiB37V157w0nKF5MsMYU1dathFrVOzCIxvhERgoD4lMNtwZiKKH
+J/xYeczpnHz5iFpoiCvsvPTP5sZqAKvf5ovpermVcLyqEPJJHvLHe+TbwdwTuGMS
+pF2w1WQGpSgdbcxWWwmwpbeiF5ADI6UTS5txOfG0p8L2RTxgRJ6Nb7lNrelIEcup
+6nWHUla/60ENe+AN9qsqYh1vnknLi7kSMHwvtyzFQDHnXhwhLa9mkpsZVkeLEGsR
+MJlfQnuceWY=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hotfixpubsecure.imodules.com/controls/login/AssertionConsumerService.aspx?sid=6&amp;gid=2" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Josh Wicoff</GivenName>
+ <EmailAddress>jwicoff@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://ic.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ithaca College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">1592</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81109608053383394730622258405578299350, expires on Fri Dec 28 21:25:16 2035 GMT -->
+ <ds:X509Certificate>
+MIIDBDCCAeygAwIBAgIQPQUkbUw9qb9PVmtW82bX1jANBgkqhkiG9w0BAQQFADAX
+MRUwEwYDVQQDEwxpbW9kdWxlcy5jb20wHhcNMTUxMjI4MjEyNTE3WhcNMzUxMjI4
+MjEyNTE2WjAXMRUwEwYDVQQDEwxpbW9kdWxlcy5jb20wggEiMA0GCSqGSIb3DQEB
+AQUAA4IBDwAwggEKAoIBAQCX/OfSCsITZ/tgrVxhvtNXstCZTnW57kwaIZdsYVOj
+8aLVyrzcL4bCcOkYpTrJaUJYZ36pdhcmq+lftHQ/cK1JqyKNtNEDMNktLygkAeTY
+3RBKKvqNZOLxFgX7Wb0pmhy5AeDtG3d/FhdXV3OCAglr1WNRnF1m0xflmHxq8s4S
+VTqILLG7l4tnJ5DeBjPPD0rQ/7dv5zpBchm87tagU7hrLi+udDMPjWKcxkWPI4aE
+m4n+qccGq8S8NbpO1QSw9gkON2EhnshygdweeJRyFVgTGvSfNCKBBPlfeY1ezEBU
+MPg5EkIk9RvjhINHsQ4F2JK2PvUfK64pRtZkhCZ8Wa8rAgMBAAGjTDBKMEgGA1Ud
+AQRBMD+AEDMg1SDjv/BSgpqDfaiuIRKhGTAXMRUwEwYDVQQDEwxpbW9kdWxlcy5j
+b22CED0FJG1MPam/T1ZrVvNm19YwDQYJKoZIhvcNAQEEBQADggEBAG4z1KNxKHJF
+1hFkaX8OWk75xNbYH09muLeQL3eTqBOTJrGUPGTNaBcme+DUipiZETCp1PODX+k6
+360vCa3Nhx4vBoveAUnZOqa6EG/kw66oHOzcoiFEWonyci04y699Tl9+IRlWuc3w
+6GHUhOKe4n6S3CdefmPM0opPdLpUVNMq4C9OM+eG0714JUckJuskdtThlM4hP2As
+MoIw43JmEHex/hW4ZcI77nRGoQLntfjxINnxbum4JQ7tLr/XhRO9nPoGQj6USJ+u
+Zj6yabYrwfcbRqCgGWzmdDXiS3Wth1o9a+oTENMDvvleIkh4EjRV186V7awr7zou
+nIkCxJCSfVE=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://securelb.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1592" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Evan Krieger</GivenName>
+ <EmailAddress>ekrieger@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Evan Krieger</GivenName>
+ <EmailAddress>ekrieger@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Evan Krieger</GivenName>
+ <EmailAddress>ekrieger@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://ic.test-imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ithaca Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">601592</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81109608053383394730622258405578299350, expires on Fri Dec 28 21:25:16 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure.test-imodules.com/controls/login/AssertionConsumerService.aspx?sid=601592" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://imodarugula.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">iModules Preload: Arugula</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -68782710066608739900231940068719906794, expires on Sat Jun 10 21:18:56 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure4.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1230" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Josh Wicoff</GivenName>
+ <EmailAddress>jwicoff@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://imodrhubarb.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">iModules Preload: rhubarb</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -68782710066608739900231940068719906794, expires on Sat Jun 10 21:18:56 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure4.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1232&amp;gid=1" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure4.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1232&amp;gid=2" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure4.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1232&amp;gid=3" index="3"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Josh Wicoff</GivenName>
+ <EmailAddress>jwicoff@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://lawgwu.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">GWU Law</mdui:DisplayName>
+ <mdui:Description xml:lang="en">960</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 47022021430831736190746837232906583847, expires on Sun Aug 30 15:34:29 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://securelb.imodules.com/controls/login/AssertionConsumerService.aspx?sid=960" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Evan Krieger</GivenName>
+ <EmailAddress>ekrieger@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://lawgwu.test-imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">600960</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 47022021430831736190746837232906583847, expires on Sun Aug 30 15:34:29 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure.test-imodules.com/controls/login/AssertionConsumerService.aspx?sid=600960" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Evan Krieger</GivenName>
+ <EmailAddress>ekrieger@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://melbourne-test.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Melbourne Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SID -1182</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -147167387931454162012586789926852665441, expires on Mon Dec 7 16:06:39 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secureau.imodules.com/controls/login/AssertionConsumerService.aspx?sid=-1182" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Evan Krieger</GivenName>
+ <EmailAddress>ekrieger@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://mizzoudata.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">iModules for Mizzou</mdui:DisplayName>
+ <mdui:Description xml:lang="en">iModules for Mizzou 1002 community 1005</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/19/1col.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157&amp;no_cookie=1</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 152846761728744739835017432450239714565, expires on Sat Nov 12 15:21:51 2039 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://securelb.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1002" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Production</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://montreal.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">iModules Universite de Montreal</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SID 1857 iModules - Universite de Montreal</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -152138827722889326779869673541190557324, expires on Sat Jul 24 13:26:45 2038 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secureca.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1857" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://pea.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Phillips Exeter</mdui:DisplayName>
+ <mdui:Description xml:lang="en">1682</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -39925697248895819856051001689904355192, expires on Fri Aug 28 15:42:42 2037 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://securelb.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1682" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Evan Krieger</GivenName>
+ <EmailAddress>ekrieger@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://pea.test-imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Phillips Exeter Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">-1682</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -39925697248895819856051001689904355192, expires on Fri Aug 28 15:42:42 2037 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure.test-imodules.com/controls/login/AssertionConsumerService.aspx?sid=-1682" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Evan Krieger</GivenName>
+ <EmailAddress>ekrieger@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://purdue-data.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Purdue</mdui:DisplayName>
+ <mdui:Description xml:lang="en">1461</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -124437728516771625598686609656418091866, expires on Sat Apr 25 13:58:48 2037 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://securelb.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1461" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure.ud.purdue.edu/controls/login/AssertionConsumerService.aspx?sid=1461" index="2"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>David Weidner</GivenName>
+ <EmailAddress>dweidner@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://rellias.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">rellias</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -68782710066608739900231940068719906794, expires on Sat Jun 10 21:18:56 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://relliascommerce.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1325&amp;gid=1" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Raoul Ellias</GivenName>
+ <EmailAddress>rellias@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://bond.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Bond Alumni iModules</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Bond Alumni iModules Shibboleth login</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 99392977528488816684413595688018632392, expires on Sat Sep 25 16:19:31 2038 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secureau.imodules.com/controls/login/AssertionConsumerService.aspx?sid=865" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://sharjah.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">AUS</mdui:DisplayName>
+ <mdui:Description xml:lang="en">1467</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -99276792320088545338570137984746803129, expires on Sat Mar 8 16:46:05 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secureau.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1467" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Evan Krieger</GivenName>
+ <EmailAddress>ekrieger@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://temple.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">iModules Temple University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">705</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 64168664934177623834484322394127607339, expires on Sun May 4 19:42:27 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://advancement-sec.temple.edu/controls/login/AssertionConsumerService.aspx?sid=705" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://temple.test-imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Temple Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">600705</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 64168664934177623834484322394127607339, expires on Sun May 4 19:42:27 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure.test-imodules.com/controls/login/AssertionConsumerService.aspx?sid=600705" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://unc-charlotte.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UNC Charlotte - Imodules Software</mdui:DisplayName>
+ <mdui:Description xml:lang="en">1721</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/19/1col.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157&amp;no_cookie=1</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -48356917964097220834840406598411271741, expires on Mon Oct 17 14:50:52 2039 GMT -->
+ <ds:X509Certificate>
+MIIC/DCCAeigAwIBAgIQ257L3r0BjY1CiorxPIVBwzAJBgUrDgMCHQUAMBcxFTAT
+BgNVBAMTDGltb2R1bGVzLmNvbTAeFw0xOTEwMTcxNDUwNTNaFw0zOTEwMTcxNDUw
+NTJaMBcxFTATBgNVBAMTDGltb2R1bGVzLmNvbTCCASIwDQYJKoZIhvcNAQEBBQAD
+ggEPADCCAQoCggEBAOXmnA7ZJq222ZoC2XpJLeagupYP4/nmgm0xXUZwgGPhiW9w
+8nw/TpiNJK7GBbBhih8ljIVG6n/cVz7XJUF0qHiJdcRpx2ymuKe9ZaxmyGkWwl/a
+JyAvHNfoeKQgfEzg+hsIsye+ZtDrMXpIlJjlfo1gW1rt5OKIUfAX88nOHaLWObyo
+4UovFIhhDoNpfSSmG/jBW5S/KaUQouaAqmTH1AitWFwLsFPg0TsTzJe65IpJwHOD
+bSb97zqDOTmFHJ4YkJeBQB3JrSdd9JIJPqTE5yROIsOHrXKTU15qpIbaCpfJ5tW7
+6GH3tWVyE08MtIDCNxzkq82r6RUIcNSd/hfD4XkCAwEAAaNMMEowSAYDVR0BBEEw
+P4AQQPMT5xKLIBhztJXd9T3OW6EZMBcxFTATBgNVBAMTDGltb2R1bGVzLmNvbYIQ
+257L3r0BjY1CiorxPIVBwzAJBgUrDgMCHQUAA4IBAQCnMsE29ak38DIXSoqlar23
+4pLwcr6Ddg/Q+7I1Gh8czDUd7hCgjt/PdIxJml4XvT9p9S4lbrCdQ7sqM0J2tv8Z
+L4hXfmItJQivlIHQVs6YR3TVyrmbW+0Dh+K69UK7Uhg3QdnzMAHe9Po4amH6ABQG
+zVFu2jX+9VJxqIgxgvKQazgD7J1lf5+2buZ02sPQhfhfWJyZhZcxGNhMompFH4Ou
+vcjx1rBO9BOt2OY1xgnvrkaM2vTC5sXtUKOewShys+Mzk5YpPKjal6W/iA6zDCMi
+dW770XukQ/PvVGW/7wY7X9C0CY+fkIIkavSIFi9IpskOBvFq3HNxD3Zjfkn2a7jy
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://securelb.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1721" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brett Lowther</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Brett Lowther</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brett Lowther</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://unc-charlotte.test-imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UNCC (Test)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">601721</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://unc-charlotte.test-imodules.com/s/resources/templates/login/index.aspx?sid=601721&amp;pgid=230&amp;cid=157&amp;no_cookie=1</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -12633277805802364712601768588358536957, expires on Sat May 7 17:05:47 2039 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure.test-imodules.com/controls/login/AssertionConsumerService.aspx?sid=601721" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brett Lowther</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Brett Lowther</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brett Lowther</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://unimelb.imodules.com/SP">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">The University of Melbourne</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SID 1182</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -147167387931454162012586789926852665441, expires on Mon Dec 7 16:06:39 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure.alumni.unimelb.edu.au/controls/login/AssertionConsumerService.aspx?sid=1182" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Evan Krieger</GivenName>
+ <EmailAddress>ekrieger@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://vcu.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">iModules for VCU</mdui:DisplayName>
+ <mdui:Description xml:lang="en">VCU for iModules Site ID 1877 </mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://vcu.imodules.com/s/resources/templates/login/index.aspx?sid=1877&amp;gid=1&amp;pgid=230&amp;cid=157&amp;no_cookie=1</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -74988132021952872493722242461598055930, expires on Sun Jun 19 18:03:07 2039 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure.engage.vcu.edu/controls/login/AssertionConsumerService.aspx?sid=1877" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Production</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://waterloo.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Waterloo (PROD)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">1802</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 111337169593598746468767073698807355031, expires on Mon Mar 9 17:03:19 2037 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secureca.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1802" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>David Weidner</GivenName>
+ <EmailAddress>dweidner@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://waterloo-testws.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Waterloo (TEST)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">601802</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 111337169593598746468767073698807355031, expires on Mon Mar 9 17:03:19 2037 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secureca.imodules.com/controls/login/AssertionConsumerService.aspx?sid=601802" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>David Weidner</GivenName>
+ <EmailAddress>dweidner@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://wgu.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">WGU</mdui:DisplayName>
+ <mdui:Description xml:lang="en">1110</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -98451465940529843677665749195548831308, expires on Fri Dec 5 19:06:05 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://securelb.imodules.com/controls/login/AssertionConsumerService.aspx?sid=1110" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Evan Krieger</GivenName>
+ <EmailAddress>ekrieger@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://wgu-test.imodules.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">WGU Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">601110</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.imodules.com/s/1333/index.aspx?sid=1333&amp;gid=1&amp;pgid=230&amp;cid=157</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1" width="1" xml:lang="en">https://www.imodules.com/s/1333/images/editor/incommon/logo__2_.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -98451465940529843677665749195548831308, expires on Fri Dec 5 19:06:05 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://securelb.imodules.com/controls/login/AssertionConsumerService.aspx?sid=601110" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Imodules Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Imodules Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.imodules.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Evan Krieger</GivenName>
+ <EmailAddress>ekrieger@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Production Team</GivenName>
+ <EmailAddress>prodqueue@imodules.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Nebraska At Kearney -->
+<EntityDescriptor entityID="https://auth.unk.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://easi.unk.edu/services.php" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unk.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Nebraska At Kearney</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.unk.edu/offices/registrar/ferpa/index.php#FERPA</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="118" xml:lang="en">https://auth.unk.edu/idp/images/unk-logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 72920972923730824862553018135403127449026363962, expires on Sat Nov 14 12:35:29 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.unk.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.unk.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.unk.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.unk.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Nebraska At Kearney</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Nebraska At Kearney</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unk.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>ITS IAM</GivenName>
+ <EmailAddress>its-sec-iam@nebraska.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>ITS IAM</GivenName>
+ <EmailAddress>its-sec-iam@nebraska.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS Security</GivenName>
+ <EmailAddress>its-sec@nebraska.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>ITS IAM</GivenName>
+ <EmailAddress>its-sec-iam@nebraska.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Interfolio, Inc. -->
+<EntityDescriptor entityID="https://secure.interfolio.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://account.interfolio.com/sso" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Interfolio, Inc.</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Interfolio is designed to serve the committees that serve higher ed. It supports peer review by offering tools that streamline the logistics of collaboration, so scholars are better prepared to make the decisions that drive higher ed.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.interfolio.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.interfolio.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="80" xml:lang="en">https://www.interfolio.com/img/logo/intf-logo-sm.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13872399681058834293, expires on Sun Aug 28 13:28:42 2022 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secure.interfolio.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://secure.interfolio.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://secure.interfolio.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://secure.interfolio.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://secure.interfolio.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://secure.interfolio.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iam-api.interfolio.com/Shibboleth.sso/SAML2/POST" index="7"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Interfolio, Inc.</ServiceName>
+ <ServiceDescription xml:lang="en">Interfolio is designed to serve the committees that serve higher ed. It supports peer review by offering tools that streamline the logistics of collaboration, so scholars are better prepared to make the decisions that drive higher ed.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Interfolio, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Interfolio, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.interfolio.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Development Operations Team</GivenName>
+ <EmailAddress>devsecops+incommontechnical@interfolio.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Development Operations Team</GivenName>
+ <EmailAddress>devsecops+incommonsecurity@interfolio.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Development Operations Team</GivenName>
+ <EmailAddress>devsecops+incommonadmin@interfolio.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Greg Wilson</GivenName>
+ <EmailAddress>greg.wilson@interfolio.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Lock Haven University -->
+<EntityDescriptor entityID="https://idp.lhup.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.lhup.edu/idp/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lhup.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Lock Haven University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.lhup.edu/computing_and_tech</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.lhup.edu/computing_and_tech/aup.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="42" width="447" xml:lang="en">https://www.lhup.edu/images/web-logo-head-11.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 135310213017396454939908468702866995294, expires on Fri Jul 24 23:59:59 2015 GMT -->
+ <ds:X509Certificate>
+MIIEuTCCA6GgAwIBAgIQZcvMkgZaqKLekHBsU354XjANBgkqhkiG9w0BAQUFADA8
+MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMVGhhd3RlLCBJbmMuMRYwFAYDVQQDEw1U
+aGF3dGUgU1NMIENBMB4XDTEyMDcyNDAwMDAwMFoXDTE1MDcyNDIzNTk1OVowgY0x
+CzAJBgNVBAYTAlVTMRUwEwYDVQQIEwxQZW5uc3lsdmFuaWExEzARBgNVBAcUCkxv
+Y2sgSGF2ZW4xLjAsBgNVBAoUJUxvY2sgSGF2ZW4gVW5pdmVyc2l0eSBPZiBQZW5u
+c3lsdmFuaWExCzAJBgNVBAsUAklUMRUwEwYDVQQDFAxpZHAubGh1cC5lZHUwggEi
+MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDdFclUfLWsojRGkQA9JO6S8QOl
+FAYb3FaZ9Sn4d5uM7qgSC7EHcZ4UCTPZ3d/ni2Sp5HkFHzAO2Il3lRQN5rgtepk3
+OWW2KcfipbXczbwzBO2U/fz4EQfu+1fz9nhMD3j85nDDhbhEWynYcrfmS2xnRb3p
+llgI5MH0FLSN+5umufSf7yF2lwgl4Lr7vMoKn5hEP+imHDlh9Nq+SHATDIJO6f7x
+JuJL+hAj84xWRJqGfs28TiJMM5R18rsHoE9bjqOwHjeR7SFsZaS77mn+JX5DESzU
+AE+XkGxQq+LQ4dMFXpA3sVotytUxgKUNrp2VFVOTzSixo3JpDk+Jai5W32CvAgMB
+AAGjggFjMIIBXzAXBgNVHREEEDAOggxpZHAubGh1cC5lZHUwCQYDVR0TBAIwADBC
+BgNVHSAEOzA5MDcGCmCGSAGG+EUBBzYwKTAnBggrBgEFBQcCARYbaHR0cHM6Ly93
+d3cudGhhd3RlLmNvbS9jcHMvMA4GA1UdDwEB/wQEAwIFoDAfBgNVHSMEGDAWgBSn
+ooO7NEVAPfzVME8SuT6hAZ/22zA6BgNVHR8EMzAxMC+gLaArhilodHRwOi8vc3Zy
+LW92LWNybC50aGF3dGUuY29tL1RoYXd0ZU9WLmNybDAdBgNVHSUEFjAUBggrBgEF
+BQcDAQYIKwYBBQUHAwIwaQYIKwYBBQUHAQEEXTBbMCIGCCsGAQUFBzABhhZodHRw
+Oi8vb2NzcC50aGF3dGUuY29tMDUGCCsGAQUFBzAChilodHRwOi8vc3ZyLW92LWFp
+YS50aGF3dGUuY29tL1RoYXd0ZU9WLmNlcjANBgkqhkiG9w0BAQUFAAOCAQEAdy3s
+U5fAwa249ELF6aywqLvnk0GXaAaikI00D0Hos6tmMuUxTj40eQwICApm5Y6fBQFC
+mBQjFYpHWxvmxTnnED0/GKgfXNA2eUyY0RVHxtydFFJB0tmbMS0w0dhPaSjMjUVE
+kSBlxl5DMgM8CIEohWoZiMahTKVhRsTbpQgOsJCGEHv3qtrvbSfuJwYBP5F4DPPY
+blFlMDAkDVVUynA6Lp+wyrf/C2+2N0jg8EVGl8PuOnBeL860Lg9j+zEwJZiQrllW
+TKvZOVB6ym5AhHfgCOR4ZcQYIh+TVAYjxgtVqTADfuOZ6WiO5D2Hilad+xW3UQyx
+L6VIWeNvK0QGSePPsg==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.lhup.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.lhup.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.lhup.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.lhup.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.lhup.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lhup.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 135310213017396454939908468702866995294, expires on Fri Jul 24 23:59:59 2015 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.lhup.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lock Haven University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lock Haven University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lhup.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Lock Haven University IT Department</GivenName>
+ <EmailAddress>idp@lhup.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Lock Haven University IT Department</GivenName>
+ <EmailAddress>idp@lhup.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Lock Haven University IT Department</GivenName>
+ <EmailAddress>idp@lhup.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Lock Haven University IT Department</GivenName>
+ <EmailAddress>idp@lhup.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Southern Oregon University -->
+<EntityDescriptor entityID="https://shib.sou.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://shib.sou.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sou.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Southern Oregon University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">A public liberal arts university.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://sou.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://inside.sou.edu/assets/policies/docs/FAD039-electronic-commerce-privacy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="62" width="300" xml:lang="en">https://shib.sou.edu/idp/images/inside-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 172282534040378016226535778948733972369722727074, expires on Mon May 12 20:09:15 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.sou.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.sou.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.sou.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.sou.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.sou.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.sou.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Southern Oregon University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Southern Oregon University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sou.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jesse Martinich</GivenName>
+ <EmailAddress>martinicj@sou.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Thomas Battaglia</GivenName>
+ <EmailAddress>battaglit@sou.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jesse Martinich</GivenName>
+ <EmailAddress>martinicj@sou.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Portland State University -->
+<EntityDescriptor entityID="https://sso.pdx.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pdx.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Portland State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Portland State Identity Provider</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.pdx.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.pdx.edu/about-digital-privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="88" width="96" xml:lang="en">https://content.oit.pdx.edu/images/psu_logo_green.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 680450067728941602411619630447009761527131915497, expires on Sun Aug 19 17:57:52 2035 GMT -->
+ <ds:X509Certificate>
+MIIDFzCCAf+gAwIBAgIUdzBvspR9IxIcNVecJ9uYqw2FxOkwDQYJKoZIhvcNAQEL
+BQAwFjEUMBIGA1UEAwwLc3NvLnBkeC5lZHUwHhcNMTUwODE5MTc1NzUyWhcNMzUw
+ODE5MTc1NzUyWjAWMRQwEgYDVQQDDAtzc28ucGR4LmVkdTCCASIwDQYJKoZIhvcN
+AQEBBQADggEPADCCAQoCggEBALS4zeE+sjNpCyWno01ra/hBUx5dFCv0u+1maVOt
+ezztTl5TgJXqIhfraP06ZzFZyYb1Zkbtler9/hcpBDHpI48dyb5QChw6UkMie1oW
+1CnXqN39DwPqSnmiX5oxaVAcSh5YnvzOeNGIumtu+MTXnwdh5HH827CiZXTzPavJ
+7NMMZ36xoNb6137Ny5N6VGJ2zJCj95Tg5KzaMWZiQa/CYaRJDdT8DD2YFb7+KKYn
+li3CDWLfVN1lhyXA0Ue/gHNChEjbfo92o1kqPYLLQQHZjH/n16tpr+L6NJ7K+7Fj
+i/T3h5l3NdPh0SD4nIyQDIkXQD80zSkzncc8Lc4+Ynr5RRsCAwEAAaNdMFswHQYD
+VR0OBBYEFK1fG4otT6OMzHQwV1tVgokTL9G3MDoGA1UdEQQzMDGCC3Nzby5wZHgu
+ZWR1hiJodHRwczovL3Nzby5wZHguZWR1L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3
+DQEBCwUAA4IBAQCM7yIzrZhbbFXv6Z6HWEig18jPbOEOjLjSti0qN3+jvvuuJKVl
+gN/1qBYQljh5fSnWIGDppn8ozRnVXHzxtgOdqFqJ6Ww88I+3dBfaPMdr/FmFo/J5
+meMw9ypaPJRtd9TRPF7hOnjSyihAqQlJuEdEK2bonoyic/hpHFjZpxX4ProsAcUr
+EA/tefxebhlDaSIgbJxVU2dReIbV8rjFNWfjp6wksbSvj/isU7KuzPODe2Kxt8S8
+4Rn1ZTKf1dn6ThoNInVnrIGNHt0hC1S6ijthjE5dB4hos6ndOVUHrjtWSxA0Nd5o
+XIfa61/C4DF+ni+CfZSdcGSigYeyYVIroMpB
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.pdx.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.pdx.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Portland State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Portland State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.pdx.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>PSU Helpdesk</GivenName>
+ <EmailAddress>help@pdx.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>PSU Security Team</GivenName>
+ <EmailAddress>sec-requests@pdx.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>PSU IAM Team</GivenName>
+ <EmailAddress>alert-iam@pdx.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>PSU IAM Team</GivenName>
+ <EmailAddress>alert-iam@pdx.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Blackbaud, Inc. -->
+<EntityDescriptor entityID="https://syracuse.academicworks.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://syracuse.academicworks.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">AcademicWorks - Syracuse</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.blackbaud.com/privacy-policy.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="110" width="560" xml:lang="en">https://s3.amazonaws.com/static.academicworks.com/images/logo-2017_bg.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12131585933583370358, expires on Fri Jul 15 21:43:28 2022 GMT -->
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://syracuse.academicworks.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://syracuse.academicworks.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://syracuse.academicworks.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://syracuse.academicworks.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Academic Works, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Academic Works, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.academicworks.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>shibboleth@academicworks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>shibboleth@academicworks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>shibboleth@academicworks.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wooster.academicworks.com/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wooster.academicworks.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">AcademicWorks - College of Wooster</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.blackbaud.com/privacy-policy.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="110" width="560" xml:lang="en">https://s3.amazonaws.com/static.academicworks.com/images/logo-2017_bg.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12131585933583370358, expires on Fri Jul 15 21:43:28 2022 GMT -->
+ <ds:X509Certificate>
+MIIC+jCCAeKgAwIBAgIJAKhcDSF1XMh2MA0GCSqGSIb3DQEBBQUAMBwxGjAYBgNV
+BAMTEWlwLTEwLTEyMC0yMjEtMTA5MB4XDTEyMDcxNzIxNDMyOFoXDTIyMDcxNTIx
+NDMyOFowHDEaMBgGA1UEAxMRaXAtMTAtMTIwLTIyMS0xMDkwggEiMA0GCSqGSIb3
+DQEBAQUAA4IBDwAwggEKAoIBAQCuNlK6MlE9iScDtuLv1TqydzmyL5wG9UZZ5fRF
+qfaNxd4cxYh1rnguhG6Vl5RAsTG8M6GzxwF0Uf/NEjpXPc73bfZya1iEZJ05zq6h
+6pW9Y002w7WvZANj5qh8jF1KnwbctkCRZMPRtR17StmIfeHAHN6kM4J5HJbB2Gwh
+XxHF6K4oXI/vJoUFlTmiOwMm4SgNkpKsRxprnekJN7v339PYfUvKqIwzcPi0ehAy
+O00A/70zrlJChpxB4SpQIMhaWypyAE63Y4L2BJCflM3yYA3bzPPorolX3lgWdUCh
+rMBbGmCg7EAZT2Gi/slsTpXHiAwjfleSvVCPn0b19JGTlS9RAgMBAAGjPzA9MBwG
+A1UdEQQVMBOCEWlwLTEwLTEyMC0yMjEtMTA5MB0GA1UdDgQWBBSXTuMyUUaJ4buF
+IXqDca9Wros0bTANBgkqhkiG9w0BAQUFAAOCAQEALjFkCUjcoWFHuIqyDHk/DiwM
+sDgTqauQVWk3h+kjiBL9Wcc3ZpswsKG/L9lZrN876mzFDzVG5hO1o/rpvDjlmH+B
+3TzDkbI64UqGQILGtku7wpgUCOv4Vl233f7CGXT53ExWTvWxwSI95euSkT8AsD2P
+6BVdlmro3+1pNWr5vlFa9S/1NdTvQZIwabpjJhb7Z8kc5zoRUJtlk1dGtOHLw2OD
+ZgrE+6qApYTZGdG2mDNxvmSqHnKWt3PqSUgkv7go/kp8khc4ynPLXONZrcRuAFPN
+UbgAJ/cbGoum4Mc7ow1kjUElIbxWNzGOgSH3OURsrcOm8IUJnMe3GqATmvUFJQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wooster.academicworks.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wooster.academicworks.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wooster.academicworks.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wooster.academicworks.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Academic Works, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Academic Works, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.academicworks.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>shibboleth@academicworks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>shibboleth@academicworks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>shibboleth@academicworks.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Mississippi State University -->
+<EntityDescriptor entityID="https://shibboleth.its.msstate.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">msstate.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Mississippi State University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.policies.msstate.edu/policypdfs/0125.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="71" width="410" xml:lang="en">https://cdn01.its.msstate.edu/i/logos/msstate/msstate_horizontal_maroon.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1248559145822414474401827530476392664823584211343, expires on Sat Jan 15 17:15:40 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.its.msstate.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.its.msstate.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.its.msstate.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.its.msstate.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.its.msstate.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.its.msstate.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">msstate.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1248559145822414474401827530476392664823584211343, expires on Sat Jan 15 17:15:40 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.its.msstate.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Mississippi State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Mississippi State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.msstate.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>MSU ITS Network Services</GivenName>
+ <EmailAddress>ns@its.msstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>MSU ITS Service Desk</GivenName>
+ <EmailAddress>servicedesk@msstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gerhard Lehnerer</GivenName>
+ <EmailAddress>gml1@msstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Tom Ritter</GivenName>
+ <EmailAddress>ritter@its.msstate.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Northeastern University -->
+<EntityDescriptor entityID="https://neuidmsso.neu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://neuidmsso.neu.edu/idp/500error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">neu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Northeastern University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Founded in Boston, Massachusetts in 1898, Northeastern is a global, experiential research university. Grounded in its signature co-op program, Northeastern today provides unprecedented experiential learning opportunities around the world. The university’s rapidly growing research enterprise is strategically aligned with three national imperatives: health, security, and sustainability.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.northeastern.edu/privacy-information</mdui:PrivacyStatementURL>
+ <mdui:Logo height="230" width="700" xml:lang="en">https://brand.northeastern.edu/wp-content/uploads/seal_logotype-700x230.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1215733077313967788169855378331367022896210795720, expires on Mon Jun 14 13:42:34 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://neuidmsso.neu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://neuidmsso.neu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://neuidmsso.neu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://neuidmsso.neu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://neuidmsso.neu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">neu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1215733077313967788169855378331367022896210795720, expires on Mon Jun 14 13:42:34 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://neuidmsso.neu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Northeastern University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Northeastern University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.northeastern.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Maura Bagley</GivenName>
+ <EmailAddress>m.bagley@northeastern.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>NEU ITS IDM</GivenName>
+ <EmailAddress>its-idm@northeastern.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Maura Bagley</GivenName>
+ <EmailAddress>m.bagley@northeastern.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>NEU ITS IDM</GivenName>
+ <EmailAddress>its-idm@northeastern.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Open Commons Consortium (OCC) -->
+<EntityDescriptor entityID="https://bionimbus-pdc.opensciencedatacloud.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://bionimbus-pdc.opensciencedatacloud.org/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Bionimbus PDC Console</mdui:DisplayName>
+ <mdui:Description xml:lang="en">We provide and support cloud computing and storage services for the scientific research community. The OSDC is run by the Open Commons Consortium, a non-profit organization whose primary goal is to support scientific advances by working with researchers in a variety of disciplines.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://bionimbus-pdc.opensciencedatacloud.org</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://bionimbus-pdc.opensciencedatacloud.org/misc/privacy.txt</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="205" xml:lang="en">https://bionimbus-pdc.opensciencedatacloud.org/misc/logo_sm.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1, expires on Mon Nov 28 17:31:12 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bionimbus-pdc.opensciencedatacloud.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://bionimbus-pdc.opensciencedatacloud.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bionimbus-pdc.opensciencedatacloud.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bionimbus-pdc.opensciencedatacloud.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://bionimbus-pdc.opensciencedatacloud.org/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://bionimbus-pdc.opensciencedatacloud.org/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Bionimbus PDC Console</ServiceName>
+ <ServiceDescription xml:lang="en">We provide and support cloud computing and storage services for the scientific research community. The OSDC is run by the Open Commons Consortium, a non-profit organization whose primary goal is to support scientific advances by working with researchers in a variety of disciplines.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Open Commons Consortium (OCC)</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Open Commons Consortium (OCC)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://occ-data.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Raymond Powell</GivenName>
+ <EmailAddress>support@opensciencedatacloud.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Lily Ko</GivenName>
+ <EmailAddress>support@opensciencedatacloud.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ray Powell</GivenName>
+ <EmailAddress>support@opensciencedatacloud.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://login.bionimbus.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://login.bionimbus.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Bionimbus Portal</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Single Sign on Portal for the Bionimbus family of projects. Bionimbus is a commons supporting various bioinformatic projects and research.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://gen3.org/products/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://bionimbus-pdc.opensciencedatacloud.org/misc/privacy.txt</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="205" xml:lang="en">https://bionimbus-pdc.opensciencedatacloud.org/misc/logo_sm.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11705379600782932082, expires on Thu Jun 10 14:54:09 2027 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.bionimbus.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.bionimbus.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://login.bionimbus.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://login.bionimbus.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://login.bionimbus.org/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://login.bionimbus.org/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Bionimbus Portal</ServiceName>
+ <ServiceDescription xml:lang="en">Single Sign on Portal for the Bionimbus family of projects. Bionimbus is a commons supporting various bioinformatic projects and research.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Open Commons Consortium (OCC)</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Open Commons Consortium (OCC)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://occ-data.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Ray Powell</GivenName>
+ <EmailAddress>support@bionimbus.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Phillis Tang</GivenName>
+ <EmailAddress>support@bionimbus.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Lily Ko</GivenName>
+ <EmailAddress>support@bionimbus.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ray Powell</GivenName>
+ <EmailAddress>support@bionimbus.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://www.opensciencedatacloud.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.opensciencedatacloud.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Open Science Data Cloud Console</mdui:DisplayName>
+ <mdui:Description xml:lang="en">We provide and support cloud computing and storage services for the scientific research community. The OSDC is run by the Open Commons Consortium, a non-profit organization whose primary goal is to support scientific advances by working with researchers in a variety of disciplines. </mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.opensciencedatacloud.org</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.opensciencedatacloud.org/misc/privacy.txt</mdui:PrivacyStatementURL>
+ <mdui:Logo height="32" width="96" xml:lang="en">https://www.opensciencedatacloud.org/static/logo_sm.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11705379600782932068, expires on Fri Dec 8 21:08:23 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.opensciencedatacloud.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.opensciencedatacloud.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.opensciencedatacloud.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.opensciencedatacloud.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.opensciencedatacloud.org/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.opensciencedatacloud.org/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Open Science Data Cloud Console</ServiceName>
+ <ServiceDescription xml:lang="en">We provide and support cloud computing and storage services for the scientific research community. The OSDC is run by the Open Commons Consortium, a non-profit organization whose primary goal is to support scientific advances by working with researchers in a variety of disciplines. </ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Open Commons Consortium (OCC)</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Open Commons Consortium (OCC)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://occ-data.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Raymond Powell</GivenName>
+ <EmailAddress>support@opensciencedatacloud.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Lily Ko</GivenName>
+ <EmailAddress>support@opensciencedatacloud.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ray Powell</GivenName>
+ <EmailAddress>support@opensciencedatacloud.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Azusa Pacific University -->
+<EntityDescriptor entityID="https://idp.apu.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">apu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Azusa Pacific University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity Provider for Azusa Pacific University's Faculty, Staff, Students and Alumni.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.apu.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.apu.edu/about/site/privacy/full/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="82" width="151" xml:lang="en">https://www.apu.edu/universityrelations/standards/design/thumbnails/APU_Red_S_sm.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11782316323864864823, expires on Sat Jul 16 16:11:11 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.apu.edu:8443/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.apu.edu:8443/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.apu.edu/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.apu.edu/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.apu.edu/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.apu.edu/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">apu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11782316323864864823, expires on Sat Jul 16 16:11:11 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.apu.edu:8443/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.apu.edu:8443/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Azusa Pacific University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Azusa Pacific University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.apu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Scott A. Williams</GivenName>
+ <EmailAddress>sawilliams@apu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jeff Birch</GivenName>
+ <EmailAddress>jbirch@apu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shawn Kohrman</GivenName>
+ <EmailAddress>skohrman@apu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>APU IMT Support</GivenName>
+ <EmailAddress>support@apu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of California Hastings College of the Law -->
+<EntityDescriptor entityID="https://shibboleth.uchastings.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uchastings.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of California, Hastings College of the Law</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uchastings.edu/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="144" width="144" xml:lang="en">https://www.uchastings.edu/wp-content/uploads/2018/09/144px.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 262691689302129698491919015311479757291207182882, expires on Sat Nov 20 02:53:14 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.uchastings.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.uchastings.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.uchastings.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.uchastings.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.uchastings.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uchastings.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 262691689302129698491919015311479757291207182882, expires on Sat Nov 20 02:53:14 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.uchastings.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of California Hastings College of the Law</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of California Hastings College of the Law</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uchastings.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ronald Proschan</GivenName>
+ <EmailAddress>proschan@uchastings.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Adam Hamilton</GivenName>
+ <EmailAddress>hamiltoa@uchastings.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Camilla Tubbs</GivenName>
+ <EmailAddress>tubbsc@uchastings.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Washington State University -->
+<EntityDescriptor entityID="https://shibidp.wsu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wsu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Washington State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Shibboleth Identity Provider for Washington State University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.wsu.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policies.wsu.edu/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="200" xml:lang="en">https://shibidp.wsu.edu/idp/images/incommon-wsu-cougar.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 709264427897571207144268531689274647320126666410, expires on Mon Aug 9 19:34:34 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibidp.wsu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibidp.wsu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibidp.wsu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibidp.wsu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibidp.wsu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wsu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 709264427897571207144268531689274647320126666410, expires on Mon Aug 9 19:34:34 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibidp.wsu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Washington State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Washington State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wsu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Team</GivenName>
+ <EmailAddress>its.iam@wsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Team</GivenName>
+ <EmailAddress>its.iam@wsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IAM Team</GivenName>
+ <EmailAddress>its.iam@wsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Team</GivenName>
+ <EmailAddress>security@wsu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Wisconsin Oshkosh -->
+<EntityDescriptor entityID="https://netid.uwosh.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwosh.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Wisconsin Oshkosh</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.uwosh.edu/library/about/policies/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="127" width="206" xml:lang="en">https://netid.uwosh.edu/idp/images/uwoLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 268529110525221983234369538830545171892921177370, expires on Sat Jul 24 16:07:16 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://netid.uwosh.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://netid.uwosh.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://netid.uwosh.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://netid.uwosh.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://netid.uwosh.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwosh.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 268529110525221983234369538830545171892921177370, expires on Sat Jul 24 16:07:16 2032 GMT -->
+ <ds:X509Certificate>
+MIIDJzCCAg+gAwIBAgIULwlDAyJjd+iv5pE4sKwmYC6QFRowDQYJKoZIhvcNAQEF
+BQAwGjEYMBYGA1UEAxMPbmV0aWQudXdvc2guZWR1MB4XDTEyMDcyNDE2MDcxNloX
+DTMyMDcyNDE2MDcxNlowGjEYMBYGA1UEAxMPbmV0aWQudXdvc2guZWR1MIIBIjAN
+BgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAlje4GeXFZ02ODcQIa5q7UJRaog6T
+dk5QASeCz8jVAKSHIX5d0ur8foVdQpzNjGoD4s+INqphGs6ofJ7XpkQIyV4FHLZf
+68e8D8EDKKLrjrii5rMmd03EkF3pUcC0IauP73Tqh+Ew7YWzPxjbVwt/KcDeToIs
+lbGPIFAb1jlgqnrtTElBGIwpuPnHG0AZ1qYpShZkPWb16KyH8v6xc6rVUqJCJl+7
+xud/wssAAXAtReQgHLGxohMThbKnU1EueUUU9lSUuLwUN0ElJO1IfWtbE8v8+7fV
+/KvjbC+VfLjIroRfX2iPrgEiadpjt02+i1WAwyq5BcDc2hXjR68ZVmZnKwIDAQAB
+o2UwYzBCBgNVHREEOzA5gg9uZXRpZC51d29zaC5lZHWGJmh0dHBzOi8vbmV0aWQu
+dXdvc2guZWR1L2lkcC9zaGliYm9sZXRoMB0GA1UdDgQWBBRe50kdB/KwTgBIvHIp
+5PSePCrPwTANBgkqhkiG9w0BAQUFAAOCAQEAjcgmffNTMfcFSDrAzoFa0f3Hck6h
+B2PP/4hfLDLszk3UuNel4R1imKdpVOJzBC+XjJX34jytRRanZeU1I6I7GXpwoNNy
+40/vPvZMuGevH7Z5AT4LwugqYKeYPXdkyYPlLk7ejupfmknmWx85g13r5QDSkTP8
+gC0g3MzPK5R+HPqWcI6KGlpP1+duGlfNNQkIPJC6llGoYHfVRiqrQtHJrTO8yvUE
+M6rR70BZ0LFlKPcyYyn6ir0XzDTbfyewJMNmN/GOGLKYv4eW5ZLff8FP2gelndmP
++PK5PPnwOFJqlAwQR+IYBwL1nWdsoRzCn/o7Da9j6fVvpHB7YjlOfM7Y5g==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://netid.uwosh.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin Oshkosh</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin Oshkosh</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uwosh.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Information Technology</GivenName>
+ <EmailAddress>helpdesk@uwosh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Information Technology</GivenName>
+ <EmailAddress>helpdesk@uwosh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Information Technology</GivenName>
+ <EmailAddress>helpdesk@uwosh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Network Administration</GivenName>
+ <EmailAddress>networkmgt@uwosh.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Nebraska Medical Center -->
+<EntityDescriptor entityID="https://idp.unmc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.unmc.edu/errors/shib-error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unmc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Nebraska Medical Center</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The University of Nebraska Medical Center IdP enables standards-based federation for the UNMC community.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.unmc.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://wiki.unmc.edu/index.php/Privacy/Confidentiality</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="171" xml:lang="en">https://net.unmc.edu/standards/assets/unmcicon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 621510311144920594171275894389837519052882067028, expires on Tue Oct 5 16:42:39 2032 GMT -->
+ <ds:X509Certificate>
+MIIDGzCCAgOgAwIBAgIUbN18eVJXDqBOyNPdN7TXDGBcPlQwDQYJKoZIhvcNAQEF
+BQAwFzEVMBMGA1UEAxMMaWRwLnVubWMuZWR1MB4XDTEyMTAwNTE2NDIzOVoXDTMy
+MTAwNTE2NDIzOVowFzEVMBMGA1UEAxMMaWRwLnVubWMuZWR1MIIBIjANBgkqhkiG
+9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsEhWme7SDrh3YstHdYhXSi7rrnXyZUV5j3a9
+5qDqetFS6/3V1mLAvQXDtegryo+F7dO2KTj8e3WDued9bDQOLwde8K8oc2CI1d3w
+tL1e//IODz+mrIOVrKvs36/dZxYvGDsZhx37prj30aiH+SkfTJ/Q0wMMX/CS+fw1
+JfK3vhr/1w26gMRxsIyEqUtr5QC13nW09Ykkl6E7Z4Wn6JacNiM4kA4uT8MtAE3+
+mDn7Z3RSvsrh6+KXU/Wpfxwfl6brAVwdp/tW9aGXUxikYcOChfyAltbNChaxTGiZ
+PdJu1gw3cyOGUXXouvhgcVjbC4cpZjfzj+RDsz2xrK+TYhENxwIDAQABo18wXTA8
+BgNVHREENTAzggxpZHAudW5tYy5lZHWGI2h0dHBzOi8vaWRwLnVubWMuZWR1L2lk
+cC9zaGliYm9sZXRoMB0GA1UdDgQWBBSpJp3uhInvxqYjNltL7NbVkusJyjANBgkq
+hkiG9w0BAQUFAAOCAQEAbUrXe0hFkFVlADXlupQhW2YjdY5mcVBiVNAUTub+sZpL
+Ew2QXSIcQEW+iGamt95vaC2pjY1VkU+DYnxkrfz2JWcCvzFiMMwPoFljATwyEB6O
+mDLBXNfg09v8WIBhXEaumT5mfdZ5o1MNa3TUtgf2dEEdHmd46Y/JaF3sU0GiTHt5
+FLc13nOcn8B4oa7KsqlIQabF7wn3jLKCmZV22VSSNTU2TfraOnobKf+dU3WdyArT
+qldJfiveQ3S4tzsv9PykD/AUf2DsYKUolzcS/HEPYp0NrIvlIKMRVZMrNoHmJo4B
+fdpZQ2TIsfzV+ci/L9l5y9IOnEqQTn66a9yUVWxNaQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.unmc.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.unmc.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.unmc.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.unmc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.unmc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.unmc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unmc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 621510311144920594171275894389837519052882067028, expires on Tue Oct 5 16:42:39 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.unmc.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Nebraska Medical Center</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Nebraska Medical Center</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unmc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Matt Callaway</GivenName>
+ <EmailAddress>mscallaway@unmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Geoff Gloeb</GivenName>
+ <EmailAddress>ggloeb@unmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Geoff Gloeb</GivenName>
+ <EmailAddress>ggloeb@unmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Shib Support</GivenName>
+ <EmailAddress>shib-support@univnebrmedcntr.onmicrosoft.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shib Support</GivenName>
+ <EmailAddress>shib-support@univnebrmedcntr.onmicrosoft.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://my8.unmc.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://my8.unmc.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Nebraska Medical Center Blackboard</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The University of Nebraska Medical Center’s Internet based learning environment.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://my8.unmc.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.unmc.edu/hipaa/about/notice-privacy-practices.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="171" xml:lang="en">https://net.unmc.edu/standards/assets/unmcicon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15683164840742740541, expires on Fri Oct 28 14:40:01 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://my8.unmc.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://my8.unmc.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://my8.unmc.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://my8.unmc.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://my8.unmc.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://my8.unmc.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Nebraska Medical Center Blackboard</ServiceName>
+ <ServiceDescription xml:lang="en">The University of Nebraska Medical Center’s Internet based learning environment.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Nebraska Medical Center</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Nebraska Medical Center</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unmc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dan Moser</GivenName>
+ <EmailAddress>leis@unmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Joe Ziskovsky</GivenName>
+ <EmailAddress>jziskovs@unmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Eric Lasher</GivenName>
+ <EmailAddress>eric.lasher@unmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LEIS</GivenName>
+ <EmailAddress>leis@unmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Informartion Security</GivenName>
+ <EmailAddress>infosecurity@unmc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.unmc.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sp.unmc.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Nebraska Medical Center SP API</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UNMC research support application integrator</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.unmc.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.unmc.edu/hipaa/about/notice-privacy-practices.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="171" xml:lang="en">https://net.unmc.edu/standards/assets/unmcicon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17315567087117812321, expires on Fri May 26 19:09:22 2023 GMT -->
+ <ds:X509Certificate>
+MIICzTCCAbWgAwIBAgIJAPBNQIYgGkJhMA0GCSqGSIb3DQEBBQUAMA0xCzAJBgNV
+BAMTAnNwMB4XDTEzMDUyODE5MDkyMloXDTIzMDUyNjE5MDkyMlowDTELMAkGA1UE
+AxMCc3AwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDIzPUUuBTRNuvi
+xM968tsQCy0K1/XblY7n37+7Jk/la5oMN2/zzOXlGRa+NNrnczJ2qufqGRwBX58q
+W7TV4VPWGT+9/USldJFxWuadL615ff7x/XeosWDdGJaRQFVkcwLyet0FEL9LPqdE
+eomBtLxel0uBLxGETgJ2ZugIx5ut/JfGllcVsuryQLOYpZnW1w7KP8u/uqmc9R2k
+ytOalh3vuuuUZrFZpnmdUBwixZD2aWaBxlfmbLDZB3XbK8eJV66Qnt9pjvMSQyxb
+YHknLtoIxH8Co8//wyeAn1S2H6TVhnQ3bWYJ4zrRpHiG/eYGdR3c8kPnomjZ0Y9O
+HnDhIL67AgMBAAGjMDAuMA0GA1UdEQQGMASCAnNwMB0GA1UdDgQWBBQPWwWKKHVe
+Gy0i4wt5LdnFbKytqjANBgkqhkiG9w0BAQUFAAOCAQEAFo5nxxGH1mEISzvwks2p
+QYITNGgzkjdLmygyD9bZMvv0lDp4Rwf1YzKM0B2DMmgOq3kOA+xA+599K133tri5
+ZSsm6BpN8xYFBrts7NZhMJFQahJs6x8S6dJZWSVMQsPMn+Z3ElNvAcXc9l2bJmG4
+g11by8VEyIUNbYHFp6xuC+pYxYwdNex/Ujs682T+FYpecsSO0OEgJ9SR3Nv/jlvG
+rx0z/WSCBsg7tWEHO+TQ02GSLoiJogO1mOOZV44pO/pmXNOjm6zfvj+Khu1xROM5
+VDWl4IwT5kCANRzJ4VR9dCgXi4N2s9m74aW62bX7NMGTpQsfyh5XzV3+wYP4wHtZ
+dg==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp.unmc.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sp.unmc.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp.unmc.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp.unmc.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University of Nebraska Medical Center SP API</ServiceName>
+ <ServiceDescription xml:lang="en">UNMC research support application integrator</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Nebraska Medical Center</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Nebraska Medical Center</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unmc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Geoff Gloeb</GivenName>
+ <EmailAddress>ggloeb@unmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Geoff Gloeb</GivenName>
+ <EmailAddress>ggloeb@unmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Matt Callaway</GivenName>
+ <EmailAddress>mscallaway@unmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Helpdesk</GivenName>
+ <EmailAddress>helpdesk@unmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>infosecurity@unmc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California Community Colleges Chancellors Office -->
+<EntityDescriptor entityID="https://sso.cccmypath.org/simplesaml/saml2/idp/metadata.php">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cccmypath.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California Community Colleges Chancellors Office</mdui:DisplayName>
+ <mdui:Description xml:lang="en">CCC IDP Proxy for connecting colleges to CCC system wide services.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://ccctechcenter.org</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.openccc.net/uPortal/p/PrivacyPolicy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="900" width="2100" xml:lang="en">https://www.openccc.net/ccc-jasig-widget-portlets/images/account/portal_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15540666791792608842, expires on Sun Jun 28 21:52:20 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.cccmypath.org/simplesaml/saml2/idp/SingleLogoutService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.cccmypath.org/simplesaml/saml2/idp/SSOService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.cccmypath.org/simplesaml/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California Community Colleges Chancellors Office</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California Community Colleges Chancellors Office</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cccco.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tim Calhoon</GivenName>
+ <EmailAddress>tcalhoon@ccctechcenter.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jeff Holden</GivenName>
+ <EmailAddress>jholden@ccctechcenter.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Chris Franz</GivenName>
+ <EmailAddress>franz@unicon.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Western Oregon University -->
+<EntityDescriptor entityID="https://idp-shib.wou.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wou.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Western Oregon University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity Provider for Western Oregon University</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.wou.edu/ucs/policies-procedures/information-privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="136" width="510" xml:lang="en">https://www.wou.edu/images/WOU-logo-2018.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 49265662622998679465028699380330533774, expires on Fri May 28 23:59:59 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp-shib.wou.edu/saml2/idp/SSOService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp-shib.wou.edu/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Western Oregon University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Western Oregon University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wou.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bill Kernan</GivenName>
+ <EmailAddress>kernanb@wou.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Ron Swartzendruber</GivenName>
+ <EmailAddress>swartzer@wou.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Ellis</GivenName>
+ <EmailAddress>ellism@wou.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Southern Illinois University -->
+<EntityDescriptor entityID="https://shib-idp.siu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">siu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Southern Illinois University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policies.siu.edu/policies/webprivacy.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="254" width="254" xml:lang="en">https://siu.edu/_assets/images/siu-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 744234364269286001204612060775636011658043936415, expires on Mon Feb 21 19:48:30 2033 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib-idp.siu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib-idp.siu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib-idp.siu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib-idp.siu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib-idp.siu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib-idp.siu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">siu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 744234364269286001204612060775636011658043936415, expires on Mon Feb 21 19:48:30 2033 GMT -->
+ <ds:X509Certificate>
+MIIDLDCCAhSgAwIBAgIVAIJcn4M3RZTxxXP7hVa6qv+n806fMA0GCSqGSIb3DQEB
+BQUAMBsxGTAXBgNVBAMTEHNoaWItaWRwLnNpdS5lZHUwHhcNMTMwMjIxMTk0ODMw
+WhcNMzMwMjIxMTk0ODMwWjAbMRkwFwYDVQQDExBzaGliLWlkcC5zaXUuZWR1MIIB
+IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAi6kE0NfGNu9kkPAXlJSHJhFU
+FSYuqnXRdpf6I56tXJYeDJ+vr/a4C9V/nOIJqpqf0E5XZxOkHshL+rG7NPOe002/
+3mmzwLtKCc4IhgEX54Yrz2WQ3x7eAAtkKHF2n85PV0oJh7/co9oMq+2V45hSrAEq
+06j4zEE4mdEbFu8XlJdsmRo7GKj5UX7Uxh7ayp8irzsBkSFSvj8UpvWuQgHgqAhR
+DUXo2zgqys8WniWX3FtoUJ9evol230GAi4otycfPAEqzAckLlSIE48le5hq9+pgm
+TJ9qHZlvZqMEpY4mCzyYD1eznjZooJ9oMjbfql5BpJGP0KmgQS8TJ7JotDslnQID
+AQABo2cwZTBEBgNVHREEPTA7ghBzaGliLWlkcC5zaXUuZWR1hidodHRwczovL3No
+aWItaWRwLnNpdS5lZHUvaWRwL3NoaWJib2xldGgwHQYDVR0OBBYEFGaJCIGrvLic
+cpyzSKZZZYGSHuqlMA0GCSqGSIb3DQEBBQUAA4IBAQBbAUGIyzryzCV4WlTVCpwE
+lKzam10cB0FEuIlJZBuhV7RAF4dlB98utwB/oLo6yDU6SGjBmZBc2rjji00HPCLF
+NNscde+Nh2GJ2Th3JO7TzEXGIeyZ2779daPRNUldWn0e/PSuljXlOv9Fxdde5FZN
+xSVY5pXQEXc1rjR6hSYZJNSkwMpipp/l7uIbvTrUicPHIXBlOgHCfxjnZD7KCZNU
+THhkLPoiTD6LKEMsf5E4vm24y70NfsQDbLRt8xO4JXec8wK05K/D2dFkvqZgrF0s
+JcNjbx+tHm0hFfpjX8J2OY+FfSw71mQ7vmgKpoVv+QesTzYaFqfZIv1ZG25t5Ga9
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib-idp.siu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Southern Illinois University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Southern Illinois University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.siu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>SIUC Shibboleth Tech</GivenName>
+ <EmailAddress>shib-support@siu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>SIUC Shibboleth Admin</GivenName>
+ <EmailAddress>shib-support@siu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>SIUC Shibboleth Support</GivenName>
+ <EmailAddress>shib-support@siu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>SIUC Shibboleth Support</GivenName>
+ <EmailAddress>shib-support@siu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Kutztown University of Pennsylvania -->
+<EntityDescriptor entityID="https://idp.kutztown.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.kutztown.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">kutztown.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Kutztown University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.kutztown.edu/privacy-statement.htm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="100" xml:lang="en">https://www3.kutztown.edu/images/EmbossedLogoSM.PNG</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 900679538199918721300962940066251839514626165359, expires on Tue Feb 1 20:55:06 2033 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 979642178317350098713936654837580578226188714045, expires on Tue Jul 1 14:39:16 2036 GMT -->
+ <ds:X509Certificate>
+MIIDLDCCAhSgAwIBAgIVAKuYrLAZJHdo+KyacwDfp1JvAgA9MA0GCSqGSIb3DQEB
+CwUAMBsxGTAXBgNVBAMMEGlkcC5rdXR6dG93bi5lZHUwHhcNMTYwNzAxMTQzOTE2
+WhcNMzYwNzAxMTQzOTE2WjAbMRkwFwYDVQQDDBBpZHAua3V0enRvd24uZWR1MIIB
+IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqfHCbIIM9P0r39ERqCRHeD6G
+DKMadSZhdCpr6/PzORprxE9in4bSEpr4NywcYXwZyx8GsMfCHl1ZJMiD44lSDbKD
+MYXOvu2qB4RXZXNu0Jnequ8MyOgBsMH3p8/+G+7UN8lBb6XR/0YxH1527WUkMU5Y
+BFZC9am+VjHkRErxFWssfz12Sk6q20oN0IWn16phBa6o+4iKC3/JRawnUXW2y5hf
+/Re+gfaGs9jVyrDrLRzzGF6Whui9ShwEJ6MI1YzzVQhh5uzS+aQt55oKHvOtqdWq
+KHZmInwSk2EyrDcJcUOU1+naMebLRF0AQTlz3YL9zcRsA9fk8Hjwd1qMynjvtQID
+AQABo2cwZTAdBgNVHQ4EFgQUfJ0AOidzxy7vU8rf9oTprNnCv4swRAYDVR0RBD0w
+O4IQaWRwLmt1dHp0b3duLmVkdYYnaHR0cHM6Ly9pZHAua3V0enRvd24uZWR1L2lk
+cC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQB3tYbT2Rv3SZc3XI6fCrpK
+WkjTywM9NecxiQdgH2nAkfYRmgNk3Dk9mxOAFyxKqBxnOrxcWu6L/+xMj27laMtm
+d+Uk3/pD2n8+X/Q7KeVbWkFTZJyLNwKIukFsqv0xhvJFpRARm7AQWs+qW080XUmG
+r4hUWWME1Bu6v5xiWkGqZUUM+Eb/DgtRiZQWcaB4h5GOGXKVq5rlk4FOKFPK0gqq
+mPup48qbpN7yLAayj5sOAmXyfnCTT/GYGYt+x83cGDAZ8JRyAm6RycUyB+fu/DDP
++PcLdOx4riUgsHDiWbmv+PK0StTD+Mo8dh7hSw2e49VE1igeEWrpsJrcFWQttqIh
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.kutztown.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.kutztown.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.kutztown.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.kutztown.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.kutztown.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">kutztown.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 900679538199918721300962940066251839514626165359, expires on Tue Feb 1 20:55:06 2033 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.kutztown.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.kutztown.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Kutztown University of Pennsylvania</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Kutztown University of Pennsylvania</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.kutztown.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Richard Miller</GivenName>
+ <EmailAddress>miller@kutztown.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>David Jones</GivenName>
+ <EmailAddress>dajones@kutztown.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>David Jones</GivenName>
+ <EmailAddress>dajones@kutztown.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Tennessee -->
+<EntityDescriptor entityID="https://idp.utk.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utk.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">tennessee.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">utc.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">uthsc.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">utm.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">utsi.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Tennessee</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://dataprivacy.utk.edu/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://cdn.utk.edu/OIT/resources/images/power-t.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 111992214142698298628718291050283082793207592114, expires on Mon Apr 18 12:24:36 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.utk.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.utk.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.utk.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.utk.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Tennessee</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Tennessee</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.utk.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Will Richardson</GivenName>
+ <EmailAddress>wkrich@utk.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Melissa Wauford</GivenName>
+ <EmailAddress>mwauford@utk.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>OIT HelpDesk</GivenName>
+ <EmailAddress>tcshd@utk.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>OIT UTK Security Office</GivenName>
+ <EmailAddress>security@utk.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- RSmart -->
+<EntityDescriptor entityID="https://accc.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UIC OneCampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://one.uic.edu/saml/SSO/alias/accc" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://one.uic.edu/saml/SSO/alias/accc" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://one.uic.edu/saml/SSO/alias/accc" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://one.uic.edu/saml/SSO/alias/accc" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://askcathy.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Pittsburgh-OneCampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>
+MIIEEzCCAvugAwIBAgIJALndpYvCPbpvMA0GCSqGSIb3DQEBCwUAMIGeMQswCQYD
+VQQGEwJVUzEQMA4GA1UECAwHQXJpem9uYTETMBEGA1UEBwwKU2NvdHRzZGFsZTEP
+MA0GA1UECgwGclNtYXJ0MRAwDgYDVQQLDAdTYWFTT3BzMRgwFgYDVQQDDA8qLm9u
+ZWNhbXB1cy5jb20xKzApBgkqhkiG9w0BCQEWHGNsb3VkX29wc19zdXBwb3J0QHJz
+bWFydC5jb20wIBcNMTYwNjIyMTczMTA4WhgPNDc1NDA1MTkxNzMxMDhaMIGeMQsw
+CQYDVQQGEwJVUzEQMA4GA1UECAwHQXJpem9uYTETMBEGA1UEBwwKU2NvdHRzZGFs
+ZTEPMA0GA1UECgwGclNtYXJ0MRAwDgYDVQQLDAdTYWFTT3BzMRgwFgYDVQQDDA8q
+Lm9uZWNhbXB1cy5jb20xKzApBgkqhkiG9w0BCQEWHGNsb3VkX29wc19zdXBwb3J0
+QHJzbWFydC5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDHSg0+
+JDljLYtiLp4SS2x2G1KijMtnDzZzZf/BmuIZjetAC95IVcSLpvCjxa1sHEf5e4ZG
+uc5kByWYMj0u6Zn5e7u1H8zSdVVZ+SdIiDmbL9IPVzxgB8qCiM8BDLm86zvp6JPD
+dmSyU5qmDX7CmPXI/3W/4raOZMORkxBCIeUTujYXI6w1E/JIlam7rGiXGv6HcMWa
+bc0JN+FyGtY1qdDdQPl7oWESxwEMaXTCt80zL7GoDB2WMvr+HTi/cwL34/KJow//
+PPxVBIcMY0d5ij4rqruc7BnofAHJIbd+irrR27FEdIAAZ+L9C9NiK+7gYVAD7bxy
+uLMd4yZP6m4QuXK/AgMBAAGjUDBOMB0GA1UdDgQWBBQPjZYdibOQi3hsFPA7MC9k
+SugpEjAfBgNVHSMEGDAWgBQPjZYdibOQi3hsFPA7MC9kSugpEjAMBgNVHRMEBTAD
+AQH/MA0GCSqGSIb3DQEBCwUAA4IBAQA/r0olm4N11H0dbipnjcrBxCiu0nlV6oMC
+tqGcUPN8jD42AS50OLyon1Z8TSf2cdGL1IZRlBqjQ5RwtKfnNWFStXOkPQ07Ni84
+Kft6MTpvjDZ3PQyNcgM6MvMs3GTbhQmaf1PYp8okOYxjhJceeWfwY9juWHZBACgz
+7PDyQxlXQumzLvYPQKwl+OXGUovmpXCktA3yIbFZ0k8Yt1NLJicgdoQ6f0YlHSKu
+WodDCB/5BGVr5g5pHabb4OruzcRC+25L/32XZ/FNJv6H5DM6AFY+OwsX5rITOBHS
+FscNaVvZ5I5SfOtR0IiUVvhbKYSigTIM4L7t5Aa6nzJOJdo88aTV
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://askcathy.pitt.edu/saml/SSO/alias/askcathy" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://askcathy.pitt.edu/saml/SSO/alias/askcathy" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://askcathy.pitt.edu/saml/SSO/alias/askcathy" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://askcathy.pitt.edu/saml/SSO/alias/askcathy" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://buffalo.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University at Buffalo OneCampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>
+MIIEEzCCAvugAwIBAgIJALndpYvCPbpvMA0GCSqGSIb3DQEBCwUAMIGeMQswCQYD VQQGEwJVUzEQMA4GA1UECAwHQXJpem9uYTETMBEGA1UEBwwKU2NvdHRzZGFsZTEP MA0GA1UECgwGclNtYXJ0MRAwDgYDVQQLDAdTYWFTT3BzMRgwFgYDVQQDDA8qLm9u ZWNhbXB1cy5jb20xKzApBgkqhkiG9w0BCQEWHGNsb3VkX29wc19zdXBwb3J0QHJz bWFydC5jb20wIBcNMTYwNjIyMTczMTA4WhgPNDc1NDA1MTkxNzMxMDhaMIGeMQsw CQYDVQQGEwJVUzEQMA4GA1UECAwHQXJpem9uYTETMBEGA1UEBwwKU2NvdHRzZGFs ZTEPMA0GA1UECgwGclNtYXJ0MRAwDgYDVQQLDAdTYWFTT3BzMRgwFgYDVQQDDA8q Lm9uZWNhbXB1cy5jb20xKzApBgkqhkiG9w0BCQEWHGNsb3VkX29wc19zdXBwb3J0 QHJzbWFydC5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDHSg0+ JDljLYtiLp4SS2x2G1KijMtnDzZzZf/BmuIZjetAC95IVcSLpvCjxa1sHEf5e4ZG uc5kByWYMj0u6Zn5e7u1H8zSdVVZ+SdIiDmbL9IPVzxgB8qCiM8BDLm86zvp6JPD dmSyU5qmDX7CmPXI/3W/4raOZMORkxBCIeUTujYXI6w1E/JIlam7rGiXGv6HcMWa bc0JN+FyGtY1qdDdQPl7oWESxwEMaXTCt80zL7GoDB2WMvr+HTi/cwL34/KJow// PPxVBIcMY0d5ij4rqruc7BnofAHJIbd+irrR27FEdIAAZ+L9C9NiK+7gYVAD7bxy uLMd4yZP6m4QuXK/AgMBAAGjUDBOMB0GA1UdDgQWBBQPjZYdibOQi3hsFPA7MC9k SugpEjAfBgNVHSMEGDAWgBQPjZYdibOQi3hsFPA7MC9kSugpEjAMBgNVHRMEBTAD AQH/MA0GCSqGSIb3DQEBCwUAA4IBAQA/r0olm4N11H0dbipnjcrBxCiu0nlV6oMC tqGcUPN8jD42AS50OLyon1Z8TSf2cdGL1IZRlBqjQ5RwtKfnNWFStXOkPQ07Ni84 Kft6MTpvjDZ3PQyNcgM6MvMs3GTbhQmaf1PYp8okOYxjhJceeWfwY9juWHZBACgz 7PDyQxlXQumzLvYPQKwl+OXGUovmpXCktA3yIbFZ0k8Yt1NLJicgdoQ6f0YlHSKu WodDCB/5BGVr5g5pHabb4OruzcRC+25L/32XZ/FNJv6H5DM6AFY+OwsX5rITOBHS FscNaVvZ5I5SfOtR0IiUVvhbKYSigTIM4L7t5Aa6nzJOJdo88aTV
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://buffalo.onecampus.com/saml/SSO/alias/buffalo" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://buffalo.onecampus.com/saml/SSO/alias/buffalo" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://buffalo.onecampus.com/saml/SSO/alias/buffalo" index="3"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://citrus.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Citrus College OneCampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://my.citruscollege.edu/saml/SSO/alias/citrus" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://my.citruscollege.edu/saml/SSO/alias/citrus" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://my.citruscollege.edu/saml/SSO/alias/citrus" index="3"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://fairfield.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fairfield OneCampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fairfield.onecampus.com/saml/SSO/alias/fairfield" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fairfield.onecampus.com/saml/SSO/alias/fairfield" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fairfield.onecampus.com/saml/SSO/alias/fairfield" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://fairfield.onecampus.com/saml/SSO/alias/fairfield" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://idp.onecampus.com/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.onecampus.com/error" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">rsmart.com</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">rSmart</mdui:DisplayName>
+ <mdui:Description xml:lang="en">rSmart Corporate IdP</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://rsmart.com/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="500" xml:lang="en">https://idp.onecampus.com/site/logo</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9716012334937492496, expires on Wed Jan 14 21:38:03 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.onecampus.com/saml/saml2/sso" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.onecampus.com/saml/saml2/slo"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.onecampus.com/saml/saml1/sso"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.onecampus.com/saml/saml2/sso"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.onecampus.com/saml/saml2/sso"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://illinoistest.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Illinois Urbana Champaign - OneCampus TEST</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://illinoistest.onecampus.com/saml/SSO/alias/iuctest" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://illinoistest.onecampus.com/saml/SSO/alias/iuctest" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://illinoistest.onecampus.com/saml/SSO/alias/iuctest" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://illinoistest.onecampus.com/saml/SSO/alias/iuctest" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://insidend.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ND PRD OnceCampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://inside.nd.edu/saml/SSO/alias/nd" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://inside.nd.edu/saml/SSO/alias/nd" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://inside.nd.edu/saml/SSO/alias/nd" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://inside.nd.edu/saml/SSO/alias/nd" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://iuc.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Illinois Urbana Champaign - OneCampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://one.illinois.edu/saml/SSO/alias/iuc" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://one.illinois.edu/saml/SSO/alias/iuc" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://one.illinois.edu/saml/SSO/alias/iuc" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://one.illinois.edu/saml/SSO/alias/iuc" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://maizelink.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Michigan - OneCampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://maizelink.umich.edu/saml/SSO/alias/umich" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://maizelink.umich.edu/saml/SSO/alias/umich" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://maizelink.umich.edu/saml/SSO/alias/umich" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://maizelink.umich.edu/saml/SSO/alias/umich" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://mizzouone.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Missouri OneCampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mizzouone.missouri.edu/saml/SSO/alias/mizzou" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mizzouone.missouri.edu/saml/SSO/alias/mizzou" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mizzouone.missouri.edu/saml/SSO/alias/mizzou" index="3"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>SaaSOps</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>SaaSOps</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>SaaSOps</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://mizzouonetest.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Missouri OneCampus-TEST</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mizzouone.onecampus.com/saml/SSO/alias/mizzou" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mizzouone.onecampus.com/saml/SSO/alias/mizzou" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mizzouone.onecampus.com/saml/SSO/alias/mizzou" index="3"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nd.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ND OneCampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1744538551849922865, expires on Thu Aug 4 02:13:38 2016 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://inside-qa.nd.edu/saml/SSO/alias/nd" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://inside-qa.nd.edu/saml/SSO/alias/nd" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://inside-qa.nd.edu/saml/SSO/alias/nd" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://inside-qa.nd.edu/saml/SSO/alias/nd" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ndsandbox.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ND OneCampus Sandbox</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1744538551849922865, expires on Thu Aug 4 02:13:38 2016 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>
+MIIEEzCCAvugAwIBAgIJALndpYvCPbpvMA0GCSqGSIb3DQEBCwUAMIGeMQswCQYD
+VQQGEwJVUzEQMA4GA1UECAwHQXJpem9uYTETMBEGA1UEBwwKU2NvdHRzZGFsZTEP
+MA0GA1UECgwGclNtYXJ0MRAwDgYDVQQLDAdTYWFTT3BzMRgwFgYDVQQDDA8qLm9u
+ZWNhbXB1cy5jb20xKzApBgkqhkiG9w0BCQEWHGNsb3VkX29wc19zdXBwb3J0QHJz
+bWFydC5jb20wIBcNMTYwNjIyMTczMTA4WhgPNDc1NDA1MTkxNzMxMDhaMIGeMQsw
+CQYDVQQGEwJVUzEQMA4GA1UECAwHQXJpem9uYTETMBEGA1UEBwwKU2NvdHRzZGFs
+ZTEPMA0GA1UECgwGclNtYXJ0MRAwDgYDVQQLDAdTYWFTT3BzMRgwFgYDVQQDDA8q
+Lm9uZWNhbXB1cy5jb20xKzApBgkqhkiG9w0BCQEWHGNsb3VkX29wc19zdXBwb3J0
+QHJzbWFydC5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDHSg0+
+JDljLYtiLp4SS2x2G1KijMtnDzZzZf/BmuIZjetAC95IVcSLpvCjxa1sHEf5e4ZG
+uc5kByWYMj0u6Zn5e7u1H8zSdVVZ+SdIiDmbL9IPVzxgB8qCiM8BDLm86zvp6JPD
+dmSyU5qmDX7CmPXI/3W/4raOZMORkxBCIeUTujYXI6w1E/JIlam7rGiXGv6HcMWa
+bc0JN+FyGtY1qdDdQPl7oWESxwEMaXTCt80zL7GoDB2WMvr+HTi/cwL34/KJow//
+PPxVBIcMY0d5ij4rqruc7BnofAHJIbd+irrR27FEdIAAZ+L9C9NiK+7gYVAD7bxy
+uLMd4yZP6m4QuXK/AgMBAAGjUDBOMB0GA1UdDgQWBBQPjZYdibOQi3hsFPA7MC9k
+SugpEjAfBgNVHSMEGDAWgBQPjZYdibOQi3hsFPA7MC9kSugpEjAMBgNVHRMEBTAD
+AQH/MA0GCSqGSIb3DQEBCwUAA4IBAQA/r0olm4N11H0dbipnjcrBxCiu0nlV6oMC
+tqGcUPN8jD42AS50OLyon1Z8TSf2cdGL1IZRlBqjQ5RwtKfnNWFStXOkPQ07Ni84
+Kft6MTpvjDZ3PQyNcgM6MvMs3GTbhQmaf1PYp8okOYxjhJceeWfwY9juWHZBACgz
+7PDyQxlXQumzLvYPQKwl+OXGUovmpXCktA3yIbFZ0k8Yt1NLJicgdoQ6f0YlHSKu
+WodDCB/5BGVr5g5pHabb4OruzcRC+25L/32XZ/FNJv6H5DM6AFY+OwsX5rITOBHS
+FscNaVvZ5I5SfOtR0IiUVvhbKYSigTIM4L7t5Aa6nzJOJdo88aTV
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://inside-test.nd.edu/saml/SSO/alias/ndsandbox" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://inside-test.nd.edu/saml/SSO/alias/ndsandbox" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://inside-test.nd.edu/saml/SSO/alias/ndsandbox" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://inside-test.nd.edu/saml/SSO/alias/ndsandbox" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://newbuckeyelink.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ohio State OneCampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://buckeyelink.osu.edu/saml/SSO/alias/osu" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://buckeyelink.osu.edu/saml/SSO/alias/osu" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://buckeyelink.osu.edu/saml/SSO/alias/osu" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://buckeyelink.osu.edu/saml/SSO/alias/osu" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://osudev.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">The Ohio State University- OneCampus Development</mdui:DisplayName>
+ <mdui:Description xml:lang="en">rSmart</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://osudev.onecampus.com/saml/SSO/alias/osudev" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://osudev.onecampus.com/saml/SSO/alias/osudev" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://osudev.onecampus.com/saml/SSO/alias/osudev" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://osudev.onecampus.com/saml/SSO/alias/osudev" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://osutest.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ohio State Test</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://osutest.onecampus.com/saml/SSO/alias/osutest" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://osutest.onecampus.com/saml/SSO/alias/osutest" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://osutest.onecampus.com/saml/SSO/alias/osutest" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://osutest.onecampus.com/saml/SSO/alias/osutest" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://pitt.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">U. Pittsburgh - TEST</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pitt.onecampus.com/saml/SSO/alias/pitt" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pitt.onecampus.com/saml/SSO/alias/pitt" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://pitt.onecampus.com/saml/SSO/alias/pitt" index="3"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud_Ops_Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://reportsjhu.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">JHU-OneCampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://reports.johnshopkins.edu/saml/SSO/alias/jhu" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://reports.johnshopkins.edu/saml/SSO/alias/jhu" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://reports.johnshopkins.edu/saml/SSO/alias/jhu" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://reports.johnshopkins.edu/saml/SSO/alias/jhu" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://salukinet.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SIU Onecampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>
+MIIEEzCCAvugAwIBAgIJALndpYvCPbpvMA0GCSqGSIb3DQEBCwUAMIGeMQswCQYD
+VQQGEwJVUzEQMA4GA1UECAwHQXJpem9uYTETMBEGA1UEBwwKU2NvdHRzZGFsZTEP
+MA0GA1UECgwGclNtYXJ0MRAwDgYDVQQLDAdTYWFTT3BzMRgwFgYDVQQDDA8qLm9u
+ZWNhbXB1cy5jb20xKzApBgkqhkiG9w0BCQEWHGNsb3VkX29wc19zdXBwb3J0QHJz
+bWFydC5jb20wIBcNMTYwNjIyMTczMTA4WhgPNDc1NDA1MTkxNzMxMDhaMIGeMQsw
+CQYDVQQGEwJVUzEQMA4GA1UECAwHQXJpem9uYTETMBEGA1UEBwwKU2NvdHRzZGFs
+ZTEPMA0GA1UECgwGclNtYXJ0MRAwDgYDVQQLDAdTYWFTT3BzMRgwFgYDVQQDDA8q
+Lm9uZWNhbXB1cy5jb20xKzApBgkqhkiG9w0BCQEWHGNsb3VkX29wc19zdXBwb3J0
+QHJzbWFydC5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDHSg0+
+JDljLYtiLp4SS2x2G1KijMtnDzZzZf/BmuIZjetAC95IVcSLpvCjxa1sHEf5e4ZG
+uc5kByWYMj0u6Zn5e7u1H8zSdVVZ+SdIiDmbL9IPVzxgB8qCiM8BDLm86zvp6JPD
+dmSyU5qmDX7CmPXI/3W/4raOZMORkxBCIeUTujYXI6w1E/JIlam7rGiXGv6HcMWa
+bc0JN+FyGtY1qdDdQPl7oWESxwEMaXTCt80zL7GoDB2WMvr+HTi/cwL34/KJow//
+PPxVBIcMY0d5ij4rqruc7BnofAHJIbd+irrR27FEdIAAZ+L9C9NiK+7gYVAD7bxy
+uLMd4yZP6m4QuXK/AgMBAAGjUDBOMB0GA1UdDgQWBBQPjZYdibOQi3hsFPA7MC9k
+SugpEjAfBgNVHSMEGDAWgBQPjZYdibOQi3hsFPA7MC9kSugpEjAMBgNVHRMEBTAD
+AQH/MA0GCSqGSIb3DQEBCwUAA4IBAQA/r0olm4N11H0dbipnjcrBxCiu0nlV6oMC
+tqGcUPN8jD42AS50OLyon1Z8TSf2cdGL1IZRlBqjQ5RwtKfnNWFStXOkPQ07Ni84
+Kft6MTpvjDZ3PQyNcgM6MvMs3GTbhQmaf1PYp8okOYxjhJceeWfwY9juWHZBACgz
+7PDyQxlXQumzLvYPQKwl+OXGUovmpXCktA3yIbFZ0k8Yt1NLJicgdoQ6f0YlHSKu
+WodDCB/5BGVr5g5pHabb4OruzcRC+25L/32XZ/FNJv6H5DM6AFY+OwsX5rITOBHS
+FscNaVvZ5I5SfOtR0IiUVvhbKYSigTIM4L7t5Aa6nzJOJdo88aTV
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://newsalukinet.siu.edu/saml/SSO/alias/siu" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://newsalukinet.siu.edu/saml/SSO/alias/siu" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://newsalukinet.siu.edu/saml/SSO/alias/siu" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://newsalukinet.siu.edu/saml/SSO/alias/siu" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://salukinet-prd.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SIU OneCampus Production</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://salukinet.siu.edu/saml/SSO/alias/siu" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://salukinet.siu.edu/saml/SSO/alias/siu" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://salukinet.siu.edu/saml/SSO/alias/siu" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://salukinet.siu.edu/saml/SSO/alias/siu" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ufit.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Florida - IT</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 4506361902816735515, expires on Sat May 13 16:01:38 2017 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://services.it.ufl.edu/saml/SSO/alias/ufit" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://services.it.ufl.edu/saml/SSO/alias/ufit" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://services.it.ufl.edu/saml/SSO/alias/ufit" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://services.it.ufl.edu/saml/SSO/alias/ufit" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umich.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Michigan OneCampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umich.onecampus.com/saml/SSO/alias/umich" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://umich.onecampus.com/saml/SSO/alias/umich" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umich.onecampus.com/saml/SSO/alias/umich" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://umich.onecampus.com/saml/SSO/alias/umich" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umich-test.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Michigan OneCampus-TEST</mdui:DisplayName>
+ <mdui:Description xml:lang="en">rSmart</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umich-test.onecampus.com/saml/SSO/alias/umichtest" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://umich-test.onecampus.com/saml/SSO/alias/umichtest" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umich-test.onecampus.com/saml/SSO/alias/umichtest" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://umich-test.onecampus.com/saml/SSO/alias/umichtest" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://unr.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UNR OneCampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unr.onecampus.com/saml/SSO/alias/unr" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://unr.onecampus.com/saml/SSO/alias/unr" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://unr.onecampus.com/saml/SSO/alias/unr" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://unr.onecampus.com/saml/SSO/alias/unr" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://villanova.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">OneCampus Villanova</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mynova2.villanova.edu/saml/SSO/alias/villanova" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mynova2.villanova.edu/saml/SSO/alias/villanova" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mynova2.villanova.edu/saml/SSO/alias/villanova" index="3"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://vt-test.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">VaTech - Test</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>
+MIIEEzCCAvugAwIBAgIJALndpYvCPbpvMA0GCSqGSIb3DQEBCwUAMIGeMQswCQYD
+VQQGEwJVUzEQMA4GA1UECAwHQXJpem9uYTETMBEGA1UEBwwKU2NvdHRzZGFsZTEP
+MA0GA1UECgwGclNtYXJ0MRAwDgYDVQQLDAdTYWFTT3BzMRgwFgYDVQQDDA8qLm9u
+ZWNhbXB1cy5jb20xKzApBgkqhkiG9w0BCQEWHGNsb3VkX29wc19zdXBwb3J0QHJz
+bWFydC5jb20wIBcNMTYwNjIyMTczMTA4WhgPNDc1NDA1MTkxNzMxMDhaMIGeMQsw
+CQYDVQQGEwJVUzEQMA4GA1UECAwHQXJpem9uYTETMBEGA1UEBwwKU2NvdHRzZGFs
+ZTEPMA0GA1UECgwGclNtYXJ0MRAwDgYDVQQLDAdTYWFTT3BzMRgwFgYDVQQDDA8q
+Lm9uZWNhbXB1cy5jb20xKzApBgkqhkiG9w0BCQEWHGNsb3VkX29wc19zdXBwb3J0
+QHJzbWFydC5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDHSg0+
+JDljLYtiLp4SS2x2G1KijMtnDzZzZf/BmuIZjetAC95IVcSLpvCjxa1sHEf5e4ZG
+uc5kByWYMj0u6Zn5e7u1H8zSdVVZ+SdIiDmbL9IPVzxgB8qCiM8BDLm86zvp6JPD
+dmSyU5qmDX7CmPXI/3W/4raOZMORkxBCIeUTujYXI6w1E/JIlam7rGiXGv6HcMWa
+bc0JN+FyGtY1qdDdQPl7oWESxwEMaXTCt80zL7GoDB2WMvr+HTi/cwL34/KJow//
+PPxVBIcMY0d5ij4rqruc7BnofAHJIbd+irrR27FEdIAAZ+L9C9NiK+7gYVAD7bxy
+uLMd4yZP6m4QuXK/AgMBAAGjUDBOMB0GA1UdDgQWBBQPjZYdibOQi3hsFPA7MC9k
+SugpEjAfBgNVHSMEGDAWgBQPjZYdibOQi3hsFPA7MC9kSugpEjAMBgNVHRMEBTAD
+AQH/MA0GCSqGSIb3DQEBCwUAA4IBAQA/r0olm4N11H0dbipnjcrBxCiu0nlV6oMC
+tqGcUPN8jD42AS50OLyon1Z8TSf2cdGL1IZRlBqjQ5RwtKfnNWFStXOkPQ07Ni84
+Kft6MTpvjDZ3PQyNcgM6MvMs3GTbhQmaf1PYp8okOYxjhJceeWfwY9juWHZBACgz
+7PDyQxlXQumzLvYPQKwl+OXGUovmpXCktA3yIbFZ0k8Yt1NLJicgdoQ6f0YlHSKu
+WodDCB/5BGVr5g5pHabb4OruzcRC+25L/32XZ/FNJv6H5DM6AFY+OwsX5rITOBHS
+FscNaVvZ5I5SfOtR0IiUVvhbKYSigTIM4L7t5Aa6nzJOJdo88aTV
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vt-test.onecampus.com/saml/SSO/alias/vttest" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://vt-test.onecampus.com/saml/SSO/alias/vttest" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://vt-test.onecampus.com/saml/SSO/alias/vttest" index="3"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wustl.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Washington Un.STL OneCampus</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>
+MIIEEzCCAvugAwIBAgIJALndpYvCPbpvMA0GCSqGSIb3DQEBCwUAMIGeMQswCQYD
+VQQGEwJVUzEQMA4GA1UECAwHQXJpem9uYTETMBEGA1UEBwwKU2NvdHRzZGFsZTEP
+MA0GA1UECgwGclNtYXJ0MRAwDgYDVQQLDAdTYWFTT3BzMRgwFgYDVQQDDA8qLm9u
+ZWNhbXB1cy5jb20xKzApBgkqhkiG9w0BCQEWHGNsb3VkX29wc19zdXBwb3J0QHJz
+bWFydC5jb20wIBcNMTYwNjIyMTczMTA4WhgPNDc1NDA1MTkxNzMxMDhaMIGeMQsw
+CQYDVQQGEwJVUzEQMA4GA1UECAwHQXJpem9uYTETMBEGA1UEBwwKU2NvdHRzZGFs
+ZTEPMA0GA1UECgwGclNtYXJ0MRAwDgYDVQQLDAdTYWFTT3BzMRgwFgYDVQQDDA8q
+Lm9uZWNhbXB1cy5jb20xKzApBgkqhkiG9w0BCQEWHGNsb3VkX29wc19zdXBwb3J0
+QHJzbWFydC5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDHSg0+
+JDljLYtiLp4SS2x2G1KijMtnDzZzZf/BmuIZjetAC95IVcSLpvCjxa1sHEf5e4ZG
+uc5kByWYMj0u6Zn5e7u1H8zSdVVZ+SdIiDmbL9IPVzxgB8qCiM8BDLm86zvp6JPD
+dmSyU5qmDX7CmPXI/3W/4raOZMORkxBCIeUTujYXI6w1E/JIlam7rGiXGv6HcMWa
+bc0JN+FyGtY1qdDdQPl7oWESxwEMaXTCt80zL7GoDB2WMvr+HTi/cwL34/KJow//
+PPxVBIcMY0d5ij4rqruc7BnofAHJIbd+irrR27FEdIAAZ+L9C9NiK+7gYVAD7bxy
+uLMd4yZP6m4QuXK/AgMBAAGjUDBOMB0GA1UdDgQWBBQPjZYdibOQi3hsFPA7MC9k
+SugpEjAfBgNVHSMEGDAWgBQPjZYdibOQi3hsFPA7MC9kSugpEjAMBgNVHRMEBTAD
+AQH/MA0GCSqGSIb3DQEBCwUAA4IBAQA/r0olm4N11H0dbipnjcrBxCiu0nlV6oMC
+tqGcUPN8jD42AS50OLyon1Z8TSf2cdGL1IZRlBqjQ5RwtKfnNWFStXOkPQ07Ni84
+Kft6MTpvjDZ3PQyNcgM6MvMs3GTbhQmaf1PYp8okOYxjhJceeWfwY9juWHZBACgz
+7PDyQxlXQumzLvYPQKwl+OXGUovmpXCktA3yIbFZ0k8Yt1NLJicgdoQ6f0YlHSKu
+WodDCB/5BGVr5g5pHabb4OruzcRC+25L/32XZ/FNJv6H5DM6AFY+OwsX5rITOBHS
+FscNaVvZ5I5SfOtR0IiUVvhbKYSigTIM4L7t5Aa6nzJOJdo88aTV
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://onecampus-test.wustl.edu/saml/SSO/alias/wustl" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://onecampus-test.wustl.edu/saml/SSO/alias/wustl" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://onecampus-test.wustl.edu/saml/SSO/alias/wustl" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://onecampus-test.wustl.edu/saml/SSO/alias/wustl" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wustlprd.onecampus.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Wash U.STL OneCampus PRD</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.rsmart.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rsmart.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="500" xml:lang="en">https://rsmart.onecampus.com/media/setting/LOGO-IMAGE</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13393042886547585647, expires on Wed May 19 17:31:08 4754 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://one.wustl.edu/saml/SSO/alias/wustlp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://one.wustl.edu/saml/SSO/alias/wustlp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://one.wustl.edu/saml/SSO/alias/wustlp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://one.wustl.edu/saml/SSO/alias/wustlp" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">RSmart</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RSmart</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rsmart.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cloud Ops Support</GivenName>
+ <EmailAddress>cloud_ops_support@rsmart.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Wisconsin-River Falls -->
+<EntityDescriptor entityID="https://falconidp.uwrf.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://falconidp.uwrf.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwrf.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Wisconsin-River Falls</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This is the identity provider for Falcon accounts hosted at the University of Wisconsin-River Falls</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.uwrf.edu/DoTS/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://go.uwrf.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="213" xml:lang="en">https://falconidp.uwrf.edu/idp/images/UWRFWordmark.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1277851604500280168549104072206826803515262665489, expires on Sat Jul 9 18:40:57 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://falconidp.uwrf.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://falconidp.uwrf.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://falconidp.uwrf.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://falconidp.uwrf.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://falconidp.uwrf.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwrf.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1277851604500280168549104072206826803515262665489, expires on Sat Jul 9 18:40:57 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://falconidp.uwrf.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin-River Falls</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin-River Falls</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uwrf.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Robert Rust</GivenName>
+ <EmailAddress>dots@uwrf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jason Winget</GivenName>
+ <EmailAddress>dots@uwrf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Division of Technology Services</GivenName>
+ <EmailAddress>dots@uwrf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jason Winget</GivenName>
+ <EmailAddress>abuse@uwrf.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of North Florida -->
+<EntityDescriptor entityID="https://shib.unf.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.unf.edu/its/help/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unf.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of North Florida</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of North Florida Shibboleth</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://shib.unf.edu/idp/shibboleth</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.unf.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="125" xml:lang="en">https://shib.unf.edu/UNFLogo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1372897716567547582987024014049706177298431253879, expires on Tue Apr 1 19:05:36 2036 GMT -->
+ <ds:X509Certificate>
+MIIDHDCCAgSgAwIBAgIVAPB63N80dgAu4QhrU5IH+i00VJ13MA0GCSqGSIb3DQEB CwUAMBcxFTATBgNVBAMMDHNoaWIudW5mLmVkdTAeFw0xNjA0MDExOTA1MzZaFw0z NjA0MDExOTA1MzZaMBcxFTATBgNVBAMMDHNoaWIudW5mLmVkdTCCASIwDQYJKoZI hvcNAQEBBQADggEPADCCAQoCggEBAIcv13B7wX2jGfSR5UZVwtkhFM5pyg0I1bro FIXfERmP3UJpmO2tWZl+fqwwbT2bordc6bE7uVu0S+M28Zn3/IvBcIo81U7TYcM4 2splqEL9F8+Sy03Wx16KUsX2jqkIeFGEfXkQtyfba3xJIkTKkQkPqz7K0rgeyGI8 Ql2atAWWipzRAdIHC4I7yWdGVth3WJ55e6tRHQX5tSUqOCE77ThuPCR6U8Ie3Rym Iq7JXW5P6y0Z+CSBGGkhrz73OGu3gtsyiZ4xQk8lHxYVUXPjEy0hBC5zv9jQwucH mlq82p+UfeIZKv9M4jzd/SP18+D6isJPPkoVCsTaMA7qoAtH+tsCAwEAAaNfMF0w HQYDVR0OBBYEFLUET4d4Tg7lVjhXE+rP4Vt9Bwx0MDwGA1UdEQQ1MDOCDHNoaWIu dW5mLmVkdYYjaHR0cHM6Ly9zaGliLnVuZi5lZHUvaWRwL3NoaWJib2xldGgwDQYJ KoZIhvcNAQELBQADggEBAE8vvGeLB7mDNnoSXPtb5n1EkOhYE5KtFQIPWwuxmHhX zK0m0rt7AdeXYgpxJ45Rn1BXv2Ns/2m4mAWWsnyeOezZZ/ZejlzLogCxomB5xRkO QQD/N7EZnC/lWvZ2AwsTi5zDg4sRw9bVrHtxvr/izZ6r0zAi/KV5sjEYMKDWB+Gz UnEfRYaKPFCmGLwLYx6XCiIQuZHerPcjyPsO90HwvMU3XgPGkoSp0iG8eux4c+KY +VzFUQqPGx5E8IOGlk07ei4AS7yPseeYKSwKA4XbtE5mC4auLn0Fv9sehZrmnERl kNoi8kYMpDYnAmIxDJyumnh8Y7pxuiFIfc3uQn+zQe0=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.unf.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.unf.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.unf.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.unf.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.unf.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.unf.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.unf.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of North Florida</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of North Florida</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unf.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>UNF IT Security</GivenName>
+ <EmailAddress>ITSecurity@unf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>UNF IT Security</GivenName>
+ <EmailAddress>ITSecurity@unf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UNF IT Security</GivenName>
+ <EmailAddress>ITSecurity@unf.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- William Paterson University -->
+<EntityDescriptor entityID="https://idp.wpunj.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wpunj.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">William Paterson University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://itwiki.wpunj.edu/index.php/Information_Technology%27s_Wiki:Privacy_policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="72" width="152" xml:lang="en">https://www.wpunj.edu/template/ecus/img/wpu-logo-black.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238946480587264756, expires on Tue Jun 7 12:38:35 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp0.wpunj.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp0.wpunj.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp0.wpunj.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp0.wpunj.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp0.wpunj.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wpunj.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10238946480587264756, expires on Tue Jun 7 12:38:35 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp0.wpunj.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">William Paterson University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">William Paterson University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wpunj.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Administrative Support</GivenName>
+ <EmailAddress>shibb_admin@wpunj.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>shibb_tech@wpunj.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>shibb_help@wpunj.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Security</GivenName>
+ <EmailAddress>shibb_security@wpunj.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Georgia -->
+<EntityDescriptor entityID="https://idp.cc.uga.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://idp.uga.edu/idp/error" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uga.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Georgia</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Shibboleth 2.x</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://eits.uga.edu/access_and_security/infosec/pols_regs/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="96" width="125" xml:lang="en">https://cas2.uga.edu/cas/images/Screen-GEORGIA-V-FC.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17585401018912143786, expires on Sat Mar 12 15:48:27 2016 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15586027254788562313, expires on Tue Mar 22 14:34:59 2016 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9815802305144848126, expires on Sat Jan 29 18:41:59 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.cc.uga.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.cc.uga.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.cc.uga.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.cc.uga.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.cc.uga.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uga.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17585401018912143786, expires on Sat Mar 12 15:48:27 2016 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15586027254788562313, expires on Tue Mar 22 14:34:59 2016 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9815802305144848126, expires on Sat Jan 29 18:41:59 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.cc.uga.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Georgia</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Georgia</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uga.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shannon Marable</GivenName>
+ <EmailAddress>Shannon.Marable@uga.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chris Workman</GivenName>
+ <EmailAddress>cworkman@uga.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kristi Wall</GivenName>
+ <EmailAddress>kristi.wall@uga.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Lindsay Schirato</GivenName>
+ <EmailAddress>lschira@uga.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sso.cc.uga.edu/cas/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://sso.uga.edu/cas/error/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uga.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Georgia SSO</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Georgia Single Sign On</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.uga.edu/about.php</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://eits.uga.edu/access_and_security/infosec/pols_regs/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="96" width="125" xml:lang="en">https://sso.uga.edu/cas/images/Screen-GEORGIA-V-FC.png/</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1161772140763878912333433727528500775575836493680, expires on Tue Jul 12 18:35:23 2039 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.uga.edu/cas/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.uga.edu/cas/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.uga.edu/cas/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.uga.edu/cas/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.uga.edu/cas/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.uga.edu/cas/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uga.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1161772140763878912333433727528500775575836493680, expires on Tue Jul 12 18:35:23 2039 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.uga.edu/cas/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.uga.edu/cas/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Georgia</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Georgia</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uga.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity Management Team</GivenName>
+ <EmailAddress>idm@uga.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity Management Team</GivenName>
+ <EmailAddress>idm@uga.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UGA InfoSec</GivenName>
+ <EmailAddress>soc@uga.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- ServiceNow -->
+<EntityDescriptor entityID="http://idp.devsnc.com/openam">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">servicenow.com</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ServiceNow</mdui:DisplayName>
+ <mdui:Description xml:lang="en">IdP DevSNC OpenAM</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+<!-- Serial No. 1392336554, expires on Mon Feb 12 00:09:14 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.devsnc.com/openam/SSORedirect/metaAlias/idp"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">ServiceNow</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">ServiceNow</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.servicenow.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Wallace Peng</GivenName>
+ <EmailAddress>wallace.peng@servicenow.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Aamir Siddiqui</GivenName>
+ <EmailAddress>aamir.siddiqui@servicenow.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Aparna Ganti</GivenName>
+ <EmailAddress>aparna.ganti@servicenow.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Houston Libraries -->
+<EntityDescriptor entityID="https://shibboleth.lib.uh.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://shibboleth.lib.uh.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lib.uh.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Houston Libraries</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Shibboleth identity provider for the University of Houston Libraries. </mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://shibboleth.lib.uh.edu/idp/shibboleth.jsp</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.uh.edu/legal-affairs/general-counsel/protection-and-confidential-information/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="379" xml:lang="en">https://shibboleth.lib.uh.edu/idp/images2/uhl.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 264472401910868226000953008160509830823203336154, expires on Tue Nov 6 21:51:09 2029 GMT -->
+ <ds:X509Certificate>
+MIIDPzCCAiegAwIBAgIULlNaR/yPtpIHLsg043vHlyUUb9owDQYJKoZIhvcNAQEF
+BQAwIDEeMBwGA1UEAxMVc2hpYmJvbGV0aC5saWIudWguZWR1MB4XDTA5MTEwNjIx
+NTEwOVoXDTI5MTEwNjIxNTEwOVowIDEeMBwGA1UEAxMVc2hpYmJvbGV0aC5saWIu
+dWguZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAiLfH0IINKgkb
+rIOkA/VFCgs+O8Voj/ywl8krAdq2+F5VQQC1+pHoTtcMp7MRHJ/HsRmDjQVkWlNR
+QEnFhnJv38dEIZnfkKWoijqWXTvkQeSvw+9rhU44I1GoBAxYRLm8BuljkOUlt/Xe
+pfusfkjNZaSoeXyS4Q8VGxOtY4FrRXK5SuVhU8tYiBHj+oN7EEHaaj6amADey8u/
+kmGdlJIaq71qwkm9xPeOCcAceLJF0pJBsGUx4sDR4E3y+wGEoPfMSMgJFDH1cmmj
+lFlbE81f6R+57NaX5gIX2oDQStj/D4B5BTSkV0EJiG6ZwcdzsX4nRv+qI1XtMfN3
+vYu8DcA4VwIDAQABo3EwbzBOBgNVHREERzBFghVzaGliYm9sZXRoLmxpYi51aC5l
+ZHWGLGh0dHBzOi8vc2hpYmJvbGV0aC5saWIudWguZWR1L2lkcC9zaGliYm9sZXRo
+MB0GA1UdDgQWBBTWtN42GnjSk3RkyD9wChaumT6JeTANBgkqhkiG9w0BAQUFAAOC
+AQEAckRFXo/Ps3CGTexk0U6VhZ3nUihG8dQR6yECjxpnrZU19u8u8jETLvTdgccL
+LTUlW9oapCGLiDNe9pAz04OrXrWFPaAG64eeFudF9ADat26Fb93alIUlJYTvIH9C
+7cIVqjtE4w1YDiGxIkmlxPCFsjxqQjRNzWvNmJAZ/7BqunjcKu573Ilv4CcteD2P
+E9I51v3x2TJs8SbOPJN87OyKEAilTSERUgXLxPKpGdL/3D3fZTB2cg35/EbDsAHd
+YBqltouvVCvEIi4TGm2qwqj8+X+JwbZ+ZHyLsy6u0GTBDQtMAvij6n17rKlM7DOv
+asKcVxzFt1IOY7qRu811/rvH7A==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.lib.uh.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.lib.uh.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.lib.uh.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.lib.uh.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.lib.uh.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.lib.uh.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lib.uh.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 264472401910868226000953008160509830823203336154, expires on Tue Nov 6 21:51:09 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.lib.uh.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.lib.uh.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Houston Libraries</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Houston Libraries</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://info.lib.uh.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Robert Spragg</GivenName>
+ <EmailAddress>rspragg@uh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert Spragg</GivenName>
+ <EmailAddress>rspragg@uh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Robert Spragg</GivenName>
+ <EmailAddress>rspragg@uh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Robert Spragg</GivenName>
+ <EmailAddress>rspragg@uh.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Pomona College -->
+<EntityDescriptor entityID="https://websso.pomona.edu/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pomona.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Pomona College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Pomona College Shibboleth IdP</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://its.pomona.edu/about/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.pomona.edu/administration/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="125" width="300" xml:lang="en">https://community.pomona.edu/image/2013-design-update/logo-new.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1366747888598033813922330791184380655778444837171, expires on Sat Dec 17 21:41:01 2033 GMT -->
+ <ds:X509Certificate>
+MIIDRDCCAiygAwIBAgIVAO9nGE8c+lQhK2F0lPJxljFyJ4EzMA0GCSqGSIb3DQEB
+BQUAMCExHzAdBgNVBAMTFmNhczEuY2FtcHVzLnBvbW9uYS5lZHUwHhcNMTMxMjE3
+MjE0MTAxWhcNMzMxMjE3MjE0MTAxWjAhMR8wHQYDVQQDExZjYXMxLmNhbXB1cy5w
+b21vbmEuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq4MQ9hIX
+5FR80OVIOVg8nDrwy8TAQiQusnKNggf7g+aH+E6LZaABVKqOisIao0bQJCSgSjVX
+3HHo7a8H6KZzs5CQNJEe6Hw4lRx4BoZJ4PneLjIZCh1lkpSL+fFTqyqGbo56Oe+X
+yP9K54GdokcCGcqefYYGpsSmOczdRz85vz7jvXjnwCfJV4+6r5U04xaXNu451aWe
+mFYuJ690BJ12A7E/VOc9vNqX3VoEIUTRYOup5tB7T7BVVyoluNwZMuvA+8He/8LZ
+p5z7K8qlIRE/2uo7QgzBVBuJwnLdl0+h1srU6Hle/6SQ4GDZ4ANC40HdmUV8Bs4P
+DuYVeMVnECAwVQIDAQABo3MwcTBQBgNVHREESTBHghZjYXMxLmNhbXB1cy5wb21v
+bmEuZWR1hi1odHRwczovL2NhczEuY2FtcHVzLnBvbW9uYS5lZHUvaWRwL3NoaWJi
+b2xldGgwHQYDVR0OBBYEFKgbAPNzVng01H8rnvHcIWjiltBkMA0GCSqGSIb3DQEB
+BQUAA4IBAQAL1qw9bWxTA6YByua5jNnDrlz12fyfoOQjYenhhqVsnV8zaXLRh6g/
+anp0Rlg2VWr3r2dv+cRvTJ98cTd4aZg9k9SYvAfsH2IEcAC5ztt+ufAnHrJG9eJt
+YXiCUNJHG/tekuPsl2lcgL6oREFVsx8LCwH62qeWKBDmOxuzJG1miaDDfgWjXmuZ
+jMW6DSKHP7nPB+TVqHV21WnrhlVqcWbXSpzRMemw+zcnbCemcPpLcm1gPyyTcWxY
+JAIZ5JbZfzs6DKluH3EJomGA7QTN7nwEYwEN/WUoCPfToQrmtQn9ycaSKru8cxS5
+nh1jiNEqWZbGOpO4My5jVY+FG0TRRRQE
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cas1.campus.pomona.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas1.campus.pomona.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://cas1.campus.pomona.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas1.campus.pomona.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas1.campus.pomona.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pomona.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1366747888598033813922330791184380655778444837171, expires on Sat Dec 17 21:41:01 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cas1.campus.pomona.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pomona College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pomona College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.pomona.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Pomona ITS</GivenName>
+ <EmailAddress>ServiceDesk@pomona.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Patrick Flannery</GivenName>
+ <EmailAddress>pat@pomona.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jonathan Lanyon</GivenName>
+ <EmailAddress>jonathan.lanyon@pomona.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>William Morse</GivenName>
+ <EmailAddress>william.morse@pomona.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Patrick Flannery</GivenName>
+ <EmailAddress>pat@pomona.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- The George Washington University -->
+<EntityDescriptor entityID="https://singlesignon.gwu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/assurance/bronze</saml:AttributeValue>
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">gwu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">The George Washington University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.gwu.edu/privacy-notice</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="199" xml:lang="en">https://singlesignon.gwu.edu/images/gwlogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 46391890414455540250133405456276471408133467016, expires on Sun May 15 13:14:57 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://singlesignon.gwu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://singlesignon.gwu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://singlesignon.gwu.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://singlesignon.gwu.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://singlesignon.gwu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://singlesignon.gwu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://singlesignon.gwu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">gwu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 46391890414455540250133405456276471408133467016, expires on Sun May 15 13:14:57 2033 GMT -->
+ <ds:X509Certificate>
+MIIDOzCCAiOgAwIBAgIUCCBIyMPxHCBVy4X6syXgB3qY64gwDQYJKoZIhvcNAQEF
+BQAwHzEdMBsGA1UEAxMUc2luZ2xlc2lnbm9uLmd3dS5lZHUwHhcNMTMwNTE1MTMx
+NDU3WhcNMzMwNTE1MTMxNDU3WjAfMR0wGwYDVQQDExRzaW5nbGVzaWdub24uZ3d1
+LmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKWgSYvEgHdsFFAv
+ww8Z7ePb4hwpsrYdbauSArofVI3tE6USHvhH5PgDqhvYzk4HkKZSs1WUmggI0keY
+HvChJAnlDmMjaDAjfPymFMmMYfjhOMaVJmV+GLEcoKpWd64LcmyYkfSbNE7TPJn0
+afWKXfJZ8DCIKDeDPzMVa2xIabNE4IvKt6gA73bR40wym72S4RfKxzzI1vw0UHNz
+ri3uW1g5X5AiTsM9tOatIp4Hd40suXl59FUU1ipZzCKnP2qOSkOW47DNQEHoEWVN
+FW5BiJC8iR5D0LYph9eZt+7izq8GT38CeSpaZkA/uq6fDDNG96drZo2FZhzGoEo8
+H8u6PwsCAwEAAaNvMG0wTAYDVR0RBEUwQ4IUc2luZ2xlc2lnbm9uLmd3dS5lZHWG
+K2h0dHBzOi8vc2luZ2xlc2lnbm9uLmd3dS5lZHUvaWRwL3NoaWJib2xldGgwHQYD
+VR0OBBYEFHtesMCjBqphZFg+PXku5pUNc5uJMA0GCSqGSIb3DQEBBQUAA4IBAQAc
+Q7edavN+AswtQiwulho1K3MZ33339SlEMvzbhl2CPDCDqVLbH0ClRVYMZaS6Prdi
+iV6GLHrp00gRXrojbOSDmqRZ29dTdauvIbIC07JTqgM4aV5PUOjxI+spLcCqI7GE
+MRvNiq47Lb/amkzUEkSjlaeMRMD2Ay8xzSTQ+8lweS5zoypJf9NzbH9jqP89VtW7
+bvAGbxdEwTssKwpaD1d2KWHdaX+SImsJ58jOna4mJ6eCAYPfjgrtLPht9aiRHtvx
+Wz3Q2BXEs5f75bfIUKL/LKI8/LMmP650thtM6YlRjLIDNoa+ymaV48i1+Lb7dPRZ
+2/bMRZ3Y0d/jjfFfYyhu
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://singlesignon.gwu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The George Washington University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">The George Washington University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.gwu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Dhinakaran Thamanan Ramaian (Dhina)</GivenName>
+ <EmailAddress>dhina@gwu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dhinakaran Thamanan Ramaian (Dhina)</GivenName>
+ <EmailAddress>dhina@gwu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Andre DiMino</GivenName>
+ <EmailAddress>adimino@gwu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Connecticut -->
+<EntityDescriptor entityID="https://shibboleth.uconn.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uconn.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Connecticut</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://privacy.uconn.edu/university-website-notice/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="49" width="500" xml:lang="en">https://shibboleth.uconn.edu/logo/uconn-wordmark.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1170957443070531965885062580847308724283953910645, expires on Sun Dec 7 16:12:30 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.uconn.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.uconn.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.uconn.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.uconn.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.uconn.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uconn.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1170957443070531965885062580847308724283953910645, expires on Sun Dec 7 16:12:30 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.uconn.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.uconn.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Connecticut</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Connecticut</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uconn.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Help Center</GivenName>
+ <EmailAddress>helpcenter@uconn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>security@uconn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jason Pufahl</GivenName>
+ <EmailAddress>jason.pufahl@uconn.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dylan Marquis</GivenName>
+ <EmailAddress>dylan.marquis@uconn.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Oregon State University -->
+<EntityDescriptor entityID="https://login.oregonstate.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">oregonstate.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Oregon State University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://is.oregonstate.edu/iam/incommon-federation</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://is.oregonstate.edu/identity-and-access-management/incommon-federation/attribute-release-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login.oregonstate.edu/images/osu-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 102670160196956115572153716390541287598759252193, expires on Tue Oct 12 19:49:56 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.oregonstate.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.oregonstate.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.oregonstate.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Oregon State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Oregon State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.oregonstate.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Team</GivenName>
+ <EmailAddress>iamteam@oregonstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Team</GivenName>
+ <EmailAddress>iamteam@oregonstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IAM Support</GivenName>
+ <EmailAddress>td.iam@oregonstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IAM Support</GivenName>
+ <EmailAddress>td.iam@oregonstate.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Hamilton College -->
+<EntityDescriptor entityID="https://shibboleth.hamilton.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://my.hamilton.edu/its/rc/federated-id-error" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">hamilton.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Hamilton College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.hamilton.edu/offices/lits/rc/policies-protection-of-sensitive-information</mdui:PrivacyStatementURL>
+ <mdui:Logo height="49" width="212" xml:lang="en">https://my.hamilton.edu/images/wordmark.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17081235490205818189, expires on Thu Feb 2 19:40:08 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.hamilton.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.hamilton.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.hamilton.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.hamilton.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.hamilton.edu:8443/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.hamilton.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.hamilton.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.hamilton.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">hamilton.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17081235490205818189, expires on Thu Feb 2 19:40:08 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.hamilton.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Hamilton College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Hamilton College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hamilton.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>David Swartz</GivenName>
+ <EmailAddress>dswartz@hamilton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Joseph Shelley</GivenName>
+ <EmailAddress>jshelley@hamilton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>David Roback</GivenName>
+ <EmailAddress>droback@hamilton.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Temple University -->
+<EntityDescriptor entityID="https://fim.temple.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">temple.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Temple University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.temple.edu/secretary/sites/secretary/files/policies/04.72.11.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="67" width="310" xml:lang="en">https://www.temple.edu/sites/all/themes/edu/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11543881122581693671, expires on Mon Feb 20 18:03:52 2023 GMT -->
+ <ds:X509Certificate>
+MIIDBTCCAe2gAwIBAgIJAKA0GrgI0cTnMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMMDmZpbS50ZW1wbGUuZWR1MB4XDTEzMDIyMjE4MDM1MloXDTIzMDIyMDE4MDM1
+MlowGTEXMBUGA1UEAwwOZmltLnRlbXBsZS5lZHUwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQCwu4yPCdVKlMgpniAuLurWytpKVHYh+CrmvEab3kuRjCLT
+kajunn+3pqGGI1Njczs709PRrbDqj44zVb34/5jJtxQXIe+vTqDiSW3/xrqQcRB9
+FR2sOGa4iz+kTrxgN/6YNfcYO4b2F83bc7lzeN9BIRh2IxgVkhuHab7ohSKES6RV
+znIcSViHimbsCHTV6zXXfWNswgGZ2UoJ843jKinTJO6Sq5dHZ53P7vkHRK9IFfHD
+PFJ5VH+zlW1VfF+Ro8bNMA8voyv+I5zFC+n13xn3KxEQvnN1rK3cqkNi3DKR0FFX
+gdIVhDRTZr/w5z9cjfrjKq90Cy9tiy5HaxVaUTQbAgMBAAGjUDBOMB0GA1UdDgQW
+BBQQBUkle4SeFWBhr9y+eS82YpvJiTAfBgNVHSMEGDAWgBQQBUkle4SeFWBhr9y+
+eS82YpvJiTAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQCZLqYHrJqR
+0PkQW2MjwUMXbpDlRYXqMDu93kbnumLo3Ss7uzbeCZQTtgH99Rt1kWlw/DCp8BGf
+ZNLwqaT6lqUsAZAj0tDAeqO+ydbuwqzCysUQy03q6asRLTRl2XezMOybbQTQu0BF
+nLqUXjv1oHD1SrDDMCNzOrjznvw89pg8fUvsgT30phx+IA5njtz2LbEwcXxnhsKV
+q+x6F/F9cOCo68SUYj73TTCdFncYkd1EeOTbwOMoEO96C1V+E+edJ7EREC1sCzDE
+/M1V7IZioBwr7hRVDResfOVZCtrjQKsOi6JoDv9GHpkOdfx6f3Pew+THZIbiTZW+
+9mp5houYXEyJ
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://fim.temple.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fim.temple.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fim.temple.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">temple.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11543881122581693671, expires on Mon Feb 20 18:03:52 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fim.temple.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Temple University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Temple University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.temple.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Office of Identity and Access Management</GivenName>
+ <EmailAddress>oiam@temple.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>infosec@temple.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jorj Bauer</GivenName>
+ <EmailAddress>jorj@temple.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Office of Identity and Access Management</GivenName>
+ <EmailAddress>oiam@temple.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Information Technology Services HelpDesk</GivenName>
+ <EmailAddress>help@temple.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- California University of Pennsylvania -->
+<EntityDescriptor entityID="https://shib.calu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://shib.calu.edu/idp/profile/saml2/post/sso" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">calu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">California University of Pennsylvania</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.calu.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.calu.edu/faculty-staff/it-services/policies-guides/index.htm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="80" xml:lang="en">https://shib.calu.edu/idp/images/calu_top_site_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 303656075270495483698532743139489756104507681369, expires on Sun Mar 27 20:30:39 2033 GMT -->
+ <ds:X509Certificate>
+MIIDHzCCAgegAwIBAgIUNTBoyq7vKsfRV+tm+aeq+fVualkwDQYJKoZIhvcNAQEF
+BQAwGDEWMBQGA1UEAxMNc2hpYi5jYWx1LmVkdTAeFw0xMzAzMjcyMDMwMzlaFw0z
+MzAzMjcyMDMwMzlaMBgxFjAUBgNVBAMTDXNoaWIuY2FsdS5lZHUwggEiMA0GCSqG
+SIb3DQEBAQUAA4IBDwAwggEKAoIBAQCl5TuZ5k1KKCJ6vBK5BCej7zKP0NvbLBvX
+evabOdTtm6D0WprBXOR2qotdykV0I0PBontu/bQabTPzdDgwK1vObx+VXmZClno2
+xZph3zLkd38l5D1L3G+r06QiFyaWCknvqDUFJ0N9ALOCPiuhcDmJTEnk8uz4zyw9
+kGjr0srfuLRAbPoaDW6T+0NAE0OSeWsRMPYJ+1/E3+/bMtmkNtMntvoHjCUqNgeY
+6w18TnRT+1OkVJl9HSmTszRg424an6MFoas5yljtUp2TAoO22ynXCnHyZZJxfmZ9
+EJFJstW8m7z2fnnqTL8ykseTLuhhbjnSGlzJev7zW/ZWqyWt411lAgMBAAGjYTBf
+MD4GA1UdEQQ3MDWCDXNoaWIuY2FsdS5lZHWGJGh0dHBzOi8vc2hpYi5jYWx1LmVk
+dS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQUg4dHB8uyMBk3FIB4pRG0DYFmbj8w
+DQYJKoZIhvcNAQEFBQADggEBAHYqP1brpyvprXEg8+XatQ1rKH2iwKbUvlGvdciV
+uWjgWRlcOsms7Kk9Y9/MeJd/6Nrb+1ifj3IVHbZzZ3i7FAjQY6UeHgY08FcRIebm
+Vfr3pD31o/35fYNiJKmHAX3qrykm05e2f6kfB1DX08J4iBNK0r3sLcvDAocEDaRl
+XVQ1sD4SrD1zvkgHGNmJdwcAADWt1HV80FZK2ruiaum0vskTIJxQ6BBQKnWPl0xD
+g1Yiin78qAMDA92LfN/ctvj8sFivFbL4FJeH035tl/y7k/rJJVpsDjQIHJDPROCG
+3Jz8+VUS/n8RsCWiCcjLEM+SzCbGXM1Rp9ndtD2CSwKn2dc=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.calu.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.calu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.calu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">calu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 303656075270495483698532743139489756104507681369, expires on Sun Mar 27 20:30:39 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.calu.edu/idp/profile/SAML2/SOAP/AtributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">California University of Pennsylvania</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">California University of Pennsylvania</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.calu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>William A. Staffen</GivenName>
+ <EmailAddress>staffen@calu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Lisa Mattish</GivenName>
+ <EmailAddress>mattish@calu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brian Kraus</GivenName>
+ <EmailAddress>kraus@calu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor -->
+<EntityDescriptor entityID="http://adfs.sso.passhe.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://adfs.sso.passhe.edu/adfs/portal/logo/logo.png" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">passhe.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PA State System of Higher Education</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PA State System of Higher Education Single Sign-On experience</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.passhe.edu/inside/anf/_layouts/15/WopiFrame.aspx?sourcedoc=/inside/anf/Documents/phi.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="62" width="200" xml:lang="en">https://adfs.sso.passhe.edu/adfs/portal/logo/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 27146680999913270650883468194228964573, expires on Sun May 9 12:33:54 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adfs.sso.passhe.edu/adfs/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://adfs.sso.passhe.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adfs.sso.passhe.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://adfs.sso.passhe.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.passhe.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity and Access Management Team</GivenName>
+ <EmailAddress>IAM-Leads@passhe.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity and Access Management Team</GivenName>
+ <EmailAddress>IAM-Leads@passhe.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Identity and Access Management Team</GivenName>
+ <EmailAddress>IAM-Leads@passhe.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Identity and Access Management Team</GivenName>
+ <EmailAddress>IAM-Leads@passhe.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://lagoon.klnpa.org">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lagoon.klnpa.org/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">KLN RPAS Bloomsburg EZProxy</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.passhe.edu/inside/anf/_layouts/WopiFrame.aspx?sourcedoc=/inside/anf/Documents/phi.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="275" xml:lang="en">https://rpas.klnpa.org/rpas/images/KLNbanLOGO.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18423074414638260953, expires on Mon Mar 20 19:03:25 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lagoon.klnpa.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lagoon.klnpa.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lagoon.klnpa.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lagoon.klnpa.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">KLN RPAS Bloomsburg EZProxy</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.passhe.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://proxy-bloomu.klnpa.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://proxy-bloomu.klnpa.org/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">KLN RPAS Bloomsburg EZProxy</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.passhe.edu/inside/anf/_layouts/WopiFrame.aspx?sourcedoc=/inside/anf/Documents/phi.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="275" xml:lang="en">https://rpas.klnpa.org/rpas/images/KLNbanLOGO.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 287589858821940422657225308921858379189, expires on Sun Jan 19 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-bloomu.klnpa.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://proxy-bloomu.klnpa.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy-bloomu.klnpa.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy-bloomu.klnpa.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">KLN RPAS Bloomsburg EZProxy</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.passhe.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://proxy-calu.klnpa.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://proxy-calu.klnpa.org/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">KLN RPAS CalU EZProxy</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.passhe.edu/inside/anf/_layouts/WopiFrame.aspx?sourcedoc=/inside/anf/Documents/phi.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="275" xml:lang="en">https://rpas.klnpa.org/rpas/images/KLNbanLOGO.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 179636958370628748613875398059119348197, expires on Sun Jan 19 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-calu.klnpa.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://proxy-calu.klnpa.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy-calu.klnpa.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy-calu.klnpa.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">KLN RPAS CalU EZProxy</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.passhe.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://proxy-clarion.klnpa.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://proxy-clarion.klnpa.org/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">KLN RPAS Clarion EZProxy</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.passhe.edu/inside/anf/_layouts/WopiFrame.aspx?sourcedoc=/inside/anf/Documents/phi.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="275" xml:lang="en">https://rpas.klnpa.org/rpas/images/KLNbanLOGO.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 183287997836423999003683502902229502650, expires on Sun Jan 19 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-clarion.klnpa.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://proxy-clarion.klnpa.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy-clarion.klnpa.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy-clarion.klnpa.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">KLN RPAS Clarion EZProxy</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.passhe.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://proxy-edinboro.klnpa.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://proxy-edinboro.klnpa.org/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">KLN RPAS Edinboro EZProxy</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.passhe.edu/inside/anf/_layouts/WopiFrame.aspx?sourcedoc=/inside/anf/Documents/phi.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="275" xml:lang="en">https://rpas.klnpa.org/rpas/images/KLNbanLOGO.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 132406623517431065751210520710913750262, expires on Sun Jan 19 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-edinboro.klnpa.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://proxy-edinboro.klnpa.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy-edinboro.klnpa.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy-edinboro.klnpa.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">KLN RPAS Edinboro EZProxy</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.passhe.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://proxy-iup.klnpa.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://proxy-iup.klnpa.org/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">KLN RPAS IUP EZProxy</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.passhe.edu/inside/anf/_layouts/WopiFrame.aspx?sourcedoc=/inside/anf/Documents/phi.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="275" xml:lang="en">https://rpas.klnpa.org/rpas/images/KLNbanLOGO.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 215314181230810419128906404173414291516, expires on Sun Jan 19 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-iup.klnpa.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://proxy-iup.klnpa.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy-iup.klnpa.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy-iup.klnpa.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">KLN RPAS IUP EZProxy</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.passhe.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://proxy-kutztown.klnpa.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://proxy-kutztown.klnpa.org/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">KLN RPAS Kutztown EZP</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.passhe.edu/inside/anf/_layouts/WopiFrame.aspx?sourcedoc=/inside/anf/Documents/phi.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="275" xml:lang="en">https://rpas.klnpa.org/rpas/images/KLNbanLOGO.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 141474378835565068035362829712326200708, expires on Sun Jan 19 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
+MIIFtjCCBJ6gAwIBAgIQam75aNxhzp+4ITImB1UNhDANBgkqhkiG9w0BAQsFADB2
+MQswCQYDVQQGEwJVUzELMAkGA1UECBMCTUkxEjAQBgNVBAcTCUFubiBBcmJvcjES
+MBAGA1UEChMJSW50ZXJuZXQyMREwDwYDVQQLEwhJbkNvbW1vbjEfMB0GA1UEAxMW
+SW5Db21tb24gUlNBIFNlcnZlciBDQTAeFw0xNzAxMTkwMDAwMDBaFw0yMDAxMTky
+MzU5NTlaMIHLMQswCQYDVQQGEwJVUzEOMAwGA1UEERMFMTcyNTcxCzAJBgNVBAgT
+AlBBMRUwEwYDVQQHEwxTaGlwcGVuc2J1cmcxHDAaBgNVBAkTEzE4NzEgT2xkIE1h
+aW4gRHJpdmUxIDAeBgNVBAoTF1NoaXBwZW5zYnVyZyBVbml2ZXJzaXR5MSUwIwYD
+VQQLExxLZXlzdG9uZSBMaWJyYXJ5IE5ldHdvcmsgSHViMSEwHwYDVQQDExhwcm94
+eS1rdXR6dG93bi5rbG5wYS5vcmcwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK
+AoIBAQDPZLQBp2vqwST39LDT9dN2PhMLbw3fwRjNJjLJN/Z0DCHjHaGwBahmL6Qd
+5aLNymWvIJS6DMkQO+G49OHsKSSopWeryCvLOx+Gd/d30HyxL9zmt7C/j5FhqhyZ
+a/mHQhzE1RzNNmTzoNY0s3fNQagvb/I+IRR+syBcmQq584tZVzRlwtllYjsuY3nP
+VR/MiJbzgjQzTJaPFSvqG9EBsDWESxoqwtoWOwz1zjxjLwBkL0q5BGSTjeCxnlOO
+SwpANh+Ptgv8Nqx6FS/HHMzqY2P9WLKxNxGd/+cnvZkZA53ugR6Yi3UlweYkPEtq
+NpwyXR2vUysmMWJoIVRT/0BiB5ezAgMBAAGjggHoMIIB5DAfBgNVHSMEGDAWgBQe
+BaN3j2yW4luHS6a0hqxxAAznODAdBgNVHQ4EFgQUEVic4BPXpzzqqRUStRhcrz4k
+MfwwDgYDVR0PAQH/BAQDAgWgMAwGA1UdEwEB/wQCMAAwHQYDVR0lBBYwFAYIKwYB
+BQUHAwEGCCsGAQUFBwMCMGcGA1UdIARgMF4wUgYMKwYBBAGuIwEEAwEBMEIwQAYI
+KwYBBQUHAgEWNGh0dHBzOi8vd3d3LmluY29tbW9uLm9yZy9jZXJ0L3JlcG9zaXRv
+cnkvY3BzX3NzbC5wZGYwCAYGZ4EMAQICMEQGA1UdHwQ9MDswOaA3oDWGM2h0dHA6
+Ly9jcmwuaW5jb21tb24tcnNhLm9yZy9JbkNvbW1vblJTQVNlcnZlckNBLmNybDB1
+BggrBgEFBQcBAQRpMGcwPgYIKwYBBQUHMAKGMmh0dHA6Ly9jcnQudXNlcnRydXN0
+LmNvbS9JbkNvbW1vblJTQVNlcnZlckNBXzIuY3J0MCUGCCsGAQUFBzABhhlodHRw
+Oi8vb2NzcC51c2VydHJ1c3QuY29tMD8GA1UdEQQ4MDaCGHByb3h5LWt1dHp0b3du
+LmtsbnBhLm9yZ4IaKi5wcm94eS1rdXR6dG93bi5rbG5wYS5vcmcwDQYJKoZIhvcN
+AQELBQADggEBACRkmM1n9ynUVPKQtnvhV4mO1IgyyCuz4lPjYd2C/BdVFnUcdEWp
+L1ses8Nv92NO24+tNjmjadSr5QLdGEK/HivQ2sje+FZBg135jqfOWANYWdUT80Xo
+XLWtT6f6/OQrSmJctNuVsRGQPlH/8/vXif4iJLo1+Nd6y0vmB+Djs41LaRCvPBCA
+plpWRwL3w5ZTwOKGRxSTJElPeaSqy03qEbquqki103n7wRg5rGDLMCJOKY+vfkCP
+qLkmdf1JpDPb7QEno5Qi845Ul7+OAuoMC88uMMhbLMt12ETYA4zqM0hV6oTB4ZZE
+pUXbQ5mINMAeOrpy/WDRLqJ/GEzUJpUquwY=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-kutztown.klnpa.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://proxy-kutztown.klnpa.org/Shibboleth.sso/SAML2/POST-Si" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy-kutztown.klnpa.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy-kutztown.klnpa.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">KLN RPAS Kutztown EZP</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.passhe.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Keystone Library Network</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Keystone Library Network</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://proxy-lhup.klnpa.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://proxy-lhup.klnpa.org/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">KLN RPAS Lock Haven EZProxy</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.passhe.edu/inside/anf/_layouts/WopiFrame.aspx?sourcedoc=/inside/anf/Documents/phi.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="275" xml:lang="en">https://rpas.klnpa.org/rpas/images/KLNbanLOGO.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 2835614931196390897523430868058806022, expires on Sun Jan 19 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
+MIIFqjCCBJKgAwIBAgIQAiIenC8HisOYL5OLFEKXBjANBgkqhkiG9w0BAQsFADB2
+MQswCQYDVQQGEwJVUzELMAkGA1UECBMCTUkxEjAQBgNVBAcTCUFubiBBcmJvcjES
+MBAGA1UEChMJSW50ZXJuZXQyMREwDwYDVQQLEwhJbkNvbW1vbjEfMB0GA1UEAxMW
+SW5Db21tb24gUlNBIFNlcnZlciBDQTAeFw0xNzAxMTkwMDAwMDBaFw0yMDAxMTky
+MzU5NTlaMIHHMQswCQYDVQQGEwJVUzEOMAwGA1UEERMFMTcyNTcxCzAJBgNVBAgT
+AlBBMRUwEwYDVQQHEwxTaGlwcGVuc2J1cmcxHDAaBgNVBAkTEzE4NzEgT2xkIE1h
+aW4gRHJpdmUxIDAeBgNVBAoTF1NoaXBwZW5zYnVyZyBVbml2ZXJzaXR5MSUwIwYD
+VQQLExxLZXlzdG9uZSBMaWJyYXJ5IE5ldHdvcmsgSHViMR0wGwYDVQQDExRwcm94
+eS1saHVwLmtsbnBhLm9yZzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEB
+AM6ouATvy9gnd8qWVPlhdY+YTwl00mQsHWL3PnemTKRC0VKXW9Beqzs3MA0euJEi
+txpZ5B6xht1+/xvsndCZGk10RZJPMa71UvBU6f8J7nIsPbYj7fVhHmObUbatlUVg
+1lO28kQnMb64uxYeEKSHxEq6cCE29yPsT9wcIsbzx3j/kzORQk2ApJrJ9QkIycbt
+QjRBKeuLbx9L1uLx56XYuFRl0fqJyxu6tEmWINL7M/MFQEFdjHoziqe2NC4PhDcx
+bGTmYt5TpYOK4FCUE6RP8wzp+f1kAHFyO7P+uMEGdI7TS5QsVFZZzkYsFwkeuLrZ
+gQJ+GHiyy/YkJiGGUh2/f/sCAwEAAaOCAeAwggHcMB8GA1UdIwQYMBaAFB4Fo3eP
+bJbiW4dLprSGrHEADOc4MB0GA1UdDgQWBBRs+7vfYB6/2dsqtZFgMEq+slI9ijAO
+BgNVHQ8BAf8EBAMCBaAwDAYDVR0TAQH/BAIwADAdBgNVHSUEFjAUBggrBgEFBQcD
+AQYIKwYBBQUHAwIwZwYDVR0gBGAwXjBSBgwrBgEEAa4jAQQDAQEwQjBABggrBgEF
+BQcCARY0aHR0cHM6Ly93d3cuaW5jb21tb24ub3JnL2NlcnQvcmVwb3NpdG9yeS9j
+cHNfc3NsLnBkZjAIBgZngQwBAgIwRAYDVR0fBD0wOzA5oDegNYYzaHR0cDovL2Ny
+bC5pbmNvbW1vbi1yc2Eub3JnL0luQ29tbW9uUlNBU2VydmVyQ0EuY3JsMHUGCCsG
+AQUFBwEBBGkwZzA+BggrBgEFBQcwAoYyaHR0cDovL2NydC51c2VydHJ1c3QuY29t
+L0luQ29tbW9uUlNBU2VydmVyQ0FfMi5jcnQwJQYIKwYBBQUHMAGGGWh0dHA6Ly9v
+Y3NwLnVzZXJ0cnVzdC5jb20wNwYDVR0RBDAwLoIUcHJveHktbGh1cC5rbG5wYS5v
+cmeCFioucHJveHktbGh1cC5rbG5wYS5vcmcwDQYJKoZIhvcNAQELBQADggEBADxx
+x2Uf1D7Mljfyj5kl6/ESGfuVYrZ3Y3DNX5k1rwHJvLnTvAv9WIy0geRMxaPhqSbl
+Wd7xlQxLv8t6Em3ZXTBOt3iLVgsm+n/PFuXvhcOiJtse278AvR70Y91QQnsw7OlT
+2kwQGzWQl+PW96WHxRYYV+ltkYmDfCcmIouV0d2tbOcOsEKMYWHSkSaXJLBEY9ya
+UuR1k8lJo0J0tT1L/AoVBXykU2CW8TtRDqGIND9YtedEr28YphxHRnK729Gl2sTb
+G8GSWQ+I19W+HxW+ZQQPg583WpJCzzVsDJmdPZmTKWXCd1IFbYjAn2YlTJFJeahN
+RavLmuAy1ke0uZXBiIU=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-lhup.klnpa.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://proxy-lhup.klnpa.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy-lhup.klnpa.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy-lhup.klnpa.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">KLN RPAS Lock Haven EZProxy</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.passhe.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://proxy-millersville.klnpa.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://proxy-millersville.klnpa.org/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">KLN RPAS Millersville EZ</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.passhe.edu/inside/anf/_layouts/WopiFrame.aspx?sourcedoc=/inside/anf/Documents/phi.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="275" xml:lang="en">https://rpas.klnpa.org/rpas/images/KLNbanLOGO.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 336663476836396488883046116627306592809, expires on Sun Jan 19 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-millersville.klnpa.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://proxy-millersville.klnpa.org/Shibboleth.sso/SAML2/POST-S" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy-millersville.klnpa.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy-millersville.klnpa.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">KLN RPAS Millersville EZ</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.passhe.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Keystone Library Network</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Keystone Library Network</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://proxy-ship.klnpa.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">KLN RPAS Shippensburg EZProxy</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.passhe.edu/inside/anf/_layouts/WopiFrame.aspx?sourcedoc=/inside/anf/Documents/phi.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="275" xml:lang="en">https://rpas.klnpa.org/rpas/images/KLNbanLOGO.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 165308302426666051796607077251129171935, expires on Sun Jan 19 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-ship.klnpa.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://proxy-ship.klnpa.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy-ship.klnpa.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy-ship.klnpa.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">KLN RPAS Shippensburg EZProxy</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.passhe.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://proxy-sru.klnpa.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">KLN RPAS Slippery Rock EZProxy</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.passhe.edu/inside/anf/_layouts/WopiFrame.aspx?sourcedoc=/inside/anf/Documents/phi.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="275" xml:lang="en">https://rpas.klnpa.org/rpas/images/KLNbanLOGO.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 300819430043853692744265438496039930704, expires on Sun Jan 19 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
+MIIFqDCCBJCgAwIBAgIRAOJPtv5Hh43qRZ5hHhJMi1AwDQYJKoZIhvcNAQELBQAw
+djELMAkGA1UEBhMCVVMxCzAJBgNVBAgTAk1JMRIwEAYDVQQHEwlBbm4gQXJib3Ix
+EjAQBgNVBAoTCUludGVybmV0MjERMA8GA1UECxMISW5Db21tb24xHzAdBgNVBAMT
+FkluQ29tbW9uIFJTQSBTZXJ2ZXIgQ0EwHhcNMTcwMTE5MDAwMDAwWhcNMjAwMTE5
+MjM1OTU5WjCBxjELMAkGA1UEBhMCVVMxDjAMBgNVBBETBTE3MjU3MQswCQYDVQQI
+EwJQQTEVMBMGA1UEBxMMU2hpcHBlbnNidXJnMRwwGgYDVQQJExMxODcxIE9sZCBN
+YWluIERyaXZlMSAwHgYDVQQKExdTaGlwcGVuc2J1cmcgVW5pdmVyc2l0eTElMCMG
+A1UECxMcS2V5c3RvbmUgTGlicmFyeSBOZXR3b3JrIEh1YjEcMBoGA1UEAxMTcHJv
+eHktc3J1LmtsbnBhLm9yZzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEB
+AOlXEjng9BJVgB6y70ahBotdc6Jxd81wvF8xoscpElr4A8sI3S05HVaH5YYlHs4x
+YemmmMhBma4p855gK50CEmbwd6iGXO6UKFNHC9Alp7GQMe6Z3Sj978Wv9/dHUREl
+TtEdVXgtPevwvBnMXw5nZnfEyIyAt7uoApRC39gdOJy0FLgaOm9kKuiCtUETIyOg
+xBn3QU2EbPrYzEwQ/wMoIOSrgGcNWsAJ8vH/ic24bnIWmDBBfvXFmnnkPcDJQ3Qn
+WidW+tNTS5wzK37JSsvTUvD3ITmXBnHNj/7M7XmcdGdUTfp15abY3PTZlLCT9TR0
+tO3tIdKIi/qWH5I0Y0laXfECAwEAAaOCAd4wggHaMB8GA1UdIwQYMBaAFB4Fo3eP
+bJbiW4dLprSGrHEADOc4MB0GA1UdDgQWBBTOHURp9KYBxpNsIooZjnuAaqS50jAO
+BgNVHQ8BAf8EBAMCBaAwDAYDVR0TAQH/BAIwADAdBgNVHSUEFjAUBggrBgEFBQcD
+AQYIKwYBBQUHAwIwZwYDVR0gBGAwXjBSBgwrBgEEAa4jAQQDAQEwQjBABggrBgEF
+BQcCARY0aHR0cHM6Ly93d3cuaW5jb21tb24ub3JnL2NlcnQvcmVwb3NpdG9yeS9j
+cHNfc3NsLnBkZjAIBgZngQwBAgIwRAYDVR0fBD0wOzA5oDegNYYzaHR0cDovL2Ny
+bC5pbmNvbW1vbi1yc2Eub3JnL0luQ29tbW9uUlNBU2VydmVyQ0EuY3JsMHUGCCsG
+AQUFBwEBBGkwZzA+BggrBgEFBQcwAoYyaHR0cDovL2NydC51c2VydHJ1c3QuY29t
+L0luQ29tbW9uUlNBU2VydmVyQ0FfMi5jcnQwJQYIKwYBBQUHMAGGGWh0dHA6Ly9v
+Y3NwLnVzZXJ0cnVzdC5jb20wNQYDVR0RBC4wLIITcHJveHktc3J1LmtsbnBhLm9y
+Z4IVKi5wcm94eS1zcnUua2xucGEub3JnMA0GCSqGSIb3DQEBCwUAA4IBAQBhjFO/
+fx2mTcyi3VblVbGvjZvSYyiwqAdEg16cR5ze3oq9BbU1JhXm1x1/Svr0jPa+KAxo
+OeUElim7Ndn33xtvd6s6P696Cf8LDtyaflYekyKtN1kga1Uv4W4vhNLGRlHkkAQ7
+2GwBfcfDwSZpokgigGY2qra2vVMnuifpQkFwR2NwqvBRLCR+M8ckv2mF6qGrgAYJ
+uSQcv79UY44PJcrPcSUAt0nqchdJuonQyUEzgVe78wJYX3ihInqRv8jqndMr0ux3
+3KhB893UisRdfxko8jtQq2+FyNccNJ50M0282gIrc7BafGyPnhR4DfWwZFQ9MsEk
+cgRn9NxdGp35cOl5
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-sru.klnpa.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://proxy-sru.klnpa.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy-sru.klnpa.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy-sru.klnpa.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">KLN RPAS Slippery Rock EZProxy</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.passhe.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://proxy-wcupa.klnpa.org/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://proxy-wcupa.klnpa.org/Shibboleth.sso/DS" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">KLN RPAS West Chester EZProxy</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.passhe.edu/inside/anf/_layouts/WopiFrame.aspx?sourcedoc=/inside/anf/Documents/phi.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="275" xml:lang="en">https://rpas.klnpa.org/rpas/images/KLNbanLOGO.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 205847348717588006315649136524671935437, expires on Sun Jan 19 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-wcupa.klnpa.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://proxy-wcupa.klnpa.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy-wcupa.klnpa.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy-wcupa.klnpa.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">KLN RPAS West Chester EZProxy</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pennsylvania State System of Higher Education (PASSHE) Office of the Chancellor</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.passhe.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Keystone Library Network Hub</GivenName>
+ <EmailAddress>kln@ship.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Brandeis University -->
+<EntityDescriptor entityID="https://shibboleth.brandeis.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">brandeis.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Brandeis University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.brandeis.edu/about/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="138" width="700" xml:lang="en">https://shibboleth.brandeis.edu/idp/images/brandeis.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 897640029571092291196882260306540240629859401778, expires on Tue Mar 8 20:17:39 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.brandeis.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.brandeis.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.brandeis.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.brandeis.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.brandeis.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.brandeis.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">brandeis.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 897640029571092291196882260306540240629859401778, expires on Tue Mar 8 20:17:39 2033 GMT -->
+ <ds:X509Certificate>
+MIIDSDCCAjCgAwIBAgIVAJ07ki+U+Q1jeqL9/EKoyRbWCMAyMA0GCSqGSIb3DQEB
+BQUAMCIxIDAeBgNVBAMTF3NoaWJib2xldGguYnJhbmRlaXMuZWR1MB4XDTEzMDMw
+ODIwMTczOVoXDTMzMDMwODIwMTczOVowIjEgMB4GA1UEAxMXc2hpYmJvbGV0aC5i
+cmFuZGVpcy5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCKZIwW
+KwP8VTEQc8aR/fukHycUON1HPpq7LoIjINdzuzMR2C6ZdNRMzbR+4qkQRdeW6Ptp
+9L7C0HMEeIPRhEFh6gdAgl3VwyyDgz/fqMHpXNQn/7Tw+vl3I2Joha69iNQK3K6I
+gNI2E/x2b8YizudhSSCu3RAm7vPLN3gcyc2sRA3KkXvaEWO0jU7GJVTmaCgRpCH0
+Bsv5vZ724UMuuPP1Feu4nhKtqRm0khEA9svRGfDVxhWnPpg8rLT9Yu03IChN8hdq
+NspAQCmDI2OFQB5frAuiQ9MQT7Q9jzBSJ3bcWQsYsdbWNG7Hpl2hBSlUtqR5tzat
+iU1U1LsZAv/wQbgLAgMBAAGjdTBzMFIGA1UdEQRLMEmCF3NoaWJib2xldGguYnJh
+bmRlaXMuZWR1hi5odHRwczovL3NoaWJib2xldGguYnJhbmRlaXMuZWR1L2lkcC9z
+aGliYm9sZXRoMB0GA1UdDgQWBBQPTVgZcvtUxjYUCn8mj6n/ldo5zjANBgkqhkiG
+9w0BAQUFAAOCAQEAVGtWGwmb6iIG3sbWiBvuayHCmiWCl3rZN/CpFYxU5p9Xcuu6
+lcTq6wAY04Cs/v4rjStdsH1REnI6CUyOcLzVCK55bhpyvLCTxQYAaULVg95UmZF2
+Kkr0LXmXHkOfG7nTwY8Qm13tfBAPwqNdHmstlMvw3LAgmy96heq+bHryqbTYKC/V
+dTdUuhV14vl7PJt9y3EqXISJjwNG7wEF9wM0qUIG51qlp4f4MiNaNxJI/cYUC1cw
+7d/XK0tGHAwQxu/IeOIxUYbsUbTSua3u/Xc6WaTwfWxSl96NcOuTnyazB4hkSIYa
+C30ze3MSAph0HLqEHTWk8Ldt2Y3QWku9g5WNlA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.brandeis.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Brandeis University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Brandeis University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.brandeis.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brandeis Identity and Access Management Team</GivenName>
+ <EmailAddress>idm@brandeis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brandeis Information Security</GivenName>
+ <EmailAddress>security-group@brandeis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Brandeis Identity and Access Management Team</GivenName>
+ <EmailAddress>idm@brandeis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Brandeis Technology Help Desk</GivenName>
+ <EmailAddress>help@brandeis.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Marquette University -->
+<EntityDescriptor entityID="https://idp.marquette.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">marquette.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Marquette University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.marquette.edu/tools/privacy.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="176" xml:lang="en">https://www.marquette.edu/omc/documents/MU%20Logo%20Standards.pdf</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 235214579, expires on Sun Jun 13 17:22:59 2027 GMT -->
+ <ds:X509Certificate>
+MIIDqjCCApKgAwIBAgIEDgUW8zANBgkqhkiG9w0BAQsFADCBljELMAkGA1UEBhMC
+VVMxEjAQBgNVBAgTCVdpc2NvbnNpbjESMBAGA1UEBxMJTWlsd2F1a2VlMR0wGwYD
+VQQKExRNYXJxdWV0dGUgVW5pdmVyc2l0eTEbMBkGA1UEAxQSaW5jb21tb25fc2Ft
+bF9jZXJ0MSMwIQYJKoZIhvcNAQkBFhRjaGFkLmdvcmVjdGtlQG11LmVkdTAeFw0x
+NzA2MTUxNzIyNTlaFw0yNzA2MTMxNzIyNTlaMIGWMQswCQYDVQQGEwJVUzESMBAG
+A1UECBMJV2lzY29uc2luMRIwEAYDVQQHEwlNaWx3YXVrZWUxHTAbBgNVBAoTFE1h
+cnF1ZXR0ZSBVbml2ZXJzaXR5MRswGQYDVQQDFBJpbmNvbW1vbl9zYW1sX2NlcnQx
+IzAhBgkqhkiG9w0BCQEWFGNoYWQuZ29yZWN0a2VAbXUuZWR1MIIBIjANBgkqhkiG
+9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvGHSvYeuTPdPLsZ9ZLSTOFtA+6Zh1WRvhOAv
+OD+9F+KqcQhJutxZNmb1aoAm31HzOd4EVQr7CqhTb4UM8FQDrluepfNs7f6vo+0Q
+4c9ZPEJU6rFuO7v7qyX7qcFPJUiV0v27ta+0Vz0p8WeBIBDa4gyqTz1nyQ2Rfq03
+I5wunDFWcwJOpxALZvDCrTiZLBj91fUegS8I9UqfoE7c97X1vlyCg4TSEedzOdFW
+EGDpl1N+ax4Xyh9QNCl8g7uX6NjVoR6Ua+nhbjlXcHh76Hyo7y/Q2E4jBv0/h7yf
+MD5ygozqx/mWVaIDQ66b7DqWKFS2ZCGqqcnpk0MjZAv90ZhiLQIDAQABMA0GCSqG
+SIb3DQEBCwUAA4IBAQCwbV9lCjd3TxA9mF5Ut9uuOKQ7xuWLmY31vel2WWWGkFbX
+8oQ/8dl6n7e+ABGGLorwDRdgUciI4CP91KTbJZTGUC5D2yvNerOaEm9QlI2JLAcG
+ws6D/7sNQacABvSiOjDwd5yYsAiO0zbCKlZJinyb93yu/UnkERmBtu/TD1hYSZyA
+WfWMHeISAmpgvuO5KKAcSkFdw/j3wvNDZOvNXWuyufMOmaAB+BwPspuENd2b+srH
+/Rg3VvQUl97FpogOV1NPulWgR0IynUsemT/to1XHA7UnUOBrpinGe5KE0BHhKnAv
+PhNR2e3F0RxBtql3WpMFgEZtP35D8QwI7RX58pOP
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.marquette.edu/saml/idp/profile/redirect/sls"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.marquette.edu/saml/idp/profile/post/sls"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.marquette.edu/saml/idp/profile/redirectorpost/sso"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.marquette.edu/saml/idp/profile/redirectorpost/sso"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Marquette University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Marquette University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.marquette.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chad Gorectke</GivenName>
+ <EmailAddress>chad.gorectke@marquette.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Chad Gorectke</GivenName>
+ <EmailAddress>chad.gorectke@marquette.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jeremy Edson</GivenName>
+ <EmailAddress>jeremy.edson@marquette.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- The College of Wooster -->
+<EntityDescriptor entityID="https://idp.wooster.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wooster.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">The College of Wooster</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://wiki.wooster.edu/display/itdocumentation/GDPR+Privacy+Statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="200" xml:lang="en">https://shib-sp.wooster.edu/wordmark.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 808083720614569949743148154810427905129290136952, expires on Mon Nov 3 19:38:51 2031 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.wooster.edu:8444/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.wooster.edu:8444/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.wooster.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.wooster.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.wooster.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wooster.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 808083720614569949743148154810427905129290136952, expires on Mon Nov 3 19:38:51 2031 GMT -->
+ <ds:X509Certificate>
+MIIDKDCCAhCgAwIBAgIVAI2Lui1vSO8MHNMubyKBhAnnj/14MA0GCSqGSIb3DQEB
+BQUAMBoxGDAWBgNVBAMTD2lkcC53b29zdGVyLmVkdTAeFw0xMTExMDMxODM4NTFa
+Fw0zMTExMDMxOTM4NTFaMBoxGDAWBgNVBAMTD2lkcC53b29zdGVyLmVkdTCCASIw
+DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKnu2Gw6Irx4NZldkeGBLetETpCy
+uVS8wUHPhzodyjLhksa5NeT6SBG4BBt2JSnuI4dRwY7k1igxe8km1qXgUnn/j1Ho
+5W6zAwzHASsuIyYFyYrQ0sdnLes6sEeZDPADU5LDQT7vvWJm3WgvZJmM45NcsXr4
+6mN+wYKpgQbiUfBytkbYjTV1tYHPTYFNz8HDlBuYDwifx0pdZ3MhxT3tt30RMZ5Y
+F3Jo8VlMiLMIdS0wYKGOdXMSykKyi0+Gix1kv+DmLRpuMcid0CBBfh7uPnUO7MUy
+sJHoC397p2F4bidrnAEV1CFmetxaZB3irPGhUnL81ud8BapgOfhPp4OWbx8CAwEA
+AaNlMGMwQgYDVR0RBDswOYIPaWRwLndvb3N0ZXIuZWR1hiZodHRwczovL2lkcC53
+b29zdGVyLmVkdS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU2clCh8A4cBYUuLvs
+qGX5zdpFUc4wDQYJKoZIhvcNAQEFBQADggEBAJ2Eap2ziunllauY/qhBEWrhSnVH
+SUGBCLvyylg5kbpoNdcl1CPXW/pfWNn4UEy8AtNwHiQZG4CPy89ik0ZcIf146Tn2
+YQcoJn0XAszpvKzYDVxlEE0T1UrtlKDy0V9jFDnVw9UFw+5w3Ix3vBDT/TZwjyAj
++ksknyRMcGWCi5ia9U0ZgHKvOE/B/QgF3vT8Dzzb5G772LWytudXutQJmQC9Ch8K
+W5aggtvAOm9Z5a398jL21emZAgI3HBKcByqHpKB6Ci5rUmTQklhZ6szqU1+IM9+a
+ruOBR00Y3KW+OWjgg06N026JaWDbMENv4J8oyrehK5NqlLF/mZKGEk0UwRI=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.wooster.edu:8444/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The College of Wooster</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">The College of Wooster</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wooster.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Vince DiScipio</GivenName>
+ <EmailAddress>vdiscipio@wooster.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Roger Dills</GivenName>
+ <EmailAddress>rdills@wooster.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Naylor</GivenName>
+ <EmailAddress>mnaylor@wooster.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Vincent DiScipio</GivenName>
+ <EmailAddress>vdiscipio@wooster.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Vincent DiScipio</GivenName>
+ <EmailAddress>vdiscipio@wooster.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Kennesaw State University -->
+<EntityDescriptor entityID="https://idp-samlprod3.kennesaw.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">kennesaw.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Kennesaw State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Kennesaw State University Saml2.0</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.kennesaw.edu/privacy.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="300" xml:lang="en">https://styleguide.kennesaw.edu/images/KSU-Mountain-Logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10080903502149341982, expires on Sat Apr 22 14:36:21 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp-samlprod3.kennesaw.edu/simplesaml/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Kennesaw State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Kennesaw State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.kennesaw.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Davide Gaetano</GivenName>
+ <EmailAddress>dgaetano@kennesaw.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jonathan Higgins</GivenName>
+ <EmailAddress>jhiggins@kennesaw.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Gay</GivenName>
+ <EmailAddress>sgay@kennesaw.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>KSU IAM Team</GivenName>
+ <EmailAddress>ksuiam@kennesaw.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UITS Service Desk</GivenName>
+ <EmailAddress>service@kennesaw.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://network.kennesaw.edu/testsaml2/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Network test site for Kennesaw State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">test site for Kennesaw.edu</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.kennesaw.edu/privacy.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="200" xml:lang="en">https://styleguide.kennesaw.edu/images/KSU-Mountain-Logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 37346093584906769876328083901454887221, expires on Mon Feb 10 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
+MIIFkTCCBHmgAwIBAgIQHBiYkxHZ4RFJlQeOxY4pNTANBgkqhkiG9w0BAQsFADB2MQswCQYDVQQGEwJVUzELMAkGA1UECBMCTUkxEjAQBgNVBAcTCUFubiBBcmJvcjESMBAGA1UEChMJSW50ZXJuZXQyMREwDwYDVQQLEwhJbkNvbW1vbjEfMB0GA1UEAxMWSW5Db21tb24gUlNBIFNlcnZlciBDQTAeFw0xNzAyMTAwMDAwMDBaFw0yMDAyMTAyMzU5NTlaMIHGMQswCQYDVQQGEwJVUzEOMAwGA1UEERMFMzAxNDQxCzAJBgNVBAgTAkdhMREwDwYDVQQHEwhLZW5uZXNhdzEaMBgGA1UECRMRMTA3NSBDYW50b24gUGxhY2UxIjAgBgNVBAoTGUtlbm5lc2F3IFN0YXRlIFVuaXZlcnNpdHkxKDAmBgNVBAsTH0luZm9ybWF0aW9uIFRlY2hub2xvZ3kgU2VydmljZXMxHTAbBgNVBAMTFG5ldHdvcmsua2VubmVzYXcuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxFc3uVDlHabCVL/tjGykBUxmkVru1YXk0auVQC7Z6a7eVfLW+nkm7PKEYoMBENxLroxGK0sL3HUW6U5LQN2HGQLEXnfH+PIh0rzbX0qBU6Nr3yucEQETiC1qq9JfX8dkJ/1Yep29z31vknrIH4yygiit7T/oAhQSpcHUuH7XVN4071l3/vWjcI5+QJpf9aSKw5KBMswkMOJcmEB5T95aiMyqjfy0lFhy0a5fbCmWLHxeX+itis8HEn+OkB2Pq6AqS6SrPFIImaAaJ9zuEOnJRRPq0ud2zz2u2Q7hljEys/dGx3mXDdJGZDuCn/mCSpxXlw2236PB5qZpSKzBQwOmXwIDAQABo4IByDCCAcQwHwYDVR0jBBgwFoAUHgWjd49sluJbh0umtIascQAM5zgwHQYDVR0OBBYEFJhZIOIT/68vlfR2HMvCHrGHveVWMA4GA1UdDwEB/wQEAwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjBnBgNVHSAEYDBeMFIGDCsGAQQBriMBBAMBATBCMEAGCCsGAQUFBwIBFjRodHRwczovL3d3dy5pbmNvbW1vbi5vcmcvY2VydC9yZXBvc2l0b3J5L2Nwc19zc2wucGRmMAgGBmeBDAECAjBEBgNVHR8EPTA7MDmgN6A1hjNodHRwOi8vY3JsLmluY29tbW9uLXJzYS5vcmcvSW5Db21tb25SU0FTZXJ2ZXJDQS5jcmwwdQYIKwYBBQUHAQEEaTBnMD4GCCsGAQUFBzAChjJodHRwOi8vY3J0LnVzZXJ0cnVzdC5jb20vSW5Db21tb25SU0FTZXJ2ZXJDQV8yLmNydDAlBggrBgEFBQcwAYYZaHR0cDovL29jc3AudXNlcnRydXN0LmNvbTAfBgNVHREEGDAWghRuZXR3b3JrLmtlbm5lc2F3LmVkdTANBgkqhkiG9w0BAQsFAAOCAQEATFpOSZ3lPK9pqLerETqqa+yhMBNc6QzvDm9YwYCliOw2dtIzFN5L9F7kvVguPWQEIrQZXFmMZTJK5g6lpt2z691yF05eRCXOb/YFcWKlFFW4S4Z0adUE+eDG4JxwgnaPFnNvX2pY6qWj1AtKg6J0nOJEF8t+XIIH40vyCSGEHi/3NkB4qOXEWREGObyvVn3dPiTVH0jEI74VeLRUji+LMWMvgLHaj1kGbAizCTXnimEdtmtJPOX29uFt+KZ1G8yR2mPNQWBUC6tq6jKeuE3i4y5Glr5RVuRGL1yXeLNBjV3Ao8OQGW+7GSlxbvzoNSSeJZWClG371g78i+FiVg7c2w==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://network.kennesaw.edu/testsaml2/logout.php"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://network.kennesaw.edu/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://network.kennesaw.edu/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://network.kennesaw.edu/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://network.kennesaw.edu/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp/artifact" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Kennesaw State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Kennesaw State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.kennesaw.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jonathan Higgins</GivenName>
+ <EmailAddress>jhiggins@kennesaw.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Gay</GivenName>
+ <EmailAddress>sgay@kennesaw.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jonathan Higgins</GivenName>
+ <EmailAddress>jhiggins@kennesaw.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- North Dakota State University Main Campus -->
+<EntityDescriptor entityID="https://idp.ndsu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.ndsu.edu/its/help_desk/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ndsu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">North Dakota State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">North Dakota State University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.ndsu.edu/eci/shibboleth/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ndsu.edu/eci/incommon/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="97" width="350" xml:lang="en">https://www.ndsu.edu/shibboleth/logo2.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10913357433362377562, expires on Thu Jun 15 16:15:39 2023 GMT -->
+ <ds:X509Certificate>
+MIIDATCCAemgAwIBAgIJAJd0CMOibutaMA0GCSqGSIb3DQEBCwUAMBcxFTATBgNV
+BAMMDGlkcC5uZHN1LmVkdTAeFw0xODA0MTcxNjE1MzlaFw0yMzA2MTUxNjE1Mzla
+MBcxFTATBgNVBAMMDGlkcC5uZHN1LmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEP
+ADCCAQoCggEBAPL8uBBdBG9z0OjHOj+DpMTXML5lGAXIY3Ofx4upLlULaP14hb2I
+4G/hjb5Lv1fZh93ga04i5t8FRUc7Y5Z4zdoKYgkYf/j51fUyk8TVucrQjNqv3M65
+Bcxfq7YsnjhllXOHISziie/xJnGmmNhhHPUNIphK5T0IKk5v8/P0v+nX6YVHk3KG
+zgqTku6RByeYsCS1SZenzqkrn3xQw9PjsDO8qZUWX/MEmxy/cpYcNEtoCz1ZQ4yU
+T854yF4mixr9Gza7oW+QAQI9WQtjdaJ19wNfwCm03+Y49iQ7h5xAypl43nsQLgXw
+FOR8TPweqYilNY5EPjKOy5puuaqLzgxcBr0CAwEAAaNQME4wHQYDVR0OBBYEFKMi
+jJTD0uxDCWCsy8JONWO9qEddMB8GA1UdIwQYMBaAFKMijJTD0uxDCWCsy8JONWO9
+qEddMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAHXvZOT0bobMOVhH
+nL+WiWS8/zQvlepzCli0GViScZPt+NUuM1XXcFsbpRFDXGguhHcGoKYiY/O5X+MT
+mNc4U/SrniVywZ6ASY1u6bNL//P9cwcCpDvhygvsxCQlptsWAxNHt2izYgUXLNCO
+j5APQVjNxKP/6JCtPYO+8SnpgZBTg7BmsUzmb828vMDLic6t0ko3g/InnbZSEkQH
+k9418Sfd76lxdbLdco4rpc+be4/dO7RKJbRkwkBoHQVQm2viJ4PEmhQySe5zOxZd
+03GnF0le80pSfbcMmpiYRRFVuIT133jW/VlsJ/FMgWccdXPlDRek/+GBMRI44ozI
+3PyRLOM=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ndsu.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.ndsu.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.ndsu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ndsu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ndsu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ndsu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10913357433362377562, expires on Thu Jun 15 16:15:39 2023 GMT -->
+ <ds:X509Certificate>
+MIIDATCCAemgAwIBAgIJAJd0CMOibutaMA0GCSqGSIb3DQEBCwUAMBcxFTATBgNV
+BAMMDGlkcC5uZHN1LmVkdTAeFw0xODA0MTcxNjE1MzlaFw0yMzA2MTUxNjE1Mzla
+MBcxFTATBgNVBAMMDGlkcC5uZHN1LmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEP
+ADCCAQoCggEBAPL8uBBdBG9z0OjHOj+DpMTXML5lGAXIY3Ofx4upLlULaP14hb2I
+4G/hjb5Lv1fZh93ga04i5t8FRUc7Y5Z4zdoKYgkYf/j51fUyk8TVucrQjNqv3M65
+Bcxfq7YsnjhllXOHISziie/xJnGmmNhhHPUNIphK5T0IKk5v8/P0v+nX6YVHk3KG
+zgqTku6RByeYsCS1SZenzqkrn3xQw9PjsDO8qZUWX/MEmxy/cpYcNEtoCz1ZQ4yU
+T854yF4mixr9Gza7oW+QAQI9WQtjdaJ19wNfwCm03+Y49iQ7h5xAypl43nsQLgXw
+FOR8TPweqYilNY5EPjKOy5puuaqLzgxcBr0CAwEAAaNQME4wHQYDVR0OBBYEFKMi
+jJTD0uxDCWCsy8JONWO9qEddMB8GA1UdIwQYMBaAFKMijJTD0uxDCWCsy8JONWO9
+qEddMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAHXvZOT0bobMOVhH
+nL+WiWS8/zQvlepzCli0GViScZPt+NUuM1XXcFsbpRFDXGguhHcGoKYiY/O5X+MT
+mNc4U/SrniVywZ6ASY1u6bNL//P9cwcCpDvhygvsxCQlptsWAxNHt2izYgUXLNCO
+j5APQVjNxKP/6JCtPYO+8SnpgZBTg7BmsUzmb828vMDLic6t0ko3g/InnbZSEkQH
+k9418Sfd76lxdbLdco4rpc+be4/dO7RKJbRkwkBoHQVQm2viJ4PEmhQySe5zOxZd
+03GnF0le80pSfbcMmpiYRRFVuIT133jW/VlsJ/FMgWccdXPlDRek/+GBMRI44ozI
+3PyRLOM=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.ndsu.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">North Dakota State University Main Campus</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">North Dakota State University Main Campus</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ndsu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>NDSU Help Desk</GivenName>
+ <EmailAddress>ndsu.helpdesk@ndsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>NDSU Help Desk</GivenName>
+ <EmailAddress>ndsu.helpdesk@ndsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>NDSU IT Security Officer</GivenName>
+ <EmailAddress>ndsu.itso@ndsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>NDSU Help Desk</GivenName>
+ <EmailAddress>ndsu.helpdesk@ndsu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Chaminade University of Honolulu -->
+<EntityDescriptor entityID="https://auth.chaminade.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">chaminade.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Chaminade University of Honolulu</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.chaminade.edu/incommon/operational_practices.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="77" width="256" xml:lang="en">https://adfs.chaminade.edu/adfs/portal/logo/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 135792981448332443317766667069722191295065207870, expires on Tue Apr 5 22:58:22 2033 GMT -->
+ <ds:X509Certificate>
+MIIDMzCCAhugAwIBAgIUF8kq+m9AYp9/mSs2qicSZwERtD4wDQYJKoZIhvcNAQEF
+BQAwHTEbMBkGA1UEAxMSYXV0aC5jaGFtaW5hZGUuZWR1MB4XDTEzMDQwNTIyNTgy
+MloXDTMzMDQwNTIyNTgyMlowHTEbMBkGA1UEAxMSYXV0aC5jaGFtaW5hZGUuZWR1
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwEL73ATvDk+FNMOdqXPo
+TN96loqWp6Ju9CE5P4sn6rHQnehH/RWSkTQfPcVRhLbwDoUNEgUWyZs4OqEhJKKz
+U22UlSgdVw+2C0QHFgjTwk8z+8LTS2fkNd4lD8AWJgyQTrAgvUhjTr1zNLxKQLJ5
+yVPhAvLBQq4Sd7HSFUG1MlVYhTM3pIM1PGCPTkFCUxaPTYozo5GAcbMQoAx2wXkb
+VwYBcGBvjBnYK4CMfe/FQWnfk8KB25YURThqcyTF0JaM0w4uFDnz7ukt7Oyrkntb
+vSEOFEYFS9rfRoSs9ggVEHL5eUMwHgwGhxm3qn1iWM2yCU0MnXjdYNjeSXMerXgb
+SQIDAQABo2swaTBIBgNVHREEQTA/ghJhdXRoLmNoYW1pbmFkZS5lZHWGKWh0dHBz
+Oi8vYXV0aC5jaGFtaW5hZGUuZWR1L2lkcC9zaGliYm9sZXRoMB0GA1UdDgQWBBQa
+ZqIx6w+PzJEFlWinc/8q5DQXzDANBgkqhkiG9w0BAQUFAAOCAQEAPz8G+GKqlLCY
+vB/3471AE0WtK8lybyHBQNUHbf2ZzBPa532jLvNScewLKgd8+F/Omi4y18VluYaW
+gJVjFQFle/8VJQKauWxBiWXzG4HoDmE+6wbHuq1zvLE0LLLu5svWFOrLbK1Fb++n
+9QM7xLQoy1slc9g8z5THorBJlgMFAFmL3TDIog3rSab69Gw+jwzrW5jglj+w8Iy9
+SUoYkOJ2T85hgO8Brj4OTk2+qpkK7TWDFTyUC2T4aBkMqtYG1Y2ir/kFdwAIjhSU
+reLbWrhl3hZhckCnXW5wiAxlY66PkbGk9rWHvZgbKyeLWgGl4apoL9QhBDefCRdx
+nnxOtnKJww==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://auth.chaminade.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://auth.chaminade.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://auth.chaminade.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.chaminade.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.chaminade.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">chaminade.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 135792981448332443317766667069722191295065207870, expires on Tue Apr 5 22:58:22 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://auth.chaminade.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Chaminade University of Honolulu</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Chaminade University of Honolulu</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.chaminade.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kyle Johnson</GivenName>
+ <EmailAddress>kyle.johnson@chaminade.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Client Services</GivenName>
+ <EmailAddress>helpdesk@chaminade.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Client Services</GivenName>
+ <EmailAddress>helpdesk@chaminade.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Brigham Young University -->
+<EntityDescriptor entityID="https://shib.byu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">byu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Brigham Young University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Brigham Young University IdP</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://byu.edu/about</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://registrar.byu.edu/records-privacy-ferpa</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="90" xml:lang="en">https://itmaintenance.byu.edu/BYU-logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1138532669591565778414820840626083443737604172338, expires on Mon Mar 26 22:24:57 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.byu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.byu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Brigham Young University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Brigham Young University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.byu.edu/index.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Doug Walker</GivenName>
+ <EmailAddress>djw5@byu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan McNeece</GivenName>
+ <EmailAddress>dbm8@byu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>BYU IAM Team</GivenName>
+ <EmailAddress>valinda@byu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Sam Lyons</GivenName>
+ <EmailAddress>samuel_lyons@byu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Identity Team</GivenName>
+ <EmailAddress>identityteamft@byu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Slippery Rock University of Pennsylvania -->
+<EntityDescriptor entityID="https://idp.sru.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.sru.edu/identity/feedback.htm" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sru.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Slippery Rock University of Pennsylvania</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Slippery Rock University of Pennsylvania</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.sru.edu/Documents/web/sru-web-privacy-policy.pdf?1545237485088</mdui:PrivacyStatementURL>
+ <mdui:Logo height="105" width="270" xml:lang="en">https://login.sru.edu/authenticationendpoint/sru/sru_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13277427776042415831, expires on Sun May 11 16:22:26 2014 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.sru.edu:9443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.sru.edu:9443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.sru.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.sru.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.sru.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.sru.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sru.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13277427776042415831, expires on Sun May 11 16:22:26 2014 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.sru.edu:9443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.sru.edu:9443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Slippery Rock University of Pennsylvania</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Slippery Rock University of Pennsylvania</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sru.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Henry Magusiak</GivenName>
+ <EmailAddress>henry.magusiak@sru.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Henry Magusiak</GivenName>
+ <EmailAddress>henry.magusiak@sru.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Henry Magusiak</GivenName>
+ <EmailAddress>henry.magusiak@sru.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Henry Magusiak</GivenName>
+ <EmailAddress>henry.magusiak@sru.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Wisconsin Colleges and Extension -->
+<EntityDescriptor entityID="https://idp.uwex.uwc.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Wisconsin Colleges and Extension</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://cits.uwex.uwc.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://cits.uwex.uwc.edu/sites/cits/files/PDF/incommonpop_agreement.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="159" width="242" xml:lang="en">https://idp.uwex.uwc.edu/idp/images/uwc_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 600263830685627812471927473827236037651181673068, expires on Sat Jan 22 18:18:55 2033 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uwex.uwc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.uwex.uwc.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uwex.uwc.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin Colleges and Extension</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin Colleges and Extension</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uwex.uwc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeff Harrison</GivenName>
+ <EmailAddress>Jeff.Harrison@uwex.uwc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Zabrowski</GivenName>
+ <EmailAddress>Mark.Zabrowski@uwex.uwc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mark Zabrowski</GivenName>
+ <EmailAddress>Mark.Zabrowski@uwex.uwc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark Zabrowski</GivenName>
+ <EmailAddress>Mark.Zabrowski@uwex.uwc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Hampshire College -->
+<EntityDescriptor entityID="https://aeetes.hampshire.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://aeetes.hampshire.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://compass-stage.fivecolleges.edu/Shibboleth.sso/DS" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Five College Compass - Digital Collections Staging</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.hampshire.edu/it/hampshire-college-digital-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="44" width="100" xml:lang="en">https://www.hampshire.edu/sites/default/files/shared_images/Hnew.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11318057458875920532, expires on Sat Oct 2 13:29:58 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://compass-stage.fivecolleges.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aeetes.hampshire.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aeetes.hampshire.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aeetes.hampshire.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://aeetes.hampshire.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://compass-stage.fivecolleges.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Five College Compass - Digital Collections Staging</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Hampshire College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Hampshire College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hampshire.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Hampshire College System Administrators</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Hampshire College System Administrators</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Hampshire College System Administrators</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://antias.hampshire.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://antias.hampshire.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://compass.fivecolleges.edu/Shibboleth.sso/DS" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://compass-prod.fivecolleges.edu/Shibboleth.sso/DS" index="3"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://compass-newprod.fivecolleges.edu/Shibboleth.sso/DS" index="4"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Five College Compass - Digital Collections</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.hampshire.edu/it/hampshire-college-digital-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="45" width="100" xml:lang="en">https://www.hampshire.edu/sites/default/files/shared_images/Hnew.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15702710883623508762, expires on Thu Jan 7 14:17:23 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://compass.fivecolleges.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://compass-prod.fivecolleges.edu/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://antias.hampshire.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://antias.hampshire.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://antias.hampshire.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://antias.hampshire.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://compass.fivecolleges.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://compass-prod.fivecolleges.edu/Shibboleth.sso/SAML2/POST" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://compass-newprod.fivecolleges.edu/Shibboleth.sso/SAML2/POST" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://compass-webdb-newprod.fivecolleges.edu/Shibboleth.sso/SAML2/POST" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Five College Compass - Digital Collections</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Hampshire College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Hampshire College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hampshire.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Hampshire College System Administrators</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Hampshire College System Administrators</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Hampshire College System Administrators</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ardeas.hampshire.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ardeas.hampshire.edu/Shibboleth.sso/DS" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://compass-dev.fivecolleges.edu/Shibboleth.sso/DS" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://compass-webdb-dev.fivecolleges.edu/Shibboleth.sso/DS" index="3"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Dev Five College Compass - Digital Collections</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Development server for Five College Compass - Digital Collections</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.hampshire.edu/it/hampshire-college-digital-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="45" width="100" xml:lang="en">https://www.hampshire.edu/sites/default/files/shared_images/Hnew.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17424283918283125170, expires on Sun Sep 13 20:37:11 2026 GMT -->
+ <ds:X509Certificate>
+MIIDAzCCAeugAwIBAgIJAPHPfefm0TGyMA0GCSqGSIb3DQEBBQUAMB8xHTAbBgNV
+BAMTFGFyZGVhcy5oYW1wc2hpcmUuZWR1MB4XDTE2MDkxNTIwMzcxMVoXDTI2MDkx
+MzIwMzcxMVowHzEdMBsGA1UEAxMUYXJkZWFzLmhhbXBzaGlyZS5lZHUwggEiMA0G
+CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDCgRDADi9j4wQj5C7soCrCuyXApQzy
+SYBZDnNvFCBuzLYXgnNE4hiWWfOim4nK9viY7dQMYACOhx6Zp0R0CvafQjcVzwS5
+hfwtnTfpULFqffH0NALR3d5mZlG+0852tjabxV3zlGpm3owThRICxNqe5jwliTjV
+4FRBBoPlILsncyE+AfTNi5JlzwB5L9OUkB1naYVOuobIqaLGaGR9HW7z4JILz8Uw
+AsTEVc8sGfgpvddNlq/oGK3N0/2yEhB2u8uQGKzxcoGteh1OiDaIuDoRoQwoA1+n
+8JC63jQY/KTL7l2MQvx+1dO2hXgpWdfx0ZmwMCYWtFjm3wpi6PBiehU1AgMBAAGj
+QjBAMB8GA1UdEQQYMBaCFGFyZGVhcy5oYW1wc2hpcmUuZWR1MB0GA1UdDgQWBBRE
+jzcZzvT5EksZgV58H3OPDsfyLTANBgkqhkiG9w0BAQUFAAOCAQEAHsF9J+sGn98U
+QYlaVIeGFw6iw749Ig7SO/PPotW3C5+CDhRdlehfRS1Dkt818hqpElmDnvpPw40q
+WCo64KI+oCLV1ekOzXxK59HgUv8rxmfNglMmFgbijjtN0ffcK/p4g7aTc4hglIHo
+6rptF7Dh0Mn/lKaV8K0/P0VR+XsKwNdcA6l8f7TYKYnTLyUYdWxnyi+t0MxeFpDA
+SSKoOyWLICyI/1E09jN0VA0eDubH13walMGziU/D9wkBlGzTGT6Ilhu3kyQdg9WD
+joc1hy+ZEthVM3YxEQRwqUNoPEL9oJa6jqBfaHMP6FFdkE2plfruH3AxLfPeUQHc
+LAvWP0iE0Q==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ardeas.hampshire.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ardeas.hampshire.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ardeas.hampshire.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ardeas.hampshire.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://compass-dev.fivecolleges.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://compass-webdb-dev.fivecolleges.edu/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Dev Five College Compass - Digital Collections</ServiceName>
+ <ServiceDescription xml:lang="en">Development server for Five College Compass - Digital Collections</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Hampshire College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Hampshire College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hampshire.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Hampshire College System Administrators</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Hampshire College System Administrators</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Hampshire College System Administrators</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://athamas.hampshire.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://athamas.hampshire.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://compass-newdev.fivecolleges.edu/Shibboleth.sso/DS" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://compass-dev.fivecolleges.edu/Shibboleth.sso/DS" index="3"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Five College Compass - Digital Collections NEW DEV</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This is a test site for development purposes only</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.hampshire.edu/it/hampshire-college-digital-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="45" width="100" xml:lang="en">https://www.hampshire.edu/sites/default/files/shared_images/Hnew.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12084353060943060614, expires on Sat Aug 5 18:50:09 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://athamas.hampshire.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://athamas.hampshire.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://athamas.hampshire.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://athamas.hampshire.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://compass-newdev.fivecolleges.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://compass-dev.fivecolleges.edu/Shibboleth.sso/SAML2/POST" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Hampshire College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Hampshire College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hampshire.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>System Administrator</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>System Administrator</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Hampshire College System Administrators</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Hampshire College System Administrators</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://idp.hampshire.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">hampshire.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Hampshire College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.hampshire.edu/it/hampshire-college-digital-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="45" width="100" xml:lang="en">https://www.hampshire.edu/sites/default/files/shared_images/Hnew.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1073567661647259542453071215636488549848061390661, expires on Mon Dec 16 21:48:39 2030 GMT -->
+ <ds:X509Certificate>
+MIIDMDCCAhigAwIBAgIVALwMcFu6yCQI/NKTFc9rDbEYlS9FMA0GCSqGSIb3DQEB
+BQUAMBwxGjAYBgNVBAMTEWlkcC5oYW1wc2hpcmUuZWR1MB4XDTEwMTIxNjIxNDgz
+OVoXDTMwMTIxNjIxNDgzOVowHDEaMBgGA1UEAxMRaWRwLmhhbXBzaGlyZS5lZHUw
+ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCe5/ldBevXTijAqGzYzGTS
+ScCFbIUcaKPFWuI1hp/CEifa95qe6fgMXcm7apemUrAXkPkOU1qyLi1tJaim3Mx8
+hMFLdfY64Hpoq9XcqaQKdoFDpvwxUKTAxvjI6IxL1Z7/X3IFSM7wdrQ4u/kIjBel
+qneDH/7UjAS1G/UfLOY7wgkbPc7QS0Llru5kXZOjoDFFh7MvkCogD1N514G7K+tD
+Ukzqug05AMVrBYK5Z3mslya5Z0X5Q/y63Z9ZTZC9RBFWiZwoVyZwS59mtlV+53Vv
+AbzWHt2wI2GBiQY2WXE3wb+zxb9pTnvey+ZG/wBJy9T4SLi4m0cUahJNeQhS61hH
+AgMBAAGjaTBnMEYGA1UdEQQ/MD2CEWlkcC5oYW1wc2hpcmUuZWR1hihodHRwczov
+L2lkcC5oYW1wc2hpcmUuZWR1L2lkcC9zaGliYm9sZXRoMB0GA1UdDgQWBBQ9zs3s
+R/rwqzG6jQ2osIiunDNu+TANBgkqhkiG9w0BAQUFAAOCAQEATV1+GoSdEhH7RM6v
+LxJB849ke8Y76EXda7tI5Mh8HZorkiS15yWUNlJv/0dFuwwdHvurYn4sRCX0kgST
+775+ixbx3gVHz1GE2hPxyt4XFOriBR/dIPpzb1KrX7jWlvUe39uTzlyP0kPiKB9T
+UZAFtHU9eEIgBF2K8BXrgOJlFdafpO+BvnddSDulD1arCNR4v5m/AUQgbjzOTIb5
+7+agSMUvFerHCtfJCDmZqH26FJl+TsMc+TJUuojStICm0CDrDL1InZRDQVA1chw/
+VvX8muYzljIcbhSKscHFh9jTgF3tS1Q+X1Jg3E3kC8CVgHP3wvPX6Z+I0bmfSvRo
+CnVcoA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.hampshire.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.hampshire.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.hampshire.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.hampshire.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.hampshire.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">hampshire.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1073567661647259542453071215636488549848061390661, expires on Mon Dec 16 21:48:39 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.hampshire.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Hampshire College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Hampshire College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hampshire.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Chris Kitzmiller</GivenName>
+ <EmailAddress>ckitzmiller@hampshire.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Josiah Erikson</GivenName>
+ <EmailAddress>wjeNS@hampshire.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Becca Groveman</GivenName>
+ <EmailAddress>bgroveman@hampshire.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>System Administrators</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://lapithes.hampshire.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lapithes.hampshire.edu/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://moodle.hampshire.edu/Shibboleth.sso/DS" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Hampshire College Moodle</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://moodle.hampshire.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://moodle.hampshire.edu/mod/page/view.php?id=36110</mdui:PrivacyStatementURL>
+ <mdui:Logo height="61" width="204" xml:lang="en">https://moodle.hampshire.edu/pix/moodlelogo-med.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10307459834185766438, expires on Fri Jul 21 12:32:47 2028 GMT -->
+ <ds:X509Certificate>
+MIIECTCCAnGgAwIBAgIJAI8LdBuhP9YmMA0GCSqGSIb3DQEBCwUAMCExHzAdBgNV
+BAMTFmxhcGl0aGVzLmhhbXBzaGlyZS5lZHUwHhcNMTgwNzI0MTIzMjQ3WhcNMjgw
+NzIxMTIzMjQ3WjAhMR8wHQYDVQQDExZsYXBpdGhlcy5oYW1wc2hpcmUuZWR1MIIB
+ojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEA0L+fj5azGlGFrCOhrlxzNsea
+6EKxAfBFnQLM7JvFBMl+/nxzp/WvZbNyctxFhPHQIjEgCCSJnPMmG2IVuy+p/k6d
+w6FRQXwE6vZ+8w+Irvj5+M1kEPtxSoA7bOPgsWxGJpD90WVPOtJDXuNbuMvqMRAp
+ce51Pcm88iWfqyAi9M1WTj2EQc62FsJQJ+7iMbB6fECmHvvB/AunQntvAqyFb5cS
+gTpeUfnRFtbL2rGY86UMe+OoUMhi2EDynkKvAyEbD3X1CXUdXuWAQgVptMQpS4SK
+8LAMXXFGL6fZ4Jv/FKbZExwT8UlEiNuErxom8PMr+dW9kSAP6GI1gL76BtIXlV46
+vX9HSLKoEXF5a5uqtXUpyCOI9zn87pteOnldCPvBZOCrgN671KhBICWVYMH/AV8M
+nbxuzQvFCbr/ivIpe/qEmdnqTdpQ54V0ZCtl0c+3giIskbMGo3Xs1S0Q9Thid16N
+xKKDP0ELhPG2Zkiu9Yl1EJHsA0WEujiLGBTX8gvrAgMBAAGjRDBCMCEGA1UdEQQa
+MBiCFmxhcGl0aGVzLmhhbXBzaGlyZS5lZHUwHQYDVR0OBBYEFJUZgD0ACbXoh5+B
+VcygMh2R1CmhMA0GCSqGSIb3DQEBCwUAA4IBgQAPbAU48iZR54SxhkxkRVO5Su9z
+NygUgZFi05LtC5lP593jQXPvC3uwGv+u5/nzWXbOpzkAgZM555Goe7bfCaA3peyC
+ZBqGO1lBPDUeYNDyPGHcL+6LxdVsU5fYeZs35vUQwhphNSKflXRXJZC1mE6nxT7o
+utFaHzGMEyPR017b4ZEQp/nGfCYsgLdNYNcRtp58KeBAoHKbRkf02L0QB0Phdo1b
+K6Hnk+WSmcDuNEB1iPzXRWXeNT0UiX2T+YIP3rt+yWK16DHxejScmMBdSY/oXw8t
+kBLP+06eBtUK0ycj1fDqipiP+C+HfuGcKAoJR/sH1alN/D+VXs/aGVEA6mr5lvGR
+sycKBfeAzXLrsdCLs3TOpjPp/1ISO8zNNuhaSPYQhoxXvBM+16YN7Y/fXmr9UUIO
+UJNx4URZPfF1UFfPEM4a0BEf5SUYcSo7JGwbDZS7sXw4a4fBH1yB06DZb5shuUDb
+DfPZDuwS5W6YRqwLLE9Qhwq3+ZTk761VxSXG2pU=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lapithes.hampshire.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lapithes.hampshire.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lapithes.hampshire.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lapithes.hampshire.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.hampshire.edu/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cws.hampshire.edu/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Hampshire College Moodle</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Hampshire College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Hampshire College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hampshire.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>System Administrator</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Moodle Administrator</GivenName>
+ <EmailAddress>moodle@hampshire.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>System Administrator</GivenName>
+ <EmailAddress>sysadmins@hampshire.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://maison.io/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://maison.io/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Maison</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Office Hours made easy.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://maison.io/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://maison.io/privacy-policy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="25" width="177" xml:lang="en">https://maison.io/assets/images/maison-logo-medium.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15981022937721172479, expires on Tue Aug 11 19:17:40 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://maison.io/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://maison.io/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://maison.io/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://maison.io/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Hampshire College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Hampshire College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hampshire.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jose Fuentes</GivenName>
+ <EmailAddress>jafafuentes@gmail.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Becca Groveman</GivenName>
+ <EmailAddress>bgroveman@hampshire.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jose Fuentes</GivenName>
+ <EmailAddress>jafafuentes@gmail.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Weber State University -->
+<EntityDescriptor entityID="https://idp.weber.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.weber.edu/help/ErrorPage.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">weber.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Weber State University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://weber.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.weber.edu/WSUHomePage/WSU-Privacy-Statement.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="122" width="238" xml:lang="en">https://www.weber.edu/images/WSU_Logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12155014911014291175, expires on Sat Jun 18 17:42:41 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.weber.edu/simplesaml/saml2/idp/SingleLogoutService.php?ReturnTo=https%3A%2F%2Fcas.weber.edu%2Flogout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.weber.edu/simplesaml/saml2/idp/SSOService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.weber.edu/simplesaml/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Weber State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Weber State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.weber.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jonathan Karras</GivenName>
+ <EmailAddress>jonathankarras@weber.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Systems Admin Services</GivenName>
+ <EmailAddress>sysadmin@weber.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Office</GivenName>
+ <EmailAddress>security@weber.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>csupport@weber.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mark Buxton</GivenName>
+ <EmailAddress>markbuxton@weber.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Allegheny College -->
+<EntityDescriptor entityID="https://shibboleth.allegheny.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">allegheny.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Allegheny College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The national liberal arts college where 2,100 students with unusual combinations of interests, skills and talents excel.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.allegheny.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://sites.allegheny.edu/resources/privacy-and-security-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="120" width="460" xml:lang="en">https://shibboleth.allegheny.edu/ac-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1204292350233081834933414535655480112562596819324, expires on Fri Aug 5 15:20:59 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.allegheny.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.allegheny.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.allegheny.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.allegheny.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.allegheny.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">allegheny.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1204292350233081834933414535655480112562596819324, expires on Fri Aug 5 15:20:59 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.allegheny.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Allegheny College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Allegheny College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.allegheny.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Doug Tomer</GivenName>
+ <EmailAddress>dtomer@allegheny.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Doug Tomer</GivenName>
+ <EmailAddress>dtomer@allegheny.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Doug Tomer</GivenName>
+ <EmailAddress>dtomer@allegheny.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Doug Tomer</GivenName>
+ <EmailAddress>dtomer@allegheny.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Pennsylvania College of Technology -->
+<EntityDescriptor entityID="https://idp.pct.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pct.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Pennsylvania College of Technology</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.pct.edu/about/penn-college-privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="100" xml:lang="en">https://idp.pct.edu/idp/images/pctlogo-mobile.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1403837056174178840222859891485083574265640622907, expires on Sun Nov 13 14:40:14 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.pct.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.pct.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.pct.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.pct.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.pct.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pct.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1403837056174178840222859891485083574265640622907, expires on Sun Nov 13 14:40:14 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.pct.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pennsylvania College of Technology</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pennsylvania College of Technology</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.pct.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mike Rae</GivenName>
+ <EmailAddress>mrae@pct.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Robert Belles</GivenName>
+ <EmailAddress>robert.belles@pct.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mike Rae</GivenName>
+ <EmailAddress>mrae@pct.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jim Williams Jr.</GivenName>
+ <EmailAddress>jim.williams@pct.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- XSEDE of the University of Illinois Urbana Champaign -->
+<EntityDescriptor entityID="https://idp.xsede.org/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.xsede.org/error" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">xsede.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">XSEDE</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Extreme Science and Engineering Discovery Environment (XSEDE)</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://idp.xsede.org/policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="194" xml:lang="en">https://idp.xsede.org/images/logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 465861770116589758996758889492221086254134311119, expires on Sun Sep 21 14:06:11 2036 GMT -->
+ <ds:X509Certificate>
+MIIDHzCCAgegAwIBAgIUUZn22ZceS/roL9z9Q7Rcm341uM8wDQYJKoZIhvcNAQEL
+BQAwGDEWMBQGA1UEAwwNaWRwLnhzZWRlLm9yZzAeFw0xNjA5MjExNDA2MTFaFw0z
+NjA5MjExNDA2MTFaMBgxFjAUBgNVBAMMDWlkcC54c2VkZS5vcmcwggEiMA0GCSqG
+SIb3DQEBAQUAA4IBDwAwggEKAoIBAQCgGjMrfzCewlFLJ/WZfgJ2EBFBiviXQ7/G
+cOZ0CtT5drztZHuB9LKg6TNkkzsj0iIsfcUjlh+d3Hsj1B0nYTVETqThjp2dfFLc
+K7ovQyDJaREwDY8mNiIAkYYKf4KIltoGXxJ/RkTjWZF7sg/1RvUXKl7PecOJZP4J
+OE5spqp5Ow/+ebmM2ArK3vrm+1Xf7Os2v/0uUJRs99Xfa/OjmzThfuW8yeAmerHB
+UJRer47bc19rNcPDFqamu+nnY+vy7A7FvxFxtw307R4WPSmjSRof8zCZGKWXALD5
+jfuepqOhwtIL6/MEr8fIBaF1cTj9/IX3oSNvyl4s0OHyqC3lrYcjAgMBAAGjYTBf
+MB0GA1UdDgQWBBTiANCDGFDUWKg+MfjFMHq5KL0mSzA+BgNVHREENzA1gg1pZHAu
+eHNlZGUub3JnhiRodHRwczovL2lkcC54c2VkZS5vcmcvaWRwL3NoaWJib2xldGgw
+DQYJKoZIhvcNAQELBQADggEBABjxXRc+IqLVWGoc73D6rE7Oy6BweHlLUhH42HnC
+24COIW4ZBl9FuvnzcIuU99rd/RtdiGKUjT0EvZ0RHG/G5PUQOohBwzBKa4yasQ4X
+F8vC+FqKTKYfyuPG23E4pyGd3opjQ3P9671Wi5QN33yMQeEOUmi2jZA+LxrWCsZG
+HlgszHiMJPLAwWM1nW/Hh0Z156ONabgbTyjRHfOTRYlGgrTZ1ElFxVCUl05HIY5s
+asZ+wKOPxxE+tJOt2mV9+syNkHRssXGlGHh99+JWIlm4vPDveJQDL0NN+haE/NRB
+BgRgYGCf6LQuE/evnHRVnExZAWhUWRec+orIreHi/tRbJbk=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.xsede.org/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.xsede.org/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">XSEDE of the University of Illinois Urbana Champaign</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">XSEDE</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.xsede.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>XSEDE Help Desk</GivenName>
+ <EmailAddress>help@xsede.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>XSEDE Help Desk</GivenName>
+ <EmailAddress>help@xsede.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>XSEDE Help Desk</GivenName>
+ <EmailAddress>help@xsede.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>XSEDE Help Desk</GivenName>
+ <EmailAddress>help@xsede.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Davidson College -->
+<EntityDescriptor entityID="http://sso.davidson.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">davidson.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Davidson College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Davidson College, Davidson, NC</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.davidson.edu/offices-and-services/legal-services/data-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="198" xml:lang="en">https://offices.davidson.edu/communications/marketing-toolbox/logos/black-ltr-red-bar-white-di/black-letters-red-bar-white-diamond-logo_cmyk.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 148682508095147791832554207428843067255, expires on Thu Mar 22 18:06:46 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.davidson.edu/adfs/ls"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.davidson.edu/adfs/ls"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Davidson College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Davidson College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www3.davidson.edu/cms/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Robbins</GivenName>
+ <EmailAddress>jorobbins@davidson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Abby Creasy</GivenName>
+ <EmailAddress>abcreasy@davidson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kevin Davis</GivenName>
+ <EmailAddress>kedavis@davidson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kevin Davis</GivenName>
+ <EmailAddress>kedavis@davidson.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Edinboro University of Pennsylvania -->
+<EntityDescriptor entityID="https://idp.eup.edinboro.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">edinboro.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Edinboro University of Pennsylvania</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.edinboro.edu/directory/offices-services/hr/policies/documents/C057%20Acceptable%20Use%20of%20Technology%20Policy%20(01.11.2016).pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="340" width="89" xml:lang="en">https://idp.eup.edinboro.edu/idp/images/edinboro.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 126459823389583849552760547526248572227955483884, expires on Fri Nov 2 15:09:13 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.eup.edinboro.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.eup.edinboro.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Edinboro University of Pennsylvania</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Edinboro University of Pennsylvania</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.edinboro.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Ralph Boyles</GivenName>
+ <EmailAddress>boyles@edinboro.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ralph Boyles</GivenName>
+ <EmailAddress>boyles@edinboro.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ralph Boyles</GivenName>
+ <EmailAddress>boyles@edinboro.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ralph Boyles</GivenName>
+ <EmailAddress>boyles@edinboro.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Binghamton University -->
+<EntityDescriptor entityID="https://epatient.binghamton.edu/saml2/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ePATIENT</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ePATIENT is an educational EMR to aid in asynchronous interprofessional healthcare training. ePATIENT allows multiple student professions, from different campuses, to simultaneously access "virtual patient" records in real-time allowing them to respond to notes, orders, and comments from other members of the team as professionals do in real-world clinical environments.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://github.com/BinghamtonUniversity/ePATIENT</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.binghamton.edu/its/about/governance/policies/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="400" xml:lang="en">https://epatient.binghamton.edu/assets/images/epatient_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Fri Aug 3 13:14:08 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://epatient.binghamton.edu/saml2/sls"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://epatient.binghamton.edu/saml2/acs" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ePATIENT</ServiceName>
+ <ServiceDescription xml:lang="en">ePATIENT is an educational EMR to aid in asynchronous interprofessional healthcare training. ePATIENT allows multiple student professions, from different campuses, to simultaneously access "virtual patient" records in real-time allowing them to respond to notes, orders, and comments from other members of the team as professionals do in real-world clinical environments.</ServiceDescription>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Binghamton University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Binghamton University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.binghamton.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Sarah Lynch</GivenName>
+ <EmailAddress>selynch@binghamton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tim Cortesi</GivenName>
+ <EmailAddress>tcortesi@binghamton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations Center</GivenName>
+ <EmailAddress>security@binghamton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Binghamton Helpdesk</GivenName>
+ <EmailAddress>helpdesk@binghamton.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://idp.cc.binghamton.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.binghamton.edu/its/index.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">binghamton.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Binghamton University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Binghamton University Authentication Service</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.binghamton.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.binghamton.edu/its/about/governance/policies/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="115" width="315" xml:lang="en">https://www.binghamton.edu/images/v2/binghamton-university-logo2.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 299246427499894339563858440722134416233248278323, expires on Thu Jan 17 01:49:56 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1160928016253718862574649051536673674496019424271, expires on Tue Jul 19 16:19:22 2039 GMT -->
+ <ds:X509Certificate>
+MIIDQDCCAiigAwIBAgIVAMtZ0AwLPuGF8aky46KiIJExumQPMA0GCSqGSIb3DQEB CwUAMCAxHjAcBgNVBAMMFWlkcC5jYy5iaW5naGFtdG9uLmVkdTAeFw0xOTA3MTkx NjE5MjJaFw0zOTA3MTkxNjE5MjJaMCAxHjAcBgNVBAMMFWlkcC5jYy5iaW5naGFt dG9uLmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAIQdt8D+BIYp gNkO/aTU6KxPfkxzuKLc3Jqv46kp/McBxMy/j8lALEkjbSitSHvRenj4KciDXUaJ +e8AwN4UudhO3ZnIhB0MM5w26PmccULVis8fVsDYj3mqIvxv5qdCmlMrMvcI8nwj 53ihfFQUplLyNRph6HeqkIUWN/z4G+MZoNAdDhIgkixSc5j05vjjz2TP/R++E0Ga loj8SFTHYMrvJ9b4bY9QgDOVaE0dklYA+eq5NBFkTsNsrau4/MPEdcnSQGdZhQSq j4cj5mNof5ABaRg/9BT3LbxbUiHIra8mylWcKiYvT964t5Fz2L0D4Iurp1Pv1yFD RCeDtaeMVc8CAwEAAaNxMG8wHQYDVR0OBBYEFP4QKB6RpQVuA97T/MubB9DDPSUe ME4GA1UdEQRHMEWCFWlkcC5jYy5iaW5naGFtdG9uLmVkdYYsaHR0cHM6Ly9pZHAu Y2MuYmluZ2hhbXRvbi5lZHUvaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQAD ggEBAE+CR6NwPu5hQaMMkmw+aEDH7/S+coshcfIbRenWG8Mgs4D/vMKodRukwcYb d6XC1ry4yCvn7T2e3Hcqs+EGtfZtJb1VHWk2SrIerqAvJ29zQtylx4/dskl+U/cM N0I/2JHcZ3PKCYAjL8GRo1fbNKbPRtKEElN6XTLC+nKcdUjfq2oyu05yCzcECLDz VcZfY1rBWC9GgaDEWnERNF6XyK8lBl7JIepg9S4IoHlEUOXwn+LypQ1UAxr4EWEB UetYdFAdoVzlhqrS0vj/f+zGrrzoV8Uukn2+1EBUJgaLS+OoROWjnNwQsc9MzTjO F/RxM7PlGmGWS/B9YlYNtxbKU2I=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.cc.binghamton.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.cc.binghamton.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.cc.binghamton.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.cc.binghamton.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.cc.binghamton.edu/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.cc.binghamton.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.cc.binghamton.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.cc.binghamton.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.cc.binghamton.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">binghamton.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 299246427499894339563858440722134416233248278323, expires on Thu Jan 17 01:49:56 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 359772302933382638866726895905438952104595094780, expires on Tue Jul 19 16:20:09 2039 GMT -->
+ <ds:X509Certificate>
+MIIDPzCCAiegAwIBAgIUPwS/fjOHvVaoftRxnBZPdAOw/PwwDQYJKoZIhvcNAQEL BQAwIDEeMBwGA1UEAwwVaWRwLmNjLmJpbmdoYW10b24uZWR1MB4XDTE5MDcxOTE2 MjAwOVoXDTM5MDcxOTE2MjAwOVowIDEeMBwGA1UEAwwVaWRwLmNjLmJpbmdoYW10 b24uZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAlfy9Fmguqnu9 lF9h7L0iRvhNn3lteFFhBK9EJw8LgzX+ppxgUde9jukeH1b1qm9sKHoG+Gqr0sia eN9bkC4W8SLqddeujRYpFR6KCn3tlT/X2IBJSh/AsACgpe+/r2+Wpin6eWRRqkKt vI2UlDcQ7JqlkWNHWe63Ue9FZkcCGufDlZrprPAEovxheqp8kbcImMCAzV6DEiKW DGhtWnQxt2wM89rZGOzvyttdnFBaHJt789DR6AA4M6viBBwIa6qPRf5ZqGAUh7rN 3pWFoJ+JYk0F7+cOrOaM3vCSFnZwbdGdDuZMDZO1lPWCCh02ls4nT0xGQsuV2jmL uGC0Buw3jQIDAQABo3EwbzAdBgNVHQ4EFgQUFbJpjrECRYL/0FknHSi4fjan614w TgYDVR0RBEcwRYIVaWRwLmNjLmJpbmdoYW10b24uZWR1hixodHRwczovL2lkcC5j Yy5iaW5naGFtdG9uLmVkdS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOC AQEARwEBCRodW6eYP/hMZPdj7fDYpJU+MERaBpZwxgs/9mdA0grb6D8IeH2Yvk0X JTXlSHKgsAUxI9hQzb+59nlMTx0u7UTxLw1xv2L/zZg62rOw9okOf6Auot9wGp3/ StKEV1+kmCFSp36XlyOrhNvy4EDncQwe8Va7+xfDxulYsIu2MLtCFWnEztdrcAks S+g5R/Ook3epvuFvpw55ZkaEaPFKJAYgMKWulz1xcgmdlVUjITixxNBRSvCBPyuc 5xj7j71z8ARF7nfPuBbingiq22XHbWFOTJLmYWybeM7qCE2bEa9kHx/v+6HSDmGd ySWc+0B89OVAZr7HOytEsWxFkw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.cc.binghamton.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.cc.binghamton.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Binghamton University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Binghamton University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.binghamton.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Hizny</GivenName>
+ <EmailAddress>mhizny@binghamton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeffrey Ramsay</GivenName>
+ <EmailAddress>jramsay@binghamton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>ITS Helpdesk</GivenName>
+ <EmailAddress>helpdesk@binghamton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Operations Center</GivenName>
+ <EmailAddress>security@binghamton.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Sam Houston State University -->
+<EntityDescriptor entityID="https://authidp.shsu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">shsu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Sam Houston State University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.shsu.edu/intranet/policies/information_technology_policies/documents/IT-27PrivacyPolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="280" width="1410" xml:lang="en">https://authidp.shsu.edu/idp/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 376139489435896021852560279963573373141066482736, expires on Sat Dec 4 21:01:38 2032 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://authidp.shsu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://authidp.shsu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://authidp.shsu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://authidp.shsu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://authidp.shsu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://authidp.shsu.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">shsu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 376139489435896021852560279963573373141066482736, expires on Sat Dec 4 21:01:38 2032 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://authidp.shsu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://authidp.shsu.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Sam Houston State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Sam Houston State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.shsu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Marc Barber</GivenName>
+ <EmailAddress>marc.barber@shsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Linux Admins</GivenName>
+ <EmailAddress>linuxadmins@shsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Steven Frey</GivenName>
+ <EmailAddress>steven.frey@shsu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Western Carolina University -->
+<EntityDescriptor entityID="http://fs.wcu.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wcu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Western Carolina University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Western Carolina University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.wcu.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.wcu.edu/WebFiles/PDFs/InCommonPOP.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="83" width="192" xml:lang="en">https://federation.northcarolina.edu/wayf/img/svgLogos/WCU.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 36388644590396087501562147444912714555, expires on Thu Feb 19 12:52:41 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fs.wcu.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fs.wcu.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fs.wcu.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://fs.wcu.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Western Carolina University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Western Carolina University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wcu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Craig Fowler</GivenName>
+ <EmailAddress>cfowler@wcu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Josh Bright</GivenName>
+ <EmailAddress>jbright@wcu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Josh Bright</GivenName>
+ <EmailAddress>jbright@wcu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Wentworth Institute of Technology -->
+<EntityDescriptor entityID="https://shib.wit.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wit.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Wentworth Institute of Technology</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://wit.edu/tech-services/policies/incommon</mdui:PrivacyStatementURL>
+ <mdui:Logo height="108" width="93" xml:lang="en">https://wit.edu/sites/default/files/publications/WIT-shield.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1085427097794575738799998822127361544994204193813, expires on Sat Jul 2 20:45:05 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.wit.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.wit.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.wit.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.wit.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.wit.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wit.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1085427097794575738799998822127361544994204193813, expires on Sat Jul 2 20:45:05 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.wit.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Wentworth Institute of Technology</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Wentworth Institute of Technology</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wit.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Justin Sabourin</GivenName>
+ <EmailAddress>sabourinj@wit.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Tech Spot</GivenName>
+ <EmailAddress>helpdesk@wit.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jim McFarland</GivenName>
+ <EmailAddress>mcfarlandj2@wit.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Bryce Cunningham</GivenName>
+ <EmailAddress>cunninghamb2@wit.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- United Public Safety -->
+<EntityDescriptor entityID="https://upsafety.net/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">United Public Safety</mdui:DisplayName>
+ <mdui:Description xml:lang="en">United Public Safety</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.upsafety.net/about/about-us.php</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://upsafety.net/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="71" width="155" xml:lang="en">https://upsafety.net/images/logo-upsaf.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 107740532480808070068491650480381372371, expires on Fri Jul 2 00:00:00 2038 GMT -->
+ <ds:X509Certificate>
+MIIC4DCCAcigAwIBAgIQUQ4SX7V4MZ5B1QzxSxgn
+0zANBgkqhkiG9w0BAQUFADAZMRcwFQYDVQQDEw53
+d3cudG9jaXRlLm5ldDAeFw0xMzA3MDgwODU3NDNa
+Fw0zODA3MDIwMDAwMDBaMBkxFzAVBgNVBAMTDnd3
+dy50b2NpdGUubmV0MIIBIjANBgkqhkiG9w0BAQEF
+AAOCAQ8AMIIBCgKCAQEAz76COBSrxqv+E/35zm8A
+QOuOleITOY9C65LUiOGMKkk9mVAvm8Qsf9LXnj0Y
+dOAAEt3lZU6nc7Vv2zB9+OU1y8QHYbS5N6YL0bis
+0/YrWhdIvQtX5qUxPVLFeBTpcPBAKdgPceYULpmK
+JFH1O19blaiYSXIfRrhmcVW8PsMfsvr/8BQJnspQ
+gLSuDuG2CQxk2JTfFZWj0AuFrDEEuJbr5l+MP7c1
+GGmsTpfIbgC4Zg8Bmtx/y6q7ezUlBrix3bgkouWL
+wmk9WUPsAe6Wpyo5bfbPzvYDEjNU0NJxMsr5baJd
+WjECwthvHpIYBMBOYApK3R33QTqXXa7VxUTfFBJ+
+RQIDAQABoyQwIjALBgNVHQ8EBAMCBLAwEwYDVR0l
+BAwwCgYIKwYBBQUHAwEwDQYJKoZIhvcNAQEFBQAD
+ggEBAECXyN+SdsBIqUCP1IrRIf+hKbvXXIQBUxAz
+x31jzwo9Ufe6OHqzKfzBcwexUUNfHx7RpnCgdruJ
+ZcT+CT+XJidpa20yTBwRVGLV+YuUvEZCRshjlshY
+VOt5pVrjxZJHg5YAkTKeZFcvMZmH+Xb1BUoMbdnX
+Zxtx98BtWkXOty4sPpmKW009+UUunme15hIAH71K
+lBb0Xto29GXtgWo1H1rLERD1wJIOkIxO1kCz+t3D
+m6CUYF2mrqgV+mUISjax01cFAFsq0iNAspi5UBZr
+jV0N/BOgnwII1jMadzTmNqpqwBFwtz9YEaxiLuJv
+9ahKjzhkuFStG0oFOrqNBLJjaQ0=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.tocite.net/FedAuth/Shibboleth/AssertionService" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">United Public Safety</ServiceName>
+ <ServiceDescription xml:lang="en">United Public Safety</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">United Public Safety</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">United Public Safety</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.upsafety.net/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Andrew Robin</GivenName>
+ <EmailAddress>arobin@upsafety.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Andrew Robin</GivenName>
+ <EmailAddress>arobin@upsafety.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Andrew Robin</GivenName>
+ <EmailAddress>arobin@upsafety.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Andrew Robin</GivenName>
+ <EmailAddress>arobin@upsafety.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://upsafety.net/Staging/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://www.tocitestaging.net:8443/FedAuth/Shibboleth/AssertionService" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">United Public Safety Staging</mdui:DisplayName>
+ <mdui:Description xml:lang="en">United Public Safety Staging</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.upsafety.net/about/about-us.php</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://upsafety.net/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="71" width="155" xml:lang="en">https://upsafety.net/images/logo-upsaf.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 52067783143666241136174369338180624404, expires on Sun Apr 2 23:59:59 2017 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.tocitestaging.net:8443/FedAuth/Shibboleth/AssertionService" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">United Public Safety Staging</ServiceName>
+ <ServiceDescription xml:lang="en">United Public Safety Staging</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">United Public Safety</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">United Public Safety</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.upsafety.net/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Andrew Robin</GivenName>
+ <EmailAddress>arobin@upsafety.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Andrew Robin</GivenName>
+ <EmailAddress>arobin@upsafety.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Andrew Robin</GivenName>
+ <EmailAddress>arobin@upsafety.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Andrew Robin</GivenName>
+ <EmailAddress>arobin@upsafety.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Colorado School of Mines -->
+<EntityDescriptor entityID="https://idp.mines.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.mines.edu/error/" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mines.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Colorado School of Mines</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.mines.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.mines.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="452" xml:lang="en">https://idp.mines.edu/idp/images/MinesLogo-apps.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1066634814090014036363901626417685513767443598085, expires on Fri Apr 7 20:31:18 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.mines.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.mines.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.mines.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.mines.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.mines.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mines.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1066634814090014036363901626417685513767443598085, expires on Fri Apr 7 20:31:18 2034 GMT -->
+ <ds:X509Certificate>
+MIIDIDCCAgigAwIBAgIVALrVjyviCwnipvwjtC7VXHNfQYsFMA0GCSqGSIb3DQEB
+BQUAMBgxFjAUBgNVBAMTDWlkcC5taW5lcy5lZHUwHhcNMTQwNDA3MjAzMTE4WhcN
+MzQwNDA3MjAzMTE4WjAYMRYwFAYDVQQDEw1pZHAubWluZXMuZWR1MIIBIjANBgkq
+hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAmypcCiTRtq+l22di6Wp200buqUJTdKZe
+pWQ7uOhe64ns1HbPyXBeCAnUI3yLeUduwrj/VDJEQsh5Sdpg/I8lkf3zUoDNEUeM
+tp8nZjRDCysLZcotlaT1nfFj5g/Yvk1BBb+09y+Orovcv3NLY9DE42qK5CrnWdqO
+6TWme1sgNtClkFBgxDbXGGQzNqHHvAUQooSiDVB716u4t0KlKREvDNdmx5KJ7jjO
+stlMOxw2L1xnGs7dScUDR9AYxWuZ2v7l5sgeTGVGY39DJbRk4jHi4vxsVYBlq18/
+WFoS94t4g32KpDYclxfZIlkgibU0E9Bw8wcnq5h9My1J0aKOS+366QIDAQABo2Ew
+XzA+BgNVHREENzA1gg1pZHAubWluZXMuZWR1hiRodHRwczovL2lkcC5taW5lcy5l
+ZHUvaWRwL3NoaWJib2xldGgwHQYDVR0OBBYEFNxq63HQJW8lr4dh/q1gtcJJ0bFg
+MA0GCSqGSIb3DQEBBQUAA4IBAQB2/aY7NYBtrztFTQeQjhUg76xuVzBskqvgIKfU
+4YeYjvK86VNEKlppGkylFHm817Sy2yeDozoKV2jS46GOlg9ZgE7NGiLdK1NP2vup
+S5KdtuOu7wnrrzkKQqY3zL4TDwK4qPZxOAFZcFSYdoPNGc+fKrhw7bo6S+ZSjFtm
+68I/MXFy+Q9iGYh6dPC5x3PRn0hn1TPTJ1GczhkNGFZLZqnE4Pb/gPXwbSx3jvyv
+pDZoqzjpdIxwH4osA5q6R8DkFUHxsOQlPHTZozbBtkIcKigYYG2sEmKmHUxmV9zu
+t6dBbef3d3Mj0qVgNOz7Nyvv1qrAUw8WUziVYMzIeS9tQJa1
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.mines.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Colorado School of Mines</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Colorado School of Mines</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.mines.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Matthew B. Brookover</GivenName>
+ <EmailAddress>mbrookov@mines.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Erickson</GivenName>
+ <EmailAddress>erickson@mines.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Colorado School of Mines Security Team</GivenName>
+ <EmailAddress>security@mines.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Arkansas, Cooperative Extension Service -->
+<EntityDescriptor entityID="https://idp.uaex.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uaex.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Arkansas, Cooperative Extension Service</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.uaex.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.uaex.edu/privacy.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="523" xml:lang="en">https://idpinfo.uaex.edu/ua-color-left-small.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13599131917448037855, expires on Sat Jan 13 14:45:27 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.uaex.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.uaex.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.uaex.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uaex.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uaex.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.uaex.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uaex.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13599131917448037855, expires on Sat Jan 13 14:45:27 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12500409226530891508, expires on Sat Feb 8 12:21:35 2014 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.uaex.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.uaex.edu:9443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Arkansas, Cooperative Extension Service</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Arkansas, Cooperative Extension Service</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uaex.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Sam Boyster</GivenName>
+ <EmailAddress>sboyster@uaex.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Diana Morian</GivenName>
+ <EmailAddress>dmorian@uaex.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Russell Wilson</GivenName>
+ <EmailAddress>crwilson@uaex.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Diana Morian</GivenName>
+ <EmailAddress>dmorian@uaex.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Cirrus Identity, Inc. -->
+<EntityDescriptor entityID="https://idp.cirrusidentity.com/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cirrusidentity.com</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Cirrus Identity, Inc.</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity Provider for Cirrus Identity employees.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cirrusidentity.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="144" width="144" xml:lang="en">https://s3.amazonaws.com/cirrusidentity-public/images/cirrusidentity-iphone-114.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17203650535488790499, expires on Sun Jan 22 19:22:00 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.cirrusidentity.com/idp/SLOService/HTTP-Redirect"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.cirrusidentity.com/idp/SSOService/HTTP-Redirect"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Cirrus Identity, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Cirrus Identity, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://cirrusidentity.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Cirrus Identity Support</GivenName>
+ <EmailAddress>support@cirrusidentity.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cirrus Identity Security</GivenName>
+ <EmailAddress>security@cirrusidentity.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Patrick Radtke</GivenName>
+ <EmailAddress>support@cirrusidentity.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dedra Chamberlin</GivenName>
+ <EmailAddress>dedra@cirrusidentity.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sso.athena-institute.net/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">athena-institute.net</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Athena Institute - Azure AD</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Cirrus Azure AD Bridge for athena-institute.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.cirrusidentity.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cirrusidentity.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://www.athena-institute.net/img/ai_incommon_128_128.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10259431118675166837, expires on Sun May 30 15:48:13 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://athena-bridge.proxy.cirrusidentity.com/saml2/idp/SingleLogoutService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://athena-bridge.proxy.cirrusidentity.com/saml2/idp/SSOService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://athena-bridge.proxy.cirrusidentity.com/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Cirrus Identity, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Cirrus Identity, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://cirrusidentity.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@cirrusidentity.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dedra Chamberlin</GivenName>
+ <EmailAddress>dedra@cirrusidentity.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@cirrusidentity.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@cirrusidentity.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Bates College -->
+<EntityDescriptor entityID="https://shibidp.bates.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.bates.edu/ils/login-service" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bates.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Bates College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Bates College Identity Provider</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.bates.edu/ils/login-service</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.bates.edu/ils/policies</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="515" xml:lang="en">https://abacus.bates.edu/1855/wordmarks/bates-wordmark-201-515x150.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 273952876191011271493113902749472616974605376113, expires on Tue Aug 30 14:09:31 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibidp.bates.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibidp.bates.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibidp.bates.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibidp.bates.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibidp.bates.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibidp.bates.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bates.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 273952876191011271493113902749472616974605376113, expires on Tue Aug 30 14:09:31 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibidp.bates.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Bates College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Bates College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.bates.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Bates NetAdmin</GivenName>
+ <EmailAddress>netadmin@bates.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bates NetAdmin</GivenName>
+ <EmailAddress>netadmin@bates.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Bates NetAdmin</GivenName>
+ <EmailAddress>netadmin@bates.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk Services</GivenName>
+ <EmailAddress>helpdesk@bates.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Community College of Baltimore County -->
+<EntityDescriptor entityID="https://shib.ccbcmd.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ccbcmd.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Community College of Baltimore County</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Community College of Baltimore County IdP</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.ccbcmd.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.ccbcmd.edu/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="74" width="194" xml:lang="en">https://www.ccbcmd.edu/images/templates/logo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 991588480163295153013186443592950518197186581494, expires on Sat Dec 17 18:01:16 2033 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.ccbcmd.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.ccbcmd.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.ccbcmd.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.ccbcmd.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.ccbcmd.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ccbcmd.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 991588480163295153013186443592950518197186581494, expires on Sat Dec 17 18:01:16 2033 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shib.ccbcmd.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Community College of Baltimore County</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Community College of Baltimore County</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ccbcmd.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Desra Dickerson</GivenName>
+ <EmailAddress>systemsengineering@ccbcmd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>System Engineering</GivenName>
+ <EmailAddress>systemsengineering@ccbcmd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ben Thompson</GivenName>
+ <EmailAddress>bthompson@ccbcmd.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Western Washington University -->
+<EntityDescriptor entityID="https://sidp.wwu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wwu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Western Washington University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.wwu.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="145" width="240" xml:lang="en">https://www.wwu.edu/wwucommon/lite/images/western-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 803210529425987083246472666846377643592039217571, expires on Fri Mar 4 21:24:00 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sidp.wwu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sidp.wwu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sidp.wwu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Western Washington University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Western Washington University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wwu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Tim McLaughlin</GivenName>
+ <EmailAddress>tim.mclaughlin@wwu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ken Pearce</GivenName>
+ <EmailAddress>ken.pearce@wwu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jon Junell</GivenName>
+ <EmailAddress>junellj@wwu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Swarthmore College -->
+<EntityDescriptor entityID="https://sid.swarthmore.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">swarthmore.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Swarthmore College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Swarthmore College</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.swarthmore.edu/feedback-privacy/website-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="124" width="200" xml:lang="en">https://sid.swarthmore.edu/idp/images/swat-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1364124173783422128223154594471853594646072214182, expires on Fri Feb 10 20:10:18 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sid.swarthmore.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sid.swarthmore.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sid.swarthmore.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Swarthmore College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Swarthmore College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.swarthmore.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Administrator</GivenName>
+ <EmailAddress>shib-admin@swarthmore.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Swarthmore Information Security</GivenName>
+ <EmailAddress>infosec@swarthmore.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Administrator</GivenName>
+ <EmailAddress>shib-admin@swarthmore.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Swarthmore Support</GivenName>
+ <EmailAddress>help@swarthmore.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Oregon Institute of Technology -->
+<EntityDescriptor entityID="http://sso.oit.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">oit.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Oregon Institute of Technology</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.oit.edu/registrar/student-records/ferpa</mdui:PrivacyStatementURL>
+ <mdui:Logo height="66" width="320" xml:lang="en">https://oregontechcdn.azureedge.net/img/ot-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 116655813134639554398121464624281644592, expires on Fri Feb 12 07:52:33 2021 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.oit.edu/adfs/services/trust/artifactresolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.oit.edu/adfs/ls/?wa=wsignout1.0"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.oit.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.oit.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Oregon Institute of Technology</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Oregon Institute of Technology</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.oit.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Alan Wallace</GivenName>
+ <EmailAddress>alan.wallace@oit.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tony Richey</GivenName>
+ <EmailAddress>tony.richey@oit.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Tony Richey</GivenName>
+ <EmailAddress>tony.richey@oit.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- SUNY Empire State College -->
+<EntityDescriptor entityID="https://idp.esc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">esc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SUNY Empire State College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.esc.edu/policies/?search=cid%3D35661</mdui:PrivacyStatementURL>
+ <mdui:Logo height="302" width="57" xml:lang="en">https://www.esc.edu/media/esc-website/style-assets/images/logos/esc-logo-orange-bkg.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 224913939500746210629925118701598240950478103994, expires on Sat Jul 2 03:54:02 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login2.esc.edu:8443/cas/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login2.esc.edu:8443/cas/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login2.esc.edu/cas/logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login2.esc.edu/cas/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login2.esc.edu/cas/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login2.esc.edu/cas/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">esc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 224913939500746210629925118701598240950478103994, expires on Sat Jul 2 03:54:02 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login2.esc.edu:8443/cas/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SUNY Empire State College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SUNY Empire State College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.esc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Koch</GivenName>
+ <EmailAddress>john_incommon@esc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Adam Cross</GivenName>
+ <EmailAddress>adam_incommon@esc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Todd Myles</GivenName>
+ <EmailAddress>todd_incommon@esc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Nebraska -->
+<EntityDescriptor entityID="https://fed.nebraska.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">nebraska.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Nebraska</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.nebraska.edu/about</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://its.nebraska.edu/policies-processes/idm-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="284" xml:lang="en">https://fed.nebraska.edu/idp/images/un_master_bk_incommon.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1219966619822435119318358797494726014651444876143, expires on Fri Nov 23 20:20:22 2035 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fed.nebraska.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fed.nebraska.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fed.nebraska.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fed.nebraska.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Nebraska</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Nebraska</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nebraska.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Team</GivenName>
+ <EmailAddress>its-sec-iam@nebraska.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Team</GivenName>
+ <EmailAddress>its-sec-iam@nebraska.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IAM Team</GivenName>
+ <EmailAddress>its-sec-iam@nebraska.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ITS Security</GivenName>
+ <EmailAddress>ITS-Sec@nebraska.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nu-sandbox.oneramp.com/Shibboleth.sso">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nu-sandbox.oneramp.com/login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Bolero Sandbox - University of Nebraska</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.bolerois.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.bolerois.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="95" width="200" xml:lang="en">https://www.oneramp.com/onerampLogo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 606381495744831106520333095341476928065738389652, expires on Thu Mar 8 21:11:40 2029 GMT -->
+ <ds:X509Certificate>
+MIID/zCCAmegAwIBAgIUajcWMLphJY55SUVNbFbujkhUOJQwDQYJKoZIhvcNAQEL
+BQAwGjEYMBYGA1UEAxMPd2luLWY4Njl0cnI2Z3FtMB4XDTE5MDMxMTIxMTE0MFoX
+DTI5MDMwODIxMTE0MFowGjEYMBYGA1UEAxMPd2luLWY4Njl0cnI2Z3FtMIIBojAN
+BgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEA30+t6UiW5vQvMBG0JKmLo+Tk7+5Z
+p+FDyOT8Lr0WEK4ALZQeZ+q5CuU/th9EA9lFyKJvVpBLleKVD/j4vbcivLFO6pgD
+uxCphE3VWzO+LW82hxVHt/ucNElr3DTVZQk/Xx2G859w44TOHm+mEQXdrOXAlq2c
+iK0YZIeWzF6Dyr1cnclmo/83audFacnE/BevG7Kzb0/3ga95qMVlZngCYioZXOGF
+z1i221vmbPkpeVAVc74JNrnV/okNExC+abHln55PHozFbFkQGO8lN0lZMcyj0li3
+7UWMv2Fp/tGIYYH5XKlWJxAeO13wTm7LdCvwzTgNKXf/Pb3y8SaDLz0Vx29Op8WS
+QhAAKlpb+O9DBH0hPPFrVl5VbUrL2awmUdwS6MbNZF6IDKSWtF59ER1f7mOJEuMG
+9pOXRkTTljxtqXmn4StltxYKroItw3R3XWEf/8/CebpyAIH5RyjSEInYJS4KHxF/
+G8F+dLcX7pjcAfVUPYvfqYp2FgL8ajg6NxiJAgMBAAGjPTA7MBoGA1UdEQQTMBGC
+D3dpbi1mODY5dHJyNmdxbTAdBgNVHQ4EFgQUmEMPxH+bhIMi5p4yuW1rMo5iGlkw
+DQYJKoZIhvcNAQELBQADggGBADeKT1UMdPdRSn6MDOx6bJKvbNdcZwteL0lFp6pN
+fp6A0/7e/vV5DoQOpDRFDM7v+pcNJXkedOxsjylk2CaPAdTwVakgTlFb4AozoQsk
+rgJT6JNhf80AEtuQYJhqnmM8gBHHhaApy7ViBlKq6G/vwaybG9XHkliG2xhp61KW
+ahlWKQbKHtHtfjEyC+CXXxld52OEwj5hcCy3n0S/atTSxrq4MYg8pPyDvKtP59zd
+LxMar89BL0RqlLHrqXwkZT4v8xoSNNVonWmXMK9gHDw0FaQKzXloC9l2XiEJwkxW
+Ed6EsTM3lmidVPva6cG8l8X3MKuzffxdVGzzRbqFrX4+VyVaLmvsZOYrmfsqv8SE
+5Voqy9y/8RVBPD60kx5G7hn/E5Reurw9/FHtP7gY0to+Citcpbum3So3LflHTuiJ
+rN0h24wYr5i9QSjn/vXsGqEQfpcNGsrNY53x9BvVuNizWb6sn0PFfeStcCDX4f0H
+nc1j8NRuKbeVzmBdwW7l4lAF4Q==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nu-sandbox.oneramp.com/Shibboleth.sso/Logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nu-sandbox.oneramp.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Nebraska</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Nebraska</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nebraska.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bolero Admin</GivenName>
+ <EmailAddress>admin@bolerois.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Bolero Admin</GivenName>
+ <EmailAddress>admin@bolerois.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Bolero Admin</GivenName>
+ <EmailAddress>admin@bolerois.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Bolero Admin</GivenName>
+ <EmailAddress>admin@bolerois.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of North Carolina At Charlotte -->
+<EntityDescriptor entityID="https://webauth.uncc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://webauth.uncc.edu/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uncc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of North Carolina At Charlotte</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity provider for University of North Carolina at Charlotte.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://webauth.uncc.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://legal.uncc.edu/policies/website-network-use-policies/privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="350" xml:lang="en">https://webauth.uncc.edu/assets/images/uncc_fed_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 113204027207295475498681028730445772540671949076, expires on Sat May 6 17:41:42 2034 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.uncc.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.uncc.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://webauth.uncc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.uncc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.uncc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webauth.uncc.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of North Carolina At Charlotte</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of North Carolina At Charlotte</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uncc.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>IT Service Desk</GivenName>
+ <EmailAddress>help@uncc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Web Services</GivenName>
+ <EmailAddress>WebServices-group@uncc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Web Services</GivenName>
+ <EmailAddress>WebServices-group@uncc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Services</GivenName>
+ <EmailAddress>Security-group@uncc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Columbia College -->
+<EntityDescriptor entityID="https://sso.ccis.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.ccis.edu/offices/technologyservices/support.aspx" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ccis.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Columbia College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Columbia College of Missouri</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ccis.edu/policies/privacy.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="145" width="495" xml:lang="en">https://sso.ccis.edu/idp/images/cc-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1031597344131244443673290158427120034116174172586, expires on Mon Aug 31 19:57:21 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.ccis.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.ccis.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Columbia College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Columbia College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ccis.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Technology Solutions Center</GivenName>
+ <EmailAddress>cchelpdesk@ccis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Technology Services</GivenName>
+ <EmailAddress>cchelpdesk@ccis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Technology Services</GivenName>
+ <EmailAddress>cchelpdesk@ccis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>jryoungquist@ccis.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- 12Twenty Inc. -->
+<EntityDescriptor entityID="https://sp.12twenty.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sp.12twenty.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">12Twenty SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Service Provider 12twenty Production Site</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.12twenty.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.12twenty.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="561" width="1719" xml:lang="en">https://s3.amazonaws.com/12twenty-public/12twenty-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12506105611613972447, expires on Wed Oct 25 02:05:56 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp.12twenty.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sp.12twenty.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp.12twenty.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp.12twenty.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sp.12twenty.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sp.12twenty.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">12Twenty SP</ServiceName>
+ <ServiceDescription xml:lang="en">Service Provider 12twenty Production Site</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">12Twenty Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">12Twenty Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.12twenty.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>General Support</GivenName>
+ <EmailAddress>support@12twenty.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kevin Chu</GivenName>
+ <EmailAddress>kevin.chu@12twenty.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kevin Chu</GivenName>
+ <EmailAddress>kevin.chu@12twenty.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kevin Chu</GivenName>
+ <EmailAddress>kevin.chu@12twenty.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.stage-12twenty.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sp.stage-12twenty.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">12Twenty Stage SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Service Provider 12twenty Staging Site</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.12twenty.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.12twenty.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="561" width="1719" xml:lang="en">https://s3.amazonaws.com/12twenty-public/12twenty-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12506105611613972447, expires on Wed Oct 25 02:05:56 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp.stage-12twenty.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sp.stage-12twenty.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp.stage-12twenty.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp.stage-12twenty.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sp.stage-12twenty.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sp.stage-12twenty.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">12Twenty Stage SP</ServiceName>
+ <ServiceDescription xml:lang="en">Service Provider 12twenty Staging Site</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">12Twenty Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">12Twenty Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.12twenty.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kevin Chu</GivenName>
+ <EmailAddress>kevin.chu@12twenty.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kevin Chu</GivenName>
+ <EmailAddress>kevin.chu@12twenty.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kevin Chu</GivenName>
+ <EmailAddress>kevin.chu@12twenty.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@12twenty.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sso.qa-12twenty.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">12Twenty SP - QA</mdui:DisplayName>
+ <mdui:Description xml:lang="en">12Twenty Service Provider for QA environment</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.12twenty.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.12twenty.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="561" width="1719" xml:lang="en">https://s3.amazonaws.com/12twenty-public/12twenty-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12506105611613972447, expires on Wed Oct 25 02:05:56 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.qa-12twenty.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.qa-12twenty.com/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sso.qa-12twenty.com/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sso.qa-12twenty.com/Shibboleth.sso/SAML/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sso.qa-12twenty.com/Shibboleth.sso/SAML/Artifact" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.qa-12twenty.com/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">12Twenty SP - QA</ServiceName>
+ <ServiceDescription xml:lang="en">12Twenty Service Provider for QA environment</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">12Twenty Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">12Twenty Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.12twenty.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kevin Chu</GivenName>
+ <EmailAddress>kevin.chu@12twenty.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kevin Chu</GivenName>
+ <EmailAddress>kevin.chu@12twenty.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kevin Chu</GivenName>
+ <EmailAddress>kevin.chu@12twenty.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@12twenty.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Wyoming -->
+<EntityDescriptor entityID="https://shibboleth.uwyo.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://shibboleth.uwyo.edu/shib-error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwyo.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Wyoming</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Production IdP for UWYO domain</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://uwyo.teamdynamix.com/TDClient/KB/ArticleDet?ID=54353</mdui:PrivacyStatementURL>
+ <mdui:Logo height="253" width="88" xml:lang="en">https://shibboleth.uwyo.edu/shib-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1245795550534172598096618835880794303762586332334, expires on Sun Feb 15 21:51:30 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.uwyo.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.uwyo.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.uwyo.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.uwyo.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.uwyo.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwyo.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1245795550534172598096618835880794303762586332334, expires on Sun Feb 15 21:51:30 2032 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.uwyo.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wyoming</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wyoming</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uwyo.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Tom Wilson</GivenName>
+ <EmailAddress>thomas.wilson@uwyo.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Matt Kelly</GivenName>
+ <EmailAddress>mkelly@uwyo.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Tom Wilson</GivenName>
+ <EmailAddress>thomas.wilson@uwyo.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jen Chavez</GivenName>
+ <EmailAddress>jchavez@uwyo.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mark VanScoyk</GivenName>
+ <EmailAddress>markiev@uwyo.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Merchant Preservation Services -->
+<EntityDescriptor entityID="https://thelonious.campusguard.com/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">campusguard.com</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Merchant Preservation Services</mdui:DisplayName>
+ <mdui:Description xml:lang="en">CampusGuard IdP</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://portal.campusguard.com/public/CampusGuardPrivacyPolicy2018.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="17" width="229" xml:lang="en">https://portal.campusguard.com/images/company_name.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 735163878970539893493540247687033862858054262770, expires on Mon Oct 17 01:13:32 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://thelonious.campusguard.com:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://thelonious.campusguard.com:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://thelonious.campusguard.com/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://thelonious.campusguard.com/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://thelonious.campusguard.com/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">campusguard.com</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 735163878970539893493540247687033862858054262770, expires on Mon Oct 17 01:13:32 2033 GMT -->
+ <ds:X509Certificate>
+MIIDVDCCAjygAwIBAgIVAIDF43Kla6YOJ6zTgKwSAHivI1/yMA0GCSqGSIb3DQEB
+BQUAMCUxIzAhBgNVBAMTGnRoZWxvbmlvdXMuY2FtcHVzZ3VhcmQuY29tMB4XDTEz
+MTAxNzAxMTMzMloXDTMzMTAxNzAxMTMzMlowJTEjMCEGA1UEAxMadGhlbG9uaW91
+cy5jYW1wdXNndWFyZC5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
+AQCrMSOBfEYG2Xnsl4/iwRYQ0YbApLZpHg6tY0ccc6VFBiGPNeO9rciEx/1ZcS7G
+u2tEOTDUA4wZGcmSoBVczCvfj5RJpQ4BlaB4ocR/7cRhLHc5A7uNGKLMpJdxVQ3B
+pTYvDNtt+4LJgIFx10g243P+ETdE5FtGsZlg6vxYeTd7ur6QQBxAURhImVJIoizy
+6pCenoHo0PHnLwMfcsloKrujTLE60uvWBVlEQqFJVXvlNzQFiZazIV+IQXeemjj1
+w9D2UQZsfVqWzPDjMWLLvvUf2OM3iHK0yXHqTcexQ7v6yfHklvdqM0d/W9jMTMGV
++OWerUDmmQovSqLPO3DZhQVLAgMBAAGjezB5MFgGA1UdEQRRME+CGnRoZWxvbmlv
+dXMuY2FtcHVzZ3VhcmQuY29thjFodHRwczovL3RoZWxvbmlvdXMuY2FtcHVzZ3Vh
+cmQuY29tL2lkcC9zaGliYm9sZXRoMB0GA1UdDgQWBBSpKJ+Pw49nRtlOAtSuBSzd
+D+qdJTANBgkqhkiG9w0BAQUFAAOCAQEAQE/BwtWrprio4XKMON7Q5ru0h+vmJWj5
+9Am0I+SGMPQQJL/9F5c9YpRPoZ4Q84KISa7zwL6CNYcVOvSf+uGqPeCDQYkgaKBu
+llxo2FVZ3CF6wQ+HsDGozLz4//mr9CeFdYEb1IPFFmpWYFLk4IsOnqRbymUL4g8z
+ag0lU0mXOukNKI3DwuVXunDCBmBEricdSjKS6cmrUxjaokpHANW/5810SxFQFCcn
+4x37ocZoks4+689UIXJjd9Zi61zHN6qTjF+nIyfa1DMrysZXiUa2olTJ3AT5sZbF
+bMCG+OEJspI9w0kKBGO/CLEmA4cTUzyhIlndmQfPj2JhyRjIHujmVQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://thelonious.campusguard.com:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Merchant Preservation Services</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Merchant Preservation Services</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.campusguard.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Edward Ko</GivenName>
+ <EmailAddress>edko@campusguard.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Noyes</GivenName>
+ <EmailAddress>jnoyes@campusguard.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>CampusGuard Help</GivenName>
+ <EmailAddress>help@campusguard.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>CampusGuard Security</GivenName>
+ <EmailAddress>pentester@campusguard.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Houston -->
+<EntityDescriptor entityID="https://fedidp.uh.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://ssl.uh.edu/password" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uh.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Houston</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Metropolitan campus with the feel of a large traditional campus, located in Houston, TX, the 4th largest city in the U.S.—and growing</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.uh.edu/infotech/policies/Incommon%20Federation%20POP.pdf</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.uh.edu/policies/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="461" xml:lang="en">https://ssl.uh.edu/ecomm/images/uh_primary.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1049052264937531825499479668788891484205035861524, expires on Fri Feb 24 21:42:00 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.uh.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.uh.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Houston</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Houston</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uh.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keith Martin</GivenName>
+ <EmailAddress>KMartin@central.uh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Sonny Nguyen</GivenName>
+ <EmailAddress>snguye2@central.uh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Sonny Nguyen</GivenName>
+ <EmailAddress>snguye2@central.uh.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brian Walker</GivenName>
+ <EmailAddress>bwalker@central.uh.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Mott Community College -->
+<EntityDescriptor entityID="https://junebug2.mcc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mcc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Mott Community College</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.mcc.edu/about/about_index.shtml</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.mcc.edu/policies/mcc_ferpa.shtml</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="40" xml:lang="en">https://www.mcc.edu/_resources/mcc/mott-logo-footer.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9326379523536561115, expires on Fri Mar 26 18:38:05 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://junebug2.mcc.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://junebug2.mcc.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://junebug2.mcc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://junebug2.mcc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://junebug2.mcc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://junebug2.mcc.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mcc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9326379523536561115, expires on Fri Mar 26 18:38:05 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://junebug2.mcc.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://junebug2.mcc.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Mott Community College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Mott Community College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.mcc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Randy Schapel</GivenName>
+ <EmailAddress>randy.schapel@mcc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Sheila Grennay</GivenName>
+ <EmailAddress>sheila.grennay@mcc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Marc Smith</GivenName>
+ <EmailAddress>marc.smith@mcc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Marc Smith</GivenName>
+ <EmailAddress>marc.smith@mcc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Pima County Community College District -->
+<EntityDescriptor entityID="https://idp.pima.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pima.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Pima County Community College District</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.pima.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.pima.edu/privacy-policy/index.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="60" xml:lang="en">https://pima.edu/_external/pima-logo-for-incommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 816765016921844753079821135375833149598146544758, expires on Sun Dec 11 16:17:11 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.pima.edu:443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.pima.edu:443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.pima.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.pima.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.pima.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pima.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 816765016921844753079821135375833149598146544758, expires on Sun Dec 11 16:17:11 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.pima.edu:443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pima County Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pima County Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.pima.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Erik Jerue</GivenName>
+ <EmailAddress>ejerue@pima.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chris Bonhorst</GivenName>
+ <EmailAddress>cbonhorst@pima.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Will McCullen</GivenName>
+ <EmailAddress>IT-Security@pima.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Bradley Mathis</GivenName>
+ <EmailAddress>bmathis@pima.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Central Washington University -->
+<EntityDescriptor entityID="https://idp.cwu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cwu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Central Washington University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cwu.edu/privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="153" xml:lang="en">https://idp.cwu.edu/images/cwulogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1435739377046276219679118462953335330159119852649, expires on Fri Dec 9 17:41:21 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.cwu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.cwu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.cwu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.cwu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.cwu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.cwu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cwu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1435739377046276219679118462953335330159119852649, expires on Fri Dec 9 17:41:21 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.cwu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Central Washington University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Central Washington University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cwu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>CWU Identity Provider Administrators</GivenName>
+ <EmailAddress>idp-admins@networks.cwu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IDP Admin Role Account</GivenName>
+ <EmailAddress>idp-admin@cwu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IDP Security Role Account</GivenName>
+ <EmailAddress>idp-security@cwu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Virginia Polytechnic Institute and State University -->
+<EntityDescriptor entityID="https://shib-pprd.middleware.vt.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login-pprd.middleware.vt.edu/support.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">vt.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">zTEST_VTIdP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">TEST Virginia Tech IdP</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://vt.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://vt.edu/about/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="54" width="102" xml:lang="en">https://www.assets.cms.vt.edu/images/Standard/Standard_RGB.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12058013731249389921, expires on Mon Mar 30 17:54:51 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login-pprd.middleware.vt.edu:10443/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login-pprd.middleware.vt.edu/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login-pprd.middleware.vt.edu/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login-pprd.middleware.vt.edu:10443/profile/SAML2/SOAP/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login-pprd.middleware.vt.edu/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login-pprd.middleware.vt.edu/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login-pprd.middleware.vt.edu/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login-pprd.middleware.vt.edu/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login-pprd.middleware.vt.edu:10443/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">vt.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12244707553928901646, expires on Mon Mar 30 17:54:28 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login-pprd.middleware.vt.edu:10443/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login-pprd.middleware.vt.edu:10443/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Virginia Polytechnic Institute and State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">zTEST_VTIdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.vt.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Marvin Addison</GivenName>
+ <EmailAddress>serac@vt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Daniel Fisher</GivenName>
+ <EmailAddress>dfisher@vt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Marvin Addison</GivenName>
+ <EmailAddress>serac@vt.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Milwaukee School of Engineering -->
+<EntityDescriptor entityID="http://adfs.msoe.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://helpdesk.msoe.edu/support/solutions/articles/1000035651" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">msoe.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Milwaukee School of Engineering</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.msoe.edu/about-msoe/who-we-are/consumer-information-and-policies/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="288" width="236" xml:lang="en">https://www.msoe.edu/msoeassets/images/msoe-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 74517529041631852131120343211202637714, expires on Sun May 30 18:56:49 2021 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adfs.msoe.edu/adfs/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://adfs.msoe.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adfs.msoe.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://adfs.msoe.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Milwaukee School of Engineering</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Milwaukee School of Engineering</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.msoe.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Sysadmin</GivenName>
+ <EmailAddress>sysadmin@msoe.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Network Applications</GivenName>
+ <EmailAddress>netapps@msoe.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Help Desk</GivenName>
+ <EmailAddress>helpdesk@msoe.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sysadmin</GivenName>
+ <EmailAddress>sysadmin@msoe.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Wisconsin - Stout -->
+<EntityDescriptor entityID="https://smidp.uwstout.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwstout.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Wisconsin - Stout</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uwstout.edu/privacy-policy-uw-stout-website</mdui:PrivacyStatementURL>
+ <mdui:Logo height="28" width="209" xml:lang="en">https://smidp.uwstout.edu/assets/img/branding/uws-logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14051722269671877780, expires on Tue Apr 14 14:03:35 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10459629447117462197, expires on Wed Jan 6 14:51:20 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://smidp.uwstout.edu/SAML/ArtifactResponder.aspx" index="1"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://smidp.uwstout.edu/SAML/SSOService.aspx?binding=redirect"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://smidp.uwstout.edu/SAML/SSOService.aspx?binding=post"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin - Stout</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin - Stout</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uwstout.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Darren Hoyland</GivenName>
+ <EmailAddress>tnst@uwstout.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Darren Hoyland</GivenName>
+ <EmailAddress>tnst@uwstout.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Darren Hoyland</GivenName>
+ <EmailAddress>tnst@uwstout.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- SurveyMonkey Canada Inc. -->
+<EntityDescriptor entityID="https://e3.myreviewroom.com/saml2/metadata/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">FluidReview Enterprise</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.surveymonkey.com/mp/legal/privacy-basics-enterprise/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="83" width="304" xml:lang="en">https://smapply.io/media/img/smapply/apply.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16032089801404924215, expires on Thu Dec 17 21:22:30 2026 GMT -->
+ <ds:X509Certificate>
+MIIFtzCCA5+gAwIBAgIJAN59bLuT50E3MA0GCSqGSIb3DQEBCwUAMHIxCzAJBgNV
+BAYTAkNBMQswCQYDVQQIDAJPTjEVMBMGA1UECgwMU3VydmV5TW9ua2V5MRgwFgYD
+VQQDDA9mbHVpZHJldmlldy5jb20xJTAjBgkqhkiG9w0BCQEWFm5hdGViQHN1cnZl
+eW1vbmtleS5jb20wHhcNMTYxMjE5MjEyMjMwWhcNMjYxMjE3MjEyMjMwWjByMQsw
+CQYDVQQGEwJDQTELMAkGA1UECAwCT04xFTATBgNVBAoMDFN1cnZleU1vbmtleTEY
+MBYGA1UEAwwPZmx1aWRyZXZpZXcuY29tMSUwIwYJKoZIhvcNAQkBFhZuYXRlYkBz
+dXJ2ZXltb25rZXkuY29tMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA
+xm5fVqs9nWb+Jt+NV+MbZvyOstF5aBjmruRpAlD8mnxfc5KREuVGbCnuaxdqRoVT
+rylzWpPE53/aIAgkhNYLZy+0TPUBsigoH0NFX7YBjvZXEhMzAqthUOa2vv1KeiSl
+hT19xjE5LdtH5mPxDTVYvAG3E0mujAVy6P6cm0CrmqUoUHnxvf15WZW05IqnMnXL
+DVJVpJGVNYHXYL1/eLbw1eIFlAqbjqFMR8r10x0CviU/sFYDESRP76kve94Anbqa
++KAyM252MSc/rOK6xyj8Z3ydCOID/gEC4Ztx+ZOROyyUaY6I2YxfznOlw1hjaRzI
+DxgbPytSEUi+EcNO1ZbITaWkyeBXdNdA+8WnnLXPiNCEZatheVo7pngHh6lo1gY2
+TZsNf083YMsNFmn5MH1I7FnUMIg5KCgnYLLfBoZMZ8GfYFqUXHfE917XCqOoEVpE
+VlITveeS0xT9mNIhmVhM7preuSsxaAuQU61JIEbdY43PieLpRJgBt42cnaCvhZXH
+sCz/eZhq7iexT4grX7BqxHIi/Szw0WUfw6IyMe8uq4a/lJG+4aZF1GcuOIA/6/6p
+eLdrW+7EZf3jfgG21zXQjqQYRUA7r/FKwEGInhI9Be7IXVgaFQyWWgA1UNlBih5L
+qoJa0EyDSBqYx1494Xe+HT1RgY9R+quPJKE1nMe2/YsCAwEAAaNQME4wHQYDVR0O
+BBYEFOQvC/c1G6SkGlexl2O0nXKRU8rQMB8GA1UdIwQYMBaAFOQvC/c1G6SkGlex
+l2O0nXKRU8rQMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggIBACPGl5Bq
+UVsAAM3G880tEqe2NHtW2w21pwDNtY/8/fEEvPdx74bAUstUL8EzXRc4xmLf9/sp
+ZSrdwjRUZ0et5fX3K9p72umtwfVM44nvWeU+UoQY0V63aB4SYADXQo+gwyBfflWh
+RZJBtvg+Sv6bZ9CZdsJ3dmL38Z3V3gHcGaKk9P7dRb9keoJCYF1F8t23eJem4BdE
+K8B0DcWBMUQcOdcdselr3PZHzLbjE1AuLaQVfMTksVo1+R/cd1Nhawh9HhY0F7sq
+W6Uiw6Bzu4UNdz6WcWVzNsIvFK2lMqYwfLy7HZXYrDCJ5V57cBAvQ7hhqF8+aNu/
+gGWgUp7CVAEhGdknWm6UkL3UMQIotm8CtW7I+drAbeolUIJKMA347VNs+JDC7wqK
+JJ3OLdKkStUsEShqqcqtEoNMd1d3gm9MoRPONn4rIiaenVqmOWcVIAYoBTRcAWbW
+gyr0xesjJ9DIgGOvwxmJJi4EjnLuQXEiCoUn9Z3zoy6v2pcDk/R72WMXRjERfr2M
+FCQ7VPjIdYY4heS9O5cZr9nse7jRMIc+yhr28DzNIffBOBf7SOhGHYezg8vcT4Vk
+SViYggxIFPDNu6utUAA1hY3Td1P641csJK6rbASwoQy1aN+nC1KrTQNcfhM0FroP
+CWgYCTcgXwT1338mlrKXzuxmteFJGW5uxs46
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://e3.myreviewroom.com/saml2/ls/"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://e3.myreviewroom.com/saml2/acs/" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">FluidReview Enterprise</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SurveyMonkey Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SurveyMonkey Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.surveymonkey.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Nate Beacham</GivenName>
+ <EmailAddress>nateb@surveymonkey.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Nate Beacham</GivenName>
+ <EmailAddress>nateb@surveymonkey.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nate Beacham</GivenName>
+ <EmailAddress>nateb@surveymonkey.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://myreviewroom.com/saml2/metadata/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">FluidReview</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.surveymonkey.com/mp/legal/privacy-basics-enterprise/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="83" width="304" xml:lang="en">https://smapply.io/media/img/smapply/apply.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16032089801404924215, expires on Thu Dec 17 21:22:30 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myreviewroom.com/saml2/ls/"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myreviewroom.com/saml2/acs/" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">FluidReview</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SurveyMonkey Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SurveyMonkey Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.surveymonkey.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Nate Beacham</GivenName>
+ <EmailAddress>nateb@surveymonkey.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Nate Beacham</GivenName>
+ <EmailAddress>nateb@surveymonkey.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nate Beacham</GivenName>
+ <EmailAddress>nateb@surveymonkey.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Full Sail University -->
+<EntityDescriptor entityID="https://wpkfl-shibidp.fullsail.com/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fullsail.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Full Sail University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Full Sail University Checkpoint SSO</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.fullsail.edu/policies-and-guidelines/your-privacy-rights</mdui:PrivacyStatementURL>
+ <mdui:Logo height="143" width="200" xml:lang="en">https://checkpoint.fullsail.edu/idp/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 789421629198966645184246243692758734558860925928, expires on Sat Oct 29 17:47:48 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://checkpoint.fullsail.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://checkpoint.fullsail.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Full Sail University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Full Sail University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.fullsail.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Zach Segal</GivenName>
+ <EmailAddress>zsegal@fullsail.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chris Johnson</GivenName>
+ <EmailAddress>cjohnson@fullsail.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mark Gilbert</GivenName>
+ <EmailAddress>markg@fullsail.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Zach Segal</GivenName>
+ <EmailAddress>zsegal@fullsail.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Zach Segal</GivenName>
+ <EmailAddress>zsegal@fullsail.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chris Johnson</GivenName>
+ <EmailAddress>cjohnson@fullsail.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Alabama in Huntsville -->
+<EntityDescriptor entityID="https://sso.uah.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uah.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Alabama in Huntsville</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Alabama in Huntsville</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://uah.edusupportcenter.com/sims/helpcenter/layoutSix/SelfhelpArticleView.seam?source=Selfhelp&amp;amp;parature_id=8572-8231-5478&amp;amp;inst_name=uah&amp;amp;cid=16749</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.uah.edu/oit/policies/computer-use</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="120" xml:lang="en">https://sso.uah.edu/cas/images/UAH_4c_blue_small.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 780649741867640667919938362705054357828680007693, expires on Mon Apr 25 20:51:02 2033 GMT -->
+ <ds:X509Certificate>
+MIIDGDCCAgCgAwIBAgIVAIi9i4vXOYWFrAIWOwFcSA6H38ANMA0GCSqGSIb3DQEB
+BQUAMBYxFDASBgNVBAMTC3Nzby51YWguZWR1MB4XDTEzMDQyNTIwNTEwMloXDTMz
+MDQyNTIwNTEwMlowFjEUMBIGA1UEAxMLc3NvLnVhaC5lZHUwggEiMA0GCSqGSIb3
+DQEBAQUAA4IBDwAwggEKAoIBAQCjB9njLDs75zuxZkase3vquRjujMbQ37D4md16
+3miA88AGPR/hZ+J1Jfuc9uozGHJmO8++w7rpWEzSjKlIm7w9HX0uz/yhrLdLGDYK
+aQqcljr1qDqmKB4W2uSvWj0Jd4wR+AMkJAwGpgdm0/PcgjNqfu8+cFg+kGmej9bO
+Ht8NyzdhOGWbEhjGYLtQ9bYf1qZc8xoL+oAE1mCZ5O6ffO/P807hmF6c8jnCK8c2
+VQ5YHHV5Wzv2J63lNDbSzrbRFiLO8/mXZtDqTLgs0ZPSGaUjOagIjcv5E2hPB2AV
+xZ0z2sd9uqMOdkQXMQWfEXeeT+djIxlozqO+j3QkOJx5uJA9AgMBAAGjXTBbMDoG
+A1UdEQQzMDGCC3Nzby51YWguZWR1hiJodHRwczovL3Nzby51YWguZWR1L2lkcC9z
+aGliYm9sZXRoMB0GA1UdDgQWBBTr1s8Z0jpuey7jYP14ICmRs17xuzANBgkqhkiG
+9w0BAQUFAAOCAQEAljsJKhHYgBfOiuqCWFKtiI6B1hMR+O+WYPIU7FKZJZrhahX7
+i6zfk/p2LMpMKDvHX61w4rS493MJ8p2iJMaYWr7MI42vhkuzm1gHquH0FAydMvOu
+DG57qCLosevGU8c/3yGXqDbLiXf5aqMerP1j/7WgS+v+BuLvQmwutXD2+jAlWxNS
+MLt/DOZ9iEoSSQ6OQPcrTF4wUGG7Ni4xEOT7Jm5ahUo3t4IuCaD0U8PwlLC2PS3c
+KJVYNsyf9Jo0eapWbBe5PJmeu3ZwiOVuDkk0PYn6Y2bu7XDYeyYaK0/zKD1erhoQ
+zGnfCmQ4c7IwxqAs5KghmtZqrZRjTWvX7Da3wQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.uah.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.uah.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.uah.edu/cas/logout.jsp"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sso.uah.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.uah.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.uah.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uah.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 780649741867640667919938362705054357828680007693, expires on Mon Apr 25 20:51:02 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.uah.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Alabama in Huntsville</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Alabama in Huntsville</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uah.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>William Eubank</GivenName>
+ <EmailAddress>william.eubank@uah.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jill Casey</GivenName>
+ <EmailAddress>jill.casey@uah.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>CISO</GivenName>
+ <EmailAddress>ciso@uah.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>William Eubank</GivenName>
+ <EmailAddress>william.eubank@uah.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Drew University -->
+<EntityDescriptor entityID="https://idp.drew.edu/nidp/saml2/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">drew.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Drew University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.drew.edu/university-technology/policies/network-user-agreement/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="171" xml:lang="en">https://www.drew.edu/wp-content/themes/drew-v8/images/drew.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 4098350723398510169578658294200661139623488453999177974608018729347523437428805817795, expires on Sat Jan 27 02:51:35 2024 GMT -->
+ <ds:X509Certificate>
+MIIFcDCCBFigAwIBAgIkAhwR/6UpY1+NpltpnhnZa/x7S0A+G7lu0QhsucXUAgIiSVXDMA0GCSqG
+SIb3DQEBBQUAMDIxGjAYBgNVBAsTEU9yZ2FuaXphdGlvbmFsIENBMRQwEgYDVQQKFAtmcmlkZ2Vf
+dHJlZTAeFw0xNTEwMjcwMTUxMzVaFw0yNDAxMjcwMjUxMzVaMH0xFTATBgNVBAMTDGlkcC5kcmV3
+LmVkdTEeMBwGA1UECxMVVW5pdmVyc2l0eSBUZWNobm9sb2d5MRgwFgYDVQQKEw9EcmV3IFVuaXZl
+cnNpdHkxEDAOBgNVBAcTB01hZGlzb24xCzAJBgNVBAgTAk5KMQswCQYDVQQGEwJVUzCCASIwDQYJ
+KoZIhvcNAQEBBQADggEPADCCAQoCggEBAKZOAXI9sEgr11k23oOv59ipULZ3YmHhFSMHBTT2WM4v
+WSaIPoo/qO1jCHzSYQGYCMgqU5Wez9KMWWDny4suz6/IbwY/IjG/nNoJnJknXfgckikIpQE8RYIH
+yGL2TgnSM2SbMDSpFdHvXrgoQaWOxy7GhZxVkZk8LqIRUlitkzkgncqa/RgrQJwUTFz1LYxI+3DW
+hqpxLT3SP76xG1LaWiKJa+hbQXV700W3XOMSo4JR9xaz6XtmkswslLIqE1T3tOTZHQGAKD/Ksy7s
+ETdgyAZw7d6jBs/qn4i2Ckn1oPsJAWMm1qywk3aehsH5u/VlO2Iey+JHIwqgygnPqXkjB6sCAwEA
+AaOCAiEwggIdMB0GA1UdDgQWBBT9LlVNRNY5uA1ZRSyL0AQ9L7kPOjAfBgNVHSMEGDAWgBSeeJux
+dKPExgACWHnJ4kSeQU068TALBgNVHQ8EBAMCBLAwggHMBgtghkgBhvg3AQkEAQSCAbswggG3BAIB
+AAEB/xMdTm92ZWxsIFNlY3VyaXR5IEF0dHJpYnV0ZSh0bSkWQ2h0dHA6Ly9kZXZlbG9wZXIubm92
+ZWxsLmNvbS9yZXBvc2l0b3J5L2F0dHJpYnV0ZXMvY2VydGF0dHJzX3YxMC5odG0wggFIoBoBAQAw
+CDAGAgEBAgFGMAgwBgIBAQIBCgIBaaEaAQEAMAgwBgIBAQIBADAIMAYCAQECAQACAQCiBgIBFwEB
+/6OCAQSgWAIBAgICAP8CAQADDQCAAAAAAAAAAAAAAAADCQCAAAAAAAAAADAYMBACAQACCH//////
+////AQEAAgQG8N9IMBgwEAIBAAIIf/////////8BAQACBAbw30ihWAIBAgICAP8CAQADDQBAAAAA
+AAAAAAAAAAADCQBAAAAAAAAAADAYMBACAQACCH//////////AQEAAgQR/6UpMBgwEAIBAAIIf///
+//////8BAQACBBH/pSmiTjBMAgECAgEAAgIA/wMNAIAAAAAAAAAAAAAAAAMJAIAAAAAAAAAAMBIw
+EAIBAAIIf/////////8BAQAwEjAQAgEAAgh//////////wEBADANBgkqhkiG9w0BAQUFAAOCAQEA
+Hzr+bV/7L4d9s0cDLL7m8RoqKO41olQONsEYhVCW7xS3DbZaO6qour0dNAtjqxFvhd5wO3MvCyvC
+iLXNxJMzPhbQFmZJQ14jZGoW7s876YdLGlj86p4QxUoY+m5cR+vOnf6a3yAU7v1Z/n1sjs3wPplz
+7UoAwC49BUkCfWK1Ko9Gj3yKv0IrxlGVsueiK7wfOWRG3stofjXwH/kVmae+i6z/VQwEfKeq2E48
+H7xmsk1TgDb04z+fo4dPJo31XGKXgD45/6WqhFC1+JJ625C7Pv0X6vcbdOSaE9XeBlkRdB6twTwR
+KcA2ygevOdEnii3nfZPpOW5q6at9iJ8GNzCphQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.drew.edu/nidp/saml2/soap" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.drew.edu/nidp/saml2/slo"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.drew.edu/nidp/saml2/slo"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.drew.edu/nidp/saml2/sso"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.drew.edu/nidp/saml2/sso"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Drew University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Drew University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.drew.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Paul Coen</GivenName>
+ <EmailAddress>pcoen@drew.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Christopher Darrell</GivenName>
+ <EmailAddress>cdarrell@drew.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Paul Coen</GivenName>
+ <EmailAddress>pcoen@drew.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Paul Coen</GivenName>
+ <EmailAddress>pcoen@drew.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Claremont McKenna College -->
+<EntityDescriptor entityID="https://webauth.cmc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://webauth.cmc.edu/idp/error.jsp" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cmc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Claremont McKenna College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity Provider service for Claremont McKenna College.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cmc.edu/about/privacy-and-terms-of-use</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="150" xml:lang="en">https://www.cmc.edu/sites/all/themes/cmc/images/branding/CMCLogo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 677073427689002368692062096860744608709386045893, expires on Sun Sep 25 21:44:47 2033 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.cmc.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.cmc.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.cmc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.cmc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Claremont McKenna College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Claremont McKenna College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cmc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jeremy Whaley</GivenName>
+ <EmailAddress>jwhaley@cmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jeremy Whaley</GivenName>
+ <EmailAddress>jwhaley@cmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Jeremy Whaley</GivenName>
+ <EmailAddress>jwhaley@cmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeremy Whaley</GivenName>
+ <EmailAddress>jwhaley@cmc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Springshare -->
+<EntityDescriptor entityID="https://auth2.springyaws.com/saml/module.php/saml/sp/metadata.php/springy-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">springshare demo</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://springshare.com/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="183" xml:lang="en">https://libauth.com/static/springshare-incommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 96696455341597298313768693868026199333, expires on Sat Jan 12 23:59:59 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 597020675629015248331741964221431286, expires on Sun Mar 1 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth2.springyaws.com/saml/module.php/saml/sp/saml2-logout.php/springy-sp"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eu.libauth.com/saml/module.php/saml/sp/saml2-logout.php/springy-sp"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth2.springyaws.com/saml/module.php/saml/sp/saml2-acs.php/springy-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eu.libauth.com/saml/module.php/saml/sp/saml2-acs.php/springy-sp" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">springshare demo</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Springshare</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Springshare</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.springshare.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Sean Hannan</GivenName>
+ <EmailAddress>sean@springshare.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Slaven Zivkovic</GivenName>
+ <EmailAddress>slaven@springshare.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Satish Chandra</GivenName>
+ <EmailAddress>satish@springshare.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sean Hannan</GivenName>
+ <EmailAddress>sean@springshare.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://libauth.com/saml/module.php/saml/sp/metadata.php/springy-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Springshare LibApps</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Springshare's LibApps cloud platform helps libraries create and share content via LibGuides, manage bookings, events and calendars via LibCal, communicate with patrons and answer questions via LibAnswers, and analyze statistics and usage via LibAnalytics.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://springshare.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://springshare.com/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="183" xml:lang="en">https://libauth.com/static/springshare-incommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14825969706223604992, expires on Sat Feb 26 19:05:20 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://libauth.com/logout_complete.html"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://libauth.com/saml/module.php/saml/sp/saml2-acs.php/springy-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eu.libauth.com/saml/module.php/saml/sp/saml2-acs.php/springy-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ca.libauth.com/saml/module.php/saml/sp/saml2-acs.php/springy-sp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://au.libauth.com/saml/module.php/saml/sp/saml2-acs.php/springy-sp" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Springshare LibApps</ServiceName>
+ <ServiceDescription xml:lang="en">Springshare's LibApps cloud platform helps libraries create and share content via LibGuides, manage bookings, events and calendars via LibCal, communicate with patrons and answer questions via LibAnswers, and analyze statistics and usage via LibAnalytics.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Springshare</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Springshare</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.springshare.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Sean Hannan</GivenName>
+ <EmailAddress>sean@springshare.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Slaven Zivkovic</GivenName>
+ <EmailAddress>slaven@springshare.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Satish Chandra</GivenName>
+ <EmailAddress>satish@springshare.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sean Hannan</GivenName>
+ <EmailAddress>sean@springshare.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Montana State University - Bozeman -->
+<EntityDescriptor entityID="https://login.montana.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">montana.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">msubillings.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">msun.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">gfcmsu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Montana State University - Bozeman</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Montana State University InCommon Identity provider.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.montana.edu/uit/security/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="163" width="648" xml:lang="en">https://login.montana.edu/idp/images/MSU.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1323411984742501630848585486724514670866582628875, expires on Mon Oct 25 21:25:41 2032 GMT -->
+ <ds:X509Certificate>
+MIIDMDCCAhigAwIBAgIVAOfP2IewNMJIbSjlEL1iQlgWdmoLMA0GCSqGSIb3DQEB
+BQUAMBwxGjAYBgNVBAMTEWxvZ2luLm1vbnRhbmEuZWR1MB4XDTEyMTAyNTIxMjU0
+MVoXDTMyMTAyNTIxMjU0MVowHDEaMBgGA1UEAxMRbG9naW4ubW9udGFuYS5lZHUw
+ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDJbeGVsOWY+Ii1zzNkJZMs
+uzZQQMpWobWgJAmfk7qy1qS+bBXNAKC+8U3ilHsRS/CCUZAKBf9aXXL1/BAuLwU3
+TBICswpfwJ0TKjjrvYuCEwoVI6nmnzc3oo17CacvjkuOKq2vAPw9t9/7mVNs7IxK
+TYK3Z02LD/KnrFM98HHy4jGYROsDRqPKb/znz3ZkwcV9AV4BoAxnaAmbr6xMS2di
+cRYqZnT38rsoAD9JXopPtC6ipWCVX6fhIVFVPA/nIULZ3z+PKwZVYxWlyy7pCsu5
+qLGP77EcE1FJvVrRasN+G9gLm6pJmehYxmn3WQWtXqHa6Wv91HdTCDQ7S4rnf5d9
+AgMBAAGjaTBnMEYGA1UdEQQ/MD2CEWxvZ2luLm1vbnRhbmEuZWR1hihodHRwczov
+L2xvZ2luLm1vbnRhbmEuZWR1L2lkcC9zaGliYm9sZXRoMB0GA1UdDgQWBBQCwE0i
+mErFyh6Mep7z5gF7aQWKqjANBgkqhkiG9w0BAQUFAAOCAQEATPtND9wTPCuh8iXW
+Y8/BkwHpRdqX6klfxIzIa8vj+SgX5/O0DBU232qUIrb11il274iCPRXIwjucjmaJ
+F/qx1G+9yvhx94kzymEYKqSTI9qrdGTgDigA8zAZ4LJY4O4Nyxzh6t7shD/buro5
+Zot2coe9Rhr6UaZ4uIp/m+DUI+4yzbVPdXKc7uXObkLQ3214DvhBMVvLnX5i9CC9
+Sq2w5CreEH+cZsLdMWuLWC/NFkRVK2AcQXnmJIwoZBpAhY4Kn1Teq0YdT7JjUZZY
+MNukIl90N4nc/ghjESnGMHNVPlUL6z+11zc/02Uy9It+hLlylZrWbwnaAxZgyTSz
+8my2pg==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.montana.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.montana.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.montana.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.montana.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.montana.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">montana.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">msubillings.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">msun.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">gfcmsu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1323411984742501630848585486724514670866582628875, expires on Mon Oct 25 21:25:41 2032 GMT -->
+ <ds:X509Certificate>
+MIIDMDCCAhigAwIBAgIVAOfP2IewNMJIbSjlEL1iQlgWdmoLMA0GCSqGSIb3DQEB
+BQUAMBwxGjAYBgNVBAMTEWxvZ2luLm1vbnRhbmEuZWR1MB4XDTEyMTAyNTIxMjU0
+MVoXDTMyMTAyNTIxMjU0MVowHDEaMBgGA1UEAxMRbG9naW4ubW9udGFuYS5lZHUw
+ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDJbeGVsOWY+Ii1zzNkJZMs
+uzZQQMpWobWgJAmfk7qy1qS+bBXNAKC+8U3ilHsRS/CCUZAKBf9aXXL1/BAuLwU3
+TBICswpfwJ0TKjjrvYuCEwoVI6nmnzc3oo17CacvjkuOKq2vAPw9t9/7mVNs7IxK
+TYK3Z02LD/KnrFM98HHy4jGYROsDRqPKb/znz3ZkwcV9AV4BoAxnaAmbr6xMS2di
+cRYqZnT38rsoAD9JXopPtC6ipWCVX6fhIVFVPA/nIULZ3z+PKwZVYxWlyy7pCsu5
+qLGP77EcE1FJvVrRasN+G9gLm6pJmehYxmn3WQWtXqHa6Wv91HdTCDQ7S4rnf5d9
+AgMBAAGjaTBnMEYGA1UdEQQ/MD2CEWxvZ2luLm1vbnRhbmEuZWR1hihodHRwczov
+L2xvZ2luLm1vbnRhbmEuZWR1L2lkcC9zaGliYm9sZXRoMB0GA1UdDgQWBBQCwE0i
+mErFyh6Mep7z5gF7aQWKqjANBgkqhkiG9w0BAQUFAAOCAQEATPtND9wTPCuh8iXW
+Y8/BkwHpRdqX6klfxIzIa8vj+SgX5/O0DBU232qUIrb11il274iCPRXIwjucjmaJ
+F/qx1G+9yvhx94kzymEYKqSTI9qrdGTgDigA8zAZ4LJY4O4Nyxzh6t7shD/buro5
+Zot2coe9Rhr6UaZ4uIp/m+DUI+4yzbVPdXKc7uXObkLQ3214DvhBMVvLnX5i9CC9
+Sq2w5CreEH+cZsLdMWuLWC/NFkRVK2AcQXnmJIwoZBpAhY4Kn1Teq0YdT7JjUZZY
+MNukIl90N4nc/ghjESnGMHNVPlUL6z+11zc/02Uy9It+hLlylZrWbwnaAxZgyTSz
+8my2pg==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.montana.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Montana State University - Bozeman</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Montana State University - Bozeman</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.montana.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Trotter</GivenName>
+ <EmailAddress>michael.trotter@montana.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IdP Support</GivenName>
+ <EmailAddress>idp@montana.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IdP Support</GivenName>
+ <EmailAddress>idp@montana.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UIT Security</GivenName>
+ <EmailAddress>itsecurity@montana.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Nevada, Las Vegas -->
+<EntityDescriptor entityID="https://login.unlv.edu/FIM/sps/MyShib/saml20">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.it.unlv.edu/incommon/error" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unlv.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Nevada-Las Vegas</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.it.unlv.edu/incommon/information</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.it.unlv.edu/incommon/oit-web-privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="360" width="1228" xml:lang="en">https://www.unlv.edu/sites/default/files/assets/identity/images/logos/UNLV-186.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1413334046, expires on Sun Jan 1 01:47:26 2023 GMT -->
+ <ds:X509Certificate>
+MIIDUjCCAjqgAwIBAgIEVD3EHjANBgkqhkiG9w0BAQUFADBrMQswCQYDVQQGEwJVUzELMAkGA1UE
+CBMCTlYxEjAQBgNVBAcTCUxhcyBWZWdhczENMAsGA1UEChMEVU5MVjEMMAoGA1UECxMDT0lUMR4w
+HAYDVQQDExVzc28tZmltLXNoaWIudW5sdi5lZHUwHhcNMTQxMDE1MDA0NzI2WhcNMjMwMTAxMDE0
+NzI2WjBrMQswCQYDVQQGEwJVUzELMAkGA1UECBMCTlYxEjAQBgNVBAcTCUxhcyBWZWdhczENMAsG
+A1UEChMEVU5MVjEMMAoGA1UECxMDT0lUMR4wHAYDVQQDExVzc28tZmltLXNoaWIudW5sdi5lZHUw
+ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCbkmPqD2c1WXNNFPdSo8UPPJjb4n7HhKBn
+i8mvzzXMr/GQwsxaJM3pEek+aSQgwN59Oh3/odoQR2LAUMyhTZEWEtZXfksgNvEv5lpM3CbNdmnM
+xowDo+RZv7wxjr2HpswHJxGcCNAvKHeUJeFlW3BYq3stqY0Ix42DSgRXgXQpE9mAJzoRtdMXyhqL
+bN+rawZkV2/5+WU2batVV/u0TITD6RhdoylUqppmJSSsjXpoR7u16VRb6x9LZIU21eyPJjvdnPA6
+L33br9yQ0bCINUgjXugNrIs5YefKK2soBsU5AovnXRAnAiIaZhHuPlOxO1RELZn7UANA8DBRLhzH
+9j8NAgMBAAEwDQYJKoZIhvcNAQEFBQADggEBADGw+IvIW0Pm8Bqvf3WTmpszhNDyP4jD+K5Vt+zO
+uEpSKrxb+HN2vO2hQ9SSFi6gxmkVWg1eK7c/JPh36vmX6dlGuhUBPnsr4wgpfC/ZFOGEAo1Vwpu7
+7+p8JbHn1Y21QcSGPOdxzMRJOUzN7IeQtYwVOLnrXXLHlFqf0RjcB22vfyPANc6yAIWFBTC5pc/2
+HVfcwNXQRj8KQswTahjDFSbPulp97SLNa5aMw3f1PRtnGGvb8HB7CSjGfzHouNqxTEPf3A0nqpdx
+9ec1L21OjIC/MXHxLYUfFJOldQNNCr5jHELdJU2xsuv3t7G8dNw/dwIjL3ItJgEYFeQNDUTIl78=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.unlv.edu/FIM/sps/MyShib/saml20/slo"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.unlv.edu/FIM/sps/MyShib/saml20/soap"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.unlv.edu/FIM/sps/MyShib/saml20/login"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.unlv.edu/FIM/sps/MyShib/saml20/login"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unlv.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1413334046, expires on Sun Jan 1 01:47:26 2023 GMT -->
+ <ds:X509Certificate>
+MIIDUjCCAjqgAwIBAgIEVD3EHjANBgkqhkiG9w0BAQUFADBrMQswCQYDVQQGEwJVUzELMAkGA1UE
+CBMCTlYxEjAQBgNVBAcTCUxhcyBWZWdhczENMAsGA1UEChMEVU5MVjEMMAoGA1UECxMDT0lUMR4w
+HAYDVQQDExVzc28tZmltLXNoaWIudW5sdi5lZHUwHhcNMTQxMDE1MDA0NzI2WhcNMjMwMTAxMDE0
+NzI2WjBrMQswCQYDVQQGEwJVUzELMAkGA1UECBMCTlYxEjAQBgNVBAcTCUxhcyBWZWdhczENMAsG
+A1UEChMEVU5MVjEMMAoGA1UECxMDT0lUMR4wHAYDVQQDExVzc28tZmltLXNoaWIudW5sdi5lZHUw
+ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCbkmPqD2c1WXNNFPdSo8UPPJjb4n7HhKBn
+i8mvzzXMr/GQwsxaJM3pEek+aSQgwN59Oh3/odoQR2LAUMyhTZEWEtZXfksgNvEv5lpM3CbNdmnM
+xowDo+RZv7wxjr2HpswHJxGcCNAvKHeUJeFlW3BYq3stqY0Ix42DSgRXgXQpE9mAJzoRtdMXyhqL
+bN+rawZkV2/5+WU2batVV/u0TITD6RhdoylUqppmJSSsjXpoR7u16VRb6x9LZIU21eyPJjvdnPA6
+L33br9yQ0bCINUgjXugNrIs5YefKK2soBsU5AovnXRAnAiIaZhHuPlOxO1RELZn7UANA8DBRLhzH
+9j8NAgMBAAEwDQYJKoZIhvcNAQEFBQADggEBADGw+IvIW0Pm8Bqvf3WTmpszhNDyP4jD+K5Vt+zO
+uEpSKrxb+HN2vO2hQ9SSFi6gxmkVWg1eK7c/JPh36vmX6dlGuhUBPnsr4wgpfC/ZFOGEAo1Vwpu7
+7+p8JbHn1Y21QcSGPOdxzMRJOUzN7IeQtYwVOLnrXXLHlFqf0RjcB22vfyPANc6yAIWFBTC5pc/2
+HVfcwNXQRj8KQswTahjDFSbPulp97SLNa5aMw3f1PRtnGGvb8HB7CSjGfzHouNqxTEPf3A0nqpdx
+9ec1L21OjIC/MXHxLYUfFJOldQNNCr5jHELdJU2xsuv3t7G8dNw/dwIjL3ItJgEYFeQNDUTIl78=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.unlv.edu/FIM/sps/MyShib/saml20/soap"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Nevada, Las Vegas</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Nevada, Las Vegas</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unlv.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Don Diener</GivenName>
+ <EmailAddress>don.diener@unlv.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Bob Fournier</GivenName>
+ <EmailAddress>bob.fournier@unlv.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Help Desk</GivenName>
+ <EmailAddress>ithelp@unlv.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Security Office</GivenName>
+ <EmailAddress>informationsecurityoffice@unlv.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Otis College of Art and Design -->
+<EntityDescriptor entityID="https://login.otis.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">otis.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Otis College of Art and Design</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.otis.edu/registration-records/ferpa-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="104" width="560" xml:lang="en">https://login.otis.edu/static/images/banner_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 487999786799007513275729505051571861911666586611, expires on Sat Apr 7 21:50:03 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.otis.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.otis.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Otis College of Art and Design</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Otis College of Art and Design</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.otis.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Otis Help Desk</GivenName>
+ <EmailAddress>helpdesk@otis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Matthew Ballard</GivenName>
+ <EmailAddress>mballard@otis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Otis Help Desk</GivenName>
+ <EmailAddress>helpdesk@otis.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Matthew Ballard</GivenName>
+ <EmailAddress>mballard@otis.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- American University of Sharjah -->
+<EntityDescriptor entityID="https://login.aus.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.aus.edu/identity/error.htm" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">aus.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">American University of Sharjah</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity Provider for the American University of Sharjah</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.aus.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.aus.edu/it-policies</mdui:PrivacyStatementURL>
+ <mdui:Logo height="26" width="236" xml:lang="en">https://www.aus.edu/images/aus.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16989023158970009355, expires on Fri Nov 17 13:05:01 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.aus.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login.aus.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.aus.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.aus.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login.aus.edu/idp/profile/SAML2/Unsolicited/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.aus.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.aus.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.aus.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">aus.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16989023158970009355, expires on Fri Nov 17 13:05:01 2028 GMT -->
+ <ds:X509Certificate>
+MIIEJTCCAw2gAwIBAgIJAOvFIo0nSscLMA0GCSqGSIb3DQEBCwUAMIGoMQswCQYD
+VQQGEwJVRTEQMA4GA1UECAwHU2hhcmphaDEQMA4GA1UEBwwHU2hhcmphaDEnMCUG
+A1UECgweQW1lcmljYW4gVW5pdmVyc2l0eSBvZiBTaGFyamFoMRQwEgYDVQQLDAtB
+VVMgU3lzdGVtczEWMBQGA1UEAwwNbG9naW4uYXVzLmVkdTEeMBwGCSqGSIb3DQEJ
+ARYPc3lzdGVtc0BhdXMuZWR1MB4XDTE4MTEyMDEzMDUwMVoXDTI4MTExNzEzMDUw
+MVowgagxCzAJBgNVBAYTAlVFMRAwDgYDVQQIDAdTaGFyamFoMRAwDgYDVQQHDAdT
+aGFyamFoMScwJQYDVQQKDB5BbWVyaWNhbiBVbml2ZXJzaXR5IG9mIFNoYXJqYWgx
+FDASBgNVBAsMC0FVUyBTeXN0ZW1zMRYwFAYDVQQDDA1sb2dpbi5hdXMuZWR1MR4w
+HAYJKoZIhvcNAQkBFg9zeXN0ZW1zQGF1cy5lZHUwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQC5GM8/lIeOG/bn9FPKxIvuv6eA53Iy3HwKPSNGajehJbz1
+pMq3VNCgnT9xcXlz4AdbMPGjUV8koEFrZDGDnVBC+d9A+UmoMwta1gABYSDB8Pp2
+2s6w9A8KxXqaj7alwYgPESlVFVoNRsLkY7k8yhjcb6Ba5ENT4CS3R+z8DrudynBC
+0KVCWWcdl49hFgO9CM1GLf/jXk1FSokWBV3hZEjb09eoTFpPRtqPpaZZiSpRUVnI
+zZiVeadgmajTXbpG1pjWZjLGi/UBZEc4Sz9yC9oe1mVQecCu30VQQUlNAWa3uKKF
+npTPeN0e2HfFVT4s6I6/dOykCaoOefUZa5DEkGpfAgMBAAGjUDBOMB0GA1UdDgQW
+BBTz2/QBbYDUhygxnRDgq80/kDdN1zAfBgNVHSMEGDAWgBTz2/QBbYDUhygxnRDg
+q80/kDdN1zAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQA5736Ie3Lw
+cxh1L50FnQ9Kcl/0n5H0vd4OirodSacCQFcIrledwZNPcX0d5w6WMKQ7eKLVYSOF
+zCjlgewUc+03YpPl+ZE7yyQ8uJuFCfZr803BVxoESi2P956UOzZdT1qzp8qmdD6A
+gCYJAFqNl3XrmD3BqCSH16RGyj7GUG8YqsYVZx8GmyWeoNEd/0f4RrBnD3rJvJf2
+IkLYWVv3erXhqHm1+14cTs+DkBlPJBojf8GCBgKDZNbiHSt/ujhdgy0+3qTLhww+
+0ZlqddaKvExDZmK3X6D+T/siWcnJ6Rqckut/iWg0daTtBzU3wMzAIK/vZuhzrHoi
+iEbozB5w3t2q
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.aus.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">American University of Sharjah</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">American University of Sharjah</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.aus.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>IdP Support Team</GivenName>
+ <EmailAddress>idp_support@aus.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IdP Support Team</GivenName>
+ <EmailAddress>idp_support@aus.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IdP Support Team</GivenName>
+ <EmailAddress>idp_support@aus.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IdP Support Team</GivenName>
+ <EmailAddress>idp_support@aus.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Kaltura Inc. -->
+<EntityDescriptor entityID="https://lafayette.mediaspace.kaltura.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Lafayette College - Kaltura's MediaSpace Instane</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Lafayette College - Kaltura's MediaSpace Instane</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://corp.kaltura.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="90" xml:lang="en">https://corp.kaltura.com/wp-content/themes/kaltura/img/logo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17053834365745793656, expires on Mon Mar 2 00:11:28 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://media.lafayette.edu/user/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://media.lafayette.edu/user/authenticate" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Lafayette College - Kaltura's MediaSpace Instane</ServiceName>
+ <ServiceDescription xml:lang="en">Lafayette College - Kaltura's MediaSpace Instane</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Kaltura Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Kaltura Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.kaltura.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>SAML admin</GivenName>
+ <EmailAddress>saml_admin@kaltura.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>SAML Admin</GivenName>
+ <EmailAddress>saml_admin@kaltura.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>SAML Admin</GivenName>
+ <EmailAddress>saml_admin@kaltura.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Longwood University -->
+<EntityDescriptor entityID="https://its.longwood.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">longwood.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Longwood University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Longwood University IDP</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.longwood.edu/usersupport/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.longwood.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="240" xml:lang="en">https://federation.longwood.edu/idp/images/lu-logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 793543480593275280851225823017761901542662916890, expires on Mon Jan 12 14:50:20 2037 GMT -->
+ <ds:X509Certificate>
+MIIDSDCCAjCgAwIBAgIVAIr/uGhsUgYEj5S2XdXr5c0fQssaMA0GCSqGSIb3DQEB
+CwUAMCIxIDAeBgNVBAMMF2ZlZGVyYXRpb24ubG9uZ3dvb2QuZWR1MB4XDTE3MDEx
+MjE0NTAyMFoXDTM3MDExMjE0NTAyMFowIjEgMB4GA1UEAwwXZmVkZXJhdGlvbi5s
+b25nd29vZC5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCVcpv5
+ARWr1aBgZUvTnkEqzYDulsYoIGVLws6qwYQc3V72Xoq78z+hIPbsT0ttcCYbTpbv
+NejMC2Sjfc5OoU4R1W81+B1hWd5OVSOJdy0+mmeg3UXePeTJl9UBBYSMcvAuz4Ob
+aa4bBPVBC3MgXWa7mLGFVHKQiEFUXIrnizDAoSK0IFtoJGsdTmIakKoYNTcBa/db
+u5XW6bbKS3TJAhkQdbCgtIGw3tKkB8P2qWreV6NyaJCI5MqNIlrSh3mNSkAugxm1
+mtDOuyYRqZPGriQ94+yFWfXbbhn2EXyTew4yfUZdkQuJGCOteniD3MZXX/EQkodI
+Q1jaIOWT2DVZmAQPAgMBAAGjdTBzMB0GA1UdDgQWBBSdUwNYA8uTjDR2D0HtJPWW
+drZEnDBSBgNVHREESzBJghdmZWRlcmF0aW9uLmxvbmd3b29kLmVkdYYuaHR0cHM6
+Ly9mZWRlcmF0aW9uLmxvbmd3b29kLmVkdS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG
+9w0BAQsFAAOCAQEAHCsO3bUpKdhz2kTj+ZwX0QRNHMaWq0vfrEfTNJvKkDapkToB
++F9uP5y2Dg6Zjw/9KPSD+/g7I5kUcL8JZ4Z284UkdzGVMejptkLkNmwS7qQzjOoE
+WhmxqLiCBMtaUPZO8U+wxcpgKed7EXGzyVxDkgvK5PbxmiOCR3cgSg/nM22sUs2Y
+cvyzneexK/wQWoGmHnNHX+8BTnQbHXz0/oEx6Av+JYSC/TPj44hQ5biIKP2BBdIz
+Z1Ajma5TP3WLvPscRvYiVId1lDHfNV6pMmrShYtuFgJd3jfLTj5nFSFskffsHnli
+Zm4tJBTyjlzNy9rEYNJqBZGZZ0W2lSpNAV3j+w==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://federation.longwood.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://federation.longwood.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://federation.longwood.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Longwood University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Longwood University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.longwood.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>User Support Services</GivenName>
+ <EmailAddress>helpdesk@longwood.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>infosec@longwood.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Computer Engineering Services</GivenName>
+ <EmailAddress>ces@longwood.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Andrew Ribeiro</GivenName>
+ <EmailAddress>ribeiroam@longwood.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Harvey Mudd College -->
+<EntityDescriptor entityID="https://login.hmc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.hmc.edu/idp/shibboleth/error.jsp" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">hmc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Harvey Mudd College</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.hmc.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.hmc.edu/cis/about-cis/policies/claremont-appropriate-use-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://www.hmc.edu/communications/wp-content/uploads/sites/19/2013/11/HMC-BGW-RGB-150dpi-150x150.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+<!-- Serial No. 317182208894456401476148894220659460163231346443, expires on Fri Dec 12 16:57:44 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.hmc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.hmc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Harvey Mudd College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Harvey Mudd College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hmc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cindy Abercrombie</GivenName>
+ <EmailAddress>cabercrombie@hmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mitch Shacklett</GivenName>
+ <EmailAddress>mshacklett@hmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:icmd="http://id.incommon.org/metadata" contactType="other" icmd:contactType="http://id.incommon.org/metadata/contactType/security">
+ <GivenName>Duke Vu</GivenName>
+ <EmailAddress>dvu@hmc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Andy Davenport</GivenName>
+ <EmailAddress>andy@hmc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- The Rockefeller University -->
+<EntityDescriptor entityID="https://rushib.rockefeller.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://rushib.rockefeller.edu/idp/error.jsp" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">rockefeller.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Rockefeller University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The world’s leading biomedical research university, Rockefeller draws top scientists and graduate students from around the world in pursuit of one mission: to conduct science for the benefit of humanity.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.rockefeller.edu/about/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://itservices.rockefeller.edu/policies</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://itservices.rockefeller.edu/assets/image/R-logo-80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1382947894505883793714205507113861390830555645833, expires on Mon May 1 17:39:26 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rushib.rockefeller.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://rushib.rockefeller.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The Rockefeller University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Rockefeller University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rockefeller.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Anne Duffy</GivenName>
+ <EmailAddress>idmdev@rockefeller.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Chris Vancil</GivenName>
+ <EmailAddress>idmdev@rockefeller.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Srinivas Voruganti</GivenName>
+ <EmailAddress>idmdev@rockefeller.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Marty Leidner</GivenName>
+ <EmailAddress>marty@rockefeller.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Help Desk</GivenName>
+ <EmailAddress>helpdesk@rockefeller.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- American University of Beirut -->
+<EntityDescriptor entityID="https://idp.aub.edu.lb/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">aub.edu.lb</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">American University of Beirut</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.aub.edu.lb/pnp/Pages/A-to-Z.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="229" width="346" xml:lang="en">https://website.aub.edu.lb/communications/logo/new-logo/PublishingImages/AUB-new-logo-CMYK.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 259815854545375208503226404426384503251649608656, expires on Sat Jul 22 09:11:38 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.aub.edu.lb:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.aub.edu.lb:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.aub.edu.lb/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.aub.edu.lb/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.aub.edu.lb/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.aub.edu.lb/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.aub.edu.lb/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.aub.edu.lb/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">aub.edu.lb</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 259815854545375208503226404426384503251649608656, expires on Sat Jul 22 09:11:38 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.aub.edu.lb:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">American University of Beirut</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">American University of Beirut</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.aub.edu.lb/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Shibboleth Support Team</GivenName>
+ <EmailAddress>Shibboleth@aub.edu.lb</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Maher Kassab</GivenName>
+ <EmailAddress>maherk@aub.edu.lb</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Technical Team</GivenName>
+ <EmailAddress>Shibboleth@aub.edu.lb</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Response Team</GivenName>
+ <EmailAddress>it.security@aub.edu.lb</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Gettysburg College -->
+<EntityDescriptor entityID="https://identity.gettysburg.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://public.gettysburg.edu/idp_error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">gettysburg.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Gettysburg College SSO</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Single Sign On system for Gettysburg College students, faculty, staff, administrators and affiliates.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.gettysburg.edu/application/account-request/data_privacy.dot</mdui:PrivacyStatementURL>
+ <mdui:Logo height="33" width="125" xml:lang="en">https://www.gettysburg.edu/main/images/2019/logo2.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 613427137798924572980241378537231172887414535635, expires on Tue May 2 20:18:23 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://identity.gettysburg.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://identity.gettysburg.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://identity.gettysburg.edu:8444/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://identity.gettysburg.edu:8444/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://identity.gettysburg.edu:8444/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://identity.gettysburg.edu:8444/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">gettysburg.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 613427137798924572980241378537231172887414535635, expires on Tue May 2 20:18:23 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://identity.gettysburg.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://identity.gettysburg.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Gettysburg College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Gettysburg College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.gettysburg.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Eric Yurick</GivenName>
+ <EmailAddress>netmaint@gettysburg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Helpdesk</GivenName>
+ <EmailAddress>ITHelpdesk@gettysburg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Eric Yurick</GivenName>
+ <EmailAddress>eyurick@gettysburg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Thomas Franza</GivenName>
+ <EmailAddress>tfranza@gettysburg.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Philadelphia University -->
+<EntityDescriptor entityID="http://adfs.philau.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">philau.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Philadelphia University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Philadelphia University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.philau.edu/oir/Policies/incommonfederation.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.philau.edu/oir/Policies/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="126" width="134" xml:lang="en">https://www.philau.edu/inc/img/img_footer_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 90970620660856526019442280636149178483, expires on Sat Feb 1 02:02:55 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://adfs.philau.edu/adfs/services/trust/artifactresolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adfs.philau.edu/adfs/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://adfs.philau.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://adfs.philau.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adfs.philau.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Philadelphia University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Philadelphia University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.philau.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Network and Systems</GivenName>
+ <EmailAddress>oit-networking-d@philau.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Technology Help Desk</GivenName>
+ <EmailAddress>helpdesk@philau.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Network and Systems</GivenName>
+ <EmailAddress>oit-networking-d@philau.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Network and Systems</GivenName>
+ <EmailAddress>oit-networking-d@philau.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Texas A&M University-Corpus Christi -->
+<EntityDescriptor entityID="https://idp.tamucc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">tamucc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Texas A&amp;M University-Corpus Christi</mdui:DisplayName>
+ <mdui:Description xml:lang="en">TAMU-CC Federated Identification Services</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.tamucc.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://it.tamucc.edu/informationsecurity/securitypolicies/index.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="446" width="254" xml:lang="en">https://falcon.tamucc.edu/maint/idp/tamucc-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1313304720159555300740758697465774098523377127547, expires on Mon Feb 26 15:27:05 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.tamucc.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.tamucc.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.tamucc.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.tamucc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.tamucc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">tamucc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1313304720159555300740758697465774098523377127547, expires on Mon Feb 26 15:27:05 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.tamucc.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Texas A&amp;M University-Corpus Christi</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Texas A&amp;M University-Corpus Christi</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.tamucc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Phil Hale</GivenName>
+ <EmailAddress>Phil.Hale@tamucc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Edward Evans</GivenName>
+ <EmailAddress>Edward.Evans@tamucc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Office of Information Security</GivenName>
+ <EmailAddress>OIS@tamucc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Help Desk</GivenName>
+ <EmailAddress>ithelp@tamucc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Wisconsin - Platteville -->
+<EntityDescriptor entityID="https://shib1.uwplatt.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://shib1.uwplatt.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwplatt.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Wisconsin-Platteville</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Wisconsin-Platteville Shibboleth IdP Server</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.uwplatt.edu/about</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://kb.uwplatt.edu/page.php?id=36091</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="60" xml:lang="en">https://shib1.uwplatt.edu/idp/images/uwplatt-logo-small.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1289536976918896408451837904685170171208581267501, expires on Sat Oct 18 20:09:10 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib1.uwplatt.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib1.uwplatt.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib1.uwplatt.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib1.uwplatt.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin - Platteville</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin - Platteville</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uwplatt.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mike Sherer</GivenName>
+ <EmailAddress>sherer@uwplatt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UW-Platteville Help desk</GivenName>
+ <EmailAddress>helpdesk@uwplatt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mike Perkins</GivenName>
+ <EmailAddress>perkinsm@uwplatt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mike Perkins</GivenName>
+ <EmailAddress>perkinsm@uwplatt.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- SCLogic -->
+<EntityDescriptor entityID="https://neuresmail.sclintra.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://neuresmail.sclintra.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Northeastern ResMail Student Portal</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Northeastern Resident Mail Services Student Portal</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.sclogic.com/wpautoterms/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="310" xml:lang="en">https://www.sclogic.com/wp-content/uploads/2017/12/SCLogic-Logo_New-Website.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9546472587212288645, expires on Sun Sep 7 14:39:20 2025 GMT -->
+ <ds:X509Certificate>
+MIIC5TCCAc2gAwIBAgIJAIR74j0ayvKFMA0GCSqGSIb3DQEBBQUAMBUxEzARBgNV
+BAMTClNoaWJib2xldGgwHhcNMTUwOTEwMTQzOTIwWhcNMjUwOTA3MTQzOTIwWjAV
+MRMwEQYDVQQDEwpTaGliYm9sZXRoMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIB
+CgKCAQEAtS4wsy53ARWdIt1zGL9FL+65xOPWlA23J6U2lwoWPqSCg6l1v6po8y21
+kxsMEkHb52Xa1i3ik69i9X/IRpp43dYvfJLGJjRqxjVl6JE0703diTlaxCEN0O5M
+e2sHHqSYjMLRNOsQcgWVIIbmuN3ddxjHlm7qPYGzMIeqqNPSFLIzmjoOtJqjQNrZ
+UX6bTeFslnWed71x+f8+I4bU30F+rEZAQWS8x/rKsCtQCCU3Q3AHxRtQDQH0ZFIr
+uuSfp4FHrfhjx4WvDX80v2DhtXjZE73CfH3k6upGDaFpkjTaOG8EK3Cp1SJ26EBj
+VSO4hHKugZFaMGqIf3Zv1R6wdzYEmwIDAQABozgwNjAVBgNVHREEDjAMggpTaGli
+Ym9sZXRoMB0GA1UdDgQWBBQl1wpM8ovMZB8f/SDNKbyA3k9SVTANBgkqhkiG9w0B
+AQUFAAOCAQEAXceagDJagtDgAzurO+zPaQgLn+4+B6rKwLecbE1e2YFN68iM2afd
+/jcNxxxTkVgNHr7PzBIl4ISRXMnZFwH9SMJhEAfBeryiIjVhoIMkLgTSAW+VmP8c
+AJ/rcomQRlYBxB7mLGbcyI64xU8tbV0azSg1RgKCuOVfm/lOD1NNonoA7+a+aHVN
+mDP3++DpOQcHpcGplHu75Ebr8freUMjzu2ut/fekP7sfrRe4uQhqJlC48lfm+f30
+qyCycAczHbvz3DXbqt4xsXtPAOfzdsTjDgI1uF4Vqo4Pgr0G05SnX8wg06A47A6t
+7LfGF7pjIcw52rCXI3f337AqLrkbL7Ft1Q==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://neuresmail.sclintra.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://neuresmail.sclintra.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://neuresmail.sclintra.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://neuresmail.sclintra.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Northeastern ResMail Student Portal</ServiceName>
+ <ServiceDescription xml:lang="en">Northeastern Resident Mail Services Student Portal</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SCLogic</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SCLogic</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sclogic.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Josh Sullivan</GivenName>
+ <EmailAddress>jsullivan@sclogic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Warren Evans</GivenName>
+ <EmailAddress>wevans@sclogic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Hollis Karr</GivenName>
+ <EmailAddress>hkarr@sclogic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>jeff shoemaker</GivenName>
+ <EmailAddress>jshoe@sclogic.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://western.sclintra.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://western.sclintra.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SCLogic Western Washington</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SCLogic Western Washington IntraOmni SP </mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.sclogic.com/wpautoterms/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="310" xml:lang="en">https://www.sclogic.com/wp-content/uploads/2017/12/SCLogic-Logo_New-Website.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12394867660550368992, expires on Sun Sep 21 19:41:14 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://western.sclintra.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://western.sclintra.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://western.sclintra.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://western.sclintra.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">SCLogic Western Washington</ServiceName>
+ <ServiceDescription xml:lang="en">SCLogic Western Washington IntraOmni SP </ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SCLogic</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SCLogic</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sclogic.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Josh Sullivan</GivenName>
+ <EmailAddress>jsullivan@sclogic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Warren Evans</GivenName>
+ <EmailAddress>wevans@sclogic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Hollis Karr</GivenName>
+ <EmailAddress>hkarr@sclogic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>jeff shoemaker</GivenName>
+ <EmailAddress>jshoe@sclogic.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Puget Sound -->
+<EntityDescriptor entityID="https://idp.pugetsound.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pugetsound.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Puget Sound</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity Provider for the University of Puget Sound</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.pugetsound.edu/about/offices-services/university-relations/ouris/policies-procedures/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="200" xml:lang="en">https://www.pugetsound.edu/files/resources/20469_UofPS_stacked_maroonRGB200.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1282307997285048576283041560255312408524564021099, expires on Tue Apr 4 20:26:13 2034 GMT -->
+ <ds:X509Certificate>
+MIIDNDCCAhygAwIBAgIVAOCcreUOmiOG3xoRIC3Ym1PXDT9rMA0GCSqGSIb3DQEB
+BQUAMB0xGzAZBgNVBAMTEmlkcC5wdWdldHNvdW5kLmVkdTAeFw0xNDA0MDQyMDI2
+MTNaFw0zNDA0MDQyMDI2MTNaMB0xGzAZBgNVBAMTEmlkcC5wdWdldHNvdW5kLmVk
+dTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKIFr9xIP2yR/5PaQWE1
+KQQsGVBaNLOlWrPyQsre6V6FaBpAp9i0dgFchxQA0ZGibTPxNN05ArpwLgMImZUq
+/4ed5RXC61c6p8Xg75XukTbAnREapifNkN3pgVnfGuaQ5sGHloJseeW7PvXzt+VW
+tltOi2mweNWQfc2eDD0MfGoPjUOKiKVD79QnWr5xezwMPibkDylMBiL9mjRAZy0T
+VnrP1L+haaS6mTDvHgJdqJRMFn9fpqVAXKYKUFPpXv1H3JNYf2n/Js4tySYOkU/H
+qN+CDW12HU124SEoX04PM0HMXdnE3kvKly8XD7kKXsw38JC3febo3G9oe+oeco0p
+0qcCAwEAAaNrMGkwSAYDVR0RBEEwP4ISaWRwLnB1Z2V0c291bmQuZWR1hilodHRw
+czovL2lkcC5wdWdldHNvdW5kLmVkdS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU
+KYEx6iRREVlZzqlIpSIBHZlPXqswDQYJKoZIhvcNAQEFBQADggEBAH9cDcUTyhvc
+bQDLqX3WbDADas8DsJDrs4kv3kFZXU96VJ2QCFHuYb2trlrTpzGzeujcFGoVxB91
+gVeMz9KBcnIJzqiIDZ+ihLfJaZZ+ELgd7VLm5SWSKrbffzeQIJj1o6QSURoNKNff
+szMYxuCaiSFyj5lnAqZ1ui9OcICeM3NDZtWy2X9yF14rQhcmFwQXovxBsJAx11vR
+DDLKGMpQHM8nP7V9l8tr69Wk7n8L/FSC7lK4rv2acn5l0akFQKp0NBg2ImeRBuZY
+qdWHUVixGVEY5CgV9iwp1JqiADrKNRol15RSTTW11sOpWjvmMAIUzXYCk5l9lkJB
+b/3hR0no3ho=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.pugetsound.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.pugetsound.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Puget Sound</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Puget Sound</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.pugetsound.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Barton Janes</GivenName>
+ <EmailAddress>bjanes@pugetsound.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Barton Janes</GivenName>
+ <EmailAddress>bjanes@pugetsound.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jared Hoover</GivenName>
+ <EmailAddress>jhoover@pugetsound.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Judd</GivenName>
+ <EmailAddress>mjudd@pugetsound.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Kenyon College -->
+<EntityDescriptor entityID="https://sso.kenyon.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://lbis.kenyon.edu/facilities-technology/help" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">kenyon.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Kenyon College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.kenyon.edu/contact-us/information-request/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="368" width="1200" xml:lang="en">https://www.kenyon.edu/kenyonSSOLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 961812256258027525750436461446648147861464022041, expires on Mon Oct 22 20:39:49 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.kenyon.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.kenyon.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.kenyon.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Kenyon College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Kenyon College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.kenyon.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jared Hoffman</GivenName>
+ <EmailAddress>hoffmanj@kenyon.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Weylin Burgett</GivenName>
+ <EmailAddress>burgettw@kenyon.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Niranjan Davray</GivenName>
+ <EmailAddress>davrayn@kenyon.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Team</GivenName>
+ <EmailAddress>lbis-insect@kenyon.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- The Broad Institute of MIT and Harvard -->
+<EntityDescriptor entityID="https://idp.broadinstitute.org/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.broadinstitute.org/identity/feedback.htm" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">broadinstitute.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">The Broad Institute of MIT and Harvard</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Authenticates employees and associates of the Broad Institute.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.broadinstitute.org/contact-us/privacy-policy-broad-institute-website</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="214" xml:lang="en">https://idp.broadinstitute.org/identity/servlet/logo</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11896217562850928264, expires on Sun Jun 2 12:09:52 2019 GMT -->
+ <ds:X509Certificate>
+MIID4jCCAsoCCQClF9rYNH4miDANBgkqhkiG9w0BAQUFADCBsjELMAkGA1UEBhMC
+VVMxFjAUBgNVBAgMDU1hc3NhY2h1c2V0dHMxEjAQBgNVBAcMCUNhbWJyaWRnZTEY
+MBYGA1UECgwPQnJvYWQgSW5zdGl0dXRlMQ0wCwYDVQQLDARCSVRTMR8wHQYDVQQD
+DBZpZHAuYnJvYWRpbnN0aXR1dGUub3JnMS0wKwYJKoZIhvcNAQkBFh53ZWJtYXN0
+ZXJAYnJvYWRpbnN0aXRpdHV0ZS5vcmcwHhcNMTQwNjAyMTIwOTUyWhcNMTkwNjAy
+MTIwOTUyWjCBsjELMAkGA1UEBhMCVVMxFjAUBgNVBAgMDU1hc3NhY2h1c2V0dHMx
+EjAQBgNVBAcMCUNhbWJyaWRnZTEYMBYGA1UECgwPQnJvYWQgSW5zdGl0dXRlMQ0w
+CwYDVQQLDARCSVRTMR8wHQYDVQQDDBZpZHAuYnJvYWRpbnN0aXR1dGUub3JnMS0w
+KwYJKoZIhvcNAQkBFh53ZWJtYXN0ZXJAYnJvYWRpbnN0aXRpdHV0ZS5vcmcwggEi
+MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC+uTnE/e9tjrfFrzNzLDyTe7wT
+Eo8eSJa2MczNDbTfzC8mgcMZTPxlp0azAh+dQEJlFgUnXT39xU9WpuZBvM2rBTvR
+eQPJCIr+vX/r7WKT+7b6EoRwR3X65X+TGLuonCixxQrur84TyhqCD03Hi6EGqbxq
+4WNnfCBiftnl3EOndShEz+SIkTtY7i2yxQo8XE9j9pNrQXA5ujYd+ivD+p1IMKyy
+CNPDk0+Clzl2JLsDSaQ21SjgzHtU1bRDsw/MdQXg2VrfvJT5pz87k4/LEcHCUryH
+kpl5svVFKADmo/T18JsEeruyWd7gPpOjdnAbLMt9joMeNiyOEVTzDbeA1WEJAgMB
+AAEwDQYJKoZIhvcNAQEFBQADggEBAE5EsOxsvK3BL5Xulnj7O8d7aBtkA5PL8BIC
+MnVKvxjlbmC8M+cJ82OqnTIC2YuPywHgxsDgDrPt00MoPRdW2jLmpYZwAZ8Q1RTO
+PamR3Bf4PrB7fSLsWkZYxnr5lu9NyY6qhirIDQOte7GQ9/IbF3GtIpeoVgYp5rY+
+4a4IUWjZEZKRhNjAMuqynqqEjKUax47eotoZ96kxopVWPlVGzktyFwArrpm3PcOo
+ERfaoBjWG6QK6bRz1aocVgG9dZOLAX1NxO/hw67JBo9oywbLuCpEwBTPWmz322+e
+aRRs2nf6FLKMWFwZT6JgxR1b9Y4EbOFPTrapEU/56Q09wG5n15A=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.broadinstitute.org/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.broadinstitute.org/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.broadinstitute.org/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.broadinstitute.org/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The Broad Institute of MIT and Harvard</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">The Broad Institute of MIT and Harvard</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.broadinstitute.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>InCommon Admin</GivenName>
+ <EmailAddress>incommon@broadinstitute.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>InCommon Admin</GivenName>
+ <EmailAddress>incommon@broadinstitute.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>InCommon Admin</GivenName>
+ <EmailAddress>incommon@broadinstitute.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>InCommon Admin</GivenName>
+ <EmailAddress>incommon@broadinstitute.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Colorado Denver -->
+<EntityDescriptor entityID="https://passport.ucdenver.edu/oam/fed">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://passport.ucdenver.edu/error.php" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucdenver.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">cuanschutz.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Colorado Denver | Anschutz Medical Campus</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Colorado Denver | Anschutz Medical Campus</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.ucdenver.edu/policy/Pages/PrivacyPolicy.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="78" width="501" xml:lang="en">https://passport.ucdenver.edu/images/dualCampus_sm_clr_500.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 157844988706443640247950320545211995758, expires on Fri Apr 17 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://passport.ucdenver.edu/oamfed/idp/soap" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://passport.ucdenver.edu/logout.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://passport.ucdenver.edu/oamfed/idp/samlv20"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://passport.ucdenver.edu/oamfed/idp/samlv20"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Colorado Denver</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Colorado Denver</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ucdenver.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Chris Edmundson</GivenName>
+ <EmailAddress>chris.edmundson@ucdenver.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Vaughn Larsen</GivenName>
+ <EmailAddress>vaughn.larsen@ucdenver.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sean Clark</GivenName>
+ <EmailAddress>sean.clark@ucdenver.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Augusta University -->
+<EntityDescriptor entityID="https://shfed.augusta.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">augusta.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Augusta University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.augusta.edu/compliance/documents/confidentialitystatement.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="916" width="1844" xml:lang="en">https://shfed.augusta.edu/idp/images/AugustaUniversity_H_RGB.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 384134870980611963111470938986278934395334691347, expires on Sun Mar 2 14:15:16 2036 GMT -->
+ <ds:X509Certificate>
+MIIDLzCCAhegAwIBAgIUQ0k0DvqYzUB+2FqlbJ6wSij4ChMwDQYJKoZIhvcNAQEL
+BQAwHDEaMBgGA1UEAwwRc2hmZWQuYXVndXN0YS5lZHUwHhcNMTYwMzAyMTQxNTE2
+WhcNMzYwMzAyMTQxNTE2WjAcMRowGAYDVQQDDBFzaGZlZC5hdWd1c3RhLmVkdTCC
+ASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALtPKXvOZAOcUd/rl1ylabyr
+Os4SNoTXBk8aopYsO5+ntwqCMsdZxlJ+rFKcocM0CabbNL+bEQO6UvOO5wv0Xwnf
+JdzynGcW5Acxp4due88HEOO2d6pRlK5RP9zv4SBN+3V/7rBy7OXQYJ5o877ctsHV
+Hvi6buwZuoypAdkhs6bRPNrVssRfzIVwoUq3D8qgH/h6HecGg/rCJBQ7LtExK2ed
+L41LsFGiXWmlV+BGwJAFEfpcP4QY9VzKbzGz3LquZX8OnrGJl+xaiUwou4wUp9uv
+mZKO3UcUjwl8TKrb5MJnk4nvEAL7faUxKCThyUgtflmu8FitHSKewobg5NAuoK0C
+AwEAAaNpMGcwHQYDVR0OBBYEFJ5ci1HmOu2QmzDHUU5EPPd/9wWVMEYGA1UdEQQ/
+MD2CEXNoZmVkLmF1Z3VzdGEuZWR1hihodHRwczovL3NoZmVkLmF1Z3VzdGEuZWR1
+L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQAuW6vDVLs7R0PmfVSM
+PwZ6360LeEJ1I2nf+dQNaK/bPywzC9795EVVf9WOPTGdsUKXSG29LD+Jt+NGX55q
+no86JHjkDymlTS2cU8FdVWVk6yH/+LFc2NAyVORH4YlFcihyCkxu6Rjh5+GiUBY1
+kxMxh4weCpeKdYkVWeAds27123As+m2O8f36bqzhLFKhmYzKpdIIiB+NuljiQJBd
+2b6MB5V/n8z6xmjaHwlosuaB6/BDv6M8g7aECQqAwIzHekyFrHU7UwOe5pU1UsuN
+VdqdJzZoyuqY6gMBf5LpbGYHDDu1PuJrmwKJYxGVz7lTEQxMS5G9/gpYUIcpXf/B
+HzYL
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shfed.augusta.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shfed.augusta.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shfed.augusta.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Augusta University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Augusta University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.augusta.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Andrew Smith</GivenName>
+ <EmailAddress>andsmith@augusta.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Ryan O'Neil</GivenName>
+ <EmailAddress>roneil@augusta.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Todd Tyler</GivenName>
+ <EmailAddress>ttyler@augusta.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shakeel Khan</GivenName>
+ <EmailAddress>shkhan@augusta.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Governet -->
+<EntityDescriptor entityID="https://ucdavis.curricunet.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucdavis.curricunet.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CurricUNET META</mdui:DisplayName>
+ <mdui:Description xml:lang="en">CurricUNET Meta Service Provider</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://curriqunet.com/sso-policy</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://curriqunet.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="45" width="100" xml:lang="en">https://img1.wsimg.com/isteam/ip/b0be5c5b-3cf7-4757-8c9a-839745811dd8/logo/7db4a7c3-35cc-4685-85a8-48b46f2e2712.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12344487461076940039, expires on Fri Sep 6 15:04:41 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucdavis.curricunet.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucdavis.curricunet.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucdavis.curricunet.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucdavis.curricunet.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CurricUNET META</ServiceName>
+ <ServiceDescription xml:lang="en">CurricUNET Meta Service Provider</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Governet</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Governet</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://governet.net/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Troy High</GivenName>
+ <EmailAddress>troyhigh@curriqunet.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Troy High</GivenName>
+ <EmailAddress>troyhigh@curriqunet.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Troy High</GivenName>
+ <EmailAddress>troyhigh@curriqunet.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Radford University -->
+<EntityDescriptor entityID="https://idp.radford.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">radford.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Radford University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.radford.edu/content/radfordcore/home/about/privacy-policy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="68" width="333" xml:lang="en">https://www.radford.edu/myru/RadfordUniversity_Horiz_OnLight.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15530715625527425846, expires on Sun May 28 17:33:08 2034 GMT -->
+ <ds:X509Certificate>
+MIIDpTCCAo2gAwIBAgIJANeIL5N/K7s2MA0GCSqGSIb3DQEBBQUAMGkxCzAJBgNV
+BAYTAlVTMQswCQYDVQQIDAJWQTEQMA4GA1UEBwwHUmFkZm9yZDEUMBIGA1UECgwL
+cmFkZm9yZC5lZHUxCzAJBgNVBAsMAklUMRgwFgYDVQQDDA9zc28ucmFkZm9yZC5l
+ZHUwHhcNMTQwNTI4MTczMzA4WhcNMzQwNTI4MTczMzA4WjBpMQswCQYDVQQGEwJV
+UzELMAkGA1UECAwCVkExEDAOBgNVBAcMB1JhZGZvcmQxFDASBgNVBAoMC3JhZGZv
+cmQuZWR1MQswCQYDVQQLDAJJVDEYMBYGA1UEAwwPc3NvLnJhZGZvcmQuZWR1MIIB
+IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA1TGYutWcsJGFBi3p23QrfDKy
+fPMTemhzbpwf2WoyaMqKOogc/NqqdBpQXji0jU05y0yjxGv6Jx7Ey88EnHGVNOJp
+3CeiElOqBJ/hRl+S4l6zmHfofgQWHEhtR2SawRv90Pj/Za5+TiIvfsifvjFWdFSJ
+sOaQ9Z7/SSuXn1Ft9iH844OBcrpYQPYsA0Xk5EgMvv7cXxJjerq5UHdlZlglN96M
+lMD8U6gzAi7rmyhcBTZ50zD01FMZzOyWLjf1zfvwyj6JvRE2e3FGwY6RQt/Y7mXy
+xu7RCtxVKiA+40YM+HN6A9p9A/+srf9tOgNLyjZ0ogNCWp+cFD1mLIzcKNuWqwID
+AQABo1AwTjAdBgNVHQ4EFgQUlzH3pb2TBuySahzZbUNiEFuNT7EwHwYDVR0jBBgw
+FoAUlzH3pb2TBuySahzZbUNiEFuNT7EwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0B
+AQUFAAOCAQEAaq6hZya9JWF5HPxy+PvAkr6XQQLzVs9j00FxAICKrPlgXW3CFvqj
+IbkzsRG0eKtotoQRO3GakOhO2gzyiVCI/6aR/6MX/c9OFwt0qe5HUNsiTiMGOq4V
+tb8i7csaCB49cfwD5tewWQdeIidg7OhPqO5S2FNrdM6jVpEg5kDuI0UIHazdmBOZ
+FDELTQ+nBfCrIa9letM+SoIU4znIvOfd4Z6k4uU11aDaZKej6/9rwMuo4EfgUFTR
+16SeaJX8wNydS4+68Ch9U5Z3saWWuC3aU4pNnMQW1VUt0bqVhtgPkcTaS7uZeYhC
+5ZxW63cQCq8Tt4xwbP8uzhoMCBiAWn+H1g==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.radford.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.radford.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.radford.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.radford.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sso.radford.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.radford.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.radford.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.radford.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">radford.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15530715625527425846, expires on Sun May 28 17:33:08 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.radford.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Radford University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Radford University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.radford.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Todd Joyce</GivenName>
+ <EmailAddress>tjoyce@radford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>David Bailey</GivenName>
+ <EmailAddress>ssoadmin@radford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>ISO</GivenName>
+ <EmailAddress>itsecurity@radford.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Medical College of Wisconsin -->
+<EntityDescriptor entityID="https://shib.mcw.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://infoscope.mcw.edu/is/support.htm" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mcw.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Medical College of Wisconsin</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.mcw.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.mcw.edu/about-mcw/terms-and-privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="88" width="107" xml:lang="en">https://shib.mcw.edu/idp/images/mcwlogo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1426365490442050923781478049135649449180145954777, expires on Tue Apr 28 16:24:28 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.mcw.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.mcw.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Medical College of Wisconsin</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Medical College of Wisconsin</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.mcw.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>MCW-IS Service Desk</GivenName>
+ <EmailAddress>help@mcw.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>MCW-IS Service Desk</GivenName>
+ <EmailAddress>help@mcw.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Thomas Klika</GivenName>
+ <EmailAddress>tklika@mcw.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jeremy Tews</GivenName>
+ <EmailAddress>jetews@mcw.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- West Virginia University -->
+<EntityDescriptor entityID="https://idp.wvu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://it.wvu.edu/support/service-desk" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wvu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">West Virginia University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">WVU Login</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://it.wvu.edu/services</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://it.wvu.edu/policies-and-procedures/it-policies-and-procedures/all-policies-and-procedures/information-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="187" width="216" xml:lang="en">https://patterns.wvu.edu/images/12344827494758473647595/flying-wv.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 169237055770307175798525669498272852812029997761, expires on Tue Feb 28 16:38:40 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.wvu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.wvu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.wvu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.wvu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.wvu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wvu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 169237055770307175798525669498272852812029997761, expires on Tue Feb 28 16:38:40 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.wvu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">West Virginia University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">West Virginia University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wvu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Christopher Boyer</GivenName>
+ <EmailAddress>ckboyer@mail.wvu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Alex Jalso</GivenName>
+ <EmailAddress>acjalso@mail.wvu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Joseph Eagan</GivenName>
+ <EmailAddress>jeagan@mail.wvu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Alex Jalso</GivenName>
+ <EmailAddress>acjalso@mail.wvu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Princeton University -->
+<EntityDescriptor entityID="https://alumidp.princeton.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">alumni.princeton.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Princeton University Alumni</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Princeton University Alumni Identity Provider</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://rrr.princeton.edu/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="49" width="49" xml:lang="en">https://alumni.princeton.edu/favicon.ico</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 923369973170041791710346312357332522858432105643, expires on Sat Mar 4 19:00:36 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://alumidp.princeton.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://alumidp.princeton.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://alumidp.princeton.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://alumidp.princeton.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://alumidp.princeton.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">alumni.princeton.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 923369973170041791710346312357332522858432105643, expires on Sat Mar 4 19:00:36 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://alumidp.princeton.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Princeton University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Princeton University Alumni</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.princeton.edu/index.shtml</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Security and Data Protection</GivenName>
+ <EmailAddress>sdp@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity and Access Management</GivenName>
+ <EmailAddress>iam@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>OIT Support and Operations Center</GivenName>
+ <EmailAddress>tigernet@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity and Access Management</GivenName>
+ <EmailAddress>iam@princeton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security Office</GivenName>
+ <EmailAddress>infosec@princeton.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- The Claremont Colleges, Inc. -->
+<EntityDescriptor entityID="https://webauth.cuc.claremont.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://services.claremont.edu/it/trouble-logging-in-to-cas/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cuc.claremont.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">The Claremont Colleges Services</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://services.claremont.edu/it/appropriate-use-campus-and-network-resources/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="170" width="600" xml:lang="en">https://services.claremont.edu/wp-content/themes/cuc/images/tccs-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 31631076336576352992694488413364837796823796002, expires on Tue May 29 21:18:38 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.cuc.claremont.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.cuc.claremont.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The Claremont Colleges, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">The Claremont Colleges, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://services.claremont.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jeremy Whaley</GivenName>
+ <EmailAddress>jeremy.whaley@claremont.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeremy Whaley</GivenName>
+ <EmailAddress>jeremy.whaley@claremont.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jeremy Whaley</GivenName>
+ <EmailAddress>jeremy.whaley@claremont.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>TCCS Help Desk</GivenName>
+ <EmailAddress>applications.helpdesk@services.claremont.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Texas Woman's University -->
+<EntityDescriptor entityID="https://shibboleth.twu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.twu.edu/tis/InCommon_help.asp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">twu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Texas Woman's University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Texas Woman's University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.twu.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.twu.edu/privacy.asp</mdui:PrivacyStatementURL>
+ <mdui:Logo height="536" width="1001" xml:lang="en">https://www.twu.edu/webguide/images/twu-logo-screen.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+<!-- Serial No. 805412242497802438496514629014270748478165297258, expires on Fri Apr 7 22:10:06 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.twu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.twu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.twu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.twu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.twu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.twu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">twu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+<!-- Serial No. 805412242497802438496514629014270748478165297258, expires on Fri Apr 7 22:10:06 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.twu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Texas Woman's University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Texas Woman's University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.twu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:icmd="http://id.incommon.org/metadata" contactType="other" icmd:contactType="http://id.incommon.org/metadata/contactType/security">
+ <GivenName>Kerry Williams</GivenName>
+ <EmailAddress>kwilliams1@twu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Svetlana Galuzinschii</GivenName>
+ <EmailAddress>sgaluzinschii@twu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Julie Muller</GivenName>
+ <EmailAddress>jmuller@twu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Svetlana Galuzinschii</GivenName>
+ <EmailAddress>sgaluzinschii@twu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Loyola Marymount University -->
+<EntityDescriptor entityID="https://auth.lmu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">auth.lmu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Loyola Marymount University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.lmu.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.lmu.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="46" width="156" xml:lang="en">https://apps.lmu.edu/ui/www/images-v8-common/lmu_logo.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 953815557353423368119235601973968931065720612622, expires on Mon Jul 31 01:02:46 2034 GMT -->
+ <ds:X509Certificate>
+MIIDHDCCAgSgAwIBAgIVAKcSkZ59B+dWIW8VLdSs4ksv0icOMA0GCSqGSIb3DQEB BQUAMBcxFTATBgNVBAMTDGF1dGgubG11LmVkdTAeFw0xNDA3MzEwMTAyNDZaFw0z NDA3MzEwMTAyNDZaMBcxFTATBgNVBAMTDGF1dGgubG11LmVkdTCCASIwDQYJKoZI hvcNAQEBBQADggEPADCCAQoCggEBAKlkGNJ8UdQKp9g0xyU8a7HR56W2NRJZz33J l4J/JirhJx+ZDKfic5pQ9HK+5fdfOmQGP7X5g7pBbrl0ouHmS/WxOkzj3Yt7nowT aBOEHIXA4x9FKUWwlJKQbj309ApU1kV0NP6cNZyeu5QEzJqWV9ebYD3lcOeCUNuH ugB6+Zx6UM0cgCerOScslFy8iWehYa+ne5I3Q1/7D8lMBgsWYoLmsCns50W57oe+ F9R0JGogxuypUmMqjIcdHIW3vZ2Vgnv/Ik08zRT86avnNspYh04rtWbeMleM3FRV KA0RqVvJjwBY7OSrd+F3cYUhmogvA3tAaxH2/oc7nVEeqoNnsjkCAwEAAaNfMF0w PAYDVR0RBDUwM4IMYXV0aC5sbXUuZWR1hiNodHRwczovL2F1dGgubG11LmVkdS9p ZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQUu4eJ2fLmNuY9iKNKEy0hpAsYBZcwDQYJ KoZIhvcNAQEFBQADggEBAJn5QiImajcfIz8OM52KRvDkCX4HtyNEKKl96HkOrvpR TpGHIR1teM7JX3e6f6MSnMKRKU9WPtJS0B+oHxfHSwuU/H60HZYuISu5RObsTcHp BVGTTQuPm0hqPayCoF8Rai6PvU1IMSpTmOV0VuHCjqe30HttFIZ7TUzDhYdJY+sr L8lTi6g88cLQUZPwLDrlXuN1z3tHGTqJ/sEq3tb1fBFEfQ8qOf2GzlrSnTaK+F1F iCsob3s9DMW7Xa8meQq2IBSWKhbvhWM9iTjYwykZ090r1vhBNoKcvzlPZrBltR9w 7jyZgLQcWGWdgK+EKe1U9z5DpbxJHutpHIsqk82iml0=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.lmu.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://auth.lmu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.lmu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.lmu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Loyola Marymount University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Loyola Marymount University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lmu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Sylvester Creado</GivenName>
+ <EmailAddress>screado@lmu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Harry Tanuwidjaja</GivenName>
+ <EmailAddress>htanuwid@lmu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Sun</GivenName>
+ <EmailAddress>wsun@lmu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Utah Valley University -->
+<EntityDescriptor entityID="https://shib.uvu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uvu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Utah Valley University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uvu.edu/legal/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="57" width="65" xml:lang="en">https://www.uvu.edu/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 762947658998471843731819456495087068183631253872, expires on Sat Dec 10 17:57:03 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.uvu.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.uvu.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shib.uvu.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.uvu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.uvu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Utah Valley University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Utah Valley University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uvu.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Daniel Hutchison</GivenName>
+ <EmailAddress>daniel.hutchison@uvu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Roark Fisher</GivenName>
+ <EmailAddress>roark.fisher@uvu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ray Walker</GivenName>
+ <EmailAddress>ray.walker@uvu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UVU Service Desk</GivenName>
+ <EmailAddress>servicedesk@uvu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LeRoy Brown</GivenName>
+ <EmailAddress>Leroy.Brown@uvu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Salisbury University -->
+<EntityDescriptor entityID="https://shibboleth.salisbury.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">salisbury.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Salisbury University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The Salisbury University Shibboleth Identity Provider allows SU faculty, staff and students to access external service providers using their SU NetID.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.salisbury.edu/administration/general-counsel/university-policies-legal/privacy.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="63" width="200" xml:lang="en">https://shibboleth.salisbury.edu/idp/images/sulogobig.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 569072055379301566640297207008922318525533401168, expires on Tue Jun 28 13:00:53 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.salisbury.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.salisbury.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.salisbury.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.salisbury.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.salisbury.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.salisbury.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.salisbury.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.salisbury.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Salisbury University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Salisbury University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.salisbury.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Support</GivenName>
+ <EmailAddress>shibsupport@salisbury.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Support</GivenName>
+ <EmailAddress>shibsupport@salisbury.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Shibboleth Support</GivenName>
+ <EmailAddress>shibsupport@salisbury.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Support</GivenName>
+ <EmailAddress>shibsupport@salisbury.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Axiom Education, LLC -->
+<EntityDescriptor entityID="https://shib.axiommentor.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shib.axiommentor.com/shibboleth" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Axiom Mentor</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Comprehensive academic data management software: course management, portfolio, assessment, faculty reporting, IRB, IACUC and grants management</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.axiom-mentor.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.axiom-mentor.com/axiom-mentor-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="44" width="124" xml:lang="en">https://www.axiommentor.com/img/logo/AxiomMentorFooterLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12388564876290903385, expires on Sat Jan 13 11:44:38 2024 GMT -->
+ <ds:X509Certificate>
+MIIC+jCCAeKgAwIBAgIJAKvtBh4YM01ZMA0GCSqGSIb3DQEBBQUAMBwxGjAYBgNV
+BAMTEWlwLTEwLTExNi0yMjktMTczMB4XDTE0MDExNTExNDQzOFoXDTI0MDExMzEx
+NDQzOFowHDEaMBgGA1UEAxMRaXAtMTAtMTE2LTIyOS0xNzMwggEiMA0GCSqGSIb3
+DQEBAQUAA4IBDwAwggEKAoIBAQDHnIUGyFm7rMf63BBSvtMWOLWfSg3nKXtv2XDN
+LNxoX5+oYbZQVYxpKCCapiuEA7tL0kd/1CTleojqPrDThY3MvsIAZxcFNpT17WiP
+IQKMrPUPtzHAHc1+p+gdv7908jMR5qhlIy0IKk56TQQdyKLl7KxtN0X7Ht+otAwY
+GogpPlC24lfTn0YTfRWyTOvdLjWzhUaadt5i6QcFxKo2Zip37NPUc/o+Z+HG17wG
+nV1pHlzal4CcEz4BJCFdQ8y2WLWXoKiZpidHzhEdiGSUVdAkbSe/KaJ3yenrWgaA
+s2OKz4vNt5yHlPxHYkXBk7keWNDc+1JmR1udmJqVu23Gpm87AgMBAAGjPzA9MBwG
+A1UdEQQVMBOCEWlwLTEwLTExNi0yMjktMTczMB0GA1UdDgQWBBR/jJXjzS/doZGS
+EPNvRLysA9tl9TANBgkqhkiG9w0BAQUFAAOCAQEAeCM6vxqCjecAshLkZZ1P77v4
+g5YcahnCS8jAgupv5YF/TycAdFtMORjVaDaurwoGEOek2jqRGvJoUrHXviFjJE8n
+2MJJgM0m7datPzXMUwHMRNFHZe/F/41QIwOlnYTouDJKjqJ7zOg7WTdh4nzGLhCr
+88vSG2RApVnFEI1NX0g8D/8L+Bzu7YSYUqk3+DD0owyCrbO9TB1z0B36+lpIDr3I
+08su6khV8PP/DbsYPJvSaRQYvMajqDGiHEvuXB0p+mUkEOZ6zsHFi8mVG19CRa0J
+a0t2GsrHsTjxdfZGubwlF45SBUMrliQ+Jxpbm9bJWFTIRD2PSkr+f+jL57q6wA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.axiommentor.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.axiommentor.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.axiommentor.com/Shibboleth.sso/Artifact/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.axiommentor.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib.axiommentor.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shib.axiommentor.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shib.axiommentor.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shib.axiommentor.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shib.axiommentor.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Axiom Mentor</ServiceName>
+ <ServiceDescription xml:lang="en">Comprehensive academic data management software: course management, portfolio, assessment, faculty reporting, IRB, IACUC and grants management</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Axiom Education, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Axiom Education, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.axiomeducation.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Curtis Naser</GivenName>
+ <EmailAddress>curtn@axiomeducation.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Curtis Naser</GivenName>
+ <EmailAddress>curtn@axiomeducation.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Don Bodnar</GivenName>
+ <EmailAddress>donb@axiomgroup.us</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chett Rubenstein</GivenName>
+ <EmailAddress>chettr@axiomeducation.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Marshall University -->
+<EntityDescriptor entityID="https://idp.marshall.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.marshall.edu/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">marshall.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Marshall University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://idp.marshall.edu/idpinfo.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://idp.marshall.edu/idp_privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="800" xml:lang="en">https://idp.marshall.edu/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1261509452538245947624611764423542268803595155106, expires on Thu Jul 31 11:35:36 2036 GMT -->
+ <ds:X509Certificate>
+MIIDLDCCAhSgAwIBAgIVANz4Ck9rR6LwFTAo+ze8Y1IRzLaiMA0GCSqGSIb3DQEB
+CwUAMBsxGTAXBgNVBAMMEGlkcC5tYXJzaGFsbC5lZHUwHhcNMTYwNzMxMTEzNTM2
+WhcNMzYwNzMxMTEzNTM2WjAbMRkwFwYDVQQDDBBpZHAubWFyc2hhbGwuZWR1MIIB
+IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAprNV0qALBvRUalyt3SNMp3y/
+rUDJMDoC35v0p/AGw+WHylLdLukCEesWILqgN8M8+++MuOdC6vTSSlEKGEGlsEpY
+g2surT0GZNlphpsURxBikv/mYW+ZLgnz+r9ahaQnIYbNV/1ggnc7M4c3bgLIq9Ly
+o3FnrjGFYLZtGEnotJwHPnoC403qF8sZsSovlzdc7GdN1mXq4NeimIDiVfvB4HuK
+R/SmubqGAGcKaNXoiZzcQqrwB0FzLsO6QjmTiyzSMcGcrghfHkvB+ftJNYBfcHmC
+3TExmQs9NPfH0vu2ymTAR7IvQrdK9YryMK5sC5T14hgMaOsBMshyVGdyVrTIzwID
+AQABo2cwZTAdBgNVHQ4EFgQU8AM/qt0E2uo9ofFMKWUmLuO+NTcwRAYDVR0RBD0w
+O4IQaWRwLm1hcnNoYWxsLmVkdYYnaHR0cHM6Ly9pZHAubWFyc2hhbGwuZWR1L2lk
+cC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQBMylxH3URXY3lu2TETVQqy
+koBprDHoMJklKCCnQ/gUsKYiaoz17hxJZ8UImLwoBIn7ToAxA5jWbFOE1g2tt2Ul
+q71lxHiYGKwwprnv8dSYiPXur0rBi5dxr6641Rnl+qXFlRcbRyNMj6Ydm6dPWZdO
+INA+5hwAqKUDF/2sTyIkfvFRWYvqsQVqzH1vyVpXzRp8T1eT/gA+cnNcM0M38sN7
+LcJ5JdkOF8C9AK0DwvyWH+jI3rYkeKQwui2/x75rpa7EDhqPQpIgCVgBlhhE1rX3
+bSnCn3hQzUDVGYqear8DvG/LhrTZvYoAW16/CVvIuX7Ha+AvgyNlCpf1TLwF8N0G
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.marshall.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.marshall.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.marshall.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.marshall.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.marshall.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">marshall.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1261509452538245947624611764423542268803595155106, expires on Thu Jul 31 11:35:36 2036 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.marshall.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Marshall University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Marshall University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.marshall.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Edward Aractingi</GivenName>
+ <EmailAddress>aractingi1@marshall.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Systems Team</GivenName>
+ <EmailAddress>systems@marshall.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Incident Response Team</GivenName>
+ <EmailAddress>systems@marshall.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Digital Architecture, Inc. -->
+<EntityDescriptor entityID="https://dssog-api-staging.acalogadmin.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Acalog DSSOG API Staging</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Staging site used for on-boarding Acalog clients with InCommon</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.digarc.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="130" width="308" xml:lang="en">https://www.digarc.com/wp-content/uploads/ACALOG-Logo-Catalog-Management1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13955867674037510063, expires on Fri Apr 2 01:01:00 2027 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dssog-api-staging.acalogadmin.com/sp/sls"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dssog-api-staging.acalogadmin.com/sp/acs" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Acalog DSSOG API Staging</ServiceName>
+ <ServiceDescription xml:lang="en">Staging site used for on-boarding Acalog clients with InCommon</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Digital Architecture, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Digital Architecture, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.digarc.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Martin Nelson</GivenName>
+ <EmailAddress>mnelson@digarc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>SSO Support</GivenName>
+ <EmailAddress>ssosupport@digarc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>SSO Support</GivenName>
+ <EmailAddress>ssosupport@digarc.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://dssog-api-staging.curriculog.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Curriculog DSSOG API Staging</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Dssog Staging used for on-boarding Curriculog clients</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.digarc.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="130" width="308" xml:lang="en">https://www.digarc.com/wp-content/uploads/CURRICULOG-Logo-Curriculum-Management.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16087457875843417447, expires on Thu Apr 1 23:46:50 2027 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dssog-api-staging.curriculog.com/sp/sls"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dssog-api-staging.curriculog.com/sp/acs" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Curriculog DSSOG API Staging</ServiceName>
+ <ServiceDescription xml:lang="en">Dssog Staging used for on-boarding Curriculog clients</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Digital Architecture, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Digital Architecture, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.digarc.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Martin Nelson</GivenName>
+ <EmailAddress>mnelson@digarc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>SSO Support</GivenName>
+ <EmailAddress>ssosupport@digarc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>SSO Support</GivenName>
+ <EmailAddress>ssosupport@digarc.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucmerced-shib.curriculog.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UCMERCED Curriculog</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.digarc.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="130" width="308" xml:lang="en">https://www.digarc.com/wp-content/uploads/CURRICULOG-Logo-Curriculum-Management.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17494175283622270601, expires on Mon Oct 27 17:16:48 2031 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucmerced-shib.curriculog.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucmerced-shib.curriculog.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucmerced-shib.curriculog.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucmerced-shib.curriculog.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ucmerced-shib.curriculog.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ucmerced-shib.curriculog.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UCMERCED Curriculog</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Digital Architecture, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Digital Architecture, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.digarc.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Martin Nelson</GivenName>
+ <EmailAddress>mnelson@digarc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>DIGARC SSO Support</GivenName>
+ <EmailAddress>ssosupport@digarc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>DIGARC SSO Support</GivenName>
+ <EmailAddress>ssosupport@digarc.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- First Advantage Enterprise Screening Corporation -->
+<EntityDescriptor entityID="https://ssotest.screeningxchange.com/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">First Advantage TEST</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://fadv.com/solutions.aspx</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://fadv.com/privacy-policy.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="224" width="707" xml:lang="en">https://fadv.com/Fadv-prod/media/Assets/Logos/Corporate/FADV-Logo-Background-Check-Services.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9562508377902868619, expires on Thu Aug 1 21:42:05 2024 GMT -->
+ <ds:X509Certificate>
+MIIDQjCCAiqgAwIBAgIJAIS02rSSmOiLMA0GCSqGSIb3DQEBCwUAMCcxJTAjBgNV BAMMHHNzb3Rlc3Quc2NyZWVuaW5neGNoYW5nZS5jb20wHhcNMTQwODAxMjE0MjA1 WhcNMjQwODAxMjE0MjA1WjAnMSUwIwYDVQQDDBxzc290ZXN0LnNjcmVlbmluZ3hj aGFuZ2UuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAxH39OpYM H+82lApSzLgC/KRCcf/bWgfGi7CJAaKEGNV5pT4X1Vmj2kmkm2rLzwMpfCjwr/m6 myHO6qsegh2TrZZWPMMUEX2jVQvUZBt3vX2E1ltS9sEpGYcODgWgbAfG8T3EvGqF ++qHnT6mCNuM2En7WfEULGDK4Z9KZkzNpLjKilcfr9vMLMQyuh7FnGhTmbVe44dm zFW0nqZ8jPnJ+bkMBPJNXWqr9ybPbjSXYboABwCak2Kt9j2ewPUecBbsjgS+GyBo jlc0aCqQCXQ7omQdWsGeHO8VfvCR87lbik3MIJk9+ck353qo11fVjb8wcl5BWXKm FoiRP6m22dkDNQIDAQABo3EwbzBOBgNVHREERzBFghxzc290ZXN0LnNjcmVlbmlu Z3hjaGFuZ2UuY29thiVodHRwczovL3Nzb3Rlc3Quc2NyZWVuaW5neGNoYW5nZS5j b20vMB0GA1UdDgQWBBQuELSotQp1GOosEx/0u5Zod1U+WjANBgkqhkiG9w0BAQsF AAOCAQEADLXpx0aM/lwXwnw6mKmOOGvi2AkP1USjwH2O6AXWwaFjNK3+3oZ6hpVq yzOIrj8ymycGbfPXt5y8s70tyOwEDQBdEEcaTwiJnwEHrUca8S5Jhk2IVDFb35em 099eSUNWudnu8McrgXnp/dyo7Vusj/V/G46Xibz8IGRsXoo4O02Rr743FV0LdngX d7WombiPMNFN7vDkzcJgvSdLejR0j2Q5sW+x2EPmB0DaZI+s+SWdwLGD9dmeKxYO gBMubAgBvyGEgIF0V+LD8ueKqULJfV/LAfGRFuEV/J0IPphFHAUZbEPtEuVy50sD GA5iEoihUkLEp0rnwsdPv00kb71MdA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ssotest.screeningxchange.com/sp/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ssotest.screeningxchange.com/sp/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ssotest.screeningxchange.com/sp/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ssotest.screeningxchange.com/sp/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ssotest.screeningxchange.com/sp/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ssotest.screeningxchange.com/sp/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">First Advantage Enterprise Screening Corporation</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">First Advantage Enterprise Screening Corporation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.fadv.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Martha A Shultheis</GivenName>
+ <EmailAddress>martha.shultheis@fadv.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>FADV Technical</GivenName>
+ <EmailAddress>sso-support@fadv.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>FADV Security</GivenName>
+ <EmailAddress>infosec@fadv.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Maryland Eastern Shore -->
+<EntityDescriptor entityID="https://sso.umes.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umes.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Maryland Eastern Shore</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://sso.umes.edu/idp/shibboleth</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.umes.edu/Registrar/Pages/Student-Services/Confidentiality-of-Records/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="115" width="209" xml:lang="en">https://sso.umes.edu/idp/images/UnivES_w-rotunda_202-gray.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1301997177040810239416678562790923819079533839326, expires on Mon Sep 22 18:02:21 2036 GMT -->
+ <ds:X509Certificate>
+MIIDHDCCAgSgAwIBAgIVAOQPkpf+vpLiNlvX7lfqY/9YL8PeMA0GCSqGSIb3DQEB CwUAMBcxFTATBgNVBAMMDHNzby51bWVzLmVkdTAeFw0xNjA5MjIxODAyMjFaFw0z NjA5MjIxODAyMjFaMBcxFTATBgNVBAMMDHNzby51bWVzLmVkdTCCASIwDQYJKoZI hvcNAQEBBQADggEPADCCAQoCggEBAIKDvtfmhu1eSTtoHsDBWamICI8cWSObVJJK /ccVenJ/bHP7BLowg8gKy+2gU56/3Ku0dPoGo/FxB5etPFaDD5mINu3iGmfFrwnn KrEoiOFzGpzZDEB2mFkTKf2G2EzofcZdlnNySeNAuvjwNqFh2ZP6bFRFFsE2l43z PWcCuvbNccceaT5xONgdQyAXiwIK9vItT9PSRn2g5I75juIju2iXDrxb+EYrQas/ 8E6wYMDk733+NdM6jUlQGHYvQdAMDGpe49aBoCCjhiX7CiHuzy0arE/MGPVFhzrC EHY7Img9T8c3xM26Jl9l6GK4c5GyMx/y5U0iOpwSl2nKcS6NGT0CAwEAAaNfMF0w HQYDVR0OBBYEFHKsfiMhYcpl1ndQa9a2L0fNXE80MDwGA1UdEQQ1MDOCDHNzby51 bWVzLmVkdYYjaHR0cHM6Ly9zc28udW1lcy5lZHUvaWRwL3NoaWJib2xldGgwDQYJ KoZIhvcNAQELBQADggEBAFa4/ooNnRO1DXTZ35mG7yslJU4QbFfLGXZExl1mXs9Y RS53wDbz/GSJWqZByLImGWB6L3bpffachGSD/69d4YWdJneyvqJ3PEhU/i3Z4COS Yd8WAhyZqhmoAs2x4bs7SgxjhF96ISQ8c0CTGv+lt1mDVER7G9XQFaioEPQyHl50 aAO5791lpaPW5jSS7hU7RBnOSqBi23wVw6pWERm5fUkGS6peMyeDnUM2l1q+KBej yYT29sjQqIxj/WrDb9bjFJWtLc61dKMApO8CRib3gnqpEEIfhJ1yEu7ADLVWxMkL eEfbOXENtFfnkTUcomVv6z8DCSMoXXqJojk5A1nPjFs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.umes.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.umes.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Maryland Eastern Shore</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Maryland Eastern Shore</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umes.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Joseph Smith</GivenName>
+ <EmailAddress>jrsmith@umes.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Martin Perry</GivenName>
+ <EmailAddress>meperry@umes.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Martin Perry</GivenName>
+ <EmailAddress>meperry@umes.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Martin Perry</GivenName>
+ <EmailAddress>meperry@umes.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Halogen Software Inc. -->
+<EntityDescriptor entityID="http://halossodev.halogensoftware.com/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">halogensoftware.com</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Halogen Software Inc.</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.saba.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://images.saba.com/img/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 89125176135984019049073727179417788825, expires on Fri Nov 27 19:02:57 2015 GMT -->
+ <ds:X509Certificate>
+MIIC/jCCAeagAwIBAgIQQwzicf5rvrpM72+MY4EhmTANBgkqhkiG9w0BAQsFADA7MTkwNwYDVQQD
+EzBBREZTIFNpZ25pbmcgLSBjYW90d3ZhZGZzMjAyLmhhbG9nZW5zb2Z0d2FyZS5jb20wHhcNMTQx
+MTI3MTkwMjU3WhcNMTUxMTI3MTkwMjU3WjA7MTkwNwYDVQQDEzBBREZTIFNpZ25pbmcgLSBjYW90
+d3ZhZGZzMjAyLmhhbG9nZW5zb2Z0d2FyZS5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK
+AoIBAQDV2ozFMrr/FFAYWkRQxgvSN+0yeFhtQMbVTd2HbNY67ha2nueOVNcWKKSOeQRoe/wXNpxP
+D0+E6Kz+JrN3RMnMZLnhZeh7gY3KpwFpPq39vYpQ3uYf4EqUv+wkstyQqD5fH4HSisbCcjAtr7VP
+x3aX4fcof/ASgQBm+Iv76ftzinUZOaReyVCZz1UozL/GrurIoF7mF12vAHi+dxt64dASiF7EDI/J
+3SjJx6tt0h0WdlnMcC7ILIlj6Xc59Ish0vV41yYzhwpMJ6yRglSgq7Z7GGEBVoeqZFy49slgHM+X
+d/+FpHd3HnzMj/3LvbrQMYQJ+ofGCc7voP3YVHgwu9AjAgMBAAEwDQYJKoZIhvcNAQELBQADggEB
+ALR1rUoERwU/suhmdxR+ix2yZ1nR/ApEEJF+xozrp7PaRDVtW3lRMKx+25ozmjYO4pAvCZubsOk5
+e5u5bIKM5pESx6fTRip0JqDM3QEBTvEEOM7F6hZBmyTRTml0Wy0SD+/vT27X+yS963a0W0MdYR/2
+ydZ+0DiacjtdtaZ4AmQ/mvTjeP1inantZLm8IGu0EDw00KsOWG9xQSsaFgp6GTC0mQuZuqz2YXly
+Ku1cxHw/CLSm8gwj5AKp+FQAzkYh9Uw7PG/GiJqUlsfLUTeDy31iGglKx6jfpt5OjK62mbPZAL9Y
+aSHHBU7liyDF51ycXk3bizTtO4hAzqqaaED30ws=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://halossodev.halogensoftware.com/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://halossodev.halogensoftware.com/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Halogen Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Halogen Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.halogensoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@saba.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://client.na1.hgncloud.com/uat_curators/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Saba Talentspace for Missouri Curators UAT</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.saba.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://images.saba.com/img/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1848293942, expires on Wed Jan 31 06:16:02 2035 GMT -->
+ <ds:X509Certificate>
+MIIDGjCCAgKgAwIBAgIEbiq6NjANBgkqhkiG9w0BAQsFADBPMRkwFwYDVQQDDBBIYWxvZ2VuIFNv
+ZnR3YXJlMQ0wCwYDVQQLDAROb25lMRQwEgYDVQQKDAtOb25lIEw9Tm9uZTENMAsGA1UEBhMETm9u
+ZTAeFw0xNTAxMzEwNjE2MDJaFw0zNTAxMzEwNjE2MDJaME8xGTAXBgNVBAMMEEhhbG9nZW4gU29m
+dHdhcmUxDTALBgNVBAsMBE5vbmUxFDASBgNVBAoMC05vbmUgTD1Ob25lMQ0wCwYDVQQGEwROb25l
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAu5SgxHTVbABFWrih4GUzMe2OPJtG2GUU
+Q96UgPWTdlZY80nI3jl+pjZ0lqlZOL1+M66wLtN0YSl7olElJduAGJiHJj8DbfN6+iFh8IM6Rvg7
+vQt6g9bGCu5dGBdzXz7heYhzx4TiKgXr9KBWg5Nl95wdGkXYYVEEU2BJVMGjSWYTRvAaM4h/b31O
+OPdtoQS60WpCGCTzrgAa9VkBxAonpH+uM6oM5/WPhPKs/OlhHMtgrE1wwm3gnlxP8f0sLlSnhHv1
+E5Msc3mZBMWiwmT+w+6zNxl/sxbEdTgiQZoZcM4BqW73tCx9BkYcQahQfxigFQQGD87SDeeNiIHf
+Q5d1+QIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQBVNWTM36rdlS69LT5X5vMQ5d1MKjQD1cFFHXq7
+VFuEc5JOLYJYRnCLuJ3L7PoqNCHH1cyS5A8mKvicAFl9TSxVQoGB0g8rerwmi5Dk89saJJ7EgOB2
+8cmFuGEVLwY5Qgwhnx+mYUtCiey+S88IcWYdD25Bup5p8XkYlgNzbrX7YrULiHBDwhJbShBK+0OW
+bKxoztRWWSqaq7TmhJ4ZZHAs0RsjCqsl02Djy2PRUW/ncYJk1PRP81QL5tZbIAtlK4wux/ODoLry
+QkGFoFdSzRXr0Ha3Ixlljz08qXHEUNICQOeuFNywDg644a8WodeEP9pMIvLehRg0LEpr9s/SZQGC
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://client.na1.hgncloud.com/uat_curators/saml/SSO" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Saba Talentspace for Missouri Curators UAT</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Halogen Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Halogen Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.halogensoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@saba.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://client.na1.hgncloud.com/uat_missourihealth/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Saba Talentspace for Missouri Health Care UAT</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.saba.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://images.saba.com/img/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1129154317, expires on Sun Nov 19 13:47:31 2034 GMT -->
+ <ds:X509Certificate>
+MIIDGjCCAgKgAwIBAgIEQ02HDTANBgkqhkiG9w0BAQsFADBPMRkwFwYDVQQDDBBIYWxvZ2VuIFNv
+ZnR3YXJlMQ0wCwYDVQQLDAROb25lMRQwEgYDVQQKDAtOb25lIEw9Tm9uZTENMAsGA1UEBhMETm9u
+ZTAeFw0xNDExMTkxMzQ3MzFaFw0zNDExMTkxMzQ3MzFaME8xGTAXBgNVBAMMEEhhbG9nZW4gU29m
+dHdhcmUxDTALBgNVBAsMBE5vbmUxFDASBgNVBAoMC05vbmUgTD1Ob25lMQ0wCwYDVQQGEwROb25l
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAh2vpMqUeWlekLKqAa/u8rzweyz5axddL
+h66yOpfjPWrRA55rEmxY5WyotCDIcByK4SxFfz1VDLNJ5TzSwZwzOpd7IyXRPxB3q1S1VDuupsuh
+nA2iaHJpulXJHr6zmabrQv+pmkuE4N7o6INZ+xOlw8//1xz+Q1Fnpjlq64m96H3oWHMZx1nl8dJZ
+HJ68vgZrwKYCsO7q2J0aQpM2Jrx+8LaCK31YoCwnpw6BmxPuR0sBtD+GZwzCZfneEXOdCelX5RaQ
+3POBWbrb2uJ77S6wLICAFzoanVDJ0AlMrDYJPTkOtn+AAekCHfzq2Fm58ryPlFjqVRR0PyNye2Vk
+Je7BcQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQBlCpfd1DNJ1gcIS4B7OsX3Uko3LXUqjrAsXuuI
+Q14V0RwQhpFJGIVRjtI3QpXbFtlWJrLUFmyG+V1/78BJPXUSz9VpQgfAQEHULObk655/yPx6cYAs
+m5ivfjyAWOnrtuiP1r+MFVAAMGG4o36Vv2/odENnZ80jbCKuwRCVxJiVMpBEWfW64UwPiFbATIJr
+DU3kiFl2s3+TLegPi89HPbnmu0raw5pkI7eupWlrFvitjiXf7tqVdLhTg0bunkKDyw2X7htmTnkP
+wN2NVmZUH4nfUixRX+PvdB0nH3pJ635HB5WeIIuubDiXVQHPfqsn4iqFp2u0MGoCQJB4d+qZD0ug
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://client.na1.hgncloud.com/uat_missourihealth/saml/SSO" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Saba Talentspace for Missouri Health Care UAT</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Halogen Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Halogen Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.halogensoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@saba.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://global.hgncloud.com/baylor/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Saba Talentspace for Baylor University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.saba.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://images.saba.com/img/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 162454647, expires on Mon Nov 6 05:26:08 2034 GMT -->
+ <ds:X509Certificate>
+MIIDGjCCAgKgAwIBAgIECa7cdzANBgkqhkiG9w0BAQsFADBPMRkwFwYDVQQDDBBIYWxvZ2VuIFNv
+ZnR3YXJlMQ0wCwYDVQQLDAROb25lMRQwEgYDVQQKDAtOb25lIEw9Tm9uZTENMAsGA1UEBhMETm9u
+ZTAeFw0xNDExMDYwNTI2MDhaFw0zNDExMDYwNTI2MDhaME8xGTAXBgNVBAMMEEhhbG9nZW4gU29m
+dHdhcmUxDTALBgNVBAsMBE5vbmUxFDASBgNVBAoMC05vbmUgTD1Ob25lMQ0wCwYDVQQGEwROb25l
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAo2gKQVtH3aAzZAf11VoroAns4qd6b/W7
+M2ptjk7j1ybdItrRC63mSFkKiFLApLy9h4wC5apRhnL15tEwBkNM2JoQ7EHDFwo614t5v3KOcHQN
+EVA9Yr1uSvVngltXNj3vYnHLiYEandDftJxB2+/6v3AzIw/zQx+ANmak3uoPVZW/IDxxZ5mNt2SL
+L1A+czrFtT+/4FzRyforTfHKiGBA02g3kQbYiHw2pvYLybLnDEa2NHqjNBdmgLZOnZ7N/9T6mK8T
+LAYw0n1oOsprf3UBwmrTOAdCQVVT/UJzqTY4co7DWQpkjhRB66JDQLWOgRvrc+Sd5gyfKN8FmtBG
+COMHpQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAya1LWuBUzx/vjOZxuzVexI8pGUN+raysJV+CU
+WeVf8dQGFc7j4yVnHBf7dc0Z51yBgVmBjRVdjfEFC2/J5Bd0011VzZj/lTcrPDVP1ONumlLtS84m
+EYIHPqbU2O950+Gu+sZQEdRttHpaGkVBm6nawtV8NA6Re27nkzgkLkUcdjNMEl3K6IQgy7Udcq9+
+Mn0296rRG7+n62iWS/R+FDRtyKTJN4IcZBCu5RAJyltyLBwlMZpy2tPvOYElr6dS1pfZVTRYpLof
+SMEKRI3SFvBcbiLPCqySZxl5BGI2adiSdbngzZAIpCzSxvrIeDrZqtNL7X21wjT6iy8Qe54Q87/F
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://global.hgncloud.com/baylor/saml/SSO" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Saba Talentspace for Baylor University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Halogen Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Halogen Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.halogensoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@saba.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://global.hgncloud.com/curatorsofmissouri/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Halogen Talentspace for Missouri Curators</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.saba.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://images.saba.com/img/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 2031268629, expires on Fri Feb 23 05:29:06 2035 GMT -->
+ <ds:X509Certificate>
+MIIDGjCCAgKgAwIBAgIEeRKzFTANBgkqhkiG9w0BAQsFADBPMRkwFwYDVQQDDBBIYWxvZ2VuIFNv
+ZnR3YXJlMQ0wCwYDVQQLDAROb25lMRQwEgYDVQQKDAtOb25lIEw9Tm9uZTENMAsGA1UEBhMETm9u
+ZTAeFw0xNTAyMjMwNTI5MDZaFw0zNTAyMjMwNTI5MDZaME8xGTAXBgNVBAMMEEhhbG9nZW4gU29m
+dHdhcmUxDTALBgNVBAsMBE5vbmUxFDASBgNVBAoMC05vbmUgTD1Ob25lMQ0wCwYDVQQGEwROb25l
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqw+nK3qlp8ZnA8a92/tCnwoy49MOMsPL
+jMHeK/1k/jBh9jRKjS+cEgP4dETT3hNQNrGAYBwEBG1utEe64a249dKx6KEjZIs6dK49nCc8/Sp5
+bRoHp5WatMGoMOEAx0/OJ4rRNj/Q+TcAhcUBiq38l/r3hwcg/4h+qn5z6YyJAC4Z7pIzEFpVi+hK
+TouLVWkT0qpvhdq0zzw+6DytJo51HAXw9d2RyFVsnkkMqlDitDUJdNNUVALIRUNw87AVQwus/coZ
+p1eZegqPX9Jrppnm1TSuQFHmfJkSpY1obYdFX3NEABmqXMvmcFBEFVGeDQDkLFFWS0pZG2D/lhRJ
+jkP+MQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQCbxTyMlANOOXiZ2ZtmiVKqk6B5Czg24+2S68b8
+IVyCHMZ731If2eni35cuVt09lIdaqTqP0lfZYZ7uxtg34rKNDxSwgKPDDsMsSWN0aJ9ALT6wD4QD
+rHoLzVK7q3IJwyVM5jvSO0ZSFbKZnFR4yMxEjJmWkeCY6sDq0C+VBK3U6Mb6964ZdfdQUxFfI9jS
+nVA2UgCy/dpgaeX+DaL50cAt5GtverHXhOzxXJ19wO1IjH0LbO1/NX77Zv8oE+5y9BRoYU0Z9YO+
+puZKGLDNMNvYUjMNwOao9eeKE4zcyA0Y0r/J/CWqY4beSoKK9lK+wGje5q59o3pOpp3i1z6LN+O3
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://global.hgncloud.com/curatorsofmissouri/saml/SSO" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Halogen Talentspace for Missouri Curators</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Halogen Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Halogen Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.halogensoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@saba.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://global.hgncloud.com/fisherosu/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Saba TalentSpace for Fisher College of Business at The Ohio State University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.saba.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://images.saba.com/img/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 658405952, expires on Mon Sep 1 14:51:49 2036 GMT -->
+ <ds:X509Certificate>
+MIIDEDCCAfigAwIBAgIEJz56QDANBgkqhkiG9w0BAQsFADBKMRkwFwYDVQQDDBBIYWxvZ2VuIFNv
+ZnR3YXJlMQ0wCwYDVQQLDAROb25lMQ8wDQYDVQQKDAZOb25lIEwxDTALBgNVBAYTBE5vbmUwHhcN
+MTYwOTAxMTQ1MTQ5WhcNMzYwOTAxMTQ1MTQ5WjBKMRkwFwYDVQQDDBBIYWxvZ2VuIFNvZnR3YXJl
+MQ0wCwYDVQQLDAROb25lMQ8wDQYDVQQKDAZOb25lIEwxDTALBgNVBAYTBE5vbmUwggEiMA0GCSqG
+SIb3DQEBAQUAA4IBDwAwggEKAoIBAQCtAQWtYSBteoIZ+gX4XMY96udJ4gC8PxbarF5HAkN/XKNU
+9aFe/rdP8XiARWUqNDO9e5ubnlx12FpO2VVn2E6pTiewGstoEUfBoo5SolzG10HTfec8LbYwYENx
+xWAa55FCY4lj4DHgC4jgHCn/GVeE8atkBOKbV6TTwSZ4rddUpniNodAWkX2MGBHNcDguGWf2qRG8
+62Bnd73qjKlbc1fUG9owOtgphpebBTlGFfRaXkKiKfNlLwopWJ81XkpdSSWYark41vvcP4ign7Et
+46Y8yHBVv4hN/BxrDhSqJRaIR+aRTgIFFihnY60Tps9VxAlFjEn7edUqSJqtgEe0EdRpAgMBAAEw
+DQYJKoZIhvcNAQELBQADggEBADV0KDIMxAWW8X7DOYy40Eyz9+yaOUXxjRHqaYpFiiNC8JV29mpd
+0EpHQ82Oi5TxBYMVuKN7bksWoN18CDOa7XDvqwdp3Ln85f24tKMz9GAU2GpqTuhwEFqRO4zj7RNG
+qbHZ714XeG5SrOFwwlt0sbOjNSzG93vk/93tRsRQnR8ELwUuTBA/c96/w50lYCWCq8IZ4W9NIVRD
+KZ/VGSg+6+3HwAVyND0tepid0e8Pp6FIF4PKPyO62QZjuFh2gS4Z0+IZsI8pC1eTBgwgrgCR08RO
+WCAe1WTctkf882wSoIK7NnH96Co26l2RIfd3FkB+CYbBKoRO1p1RMrXgAVLA+pI=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://global.hgncloud.com/fisherosu/saml/SSO" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Saba TalentSpace for Fisher College of Business at The Ohio State University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Halogen Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Halogen Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.halogensoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@saba.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://global.hgncloud.com/georgetown/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Saba TalentSpace For Georgetown University Office of Advancement</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.saba.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://images.saba.com/img/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 738378359, expires on Wed Dec 10 06:07:55 2036 GMT -->
+ <ds:X509Certificate>
+MIIDEDCCAfigAwIBAgIELALCdzANBgkqhkiG9w0BAQsFADBKMRkwFwYDVQQDDBBIYWxvZ2VuIFNv
+ZnR3YXJlMQ0wCwYDVQQLDAROb25lMQ8wDQYDVQQKDAZOb25lIEwxDTALBgNVBAYTBE5vbmUwHhcN
+MTYxMjEwMDYwNzU1WhcNMzYxMjEwMDYwNzU1WjBKMRkwFwYDVQQDDBBIYWxvZ2VuIFNvZnR3YXJl
+MQ0wCwYDVQQLDAROb25lMQ8wDQYDVQQKDAZOb25lIEwxDTALBgNVBAYTBE5vbmUwggEiMA0GCSqG
+SIb3DQEBAQUAA4IBDwAwggEKAoIBAQDnCZkP3gyoxfJymobJXRm0LD0AJ2mNoglDxzcLYG5xfW3d
+WaHV83ZMqYPYlwbleGnD4cATXszR8jGFNORV8a/NSPH2/2XJGJn7xQWP5Ngq2NAOPowpXLja9NAU
+o5l9/ucS3QdG+6N3WTNIRTJJc/0ysP3fCiwt/RnefIcnaARmdf+8V54M3Q+HsR2OxGee1QoNVWwO
+3oowfcdaBGZ53hqO+sIvUHUWfcfDSE5wN1m2Xm+EVr9MrSc1+BFIHYRrsVl3R5nYXjbI96EVoX0n
+oZsmXn7zC7+4f4p8K07tpA+NOEb15jgUbJA+QijzWiDalp8Ax/lPyUjKJygML7ucgvr/AgMBAAEw
+DQYJKoZIhvcNAQELBQADggEBAD/0tNuzFW4vb9TBRfszY0JWNx6tRUHh5w+etuyFOEYeCorSgYpA
+oqHk+58Td2gBoX9embjQCj9EkRi1adY/Hob+hxbFAyi7KtVVtLoKHJc4okeS99HHA0v5fO3esePk
+GhbxBhrZvXh8v1Nys//G+W0SZtX36to+dVfyFPASQd2Rw8Vong8KhKUCkEhxCoeCLxjErqr5x5jO
+51ey1DbsD0w+7oBqRRldJ9WXythbVeOa4U++EbhlsfQHU9HcPvHzUp9MZOldVbJ71owWmQf2lwwf
+l6t8lS3dk/ymKRZQ/4flaf74fTGKFMuoycFT4ttngW8HF3lmfNBq9CSBwz35GkU=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://global.hgncloud.com/georgetown/saml/SSO" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Saba TalentSpace For Georgetown University Office of Advancement</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Halogen Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Halogen Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.halogensoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@saba.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://global.hgncloud.com/loyola/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Saba TalentSpace for Loyola University Maryland, Inc.</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.saba.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://images.saba.com/img/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1053179311, expires on Wed Mar 12 05:05:26 2036 GMT -->
+ <ds:X509Certificate>
+MIIDGjCCAgKgAwIBAgIEPsY9rzANBgkqhkiG9w0BAQsFADBPMRkwFwYDVQQDDBBIYWxvZ2VuIFNv
+ZnR3YXJlMQ0wCwYDVQQLDAROb25lMRQwEgYDVQQKDAtOb25lIEw9Tm9uZTENMAsGA1UEBhMETm9u
+ZTAeFw0xNjAzMTIwNjA1MjZaFw0zNjAzMTIwNTA1MjZaME8xGTAXBgNVBAMMEEhhbG9nZW4gU29m
+dHdhcmUxDTALBgNVBAsMBE5vbmUxFDASBgNVBAoMC05vbmUgTD1Ob25lMQ0wCwYDVQQGEwROb25l
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvUYuD3i6fDnNVb03SwjIvLi19fo5dms4
+jfcvJqkscpxg8HVzYk2dYfEx2zQVXcBaQhD0KMPQyHMx21SSfMw7MyReTPIetRlK6+Bvvt7Le2iP
+MwTLe9IUA0G8ACO5il/fhe4zhlNglqs5pbZIEwc/kHf5HHiGp3PYpuqRbstdMeZ8t6bpTELIgMTo
+pMgtbrH2qzOr+XKKvTgd+LvyIfCfzmbalkZ79elgUresOJUiOzTCd3yzSulAZiN/yPo8kE8hmveX
+/tAZnLLxQlwKNx4u+Mck3sIrCUXIvqlmUe71rxjSrMHpUsxu5UoC//UWmhlwzFZQm2h2vznfEOSL
+CExbXQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAN9bMI/39f3HVat+lehGIfxNVqmn7TuoJ+EyFD
+a7XJSqop7UQBqk2I1A/wX6+ZKrSxc/8WA1BZC8Ux3w0A/E4OTP+2VFYU25QUFG4FvOigZivMNJVA
+F6KlvWFJgI5tnyF+oB2bnLby3Jp1qKJHx+TVI5XZxcWx3meazIBNFsjTTIW44NGa2dYaw0/JpCvJ
+J0M2e8yGkZr5FtCt0TFMgS/v389AqVrnVY9P1Nq7ii8ZlIP9qGT2XsS/UezR8iOxbqJVoyTEsRGe
+EokCcN4QNwLDTDnOjKFk3f3CfoH+1lI3MKmwdbwI8rFKpvAj2cwhBSXUC9lWQd1GLMzBUqR4R8RJ
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://global.hgncloud.com/loyola/saml/SSO" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Saba TalentSpace for Loyola University Maryland, Inc.</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Halogen Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Halogen Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.halogensoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@saba.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://global.hgncloud.com/med_miamiedu/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Saba TalentSpace for University of Miami – Coral Gables Campus (Main)</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.saba.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://images.saba.com/img/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 653586753, expires on Mon Dec 10 19:47:07 2035 GMT -->
+ <ds:X509Certificate>
+MIIDGjCCAgKgAwIBAgIEJvTxQTANBgkqhkiG9w0BAQsFADBPMRkwFwYDVQQDDBBIYWxvZ2VuIFNv
+ZnR3YXJlMQ0wCwYDVQQLDAROb25lMRQwEgYDVQQKDAtOb25lIEw9Tm9uZTENMAsGA1UEBhMETm9u
+ZTAeFw0xNTEyMTAxOTQ3MDdaFw0zNTEyMTAxOTQ3MDdaME8xGTAXBgNVBAMMEEhhbG9nZW4gU29m
+dHdhcmUxDTALBgNVBAsMBE5vbmUxFDASBgNVBAoMC05vbmUgTD1Ob25lMQ0wCwYDVQQGEwROb25l
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAqHWzJuAH5tzCHdqY7fgBMBJu+MoUp7e9
+UhAyE+TiCzBBJeinos+eOaAFXGtKS3ihk2Ps16PV+Ix5uppxvD4tSFmjXBcBRolyBBprlEzHTnI3
+g6IXSeDp0SCbDjbeKKqb+KUNMx+NHksjALR11ur6wZOkYx9dsrt6sD5bLCj2CYazyWg/gEhsKvKo
+PcNrYcXFRift7zAg+d8+YTvbqemF1hT4vhXT7oNGVYmormbdKrbTdxrf0KEJ4XoxSEHZ/LNlurJL
+4VXy4tKGqz2jkjwhkZayvcSBmepHyAi//rgdNY75pvIn8Sp5b6s0HlIfOk98+/1B05gZZdSAYZGE
+M5xHqQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQBzINhEBquMuwUwhou1/LLuBtvWIBRwA1Lau58Q
+upfJ5M6ogTNrgtL8i+coGw+BjCA+LVkhAnnQQSIhX7965B788J9fDtkvmFsvN8hegHYCSi76lt0o
+mjrDEGytxo7YARCzGTKOUSViON0GevqeEL7oH/xfsznajnvsIHjrgIi/hJDW7Cf6TRofokFIZ/v7
+Mc2x9jM0r6MrqTZcjslWVMO5L/YmCBK6WmrO6VBU/5xnTDC4EMF8DICx0jqUXmL+/T2R19MT4Og1
+qbahbqgOgczEfxmkgeKn0XVsm+Wz+ei2ICH3q2E+Mlml+jUBn1HQQTMTUWFIRX/ivDASCcWabbK4
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://global.hgncloud.com/med_miamiedu/saml/SSO" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Saba TalentSpace for University of Miami – Coral Gables Campus (Main)</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Halogen Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Halogen Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.halogensoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@saba.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://global.hgncloud.com/missourihealthcare/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Saba Talentspace for Missouri Health Care</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.saba.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://images.saba.com/img/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1790170725, expires on Fri Feb 23 05:09:32 2035 GMT -->
+ <ds:X509Certificate>
+MIIDGjCCAgKgAwIBAgIEarPWZTANBgkqhkiG9w0BAQsFADBPMRkwFwYDVQQDDBBIYWxvZ2VuIFNv
+ZnR3YXJlMQ0wCwYDVQQLDAROb25lMRQwEgYDVQQKDAtOb25lIEw9Tm9uZTENMAsGA1UEBhMETm9u
+ZTAeFw0xNTAyMjMwNTA5MzJaFw0zNTAyMjMwNTA5MzJaME8xGTAXBgNVBAMMEEhhbG9nZW4gU29m
+dHdhcmUxDTALBgNVBAsMBE5vbmUxFDASBgNVBAoMC05vbmUgTD1Ob25lMQ0wCwYDVQQGEwROb25l
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAlsZawVrzJnaP4Wj/sVejV7eB3aQyk9CL
+F/iFFAKwNxdjruDitdYZm6x38iVhoiCcJ75qvpua+1JaMMm0zW4m8rAybVxD68euWQIhOlA/xc0E
+SsANP7WGuZk+LvRxVKxOXGN7MkXfQJB+4AyyJaSlGQ1gytVoqaXWDhk5eosx4Aie1H+d9JCLaOeO
+mtrxgllqmwsRRJMOilGw9JVgxoG2QyZWsRgry5vvLWAxxuu/t+DNjMPJ9+0DJV8tPmp9fxZ+CDvC
+jACtfC3aoHCMfdsd+mgk+gYBoL3xtiPr8X2QSVd23MusUy8r9LKLUZ4h14DcotMKqyxmRfL7waB4
+KthjnwIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAh5+sedS63FgS2+CoqPyK0BHRDc2J8ZIaTDoWO
+OfG7qLsvB4JZrgbXlmeK/Kke7KGvZN+rwyZx8Z1dLjgEfKHXihPioaYr6BrXbYzwlwGFE1GA5g8D
+NuwKiIRjJie5RTUCsezayMiW+qxDhKibHqjscFATkNjCFxxo89dKthzyTY1FRc0CKL+oDyVEpEBZ
+sNygBT19PBMWVktKjFujaq+5W/IzFU3ImROZF3OqsiXZB/v85zRFPaPqqu4dW3sdHEy4Ue9Gi7rk
+JkSNzV2rlbhieAHUBJnXxQX8hrKlo29Rm1sB+uj7S6NF2zqyVd7zHXVFgCrY93gu1l9Y4z5fP236
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://global.hgncloud.com/missourihealthcare/saml/SSO" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Saba Talentspace for Missouri Health Care</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Halogen Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Halogen Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.halogensoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@saba.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://global.hgncloud.com/osu/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Saba TalentSpace for The Ohio State University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.saba.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://images.saba.com/img/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1288908346, expires on Mon Feb 11 09:42:18 2036 GMT -->
+ <ds:X509Certificate>
+MIIDGjCCAgKgAwIBAgIETNMuOjANBgkqhkiG9w0BAQsFADBPMRkwFwYDVQQDDBBIYWxvZ2VuIFNv
+ZnR3YXJlMQ0wCwYDVQQLDAROb25lMRQwEgYDVQQKDAtOb25lIEw9Tm9uZTENMAsGA1UEBhMETm9u
+ZTAeFw0xNjAyMTEwOTQyMThaFw0zNjAyMTEwOTQyMThaME8xGTAXBgNVBAMMEEhhbG9nZW4gU29m
+dHdhcmUxDTALBgNVBAsMBE5vbmUxFDASBgNVBAoMC05vbmUgTD1Ob25lMQ0wCwYDVQQGEwROb25l
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApgUhBfbp7CUshOcCK7uzPx75t4C1PWu/
+yjQdaYDwILmPJeJgBbokxmOOC037GcuVXvUCBmBSZdxjIEpNXEf4wcIay7z26l2ImiXJDMSA42Gu
+L/MUmoRoldl8qWjq80VHEGm/5YjSH12m5p8MYMiRNNhQEL+JKo7A0XNop2aXuJ72o0agx1pYDYqy
+5SpLXm4Pl+djGTnQafuYDMYcbyt+CbKdgphWNAiqSx+F6P0mgVW8e8kYSiihGBci9Ak0bj/70aCr
+fB+eNjyXRzQsQet2ajII95gYKardsJFkMQNH4GLfPM2CSyJO2NHl9IngSN+SM0L9DQG0TMdnwZbQ
+blXzTQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQCJ/C+VLEK/hccCHLB+wsEVxaKwvw6060IUv9Dr
+OnGJs2Za41oaSSw+a6dSwBASNdHAq1mViZctdSB8DykZYG/B8aeL/Yq3j1QyPs0B7a1YZCr+cMSJ
+deTOkj/nlVN2xuKIEwfogIVkvphBcLWN5rKh26gp48RP8MAvy3dUgvFINliXsx+NQCZQHl3VpRp0
+o2OUDtzW00RLSiCjJcS4fKvFkaQJhj1sEHISx1M58seLDQ4Luw7pCl9WClIvHSKAbb5vaeAgPAqy
+0zH7uXKvPTwYH6nQ1t8P6RkIiS3aBRq6SFWu+vPleJEfl9B8qvl9fWphe06faJoyINx+v5cQtvEz
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://global.hgncloud.com/osu/saml/SSO" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Saba TalentSpace for The Ohio State University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Halogen Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Halogen Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.halogensoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@saba.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://global.hgncloud.com/regents_uni_california/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Saba TalentSpace for The Regents of the University of California</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.saba.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://images.saba.com/img/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1249292822, expires on Wed Feb 21 06:10:55 2035 GMT -->
+ <ds:X509Certificate>
+MIIDGjCCAgKgAwIBAgIESnayFjANBgkqhkiG9w0BAQsFADBPMRkwFwYDVQQDDBBIYWxvZ2VuIFNv
+ZnR3YXJlMQ0wCwYDVQQLDAROb25lMRQwEgYDVQQKDAtOb25lIEw9Tm9uZTENMAsGA1UEBhMETm9u
+ZTAeFw0xNTAyMjEwNjEwNTVaFw0zNTAyMjEwNjEwNTVaME8xGTAXBgNVBAMMEEhhbG9nZW4gU29m
+dHdhcmUxDTALBgNVBAsMBE5vbmUxFDASBgNVBAoMC05vbmUgTD1Ob25lMQ0wCwYDVQQGEwROb25l
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApAljttoYF7Xxmdi7iU/a5oPz0LF0/8Db
+31BpIeDdKND5TBTjQ9242y1ZBVUeKIyt2bTIDLapoG42VVWESiddWh4fJTT20WnvUFHcysUhqDUa
+EXpwJQl2hF89pCx4FQtShJ3EsyiALHht5C5AyGEcGfA0s4CrRtpZh/Um6IKuFO7ZOsBByu941Gw4
+rvrkjxkgLdeB8jLUtcS3wgxgmRqnxPlZyIHQcPPCEL6B+ob9dntUFfmSSYXkAJxypLNKlaxa+0Nc
+W4ILRwX6EpGrVxDrd9lqrD2UdvCwjf/d4VOopF28GMvw1qZDvHdoY4WnVsBeObJWANtjg5KlLa3V
+lB5UoQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQBU/R92jnLGf/JkCzebSLDrQ0U3ZhUt/PtB6xZb
+85/5Go80y3Ww9fK0Xmvmx+DuPlHlpkBZr0cJqQ/gztTlhi9EAduUuux72rBvHsQQPINdHoWLzmWA
+81ujgoisIbdbDYFj4yQTmV6OzIiMO9PSh671mgwQPI24KPYbgfieeAsCw0R36Zy6l66ajOSNrFaM
+lFzBV4U1UFjVgurmAP2C1qKG2Xl1ceJLf5hAe08sDWT1SQMIEej32jK1gQzxdhPGanmj0XKVIlPt
+/NIAJ4u3QOFAM6aZCYic+hH04B2qxE2423z/VhzYlZeMeQ3ZWPuZThApBV2qNEjfSBtMjwTkhK1M
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://global.hgncloud.com/regents_uni_california/saml/SSO" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Saba TalentSpace for The Regents of the University of California</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Halogen Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Halogen Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.halogensoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@saba.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://global.hgncloud.com/uhd/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Saba Talentspace for University of Houston-Downtown</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.saba.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://images.saba.com/img/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 2026811377, expires on Thu Sep 20 15:41:29 2035 GMT -->
+ <ds:X509Certificate>
+MIIDGjCCAgKgAwIBAgIEeM6v8TANBgkqhkiG9w0BAQsFADBPMRkwFwYDVQQDDBBIYWxvZ2VuIFNv
+ZnR3YXJlMQ0wCwYDVQQLDAROb25lMRQwEgYDVQQKDAtOb25lIEw9Tm9uZTENMAsGA1UEBhMETm9u
+ZTAeFw0xNTA5MjAxNTQxMjlaFw0zNTA5MjAxNTQxMjlaME8xGTAXBgNVBAMMEEhhbG9nZW4gU29m
+dHdhcmUxDTALBgNVBAsMBE5vbmUxFDASBgNVBAoMC05vbmUgTD1Ob25lMQ0wCwYDVQQGEwROb25l
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwK7FA9KLUivt8KYY4CaqjaapKiYubQy4
+HkL8sjy3ZJzI5Q2yo1CMfs9aNNmdJ2dYMclK7uYM3WxWXrZPxK4yUHtvzEMJZxDcEUEOFzCUCnZL
+EnD6r+jk1mV+dLP1tu/2KKX3OgeqS8p8C/gFl3fD0KpvVX+sQQwdouRXOxWnMIOspRwf7aaMkRM8
+Vqm8I8849M6TJtMkJnnCRRsgyz7F3slHfgjtEqxn1FY6X9NLB7LqKpJA9C15MyMzEwsBWSxAbte7
+lpQ/oKBKIEs14r9fvsgsapL/NqpJUiWsPLrZd2UZQYpQZlZFP9SwFjDjwUa6vWJisPKYkp+rmjbw
+77k+uQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQBj8wjwipaWAGDoZfWJcg7lNQHhEa7ir7QmJ5Co
+2EYY2mepY8QjnrzjbVbjhzwXXJWWKU/8yNS4Y4w7ABisBQ8VTEeUEfpYw9R+/HAs6FdabFkBkzdf
+AqD7ERtnsYIp8mGZ1M9T7zxmMm/jn/0/pu6eH4WxqPdEdXrNF4qzkJNaE6hQQZo+aeAIz/vfyi8Y
+cgnzTyar4gwqwE/CXmn8A5GP44mMANSaVoAAvhMe1A/1exNIhERIUS1G5O+yYHPR4Poh1FGzVZdR
+8vLSZuOPeYHr2wp8kszBYAwKdZ1DlEg90Y31WTDXU1i+TypflMJljJXAMbraAMBEqFXGXkQ3oAyY
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://global.hgncloud.com/uhd/saml/SSO" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Saba Talentspace for University of Houston-Downtown</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Halogen Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Halogen Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.halogensoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@saba.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://global.hgncloud.com/wcupa/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Saba Talentspace for West Chester University of Pennsylvania</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.saba.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://images.saba.com/img/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1396557680, expires on Sat Mar 24 09:06:49 2035 GMT -->
+ <ds:X509Certificate>
+MIIDGjCCAgKgAwIBAgIEUz3HcDANBgkqhkiG9w0BAQsFADBPMRkwFwYDVQQDDBBIYWxvZ2VuIFNv
+ZnR3YXJlMQ0wCwYDVQQLDAROb25lMRQwEgYDVQQKDAtOb25lIEw9Tm9uZTENMAsGA1UEBhMETm9u
+ZTAeFw0xNTAzMjQwOTA2NDlaFw0zNTAzMjQwOTA2NDlaME8xGTAXBgNVBAMMEEhhbG9nZW4gU29m
+dHdhcmUxDTALBgNVBAsMBE5vbmUxFDASBgNVBAoMC05vbmUgTD1Ob25lMQ0wCwYDVQQGEwROb25l
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA3LuWsX6SSsh8oQft67ibKbPenwFbupaj
+znYTQWLg1/qkwXfERTwDr9XHa1ddTWeWCbZa8OHbTSYy9DSGLVpa0adYlGUaJMU726vNmDctyqfc
+rcQtjC4BrAHSIF6M/mvKVEYp9hjq3ef4Uht5Ph1XSdLHmyvNh/cTJX7I3LO9GFRQAqvwUZldvfpw
+c/cMTd59Vn5VYzJ8gkW/zMdCAU+ZVnAK8dBnyzvqmqBo7+ChQYsvZlJQcu8p7vL0y2rlQ6/O+fl+
+rCIqu9N6NBBDftNzaai+GsXwEjoWNYCKsptsZIPjU0q+c9n2YiDx1l8jb99jo5Jzkv/bmnz1d7G7
+PYKKGQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQDaoEzqIcdqxJ/w/VDGeNeL7uDk4g8vDYaiq8GC
+/7sSAn66QXKMzxbcpf7Msa9epdqLZrQj3b1yDuFOSSyurcGyeKXPPKHmMZy7H/J3jcjUaClMdlj2
+GeTwx52aGny5iStq4HmZ8sATV0jOvkQsLMAUjdqKECThsUsNQ2SPetVFbliGUIbZnFYkn2zqX5As
+VUTkyOi/M76jG9QLYr6OoQmTolMhxwhIdYh31AjmwcINfKOy0n7EHHuV3MYNVvbWjEGDveZGyV9g
+WapZVcdcahkpDJmbx0pc2/BMsiPPbY4r6rqcecJISQpb8L1+O+lmy5lxcw1+TYO6JD23iMjx54h6
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://global.hgncloud.com/wcupa/saml/SSO" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Saba Talentspace for West Chester University of Pennsylvania</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Halogen Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Halogen Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.halogensoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@saba.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@saba.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- DSE Rec, LLC -->
+<EntityDescriptor entityID="https://albany.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://albany.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Albany)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>
+MIIDtTCCAp2gAwIBAgIJAI+EZxoF5DQWMA0GCSqGSIb3DQEBCwUAMHExCzAJBgNV
+BAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQKDANE
+U0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRhY3RA
+ZHNlcmVjLmNvbTAeFw0xNjAzMDQxMjIzMTRaFw0xODExMjgxMjIzMTRaMHExCzAJ
+BgNVBAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQK
+DANEU0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRh
+Y3RAZHNlcmVjLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALx0
+8UI4K2N2KJGdNHq2IYayqg+o5Wg/Whop0g/4j4IvoVB2ksrb24VVHLYAHSUXHeP/
+dTyW4m0R1Hp4pozeP3rPiqMeXlkyMj9Yi6bYTZueiIDtM5h29nXtUZ2ivNLTVt+V
+wIds/4WS0eS8kswGL3YR0qC/E4v2JZWq3jdj7e0rBVJNGl3Zii9fud3z2DDmYhce
+Nc1zvPKrQq0Ug07bejIJoAtu7DqjTekO4PCq99u1Rkfzmm8xm25JRsNioN1lhQeN
+efmu6Hfa+esGKwF+s8MB7Jbtku/daSMUKpxviM7C0/eUoD/JEOGjwxFa0a2IQmIM
+LinZa7qw3QCMeEys/tkCAwEAAaNQME4wHQYDVR0OBBYEFHHZTCTAqP7l8mTeOCwH
+YTbOEb2xMB8GA1UdIwQYMBaAFHHZTCTAqP7l8mTeOCwHYTbOEb2xMAwGA1UdEwQF
+MAMBAf8wDQYJKoZIhvcNAQELBQADggEBAIrza9rwGgzaLL15hms3NpRZYuTxxGtu
+MYYbP1Ptt8ae3qpSbCuSltLKozjKQEUzz5qAlAqqegKepe6glU4w9a6bwn7KhdQ3
+QXsd3pMmEoQcMyidnPGAjtM+vfGHpjOf8Na3VWJm5PIC6zd1vLOjWZiKDmyo9+8u
+YM/1lwTppuBlzoH25NhPA6nvzVirlY5hI1Xr8m1pI48R9yw2UngC/HKaYBgtIWN6
+IswM75A4sLGTa3sJUsslI8w+DBBBPT+gWbTMn1L4md++FkGrc4Wrd56aejHVp3xf
+j9aMTvu1gA5h7xwcYzv0slBzS9cSHKD0NVXUtEEQjNgn/p7MJI9It2o=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://albany.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://albany.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://albany.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://albany.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://albany.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Albany)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://american.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://american.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (American)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://american.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://american.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://american.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://american.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://american.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (American)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://asu.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://asu.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (ASU)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://asu.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://asu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://asu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://asu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://asu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (ASU)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://brockport.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://brockport.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Brockport)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://brockport.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://brockport.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://brockport.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://brockport.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://brockport.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Brockport)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://brown.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://brown.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Brown)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://brown.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://brown.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://brown.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://brown.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://brown.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Brown)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://bu.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://bu.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (BU)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://bu.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://bu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://bu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (BU)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://calpoly.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://calpoly.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Cal Poly)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>
+MIIDtTCCAp2gAwIBAgIJAI+EZxoF5DQWMA0GCSqGSIb3DQEBCwUAMHExCzAJBgNV
+BAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQKDANE
+U0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRhY3RA
+ZHNlcmVjLmNvbTAeFw0xNjAzMDQxMjIzMTRaFw0xODExMjgxMjIzMTRaMHExCzAJ
+BgNVBAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQK
+DANEU0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRh
+Y3RAZHNlcmVjLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALx0
+8UI4K2N2KJGdNHq2IYayqg+o5Wg/Whop0g/4j4IvoVB2ksrb24VVHLYAHSUXHeP/
+dTyW4m0R1Hp4pozeP3rPiqMeXlkyMj9Yi6bYTZueiIDtM5h29nXtUZ2ivNLTVt+V
+wIds/4WS0eS8kswGL3YR0qC/E4v2JZWq3jdj7e0rBVJNGl3Zii9fud3z2DDmYhce
+Nc1zvPKrQq0Ug07bejIJoAtu7DqjTekO4PCq99u1Rkfzmm8xm25JRsNioN1lhQeN
+efmu6Hfa+esGKwF+s8MB7Jbtku/daSMUKpxviM7C0/eUoD/JEOGjwxFa0a2IQmIM
+LinZa7qw3QCMeEys/tkCAwEAAaNQME4wHQYDVR0OBBYEFHHZTCTAqP7l8mTeOCwH
+YTbOEb2xMB8GA1UdIwQYMBaAFHHZTCTAqP7l8mTeOCwHYTbOEb2xMAwGA1UdEwQF
+MAMBAf8wDQYJKoZIhvcNAQELBQADggEBAIrza9rwGgzaLL15hms3NpRZYuTxxGtu
+MYYbP1Ptt8ae3qpSbCuSltLKozjKQEUzz5qAlAqqegKepe6glU4w9a6bwn7KhdQ3
+QXsd3pMmEoQcMyidnPGAjtM+vfGHpjOf8Na3VWJm5PIC6zd1vLOjWZiKDmyo9+8u
+YM/1lwTppuBlzoH25NhPA6nvzVirlY5hI1Xr8m1pI48R9yw2UngC/HKaYBgtIWN6
+IswM75A4sLGTa3sJUsslI8w+DBBBPT+gWbTMn1L4md++FkGrc4Wrd56aejHVp3xf
+j9aMTvu1gA5h7xwcYzv0slBzS9cSHKD0NVXUtEEQjNgn/p7MJI9It2o=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://calpoly.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calpoly.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://calpoly.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calpoly.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://calpoly.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Cal Poly)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cmu.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cmu.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (CMU)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cmu.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cmu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cmu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cmu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cmu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (CMU)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://colorado.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://colorado.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Colorado)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>
+MIIDtTCCAp2gAwIBAgIJAI+EZxoF5DQWMA0GCSqGSIb3DQEBCwUAMHExCzAJBgNV
+BAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQKDANE
+U0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRhY3RA
+ZHNlcmVjLmNvbTAeFw0xNjAzMDQxMjIzMTRaFw0xODExMjgxMjIzMTRaMHExCzAJ
+BgNVBAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQK
+DANEU0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRh
+Y3RAZHNlcmVjLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALx0
+8UI4K2N2KJGdNHq2IYayqg+o5Wg/Whop0g/4j4IvoVB2ksrb24VVHLYAHSUXHeP/
+dTyW4m0R1Hp4pozeP3rPiqMeXlkyMj9Yi6bYTZueiIDtM5h29nXtUZ2ivNLTVt+V
+wIds/4WS0eS8kswGL3YR0qC/E4v2JZWq3jdj7e0rBVJNGl3Zii9fud3z2DDmYhce
+Nc1zvPKrQq0Ug07bejIJoAtu7DqjTekO4PCq99u1Rkfzmm8xm25JRsNioN1lhQeN
+efmu6Hfa+esGKwF+s8MB7Jbtku/daSMUKpxviM7C0/eUoD/JEOGjwxFa0a2IQmIM
+LinZa7qw3QCMeEys/tkCAwEAAaNQME4wHQYDVR0OBBYEFHHZTCTAqP7l8mTeOCwH
+YTbOEb2xMB8GA1UdIwQYMBaAFHHZTCTAqP7l8mTeOCwHYTbOEb2xMAwGA1UdEwQF
+MAMBAf8wDQYJKoZIhvcNAQELBQADggEBAIrza9rwGgzaLL15hms3NpRZYuTxxGtu
+MYYbP1Ptt8ae3qpSbCuSltLKozjKQEUzz5qAlAqqegKepe6glU4w9a6bwn7KhdQ3
+QXsd3pMmEoQcMyidnPGAjtM+vfGHpjOf8Na3VWJm5PIC6zd1vLOjWZiKDmyo9+8u
+YM/1lwTppuBlzoH25NhPA6nvzVirlY5hI1Xr8m1pI48R9yw2UngC/HKaYBgtIWN6
+IswM75A4sLGTa3sJUsslI8w+DBBBPT+gWbTMn1L4md++FkGrc4Wrd56aejHVp3xf
+j9aMTvu1gA5h7xwcYzv0slBzS9cSHKD0NVXUtEEQjNgn/p7MJI9It2o=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://colorado.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://colorado.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://colorado.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://colorado.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://colorado.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Colorado)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cpp.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cpp.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (CPP)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>
+MIIDtTCCAp2gAwIBAgIJAI+EZxoF5DQWMA0GCSqGSIb3DQEBCwUAMHExCzAJBgNV
+BAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQKDANE
+U0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRhY3RA
+ZHNlcmVjLmNvbTAeFw0xNjAzMDQxMjIzMTRaFw0xODExMjgxMjIzMTRaMHExCzAJ
+BgNVBAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQK
+DANEU0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRh
+Y3RAZHNlcmVjLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALx0
+8UI4K2N2KJGdNHq2IYayqg+o5Wg/Whop0g/4j4IvoVB2ksrb24VVHLYAHSUXHeP/
+dTyW4m0R1Hp4pozeP3rPiqMeXlkyMj9Yi6bYTZueiIDtM5h29nXtUZ2ivNLTVt+V
+wIds/4WS0eS8kswGL3YR0qC/E4v2JZWq3jdj7e0rBVJNGl3Zii9fud3z2DDmYhce
+Nc1zvPKrQq0Ug07bejIJoAtu7DqjTekO4PCq99u1Rkfzmm8xm25JRsNioN1lhQeN
+efmu6Hfa+esGKwF+s8MB7Jbtku/daSMUKpxviM7C0/eUoD/JEOGjwxFa0a2IQmIM
+LinZa7qw3QCMeEys/tkCAwEAAaNQME4wHQYDVR0OBBYEFHHZTCTAqP7l8mTeOCwH
+YTbOEb2xMB8GA1UdIwQYMBaAFHHZTCTAqP7l8mTeOCwHYTbOEb2xMAwGA1UdEwQF
+MAMBAf8wDQYJKoZIhvcNAQELBQADggEBAIrza9rwGgzaLL15hms3NpRZYuTxxGtu
+MYYbP1Ptt8ae3qpSbCuSltLKozjKQEUzz5qAlAqqegKepe6glU4w9a6bwn7KhdQ3
+QXsd3pMmEoQcMyidnPGAjtM+vfGHpjOf8Na3VWJm5PIC6zd1vLOjWZiKDmyo9+8u
+YM/1lwTppuBlzoH25NhPA6nvzVirlY5hI1Xr8m1pI48R9yw2UngC/HKaYBgtIWN6
+IswM75A4sLGTa3sJUsslI8w+DBBBPT+gWbTMn1L4md++FkGrc4Wrd56aejHVp3xf
+j9aMTvu1gA5h7xwcYzv0slBzS9cSHKD0NVXUtEEQjNgn/p7MJI9It2o=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cpp.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cpp.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cpp.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cpp.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cpp.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (CPP)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://csufresno.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://csufresno.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (CSU- Fresno)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://csufresno.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csufresno.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://csufresno.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csufresno.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://csufresno.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (CSU- Fresno)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://csulb.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://csulb.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (CSU- Long Beach)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://csulb.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csulb.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://csulb.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csulb.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://csulb.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (CSU- Long Beach)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://csun.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://csun.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (CSU- Northridge)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://csun.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csun.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://csun.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csun.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://csun.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (CSU- Northridge)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://csusm.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://csusm.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (CSU- San Marcos)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://csusm.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csusm.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://csusm.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csusm.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://csusm.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (CSU- San Marcos)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://depaul.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://depaul.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (DePaul)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18007855529986031649, expires on Sun Apr 8 20:21:18 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://depaul.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://depaul.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://depaul.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://depaul.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://depaul.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (DePaul)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://fullerton.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fullerton.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (CSU- Fullerton)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fullerton.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fullerton.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://fullerton.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fullerton.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://fullerton.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (CSU- Fullerton)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ku.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ku.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (KU)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ku.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ku.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ku.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ku.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ku.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (KU)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://lafayette.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lafayette.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Lafayette)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lafayette.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lafayette.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://lafayette.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lafayette.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://lafayette.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Lafayette)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://mit.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mit.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (MIT)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mit.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mit.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mit.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mit.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://mit.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (MIT)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nau.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nau.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (NAU)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>
+MIIDtTCCAp2gAwIBAgIJAI+EZxoF5DQWMA0GCSqGSIb3DQEBCwUAMHExCzAJBgNV
+BAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQKDANE
+U0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRhY3RA
+ZHNlcmVjLmNvbTAeFw0xNjAzMDQxMjIzMTRaFw0xODExMjgxMjIzMTRaMHExCzAJ
+BgNVBAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQK
+DANEU0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRh
+Y3RAZHNlcmVjLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALx0
+8UI4K2N2KJGdNHq2IYayqg+o5Wg/Whop0g/4j4IvoVB2ksrb24VVHLYAHSUXHeP/
+dTyW4m0R1Hp4pozeP3rPiqMeXlkyMj9Yi6bYTZueiIDtM5h29nXtUZ2ivNLTVt+V
+wIds/4WS0eS8kswGL3YR0qC/E4v2JZWq3jdj7e0rBVJNGl3Zii9fud3z2DDmYhce
+Nc1zvPKrQq0Ug07bejIJoAtu7DqjTekO4PCq99u1Rkfzmm8xm25JRsNioN1lhQeN
+efmu6Hfa+esGKwF+s8MB7Jbtku/daSMUKpxviM7C0/eUoD/JEOGjwxFa0a2IQmIM
+LinZa7qw3QCMeEys/tkCAwEAAaNQME4wHQYDVR0OBBYEFHHZTCTAqP7l8mTeOCwH
+YTbOEb2xMB8GA1UdIwQYMBaAFHHZTCTAqP7l8mTeOCwHYTbOEb2xMAwGA1UdEwQF
+MAMBAf8wDQYJKoZIhvcNAQELBQADggEBAIrza9rwGgzaLL15hms3NpRZYuTxxGtu
+MYYbP1Ptt8ae3qpSbCuSltLKozjKQEUzz5qAlAqqegKepe6glU4w9a6bwn7KhdQ3
+QXsd3pMmEoQcMyidnPGAjtM+vfGHpjOf8Na3VWJm5PIC6zd1vLOjWZiKDmyo9+8u
+YM/1lwTppuBlzoH25NhPA6nvzVirlY5hI1Xr8m1pI48R9yw2UngC/HKaYBgtIWN6
+IswM75A4sLGTa3sJUsslI8w+DBBBPT+gWbTMn1L4md++FkGrc4Wrd56aejHVp3xf
+j9aMTvu1gA5h7xwcYzv0slBzS9cSHKD0NVXUtEEQjNgn/p7MJI9It2o=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nau.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nau.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nau.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nau.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nau.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (NAU)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://neu.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://neu.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Northeastern)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://neu.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://neu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://neu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://neu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://neu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Northeastern)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nyuad.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nyuad.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (NYU Abu-Dhabi)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nyuad.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nyuad.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nyuad.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nyuad.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nyuad.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (NYU Abu-Dhabi)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nyu.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nyu.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (NYU)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nyu.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nyu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nyu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nyu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nyu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (NYU)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://okstate.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://okstate.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (OK State)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>
+MIIDtTCCAp2gAwIBAgIJAI+EZxoF5DQWMA0GCSqGSIb3DQEBCwUAMHExCzAJBgNV
+BAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQKDANE
+U0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRhY3RA
+ZHNlcmVjLmNvbTAeFw0xNjAzMDQxMjIzMTRaFw0xODExMjgxMjIzMTRaMHExCzAJ
+BgNVBAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQK
+DANEU0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRh
+Y3RAZHNlcmVjLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALx0
+8UI4K2N2KJGdNHq2IYayqg+o5Wg/Whop0g/4j4IvoVB2ksrb24VVHLYAHSUXHeP/
+dTyW4m0R1Hp4pozeP3rPiqMeXlkyMj9Yi6bYTZueiIDtM5h29nXtUZ2ivNLTVt+V
+wIds/4WS0eS8kswGL3YR0qC/E4v2JZWq3jdj7e0rBVJNGl3Zii9fud3z2DDmYhce
+Nc1zvPKrQq0Ug07bejIJoAtu7DqjTekO4PCq99u1Rkfzmm8xm25JRsNioN1lhQeN
+efmu6Hfa+esGKwF+s8MB7Jbtku/daSMUKpxviM7C0/eUoD/JEOGjwxFa0a2IQmIM
+LinZa7qw3QCMeEys/tkCAwEAAaNQME4wHQYDVR0OBBYEFHHZTCTAqP7l8mTeOCwH
+YTbOEb2xMB8GA1UdIwQYMBaAFHHZTCTAqP7l8mTeOCwHYTbOEb2xMAwGA1UdEwQF
+MAMBAf8wDQYJKoZIhvcNAQELBQADggEBAIrza9rwGgzaLL15hms3NpRZYuTxxGtu
+MYYbP1Ptt8ae3qpSbCuSltLKozjKQEUzz5qAlAqqegKepe6glU4w9a6bwn7KhdQ3
+QXsd3pMmEoQcMyidnPGAjtM+vfGHpjOf8Na3VWJm5PIC6zd1vLOjWZiKDmyo9+8u
+YM/1lwTppuBlzoH25NhPA6nvzVirlY5hI1Xr8m1pI48R9yw2UngC/HKaYBgtIWN6
+IswM75A4sLGTa3sJUsslI8w+DBBBPT+gWbTMn1L4md++FkGrc4Wrd56aejHVp3xf
+j9aMTvu1gA5h7xwcYzv0slBzS9cSHKD0NVXUtEEQjNgn/p7MJI9It2o=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://okstate.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://okstate.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://okstate.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://okstate.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://okstate.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (OK State)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://pitt.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pitt.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Pitt)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pitt.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pitt.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://pitt.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pitt.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://pitt.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Pitt)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://rutgers.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rutgers.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Rutgers)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://rutgers.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rutgers.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rutgers.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rutgers.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rutgers.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Rutgers)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://rutgers-newark.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rutgers-newark.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Rutgers-Newark)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18007855529986031649, expires on Sun Apr 8 20:21:18 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://rutgers-newark.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rutgers-newark.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rutgers-newark.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rutgers-newark.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rutgers-newark.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Rutgers-Newark)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sdstate.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sdstate.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (South Dakota State)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sdstate.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sdstate.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sdstate.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sdstate.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sdstate.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (South Dakota State)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sdsu.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sdsu.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (SDSU)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sdsu.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sdsu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sdsu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sdsu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sdsu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (SDSU)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sso-sp.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sso-sp.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (domain-wide)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso-sp.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso-sp.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sso-sp.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso-sp.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sso-sp.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (domain-wide)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://stanford.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://stanford.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Stanford)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://stanford.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stanford.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://stanford.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stanford.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://stanford.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Stanford)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://temple.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://temple.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Temple)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>
+MIIDtTCCAp2gAwIBAgIJAI+EZxoF5DQWMA0GCSqGSIb3DQEBCwUAMHExCzAJBgNV
+BAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQKDANE
+U0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRhY3RA
+ZHNlcmVjLmNvbTAeFw0xNjAzMDQxMjIzMTRaFw0xODExMjgxMjIzMTRaMHExCzAJ
+BgNVBAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQK
+DANEU0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRh
+Y3RAZHNlcmVjLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALx0
+8UI4K2N2KJGdNHq2IYayqg+o5Wg/Whop0g/4j4IvoVB2ksrb24VVHLYAHSUXHeP/
+dTyW4m0R1Hp4pozeP3rPiqMeXlkyMj9Yi6bYTZueiIDtM5h29nXtUZ2ivNLTVt+V
+wIds/4WS0eS8kswGL3YR0qC/E4v2JZWq3jdj7e0rBVJNGl3Zii9fud3z2DDmYhce
+Nc1zvPKrQq0Ug07bejIJoAtu7DqjTekO4PCq99u1Rkfzmm8xm25JRsNioN1lhQeN
+efmu6Hfa+esGKwF+s8MB7Jbtku/daSMUKpxviM7C0/eUoD/JEOGjwxFa0a2IQmIM
+LinZa7qw3QCMeEys/tkCAwEAAaNQME4wHQYDVR0OBBYEFHHZTCTAqP7l8mTeOCwH
+YTbOEb2xMB8GA1UdIwQYMBaAFHHZTCTAqP7l8mTeOCwHYTbOEb2xMAwGA1UdEwQF
+MAMBAf8wDQYJKoZIhvcNAQELBQADggEBAIrza9rwGgzaLL15hms3NpRZYuTxxGtu
+MYYbP1Ptt8ae3qpSbCuSltLKozjKQEUzz5qAlAqqegKepe6glU4w9a6bwn7KhdQ3
+QXsd3pMmEoQcMyidnPGAjtM+vfGHpjOf8Na3VWJm5PIC6zd1vLOjWZiKDmyo9+8u
+YM/1lwTppuBlzoH25NhPA6nvzVirlY5hI1Xr8m1pI48R9yw2UngC/HKaYBgtIWN6
+IswM75A4sLGTa3sJUsslI8w+DBBBPT+gWbTMn1L4md++FkGrc4Wrd56aejHVp3xf
+j9aMTvu1gA5h7xwcYzv0slBzS9cSHKD0NVXUtEEQjNgn/p7MJI9It2o=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://temple.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://temple.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://temple.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://temple.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://temple.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Temple)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://tufts.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://tufts.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Tufts)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tufts.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tufts.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tufts.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tufts.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tufts.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Tufts)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucdavis.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucdavis.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (UC- Davis)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18007855529986031649, expires on Sun Apr 8 20:21:18 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ucdavis.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucdavis.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ucdavis.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucdavis.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ucdavis.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (UC- Davis)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uci.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uci.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (UC- Irvine)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uci.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uci.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uci.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uci.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uci.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (UC- Irvine)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucsb.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucsb.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (UC- Santa Barbara)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ucsb.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucsb.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ucsb.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucsb.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ucsb.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (UC- Santa Barbara)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucsc.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucsc.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (UC- Santa Cruz)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ucsc.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucsc.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ucsc.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucsc.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ucsc.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (UC- Santa Cruz)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucsd.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucsd.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (UC- San Diego)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ucsd.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucsd.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ucsd.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucsd.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ucsd.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (UC- San Diego)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uic.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uic.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (UIC)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18007855529986031649, expires on Sun Apr 8 20:21:18 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uic.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uic.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uic.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uic.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uic.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (UIC)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umbc.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://umbc.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (UMBC)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://umbc.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umbc.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://umbc.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umbc.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://umbc.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (UMBC)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umd.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://umd.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (UMD)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://umd.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umd.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://umd.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umd.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://umd.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (UMD)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umn-d.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://umn-d.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (UMN-Duluth)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://umn-d.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umn-d.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://umn-d.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umn-d.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://umn-d.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (UMN-Duluth)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uncc.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uncc.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (UNCC)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uncc.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uncc.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uncc.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uncc.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uncc.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (UNCC)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://usu.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://usu.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Utah State)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18007855529986031649, expires on Sun Apr 8 20:21:18 2029 GMT -->
+ <ds:X509Certificate>
+MIID0jCCArqgAwIBAgIJAPnowTHfXwAhMA0GCSqGSIb3DQEBCwUAMH4xCzAJBgNV
+BAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQKDANE
+U0UxCzAJBgNVBAsMAklUMRMwEQYDVQQDDApkc2VyZWMuY29tMSEwHwYJKoZIhvcN
+AQkBFhJjb250YWN0QGRzZXJlYy5jb20wHhcNMTkwMjIwMjAyMTE4WhcNMjkwNDA4
+MjAyMTE4WjB+MQswCQYDVQQGEwJVUzELMAkGA1UECAwCTUExDzANBgNVBAcMBkJv
+c3RvbjEMMAoGA1UECgwDRFNFMQswCQYDVQQLDAJJVDETMBEGA1UEAwwKZHNlcmVj
+LmNvbTEhMB8GCSqGSIb3DQEJARYSY29udGFjdEBkc2VyZWMuY29tMIIBIjANBgkq
+hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0GNaANAPLtNsMEQwkCe109OC6oRuWmtw
+Ot32oz7Hm8gShtKSMk5Oakz8cBwqdx8osC5coJx/hyWTCYNuzszNcgV+mnaSkQLy
+NuLcAqrFKgwUww+Bh145oHjj9Ac4BMinJU/g2s6/wMF3ok6QwO21KR/fCl/akjVV
+yP0mS9piZTqE0+OSQ84BBVNF0V+/cNlrnSSPW1LzjnYJJFBM4Ltm824kMlaex1DJ
+QFsOlZe0naPtRXn8ESqO+xL0KwNTNoASHEFGUbg2I5DPpKOFD49aV94IlSdb3onU
+NkIsPjaFjItYghaa+Q/aoWyl7nxwdgp14KA5h1zwGnxsezCeTRsYZwIDAQABo1Mw
+UTAdBgNVHQ4EFgQUMFkGN3ryT6ZTEQWrv3rx5GnLgiQwHwYDVR0jBBgwFoAUMFkG
+N3ryT6ZTEQWrv3rx5GnLgiQwDwYDVR0TAQH/BAUwAwEB/zANBgkqhkiG9w0BAQsF
+AAOCAQEAV1a2vjrUnR8A8zuya9U1qp+eyFg/9GnDgYhhYUE174enzt+333qqBMhK
+Nr9HqDOqPXohsMsLB2rPOHwa4BoKx3qHuPY98FFxZ3/n0V1AJuUKGhsqd/ImUWpM
+pGltPbyqWw8Adv/nZAje8SNzFEIlE6KQp/NEM6Ma8T5AeGhntn7bkDgwymRl2he/
+NMlVj7d6SkHC3OGtAtXALPaiETzbu+bOqoRxUYi576g+0Y9YWk1noFeeC/ImNNIz
+TKPU7aBYOqiAKSCZRsQg16cJSDStzrQofugPrDxsf4nsVHJ/zuYOftRaaIP0EAss
+d3YUCZZCqwOyqBUtYgwnOyNCfEEq5g==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://usu.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://usu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://usu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://usu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://usu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Utah State)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://utdallas.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://utdallas.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (UT-Dallas)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://utdallas.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://utdallas.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://utdallas.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://utdallas.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://utdallas.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (UT-Dallas)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uwm.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uwm.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (UWM)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18007855529986031649, expires on Sun Apr 8 20:21:18 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uwm.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uwm.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uwm.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uwm.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uwm.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (UWM)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uwyo.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uwyo.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (UWYO)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>
+MIIDtTCCAp2gAwIBAgIJAI+EZxoF5DQWMA0GCSqGSIb3DQEBCwUAMHExCzAJBgNV
+BAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQKDANE
+U0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRhY3RA
+ZHNlcmVjLmNvbTAeFw0xNjAzMDQxMjIzMTRaFw0xODExMjgxMjIzMTRaMHExCzAJ
+BgNVBAYTAlVTMQswCQYDVQQIDAJNQTEPMA0GA1UEBwwGQm9zdG9uMQwwCgYDVQQK
+DANEU0UxEzARBgNVBAMMCmRzZXJlYy5jb20xITAfBgkqhkiG9w0BCQEWEmNvbnRh
+Y3RAZHNlcmVjLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALx0
+8UI4K2N2KJGdNHq2IYayqg+o5Wg/Whop0g/4j4IvoVB2ksrb24VVHLYAHSUXHeP/
+dTyW4m0R1Hp4pozeP3rPiqMeXlkyMj9Yi6bYTZueiIDtM5h29nXtUZ2ivNLTVt+V
+wIds/4WS0eS8kswGL3YR0qC/E4v2JZWq3jdj7e0rBVJNGl3Zii9fud3z2DDmYhce
+Nc1zvPKrQq0Ug07bejIJoAtu7DqjTekO4PCq99u1Rkfzmm8xm25JRsNioN1lhQeN
+efmu6Hfa+esGKwF+s8MB7Jbtku/daSMUKpxviM7C0/eUoD/JEOGjwxFa0a2IQmIM
+LinZa7qw3QCMeEys/tkCAwEAAaNQME4wHQYDVR0OBBYEFHHZTCTAqP7l8mTeOCwH
+YTbOEb2xMB8GA1UdIwQYMBaAFHHZTCTAqP7l8mTeOCwHYTbOEb2xMAwGA1UdEwQF
+MAMBAf8wDQYJKoZIhvcNAQELBQADggEBAIrza9rwGgzaLL15hms3NpRZYuTxxGtu
+MYYbP1Ptt8ae3qpSbCuSltLKozjKQEUzz5qAlAqqegKepe6glU4w9a6bwn7KhdQ3
+QXsd3pMmEoQcMyidnPGAjtM+vfGHpjOf8Na3VWJm5PIC6zd1vLOjWZiKDmyo9+8u
+YM/1lwTppuBlzoH25NhPA6nvzVirlY5hI1Xr8m1pI48R9yw2UngC/HKaYBgtIWN6
+IswM75A4sLGTa3sJUsslI8w+DBBBPT+gWbTMn1L4md++FkGrc4Wrd56aejHVp3xf
+j9aMTvu1gA5h7xwcYzv0slBzS9cSHKD0NVXUtEEQjNgn/p7MJI9It2o=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uwyo.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uwyo.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uwyo.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uwyo.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uwyo.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (UWYO)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://weber.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://weber.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Weber)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18007855529986031649, expires on Sun Apr 8 20:21:18 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://weber.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://weber.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://weber.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://weber.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://weber.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Weber)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wmich.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wmich.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (Western Michigan)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18007855529986031649, expires on Sun Apr 8 20:21:18 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wmich.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wmich.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wmich.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wmich.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wmich.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (Western Michigan)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wwu.dserec.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wwu.dserec.com/simplesaml/module.php/saml/sp/metadata.php/sso-sslX" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DSE RecCenter (WWU)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DSE- Rec Management Software</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.dserec.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dserec.com/privacy_policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="30" width="111" xml:lang="en">https://www.dserec.com/reccenter-logo-blue.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10341504005815153686, expires on Wed Nov 28 12:23:14 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wwu.dserec.com/simplesaml/module.php/saml/sp/saml2-logout.php/sso-sslX"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wwu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwu.dserec.com/simplesaml/module.php/saml/sp/saml2-acs.php/sso-sslX" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wwu.dserec.com/simplesaml/module.php/saml/sp/saml1-acs.php/sso-sslX/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DSE RecCenter (WWU)</ServiceName>
+ <ServiceDescription xml:lang="en">DSE- Rec Management Software</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DSE Rec, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DSE Rec, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dserec.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Meirovich</GivenName>
+ <EmailAddress>michael@dserec.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Teamworks Innovations -->
+<EntityDescriptor entityID="https://auth.teamworksapp.com/Shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://auth.teamworksapp.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Teamworks</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Teamworks is the leading provider of communication and collaboration tools to collegiate and professional athletic organizations.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.teamworks.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.teamworks.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="25" width="204" xml:lang="en">https://www.teamworksapp.com/assets/image/logos/teamworks-logo-black_25h.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9479418545629673089, expires on Wed Apr 26 21:53:53 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.teamworksapp.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://auth.teamworksapp.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://auth.teamworksapp.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://auth.teamworksapp.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://auth.teamworksapp.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://auth.teamworksapp.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Teamworks</ServiceName>
+ <ServiceDescription xml:lang="en">Teamworks is the leading provider of communication and collaboration tools to collegiate and professional athletic organizations.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Teamworks Innovations</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Teamworks Innovations</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.teamworks.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IAM Team</GivenName>
+ <EmailAddress>sso@teamworks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IAM Team</GivenName>
+ <EmailAddress>sso@teamworks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IAM Team</GivenName>
+ <EmailAddress>sso@teamworks.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Massachusetts President's Office -->
+<EntityDescriptor entityID="https://sm-prd11.ucollaborate.net/oam/fed">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://sm-prd11.ucollaborate.net/UMassIAM/Error.jsp?type=unauthorizedIAM&amp;app=OIF" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ucollaborate.net</shibmd:Scope>
+ <shibmd:Scope regexp="false">umassp.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Massachusetts System</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Massachusetts System Office</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.massachusetts.edu/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="32" width="32" xml:lang="en">https://sm-prd11.ucollaborate.net/favicon.ico</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1483991073, expires on Thu Jan 7 19:44:33 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sm-prd11.ucollaborate.net/oamfed/idp/soap" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sm-prd11.ucollaborate.net/oamfed/idp/samlv20"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sm-prd11.ucollaborate.net/oamfed/idp/samlv20"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sm-prd11.ucollaborate.net/oamfed/idp/samlv20"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sm-prd11.ucollaborate.net/oamfed/idp/samlv20"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sm-prd11.ucollaborate.net/oamfed/idp/soap"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Massachusetts President's Office</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Massachusetts System</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umass.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>James Barbieri</GivenName>
+ <EmailAddress>jbarbieri@umassp.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Kelly</GivenName>
+ <EmailAddress>jkelly@umassp.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bryan Moss</GivenName>
+ <EmailAddress>bmoss@umassp.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Gene Kingsley</GivenName>
+ <EmailAddress>GKingsley@umassp.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- LCMS Plus Inc. -->
+<EntityDescriptor entityID="https://sso.lcmsplus.com/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://sso.lcmsplus.com/identity/feedback.htm" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lcmsplus.com</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LCMS Plus Inc.</mdui:DisplayName>
+ <mdui:Description xml:lang="en">LCMS Plus Single Sign-On</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://solutions.lcmsplus.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://solutions.lcmsplus.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="126" width="127" xml:lang="en">https://solutions.lcmsplus.com/wp-content/uploads/2017/05/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11246787834638377256, expires on Tue May 7 20:45:58 2019 GMT -->
+ <ds:X509Certificate>
+MIIDhjCCAm4CCQCcFJ3yk84hKDANBgkqhkiG9w0BAQsFADCBhDELMAkGA1UEBhMC
+VVMxCzAJBgNVBAgMAk5DMRQwEgYDVQQHDAtDaGFwZWwgSGlsbDESMBAGA1UECgwJ
+TENNUyBQbHVzMRkwFwYDVQQDDBBzc28ubGNtc3BsdXMuY29tMSMwIQYJKoZIhvcN
+AQkBFhRzeXN0ZW1zQGxjbXNwbHVzLmNvbTAeFw0xODA1MDcyMDQ1NThaFw0xOTA1
+MDcyMDQ1NThaMIGEMQswCQYDVQQGEwJVUzELMAkGA1UECAwCTkMxFDASBgNVBAcM
+C0NoYXBlbCBIaWxsMRIwEAYDVQQKDAlMQ01TIFBsdXMxGTAXBgNVBAMMEHNzby5s
+Y21zcGx1cy5jb20xIzAhBgkqhkiG9w0BCQEWFHN5c3RlbXNAbGNtc3BsdXMuY29t
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEApQTYkfvgnl1lmf5wdyVw
+uzCTJ0D1s3zF+sgNi+01AzKiLAJN57JwX1bgWoa7TS7JXJdy7d7OgS+i01G0EVCt
+nXU9NCtHA+KlYB5TwelDxidHtPo2O0QqvEwfIRLKxKM81BrSW14H0Kf0uvNR7hKx
+VTRraqqslg9d1ZmEVZPGc/P7Kpb//IYm53d+Tk/ios4TZyE6PynU/Ga8iald9Q5A
+jl2/rgHYYX4ldiWY/jQaH/w2QgThmOXXlT9+GxSUC618fgBHB5RNKVX+9Xqcc3NP
+wSwyM1PLoQ68JqNxS9HE6lU7RNnwk8ciVfl9im0utql9McXDn3aG4OFMDPO7w/2A
+EQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQBb0Qz6s6rFMsa87gGjg5Az7LfgNh+N
+SJQubKK0+t8z3/nbvjWaURd22H4e/2w9ajVwjvEE7m3+zSViTR3s6MVKLG/X+fFy
+gLnIzyohltocj2QlEAvr1aSyzr3Qph18YfvpX9idvGT4Sk1CZcJ74LslhtzqK7dX
+qiHd5q+XCnDgc0cSP9FADa81rYs7BynQgfVTMPQK++KbdBFl9XANdaeulZyf43aJ
+eObf2lDptWNivd5mkR7n9YWjR4wlbO6lEOJ6fPPxkwY7Lz+lAUUJ2rknxSsPV/vd
+40bpqgKyf7XkDuBAJBlPbd7IqQR/KN1a248xW8lzFeyT5lbWUEyIzlZn
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17632891505975047203, expires on Tue May 14 19:50:09 2019 GMT -->
+ <ds:X509Certificate>
+MIIDhjCCAm4CCQD0tJ1m0KU0IzANBgkqhkiG9w0BAQsFADCBhDELMAkGA1UEBhMC
+VVMxCzAJBgNVBAgMAk5DMRQwEgYDVQQHDAtDaGFwZWwgSGlsbDESMBAGA1UECgwJ
+TENNUyBQbHVzMRkwFwYDVQQDDBBzc28ubGNtc3BsdXMuY29tMSMwIQYJKoZIhvcN
+AQkBFhRzeXN0ZW1zQGxjbXNwbHVzLmNvbTAeFw0xODA1MTQxOTUwMDlaFw0xOTA1
+MTQxOTUwMDlaMIGEMQswCQYDVQQGEwJVUzELMAkGA1UECAwCTkMxFDASBgNVBAcM
+C0NoYXBlbCBIaWxsMRIwEAYDVQQKDAlMQ01TIFBsdXMxGTAXBgNVBAMMEHNzby5s
+Y21zcGx1cy5jb20xIzAhBgkqhkiG9w0BCQEWFHN5c3RlbXNAbGNtc3BsdXMuY29t
+MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAz2B2Mt9xQLaiD37A5DMN
+fPwVfWLPaIat1kA/f1vklvUCeYbf4cPSKOvl3A+6y5bxvtd1ci0CDFZ5kGSulR6z
+XuUslpZxrIg1JiHhp1MT9ut0KkmBHKleLL/2iRUAbzhpqZSY5Avpa8PAZtXZ2JGU
+ckTo+pB89r52krJDgZZE2hbyQEEPAq/2mRtM1dv0ydy552ICS5Wlyr88HWvB0/hu
+iVuncYIbzeexQxJm4BZ3M1mPr71LDtJqMRZ/8FUMjJ/7YsBVvQGFUoM27sw+zdL/
+RYibivJU+kgvSG+2rF6EV5OEF3RK4JsufhAaMDkpvl1hgXd91VOvoLtpmSKX1WYf
+uwIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAEm56YIRkp1lKWSlggCuNpiv5EpaJm
+mFkq4kiOH6aU2lnFG82m/hTkbAcDxaQzwpeLVw88Sy7WFfeYULL14t324Yv1/8bv
+rVhbuAf2g5SCeFuvbAKKecuzbBogRwdzz/EKCEf+aH3AHkizfdUgSIPHPBV3KVTz
++iMWF5gg6loyW/QOgTztvypnt23m1IYwvRtvc0CLpHJNqzbI2qQJsiHEYK11p/JR
+j5rLP40p0D9suYsufa0yMydsm3gC6FQI/QZcgN7M0vMDT1vYDxw/TrZGMkaZCRJV
+qXodOin+pmFRu52ymsdAGP7g9Z+k2el5yr2k1kuSPibsuSm5yZmFen+P
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.lcmsplus.com/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.lcmsplus.com/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.lcmsplus.com/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.lcmsplus.com/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.lcmsplus.com/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">LCMS Plus Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">LCMS Plus Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lcmsplus.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>LCMS Systems</GivenName>
+ <EmailAddress>systems@lcmsplus.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>LCMS Systems</GivenName>
+ <EmailAddress>systems@lcmsplus.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LCMS Support</GivenName>
+ <EmailAddress>support@lcmsplus.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LCMS Systems</GivenName>
+ <EmailAddress>systems@lcmsplus.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uicdental.lcmsplus.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uicdental.lcmsplus.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UIC Dental LCMS Plus</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UIC Dental LCMS Plus environment</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://solutions.lcmsplus.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://solutions.lcmsplus.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="126" width="127" xml:lang="en">https://solutions.lcmsplus.com/wp-content/uploads/2017/05/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16142218857469105845, expires on Fri Mar 31 19:35:29 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uicdental.lcmsplus.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uicdental.lcmsplus.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uicdental.lcmsplus.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uicdental.lcmsplus.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uicdental.lcmsplus.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uicdental.lcmsplus.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uicdental.lcmsplus.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UIC Dental LCMS Plus</ServiceName>
+ <ServiceDescription xml:lang="en">UIC Dental LCMS Plus environment</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">LCMS Plus Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">LCMS Plus Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lcmsplus.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>LCMS Plus Systems</GivenName>
+ <EmailAddress>systems@lcmsplus.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>LCMS Plus Systems</GivenName>
+ <EmailAddress>systems@lcmsplus.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LCMS Plus Support</GivenName>
+ <EmailAddress>support@lcmsplus.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LCMS Plus Systems</GivenName>
+ <EmailAddress>systems@lcmsplus.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Rider University -->
+<EntityDescriptor entityID="https://shibboleth-prod.rider.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">rider.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Rider University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.rider.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rider.edu/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="137" width="500" xml:lang="en">https://shibboleth-prod.rider.edu/idp/images/riderlogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1161008131202705729723924484012530280329358363101, expires on Sat May 5 15:15:59 2035 GMT -->
+ <ds:X509Certificate>
+MIIDUDCCAjigAwIBAgIVAMtdZ7i4A5E5LRYx7fBJnBm5+EndMA0GCSqGSIb3DQEB
+BQUAMCQxIjAgBgNVBAMMGXNoaWJib2xldGgtcHJvZC5yaWRlci5lZHUwHhcNMTUw
+NTA1MTUxNTU5WhcNMzUwNTA1MTUxNTU5WjAkMSIwIAYDVQQDDBlzaGliYm9sZXRo
+LXByb2QucmlkZXIuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA
+3uqaylJ3Jiu4zkohCKAXuP2OABUCRdUk5LVxZ36hLHv9C/26O5o0eNjSXIfJYGHS
+A+CIvQLSalAgkCrXTlIOYiF11ssmv39AF0BSIBZonRdHL4YEn82DKwxmzoQFSXf0
+HEePaTPJ8ifVTLQZg0cDXlW+VZvG7b1/6j6efFSB5QHvXV5X4MbeMu7EOrjQW3lV
+fkckQV2pnEsPT0b51V+W2IYjFeMvsInURz4TVtMWzUKFgdfdqBh9c6oKzA6Boy98
+RRKl1b+KHgjYFjryjsdWkE4u6d9TVk1s7mzhoCISQVbvvvBWP4zcKeUk4kf8D2Jn
+c74Acvq0TPC42jXwtMf0BQIDAQABo3kwdzAdBgNVHQ4EFgQUTXHBoBfG0vS6fXwd
+5G8AsWPE2+owVgYDVR0RBE8wTYIZc2hpYmJvbGV0aC1wcm9kLnJpZGVyLmVkdYYw
+aHR0cHM6Ly9zaGliYm9sZXRoLXByb2QucmlkZXIuZWR1L2lkcC9zaGliYm9sZXRo
+MA0GCSqGSIb3DQEBBQUAA4IBAQBMzs1j+yOFLwPEBb0VmXtin6CXM8KIVWErctFk
+C9GxI5TPkhNXEcur9BjaZUlk2dMor3Y7pS+0iIXmwmopQc14L3/ZZUpooYMiVKZ4
+5/jR/vN4jcoXpK95s8+K8G0Oxx6JL26d7neuZQhGZfHI9wNy5q92SvG7Ddd9ACNl
+KAHVBCrsgyabXvvGRR4yoFiEx8irFMOue3xPaOcFqt1Q3lAuoaO319HPy0FiZ2RQ
+PObysX658B0ncIpb0OlABdmdiSeYktRi9GhTmh/aGZcfH2eK7wxcfdkshXSRiaRa
+QLRyTKgOo8OoEM5BaX1WYtMwB/gSPldFa6vZJZQZXOj1dh8+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth-prod.rider.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth-prod.rider.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth-prod.rider.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Rider University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Rider University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.rider.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Timothy Fairlie</GivenName>
+ <EmailAddress>fairlie@rider.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Timothy Fairlie</GivenName>
+ <EmailAddress>fairlie@rider.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>njedge support</GivenName>
+ <EmailAddress>shib@njedge.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Timothy Fairlie</GivenName>
+ <EmailAddress>fairlie@rider.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Haverford College -->
+<EntityDescriptor entityID="https://idp.haverford.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">haverford.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Haverford College</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.haverford.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.haverford.edu/sites/default/files/Office/Business/Privacy-Policy-2017.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="82" width="82" xml:lang="en">https://www.haverford.edu/sites/default/files/Haverford_College_Cupola_Black.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1116062189727061349360177238276704656256139672705, expires on Mon Oct 31 19:57:47 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.haverford.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.haverford.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Haverford College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Haverford College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.haverford.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Adam Portier</GivenName>
+ <EmailAddress>aportier@haverford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Gary Schoenenberger</GivenName>
+ <EmailAddress>gschoene@haverford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IDP Support</GivenName>
+ <EmailAddress>idp-support@haverford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Adam Portier</GivenName>
+ <EmailAddress>aportier@haverford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Adam Portier</GivenName>
+ <EmailAddress>aportier@haverford.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Dropbox, Inc. -->
+<EntityDescriptor entityID="https://dropbox.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Dropbox</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dropbox.com/terms#privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="450" width="800" xml:lang="en">https://aem.dropbox.com/cms/content/dam/dropbox/www/en-us/branding/dropbox-logo@2x.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18118004624100573255, expires on Sun Mar 2 18:13:51 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.dropbox.com/saml_login" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Dropbox</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Dropbox, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Dropbox, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.dropbox.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Evgeniy Chervonenko</GivenName>
+ <EmailAddress>yev@dropbox.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Marshall Kurtz</GivenName>
+ <EmailAddress>marshall@dropbox.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incommon Security at Dropbox</GivenName>
+ <EmailAddress>incommon@dropbox.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- NFORMD.NET -->
+<EntityDescriptor entityID="https://studentsuccess.org/SSO/hampc">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Student Success - Hampshire College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://title9.studentsuccess.org/company/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="157" width="145" xml:lang="en">https://studentsuccess.org/SSPLAY/img/logo-student-success.145.57.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9315330692201404047, expires on Wed Mar 27 03:26:14 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://studentsuccess.org/simplesaml/module.php/saml/sp/saml2-logout.php/hampc"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://studentsuccess.org/simplesaml/module.php/saml/sp/saml2-acs.php/hampc" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://studentsuccess.org/simplesaml/module.php/saml/sp/saml1-acs.php/hampc" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://studentsuccess.org/simplesaml/module.php/saml/sp/saml2-acs.php/hampc" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://studentsuccess.org/simplesaml/module.php/saml/sp/saml1-acs.php/hampc/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Student Success - Hampshire College</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NFORMD.NET</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Student Success</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.studentsuccess.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Gene Ginzburg</GivenName>
+ <EmailAddress>gene.ginzburg@studentsuccess.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Gene Ginzburg</GivenName>
+ <EmailAddress>gene.ginzburg@vectorsolutions.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Gene Ginzburg</GivenName>
+ <EmailAddress>gene.ginzburg@vectorsolutions.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- NuPark LLC -->
+<EntityDescriptor entityID="https://bothellcampus.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bothellcampus.nupark.com/v2/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://bothellcampus.nupark.com/v2/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bothellcampus.nupark.com/v2/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bothellcampus.nupark.com/v2/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://bothellcampus.nupark.com/v2/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://bothellcampus.nupark.com/v2/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cypresscollegeparking.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.passportinc.com/privacy-policy/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.passportinc.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="65" width="196" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cypresscollegeparking.nupark.com/v2/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cypresscollegeparking.nupark.com/v2/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cypresscollegeparking.nupark.com/v2/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cypresscollegeparking.nupark.com/v2/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cypresscollegeparking.nupark.com/v2/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cypresscollegeparking.nupark.com/v2/authservices/acs" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://disney.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.passportinc.com/privacy-policy/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.passportinc.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="65" width="196" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://disney.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://disney.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://disney.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://disney.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://disney.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://disney.nupark.com/portal/authservices/acs" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://eku.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eku.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eku.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://eku.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://eku.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://eku.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://eku.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@passportinc.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ewu.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
+MIIHMTCCBhmgAwIBAgIQPat3dxJtUM76im9iuZ/dIDANBgkqhkiG9w0BAQsFADCB
+ljELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4G
+A1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxPDA6BgNV
+BAMTM0NPTU9ETyBSU0EgT3JnYW5pemF0aW9uIFZhbGlkYXRpb24gU2VjdXJlIFNl
+cnZlciBDQTAeFw0xODEwMjkwMDAwMDBaFw0yMDEwMjgyMzU5NTlaMIGoMQswCQYD
+VQQGEwJVUzEOMAwGA1UEERMFNzk0MDkxCzAJBgNVBAgTAlRYMRAwDgYDVQQHEwdM
+dWJib2NrMR8wHQYDVQQJExYzOTExIDR0aCBTdCwgU3VpdGUgMTQwMRQwEgYDVQQK
+EwtOVVBBUkssIElOQzEcMBoGA1UECxMTUHJlbWl1bVNTTCBXaWxkY2FyZDEVMBMG
+A1UEAwwMKi5udXBhcmsuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKC
+AQEA4jzAu58jtFrnV1jOq/CVEUU0xEwG/kLSQWX3Ffdk8YYabNnW0wPCSDW7xeSN
+ojxheLPA+xTd/aOBmNauzm+ruza0qsxgdSiJxXL4FmS35lguuAHsATWigP7BTgM0
+bd6IvTlj1iUMeVVDDl8IApfc9GQXiMk5y0fD4CHIlx+mzq0xPKY0zHWKKLyBtDcA
+MBe4pmh7Kths8yhRQUsKLx7Ib9OmR8jsJkA17+NY4/Bs9tfirMF9P7cuRq6/VwaQ
+d7iAOGJc6KGgw6t+Sx/5y7MrO9Kf87TkHIfYbKAvY65eOMxHJkZ7ICtqEcFopTMw
+v/Qad0iZnEawshQX8Bta7szoywIDAQABo4IDZTCCA2EwHwYDVR0jBBgwFoAUmvMr
+2s+tT7YvuypISCoStxtCwSQwHQYDVR0OBBYEFDSH1J/RiPZKDR+747R4DAlqVp5M
+MA4GA1UdDwEB/wQEAwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUF
+BwMBBggrBgEFBQcDAjBQBgNVHSAESTBHMDsGDCsGAQQBsjEBAgEDBDArMCkGCCsG
+AQUFBwIBFh1odHRwczovL3NlY3VyZS5jb21vZG8uY29tL0NQUzAIBgZngQwBAgIw
+WgYDVR0fBFMwUTBPoE2gS4ZJaHR0cDovL2NybC5jb21vZG9jYS5jb20vQ09NT0RP
+UlNBT3JnYW5pemF0aW9uVmFsaWRhdGlvblNlY3VyZVNlcnZlckNBLmNybDCBiwYI
+KwYBBQUHAQEEfzB9MFUGCCsGAQUFBzAChklodHRwOi8vY3J0LmNvbW9kb2NhLmNv
+bS9DT01PRE9SU0FPcmdhbml6YXRpb25WYWxpZGF0aW9uU2VjdXJlU2VydmVyQ0Eu
+Y3J0MCQGCCsGAQUFBzABhhhodHRwOi8vb2NzcC5jb21vZG9jYS5jb20wIwYDVR0R
+BBwwGoIMKi5udXBhcmsuY29tggpudXBhcmsuY29tMIIBfwYKKwYBBAHWeQIEAgSC
+AW8EggFrAWkAdQDuS723dc5guuFCaR+r4Z5mow9+X7By2IMAxHuJeqj9ywAAAWbC
+Of9TAAAEAwBGMEQCIBoTMkwRz/HYE6jN3+QbVx8u5k1w6v+uUHXIxInSozF5AiAd
+txRNPnOMhLAFKNL4xvYZFVtMUNN8dkxQyXBcZjrlkwB3AF6nc/nfVsDntTZIfdBJ
+4DJ6kZoMhKESEoQYdZaBcUVYAAABZsI5/y0AAAQDAEgwRgIhAPVpKkwhwGQaBIsM
+gmPasDeEDNP+mbOhcRhU1zxyRUdbAiEAzHy8M7wznvbpTIacz1GXVF+rfTsB9bnL
+i7wxoSWco90AdwDwlaRZ8gDRgkAQLS+TiI6tS/4dR+OZ4dA0prCoqo6ycwAAAWbC
+Of8lAAAEAwBIMEYCIQCxpwIFztYE1TqdMQ8SkmCf3wOVUnUtW/gMkdvDjBibswIh
+AJ7QdvtAxLzeYE9vKEhI6XlkpJ4QD29dcNrNn/HXYG8VMA0GCSqGSIb3DQEBCwUA
+A4IBAQA9JWmfxnoSRBDGROAO3hmsXgJyhrEkvFBTaTKCVYnX3Dagn6TXCC6aVLSC
+ThqiWnRNm2/F5N7aTCBiQYWUJ/zVJzAwTlJwh9+Ni8If1NF0JkVXkOvlqhTTVbRD
+PpHfMI9kOKmGvaSCL/Vjtu1OSoyoUIe18jV9l7rRCCrcaNlRb5iWZPvUMhN0Z+Y3
+m8utgpqsEgivh/rbaRC8NmFFChvZmlFyEMPtGoOyzYKqAD2qokUnGW49Vga1YwvZ
+UmlkZdenLtR+AwbWJPYJHN1Fhy4tIwRwXI5HClWQS3IkfklCVdUD4iL7JRn0WDGp
+wkz5a2wtGSPzWriaVWIW6FjUqWdT
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ewu.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ewu.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ewu.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ewu.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ewu.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ewu.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://fau.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">FAU Parking</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fau.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fau.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fau.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://fau.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://fau.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fau.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">FAU Parking</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://georgetown.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="196" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://georgetown.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://georgetown.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://georgetown.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://georgetown.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://georgetown.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://georgetown.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://iupark.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.passportinc.com/privacy-policy/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.passportinc.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iupark.nupark.com/v2/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://iupark.nupark.com/v2/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iupark.nupark.com/v2/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://iupark.nupark.com/v2/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://iupark.nupark.com/v2/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://iupark.nupark.com/v2/authservices/acs" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://kean.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark Inc.</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kean.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kean.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kean.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://kean.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://kean.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kean.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark Inc.</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ku.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark Inc</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ku.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ku.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ku.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ku.nupark.com/portal/authservices/acs" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark Inc</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://miamioh.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark Inc.</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://miamioh.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://miamioh.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://miamioh.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://miamioh.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://miamioh.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://miamioh.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark Inc.</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://missouri.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark Inc</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://missouri.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://missouri.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://missouri.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://missouri.nupark.com/portal/authservices/acs" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark Inc</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://mu.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark Inc</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mu.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mu.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mu.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mu.nupark.com/portal/authservices/acs" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark Inc</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://princeton.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.passportinc.com/privacy-policy/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.passportinc.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://princeton.nupark.com/v2/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://princeton.nupark.com/v2/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://princeton.nupark.com/v2/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://princeton.nupark.com/v2/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://princeton.nupark.com/v2/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://princeton.nupark.com/v2/authservices/acs" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://rudots.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark Inc</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rudots.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rudots.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rudots.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rudots.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rudots.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rudots.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark Inc</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://shu.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shu.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shu.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shu.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shu.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shu.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shu.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://slu.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="196" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slu.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://slu.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slu.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://slu.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://slu.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://slu.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sou.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark Inc</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sou.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sou.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sou.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sou.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sou.nupark.com/portal/authservices/acs" index="5"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark Inc</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>NuPark Support</GivenName>
+ <EmailAddress>support@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://spu.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark Inc.</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://spu.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://spu.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://spu.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://spu.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://spu.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://spu.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark Inc.</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://stedwards.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark Inc</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
+MIIHMTCCBhmgAwIBAgIQPat3dxJtUM76im9iuZ/dIDANBgkqhkiG9w0BAQsFADCB
+ljELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4G
+A1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxPDA6BgNV
+BAMTM0NPTU9ETyBSU0EgT3JnYW5pemF0aW9uIFZhbGlkYXRpb24gU2VjdXJlIFNl
+cnZlciBDQTAeFw0xODEwMjkwMDAwMDBaFw0yMDEwMjgyMzU5NTlaMIGoMQswCQYD
+VQQGEwJVUzEOMAwGA1UEERMFNzk0MDkxCzAJBgNVBAgTAlRYMRAwDgYDVQQHEwdM
+dWJib2NrMR8wHQYDVQQJExYzOTExIDR0aCBTdCwgU3VpdGUgMTQwMRQwEgYDVQQK
+EwtOVVBBUkssIElOQzEcMBoGA1UECxMTUHJlbWl1bVNTTCBXaWxkY2FyZDEVMBMG
+A1UEAwwMKi5udXBhcmsuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKC
+AQEA4jzAu58jtFrnV1jOq/CVEUU0xEwG/kLSQWX3Ffdk8YYabNnW0wPCSDW7xeSN
+ojxheLPA+xTd/aOBmNauzm+ruza0qsxgdSiJxXL4FmS35lguuAHsATWigP7BTgM0
+bd6IvTlj1iUMeVVDDl8IApfc9GQXiMk5y0fD4CHIlx+mzq0xPKY0zHWKKLyBtDcA
+MBe4pmh7Kths8yhRQUsKLx7Ib9OmR8jsJkA17+NY4/Bs9tfirMF9P7cuRq6/VwaQ
+d7iAOGJc6KGgw6t+Sx/5y7MrO9Kf87TkHIfYbKAvY65eOMxHJkZ7ICtqEcFopTMw
+v/Qad0iZnEawshQX8Bta7szoywIDAQABo4IDZTCCA2EwHwYDVR0jBBgwFoAUmvMr
+2s+tT7YvuypISCoStxtCwSQwHQYDVR0OBBYEFDSH1J/RiPZKDR+747R4DAlqVp5M
+MA4GA1UdDwEB/wQEAwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUF
+BwMBBggrBgEFBQcDAjBQBgNVHSAESTBHMDsGDCsGAQQBsjEBAgEDBDArMCkGCCsG
+AQUFBwIBFh1odHRwczovL3NlY3VyZS5jb21vZG8uY29tL0NQUzAIBgZngQwBAgIw
+WgYDVR0fBFMwUTBPoE2gS4ZJaHR0cDovL2NybC5jb21vZG9jYS5jb20vQ09NT0RP
+UlNBT3JnYW5pemF0aW9uVmFsaWRhdGlvblNlY3VyZVNlcnZlckNBLmNybDCBiwYI
+KwYBBQUHAQEEfzB9MFUGCCsGAQUFBzAChklodHRwOi8vY3J0LmNvbW9kb2NhLmNv
+bS9DT01PRE9SU0FPcmdhbml6YXRpb25WYWxpZGF0aW9uU2VjdXJlU2VydmVyQ0Eu
+Y3J0MCQGCCsGAQUFBzABhhhodHRwOi8vb2NzcC5jb21vZG9jYS5jb20wIwYDVR0R
+BBwwGoIMKi5udXBhcmsuY29tggpudXBhcmsuY29tMIIBfwYKKwYBBAHWeQIEAgSC
+AW8EggFrAWkAdQDuS723dc5guuFCaR+r4Z5mow9+X7By2IMAxHuJeqj9ywAAAWbC
+Of9TAAAEAwBGMEQCIBoTMkwRz/HYE6jN3+QbVx8u5k1w6v+uUHXIxInSozF5AiAd
+txRNPnOMhLAFKNL4xvYZFVtMUNN8dkxQyXBcZjrlkwB3AF6nc/nfVsDntTZIfdBJ
+4DJ6kZoMhKESEoQYdZaBcUVYAAABZsI5/y0AAAQDAEgwRgIhAPVpKkwhwGQaBIsM
+gmPasDeEDNP+mbOhcRhU1zxyRUdbAiEAzHy8M7wznvbpTIacz1GXVF+rfTsB9bnL
+i7wxoSWco90AdwDwlaRZ8gDRgkAQLS+TiI6tS/4dR+OZ4dA0prCoqo6ycwAAAWbC
+Of8lAAAEAwBIMEYCIQCxpwIFztYE1TqdMQ8SkmCf3wOVUnUtW/gMkdvDjBibswIh
+AJ7QdvtAxLzeYE9vKEhI6XlkpJ4QD29dcNrNn/HXYG8VMA0GCSqGSIb3DQEBCwUA
+A4IBAQA9JWmfxnoSRBDGROAO3hmsXgJyhrEkvFBTaTKCVYnX3Dagn6TXCC6aVLSC
+ThqiWnRNm2/F5N7aTCBiQYWUJ/zVJzAwTlJwh9+Ni8If1NF0JkVXkOvlqhTTVbRD
+PpHfMI9kOKmGvaSCL/Vjtu1OSoyoUIe18jV9l7rRCCrcaNlRb5iWZPvUMhN0Z+Y3
+m8utgpqsEgivh/rbaRC8NmFFChvZmlFyEMPtGoOyzYKqAD2qokUnGW49Vga1YwvZ
+UmlkZdenLtR+AwbWJPYJHN1Fhy4tIwRwXI5HClWQS3IkfklCVdUD4iL7JRn0WDGp
+wkz5a2wtGSPzWriaVWIW6FjUqWdT
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stedwards.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stedwards.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stedwards.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://stedwards.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://stedwards.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stedwards.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark Inc</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://test-bothellcampus.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test-bothellcampus.nupark.com/v2/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://test-bothellcampus.nupark.com/v2/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test-bothellcampus.nupark.com/v2/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test-bothellcampus.nupark.com/v2/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://test-bothellcampus.nupark.com/v2/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://test-bothellcampus.nupark.com/v2/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://test-disney.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.passportinc.com/privacy-policy/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.passportinc.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="65" width="196" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
+MIIHMTCCBhmgAwIBAgIQPat3dxJtUM76im9iuZ/dIDANBgkqhkiG9w0BAQsFADCB
+ljELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4G
+A1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxPDA6BgNV
+BAMTM0NPTU9ETyBSU0EgT3JnYW5pemF0aW9uIFZhbGlkYXRpb24gU2VjdXJlIFNl
+cnZlciBDQTAeFw0xODEwMjkwMDAwMDBaFw0yMDEwMjgyMzU5NTlaMIGoMQswCQYD
+VQQGEwJVUzEOMAwGA1UEERMFNzk0MDkxCzAJBgNVBAgTAlRYMRAwDgYDVQQHEwdM
+dWJib2NrMR8wHQYDVQQJExYzOTExIDR0aCBTdCwgU3VpdGUgMTQwMRQwEgYDVQQK
+EwtOVVBBUkssIElOQzEcMBoGA1UECxMTUHJlbWl1bVNTTCBXaWxkY2FyZDEVMBMG
+A1UEAwwMKi5udXBhcmsuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKC
+AQEA4jzAu58jtFrnV1jOq/CVEUU0xEwG/kLSQWX3Ffdk8YYabNnW0wPCSDW7xeSN
+ojxheLPA+xTd/aOBmNauzm+ruza0qsxgdSiJxXL4FmS35lguuAHsATWigP7BTgM0
+bd6IvTlj1iUMeVVDDl8IApfc9GQXiMk5y0fD4CHIlx+mzq0xPKY0zHWKKLyBtDcA
+MBe4pmh7Kths8yhRQUsKLx7Ib9OmR8jsJkA17+NY4/Bs9tfirMF9P7cuRq6/VwaQ
+d7iAOGJc6KGgw6t+Sx/5y7MrO9Kf87TkHIfYbKAvY65eOMxHJkZ7ICtqEcFopTMw
+v/Qad0iZnEawshQX8Bta7szoywIDAQABo4IDZTCCA2EwHwYDVR0jBBgwFoAUmvMr
+2s+tT7YvuypISCoStxtCwSQwHQYDVR0OBBYEFDSH1J/RiPZKDR+747R4DAlqVp5M
+MA4GA1UdDwEB/wQEAwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUF
+BwMBBggrBgEFBQcDAjBQBgNVHSAESTBHMDsGDCsGAQQBsjEBAgEDBDArMCkGCCsG
+AQUFBwIBFh1odHRwczovL3NlY3VyZS5jb21vZG8uY29tL0NQUzAIBgZngQwBAgIw
+WgYDVR0fBFMwUTBPoE2gS4ZJaHR0cDovL2NybC5jb21vZG9jYS5jb20vQ09NT0RP
+UlNBT3JnYW5pemF0aW9uVmFsaWRhdGlvblNlY3VyZVNlcnZlckNBLmNybDCBiwYI
+KwYBBQUHAQEEfzB9MFUGCCsGAQUFBzAChklodHRwOi8vY3J0LmNvbW9kb2NhLmNv
+bS9DT01PRE9SU0FPcmdhbml6YXRpb25WYWxpZGF0aW9uU2VjdXJlU2VydmVyQ0Eu
+Y3J0MCQGCCsGAQUFBzABhhhodHRwOi8vb2NzcC5jb21vZG9jYS5jb20wIwYDVR0R
+BBwwGoIMKi5udXBhcmsuY29tggpudXBhcmsuY29tMIIBfwYKKwYBBAHWeQIEAgSC
+AW8EggFrAWkAdQDuS723dc5guuFCaR+r4Z5mow9+X7By2IMAxHuJeqj9ywAAAWbC
+Of9TAAAEAwBGMEQCIBoTMkwRz/HYE6jN3+QbVx8u5k1w6v+uUHXIxInSozF5AiAd
+txRNPnOMhLAFKNL4xvYZFVtMUNN8dkxQyXBcZjrlkwB3AF6nc/nfVsDntTZIfdBJ
+4DJ6kZoMhKESEoQYdZaBcUVYAAABZsI5/y0AAAQDAEgwRgIhAPVpKkwhwGQaBIsM
+gmPasDeEDNP+mbOhcRhU1zxyRUdbAiEAzHy8M7wznvbpTIacz1GXVF+rfTsB9bnL
+i7wxoSWco90AdwDwlaRZ8gDRgkAQLS+TiI6tS/4dR+OZ4dA0prCoqo6ycwAAAWbC
+Of8lAAAEAwBIMEYCIQCxpwIFztYE1TqdMQ8SkmCf3wOVUnUtW/gMkdvDjBibswIh
+AJ7QdvtAxLzeYE9vKEhI6XlkpJ4QD29dcNrNn/HXYG8VMA0GCSqGSIb3DQEBCwUA
+A4IBAQA9JWmfxnoSRBDGROAO3hmsXgJyhrEkvFBTaTKCVYnX3Dagn6TXCC6aVLSC
+ThqiWnRNm2/F5N7aTCBiQYWUJ/zVJzAwTlJwh9+Ni8If1NF0JkVXkOvlqhTTVbRD
+PpHfMI9kOKmGvaSCL/Vjtu1OSoyoUIe18jV9l7rRCCrcaNlRb5iWZPvUMhN0Z+Y3
+m8utgpqsEgivh/rbaRC8NmFFChvZmlFyEMPtGoOyzYKqAD2qokUnGW49Vga1YwvZ
+UmlkZdenLtR+AwbWJPYJHN1Fhy4tIwRwXI5HClWQS3IkfklCVdUD4iL7JRn0WDGp
+wkz5a2wtGSPzWriaVWIW6FjUqWdT
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test-disney.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://test-disney.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test-disney.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test-disney.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://test-disney.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://test-disney.nupark.com/portal/authservices/acs" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://test-ewu.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.passportinc.com/privacy-policy/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.passportinc.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="65" width="196" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test-ewu.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://test-ewu.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test-ewu.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test-ewu.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://test-ewu.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://test-ewu.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://test-lclark.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.passportinc.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test-lclark.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://test-lclark.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test-lclark.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test-lclark.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://test-lclark.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://test-lclark.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@passportinc.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://test-princeton.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.passportinc.com/privacy-policy/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.passportinc.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="196" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test-princeton.nupark.com/v2/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://test-princeton.nupark.com/v2/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test-princeton.nupark.com/v2/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test-princeton.nupark.com/v2/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://test-princeton.nupark.com/v2/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://test-princeton.nupark.com/v2/authservices/acs" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark Keller</GivenName>
+ <EmailAddress>mark.keller@passportinc.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://test-rudots.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark Inc</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 293208408777813721030538280946763688078, expires on Fri Nov 9 23:59:59 2018 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test-rudots.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://test-rudots.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test-rudots.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://test-rudots.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://test-rudots.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test-rudots.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark Inc</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://test-spu.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark Inc.</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
+MIIHMTCCBhmgAwIBAgIQPat3dxJtUM76im9iuZ/dIDANBgkqhkiG9w0BAQsFADCB
+ljELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4G
+A1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxPDA6BgNV
+BAMTM0NPTU9ETyBSU0EgT3JnYW5pemF0aW9uIFZhbGlkYXRpb24gU2VjdXJlIFNl
+cnZlciBDQTAeFw0xODEwMjkwMDAwMDBaFw0yMDEwMjgyMzU5NTlaMIGoMQswCQYD
+VQQGEwJVUzEOMAwGA1UEERMFNzk0MDkxCzAJBgNVBAgTAlRYMRAwDgYDVQQHEwdM
+dWJib2NrMR8wHQYDVQQJExYzOTExIDR0aCBTdCwgU3VpdGUgMTQwMRQwEgYDVQQK
+EwtOVVBBUkssIElOQzEcMBoGA1UECxMTUHJlbWl1bVNTTCBXaWxkY2FyZDEVMBMG
+A1UEAwwMKi5udXBhcmsuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKC
+AQEA4jzAu58jtFrnV1jOq/CVEUU0xEwG/kLSQWX3Ffdk8YYabNnW0wPCSDW7xeSN
+ojxheLPA+xTd/aOBmNauzm+ruza0qsxgdSiJxXL4FmS35lguuAHsATWigP7BTgM0
+bd6IvTlj1iUMeVVDDl8IApfc9GQXiMk5y0fD4CHIlx+mzq0xPKY0zHWKKLyBtDcA
+MBe4pmh7Kths8yhRQUsKLx7Ib9OmR8jsJkA17+NY4/Bs9tfirMF9P7cuRq6/VwaQ
+d7iAOGJc6KGgw6t+Sx/5y7MrO9Kf87TkHIfYbKAvY65eOMxHJkZ7ICtqEcFopTMw
+v/Qad0iZnEawshQX8Bta7szoywIDAQABo4IDZTCCA2EwHwYDVR0jBBgwFoAUmvMr
+2s+tT7YvuypISCoStxtCwSQwHQYDVR0OBBYEFDSH1J/RiPZKDR+747R4DAlqVp5M
+MA4GA1UdDwEB/wQEAwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQWMBQGCCsGAQUF
+BwMBBggrBgEFBQcDAjBQBgNVHSAESTBHMDsGDCsGAQQBsjEBAgEDBDArMCkGCCsG
+AQUFBwIBFh1odHRwczovL3NlY3VyZS5jb21vZG8uY29tL0NQUzAIBgZngQwBAgIw
+WgYDVR0fBFMwUTBPoE2gS4ZJaHR0cDovL2NybC5jb21vZG9jYS5jb20vQ09NT0RP
+UlNBT3JnYW5pemF0aW9uVmFsaWRhdGlvblNlY3VyZVNlcnZlckNBLmNybDCBiwYI
+KwYBBQUHAQEEfzB9MFUGCCsGAQUFBzAChklodHRwOi8vY3J0LmNvbW9kb2NhLmNv
+bS9DT01PRE9SU0FPcmdhbml6YXRpb25WYWxpZGF0aW9uU2VjdXJlU2VydmVyQ0Eu
+Y3J0MCQGCCsGAQUFBzABhhhodHRwOi8vb2NzcC5jb21vZG9jYS5jb20wIwYDVR0R
+BBwwGoIMKi5udXBhcmsuY29tggpudXBhcmsuY29tMIIBfwYKKwYBBAHWeQIEAgSC
+AW8EggFrAWkAdQDuS723dc5guuFCaR+r4Z5mow9+X7By2IMAxHuJeqj9ywAAAWbC
+Of9TAAAEAwBGMEQCIBoTMkwRz/HYE6jN3+QbVx8u5k1w6v+uUHXIxInSozF5AiAd
+txRNPnOMhLAFKNL4xvYZFVtMUNN8dkxQyXBcZjrlkwB3AF6nc/nfVsDntTZIfdBJ
+4DJ6kZoMhKESEoQYdZaBcUVYAAABZsI5/y0AAAQDAEgwRgIhAPVpKkwhwGQaBIsM
+gmPasDeEDNP+mbOhcRhU1zxyRUdbAiEAzHy8M7wznvbpTIacz1GXVF+rfTsB9bnL
+i7wxoSWco90AdwDwlaRZ8gDRgkAQLS+TiI6tS/4dR+OZ4dA0prCoqo6ycwAAAWbC
+Of8lAAAEAwBIMEYCIQCxpwIFztYE1TqdMQ8SkmCf3wOVUnUtW/gMkdvDjBibswIh
+AJ7QdvtAxLzeYE9vKEhI6XlkpJ4QD29dcNrNn/HXYG8VMA0GCSqGSIb3DQEBCwUA
+A4IBAQA9JWmfxnoSRBDGROAO3hmsXgJyhrEkvFBTaTKCVYnX3Dagn6TXCC6aVLSC
+ThqiWnRNm2/F5N7aTCBiQYWUJ/zVJzAwTlJwh9+Ni8If1NF0JkVXkOvlqhTTVbRD
+PpHfMI9kOKmGvaSCL/Vjtu1OSoyoUIe18jV9l7rRCCrcaNlRb5iWZPvUMhN0Z+Y3
+m8utgpqsEgivh/rbaRC8NmFFChvZmlFyEMPtGoOyzYKqAD2qokUnGW49Vga1YwvZ
+UmlkZdenLtR+AwbWJPYJHN1Fhy4tIwRwXI5HClWQS3IkfklCVdUD4iL7JRn0WDGp
+wkz5a2wtGSPzWriaVWIW6FjUqWdT
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test-spu.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://test-spu.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test-spu.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test-spu.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://test-spu.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://test-spu.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark Inc.</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umbc.nupark.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NuPark Inc.</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nupark.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="195" xml:lang="en">https://www.nupark.com/images/default-source/logos/nupark/nuparkbypassport195.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 81973213546286382216371048002984336672, expires on Wed Oct 28 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umbc.nupark.com/portal/authservices/acs" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://umbc.nupark.com/portal/authservices/acs" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umbc.nupark.com/portal/authservices/acs" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://umbc.nupark.com/portal/authservices/acs" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://umbc.nupark.com/portal/authservices/acs" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://umbc.nupark.com/portal/authservices/acs" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NuPark Inc.</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NuPark LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NuPark LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nupark.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Stephen Lambert</GivenName>
+ <EmailAddress>stephen.lambert@nupark.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ron Frick</GivenName>
+ <EmailAddress>ron.frick@nupark.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- SUNY Polytechnic Institute -->
+<EntityDescriptor entityID="https://incommon.sunycnse.com/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sunycnse.com</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SUNY Polytechnic Institute</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://sunypoly.edu/privacy-policy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="320" width="1880" xml:lang="en">https://sunypoly.edu/sites/default/files/logos/SUNY-Poly-wordmark.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 310154697161258209884537193139982010990916719420, expires on Fri Sep 29 17:34:43 2034 GMT -->
+ <ds:X509Certificate>
+MIIDUzCCAjugAwIBAgIUNlPRT/wyMz9vjHRYl0MkLeoK0zwwDQYJKoZIhvcNAQEF
+BQAwJTEjMCEGA1UEAwwaaW5jb21tb24udW5pdi5zdW55Y25zZS5jb20wHhcNMTQw
+OTI5MTczNDQzWhcNMzQwOTI5MTczNDQzWjAlMSMwIQYDVQQDDBppbmNvbW1vbi51
+bml2LnN1bnljbnNlLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEB
+AIT0Usp7YH9IFLQL5xKeRxHTpej08j6tuqXCCpj8RarjFbcrDraC09npHqWeutTz
+UyvMNea69E+UAn28uzg2ftsMX15Nrb+LCYPEGnqtsrabwgGXHewr7nf8WyPdjcWC
+DBhFcDAqhLjUHGhBGx4NhD/a6BYWKXHjAolgopZOwWvSR1FYgQUQjT7R83g407c/
+6L26FDAqxEufkg4x4TwihBRoC3j8kV6dyuz7tlzMAyAlRXnq3JuYTvEeNlDY5FxJ
+cxWPuNB4WSJKTiAzB9qavI6qUQUABgPHD0d6qYZg07UCIUm8k3bJU0J3M9fAsbXG
+0i0KS6iLN3gzsoGCrc7sRT0CAwEAAaN7MHkwHQYDVR0OBBYEFGcvUxpFLbbgtsle
+s4lFedorhKjAMFgGA1UdEQRRME+CGmluY29tbW9uLnVuaXYuc3VueWNuc2UuY29t
+hjFodHRwczovL2luY29tbW9uLnVuaXYuc3VueWNuc2UuY29tL2lkcC9zaGliYm9s
+ZXRoMA0GCSqGSIb3DQEBBQUAA4IBAQByJw4667jgC8l27quq1YCeukkkMuMj/46n
+l688gKpD4PL6nDKQzeHlUXUC8js7dmDrfuK+F/eRlPo4QOadf0wO2h4PdzxPJzV6
+cdwQaLf7ZdiHNlG+WIgfSbzurEEESk35DVsNxtriHyeHU+7tcpfqjEMAP2K7sZHv
+Cghk6dXYhVpYc5fakaOcDNM7tIsG9AfPL37Piisn1eg5BNuHb6TzthxbJW8gq9Q5
+X/5/NVPkxIZlwfd1UUjHO0T0OrkWTgIsesPGvBkRIJO6hUmSUI6YZHA5FmSEVYB1
+BvvZMKZ3B0ygTK7PIe0RRTPUMFgtZNMUNNgqywHDyDbt+y+REp9K
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://incommon.sunycnse.com:443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://incommon.sunycnse.com:443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://incommon.sunycnse.com/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://incommon.sunycnse.com/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://incommon.sunycnse.com/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sunycnse.com</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 310154697161258209884537193139982010990916719420, expires on Fri Sep 29 17:34:43 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://incommon.sunycnse.com:443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SUNY Polytechnic Institute</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SUNY Polytechnic Institute</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sunyit.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ralph Gartner</GivenName>
+ <EmailAddress>rgartner@sunycnse.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Kyle Rosher</GivenName>
+ <EmailAddress>krosher@sunycnse.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kyle Rosher</GivenName>
+ <EmailAddress>krosher@sunycnse.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Ralph Gartner</GivenName>
+ <EmailAddress>rgartner@sunypoly.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Pacific Lutheran University -->
+<EntityDescriptor entityID="https://cumin.plu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">plu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Pacific Lutheran University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.plu.edu/about/privacy-statement/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="150" xml:lang="en">https://allotropa.plu.edu/idp/images/plu_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 793203840321013550088614417404093013208192386716, expires on Mon Apr 28 16:16:29 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://allotropa.plu.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://allotropa.plu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://allotropa.plu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://allotropa.plu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://allotropa.plu.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">plu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 793203840321013550088614417404093013208192386716, expires on Mon Apr 28 16:16:29 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://allotropa.plu.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pacific Lutheran University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pacific Lutheran University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.plu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>netadmin</GivenName>
+ <EmailAddress>netadmin@plu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>David Allen</GivenName>
+ <EmailAddress>allendp@plu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>HelpDesk</GivenName>
+ <EmailAddress>helpdesk@plu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>netadmin</GivenName>
+ <EmailAddress>netadmin@plu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Nelnet Business Solutions -->
+<EntityDescriptor entityID="https://saml.nelnet.net">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">nelnet.net</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Nelnet Business Solutions</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://factsmgt.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://factsmgt.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="170" width="600" xml:lang="en">https://factsmgt.com/wp-content/themes/facts/img/logo-facts.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1440687900216, expires on Fri Aug 23 15:05:00 2030 GMT -->
+ <ds:X509Certificate>
+MIIDWDCCAkCgAwIBAgIGAU9vsMY4MA0GCSqGSIb3DQEBBQUAMG0xCzAJBgNVBAYTAlVTMQswCQYD
+VQQIEwJORTEQMA4GA1UEBxMHTGluY29sbjEMMAoGA1UEChMDTkJTMQ8wDQYDVQQLEwZOZWxuZXQx
+IDAeBgNVBAMTF2dhdGVrZWVwZXIuZmFjdHNtZ3QuY29tMB4XDTE1MDgyNzE1MDUwMFoXDTMwMDgy
+MzE1MDUwMFowbTELMAkGA1UEBhMCVVMxCzAJBgNVBAgTAk5FMRAwDgYDVQQHEwdMaW5jb2xuMQww
+CgYDVQQKEwNOQlMxDzANBgNVBAsTBk5lbG5ldDEgMB4GA1UEAxMXZ2F0ZWtlZXBlci5mYWN0c21n
+dC5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDGQxjqEEROxaQ/YOWU7N2KHtVg
+IVVUmSqKMzRZS6v0wIUsAd01dPFAVYTf/3tc5keT3QG+PIni3fGVpG3HZtv8GLJxpmOx8iKskKyh
+VOyBRyZ/2QHZ/OE5OMB2xGU18cohS+J7UOBfaTRC//0+8QUxRwLRcyIYh0OKma988fzYHRPbqelC
+wK3Yi8TjO8f1z3Qfk5bASKih4L2xSBjHb6PQKt9s/lxE8nRipCSTFPLmUGWx3rpN4pD667o8W+oY
+xwq3p7eAdbpxtBuXLBOJIlGJfCbYd+uPb8M/fMSkQO0xTobc27Y5fIbU+OY5lgJ2iKtg40yAmgRY
+X7fKIMQWBC0LAgMBAAEwDQYJKoZIhvcNAQEFBQADggEBAIcbxm8c5r877rN8GqvZCBIdRX8ZH/rB
+QJ7WQ0Lrr96OEy/Gq5e7ON5f4NxOJdgrpDSThJKmNxtdwWAWZ1aqIQx8NiNlI2nGOdixrBaYnjMf
+Md8rH2VyQc5dLAxyNFfNmKprtXXDZf2pjR8JX8lWMcSDGUZ/++jUFlKRnS3+Dt1WYomoFVdYvZWr
+1w1dv2dWphbdCP82uqVYvQ/sEDHyrg9Yk5TNKzJcYsD2Au+l6z4hOHEEZpbX0Ry83pLeRzmrMof7
+Cmhe6LS64j//8rgjaSgsAZ037lKxMS9mlc38UZqnGQDl0Q6x+hzbfJc0Xoo0vS7Lj0bVoxybNIV9
+LxKK+M8=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gatekeeper.factsmgt.com/idp/SSO.saml2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://gatekeeper.factsmgt.com/idp/SSO.saml2"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Nelnet Business Solutions</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Nelnet Business Solutions</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nelnet.net/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Justin Kaup</GivenName>
+ <EmailAddress>justin.kaup@nelnet.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Logan Kampsnider</GivenName>
+ <EmailAddress>logan.kampsnider@nelnet.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Logan Kampsnider</GivenName>
+ <EmailAddress>logan.kampsnider@nelnet.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Justin Kaup</GivenName>
+ <EmailAddress>justin.kaup@nelnet.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sso.nelnet.net">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Nelnet Business Solutions</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://factsmgt.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://factsmgt.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="170" width="600" xml:lang="en">https://factsmgt.com/wp-content/themes/facts/img/logo-facts.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1440687900216, expires on Fri Aug 23 15:05:00 2030 GMT -->
+ <ds:X509Certificate>
+MIIDWDCCAkCgAwIBAgIGAU9vsMY4MA0GCSqGSIb3DQEBBQUAMG0xCzAJBgNVBAYT
+AlVTMQswCQYDVQQIEwJORTEQMA4GA1UEBxMHTGluY29sbjEMMAoGA1UEChMDTkJT
+MQ8wDQYDVQQLEwZOZWxuZXQxIDAeBgNVBAMTF2dhdGVrZWVwZXIuZmFjdHNtZ3Qu
+Y29tMB4XDTE1MDgyNzE1MDUwMFoXDTMwMDgyMzE1MDUwMFowbTELMAkGA1UEBhMC
+VVMxCzAJBgNVBAgTAk5FMRAwDgYDVQQHEwdMaW5jb2xuMQwwCgYDVQQKEwNOQlMx
+DzANBgNVBAsTBk5lbG5ldDEgMB4GA1UEAxMXZ2F0ZWtlZXBlci5mYWN0c21ndC5j
+b20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDGQxjqEEROxaQ/YOWU
+7N2KHtVgIVVUmSqKMzRZS6v0wIUsAd01dPFAVYTf/3tc5keT3QG+PIni3fGVpG3H
+Ztv8GLJxpmOx8iKskKyhVOyBRyZ/2QHZ/OE5OMB2xGU18cohS+J7UOBfaTRC//0+
+8QUxRwLRcyIYh0OKma988fzYHRPbqelCwK3Yi8TjO8f1z3Qfk5bASKih4L2xSBjH
+b6PQKt9s/lxE8nRipCSTFPLmUGWx3rpN4pD667o8W+oYxwq3p7eAdbpxtBuXLBOJ
+IlGJfCbYd+uPb8M/fMSkQO0xTobc27Y5fIbU+OY5lgJ2iKtg40yAmgRYX7fKIMQW
+BC0LAgMBAAEwDQYJKoZIhvcNAQEFBQADggEBAIcbxm8c5r877rN8GqvZCBIdRX8Z
+H/rBQJ7WQ0Lrr96OEy/Gq5e7ON5f4NxOJdgrpDSThJKmNxtdwWAWZ1aqIQx8NiNl
+I2nGOdixrBaYnjMfMd8rH2VyQc5dLAxyNFfNmKprtXXDZf2pjR8JX8lWMcSDGUZ/
+++jUFlKRnS3+Dt1WYomoFVdYvZWr1w1dv2dWphbdCP82uqVYvQ/sEDHyrg9Yk5TN
+KzJcYsD2Au+l6z4hOHEEZpbX0Ry83pLeRzmrMof7Cmhe6LS64j//8rgjaSgsAZ03
+7lKxMS9mlc38UZqnGQDl0Q6x+hzbfJc0Xoo0vS7Lj0bVoxybNIV9LxKK+M8=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gatekeeper.factsmgt.com/sp/ACS.saml2" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Nelnet Business Solutions</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Nelnet Business Solutions</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Nelnet Business Solutions</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nelnet.net/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Logan Kampsnider</GivenName>
+ <EmailAddress>logan.kampsnider@nelnet.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Justin Kaup</GivenName>
+ <EmailAddress>justin.kaup@nelnet.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Logan Kampsnider</GivenName>
+ <EmailAddress>logan.kampsnider@nelnet.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- SUNY Geneseo -->
+<EntityDescriptor entityID="https://auth.geneseo.edu/simplesaml/saml2/idp/metadata.php">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">geneseo.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SUNY Geneseo</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.geneseo.edu/cit/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://auth.geneseo.edu/simplesaml/resources/geneseo_logo_80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14137708841984547032, expires on Wed Jul 13 14:03:01 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.geneseo.edu/simplesaml/saml2/idp/SingleLogoutService.php"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.geneseo.edu/simplesaml/saml2/idp/SingleLogoutService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.geneseo.edu/simplesaml/saml2/idp/SSOService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.geneseo.edu/simplesaml/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SUNY Geneseo</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SUNY Geneseo</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.geneseo.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>SUNY Geneseo Systems SAML Admin</GivenName>
+ <EmailAddress>systems+saml@geneseo.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>SUNY Geneseo Systems SAML Admin</GivenName>
+ <EmailAddress>systems+saml@geneseo.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>SUNY Geneseo Systems SAML Admin</GivenName>
+ <EmailAddress>systems+saml@geneseo.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- InfoReady Corp -->
+<EntityDescriptor entityID="https://calpoly.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://calpoly.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Cal Poly, San Luis Obispo</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calpoly.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://calpoly.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://calpoly.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calpoly.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://calpoly.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calpoly.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calpoly.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Cal Poly, San Luis Obispo</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://calstate.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://calstate.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Cal State</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calstate.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://calstate.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calstate.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calstate.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://calstate.infoready4.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://calstate.infoready4.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Cal State</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@infoready4.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://calstatela.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://calstatela.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Cal State LA</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>
+MIIC6zCCAdOgAwIBAgIJAOO9wmxE2PCSMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV
+BAMTDGluZm9yZHl3aW4wMjAeFw0xMzEwMjkwNjE0NDlaFw0yMzEwMjcwNjE0NDla
+MBcxFTATBgNVBAMTDGluZm9yZHl3aW4wMjCCASIwDQYJKoZIhvcNAQEBBQADggEP
+ADCCAQoCggEBAMpdE35LzF2eEaAhLfxtotv6XhMXfkOMbugHq8xk5rhyx7RKS+Ku
+t9wW8Mv2rG7NAJw+8167dP6N2RQKpRBn17FIOhm/cuSNtiTBJtA9QiTEkyN5D1ma
+ykJjlD95ymo0XdRDWwz/6IP5v+d95BlfbnlkswWOGOMLxCtaWCSZQ00RJFDKudL5
+IrK+2A1KwF4O+DxqivhdLsd/yA+IjX1efYnT7MPsd7Yyh5wKXKkGbKEg9yAW65Dt
+x2xbBCjDT2PCBhJ4ZuRfUv8whBCT2qgH6+pQ5JBN9ZDz1iGDFp8XfQ27UtzlFdBc
+cjvWmtOh/V35fBXl5LIbJdU/ypJMBwehxbcCAwEAAaM6MDgwFwYDVR0RBBAwDoIM
+aW5mb3JkeXdpbjAyMB0GA1UdDgQWBBQTyklRhSLuL0VcI0Nv4tQhZYqHITANBgkq
+hkiG9w0BAQUFAAOCAQEAJyNYKdKAFdp7xvqnjszw+AF3dYl3HQKe5bC0M+gu7G+2
+hJL2D70cFCXXi2bNcdyLsFVPiecMo69QinOP3kqCPNL7S5pSjm48T9bTiRr4WNy1
+hkxJ7nCV++z696YqbE7WYec9LEpcNDnDnmDfQOxvxzdtpIyM3Egw+koKEZu13ebw
+zAs2xgBj3V5YWmzS7nk1wPPJBKpr+9W5xixEGfaKfrrQXayP/LVyN+u/3BjZCZfE
+bfqmalH+rjpJ7ZCck4CQFxCvnLhwl+L5DEuEFXmgTzk7EDb65no+rXaZQd3/IEre
+sazovBHNw8FPYGiOCi2757flvBsb6gW+FbN0SPmtSQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://calstatela.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calstatela.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://calstatela.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calstatela.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://calstatela.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calstatela.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calstatela.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Cal State LA</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ced-csulb.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ced-csulb.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - CSU Long Beah CED</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ced-csulb.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ced-csuslb.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ced-csulb.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ced-csulb.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ced-csulb.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ced-csulb.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ced-csulb.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - CSU Long Beah CED</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://chgd.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://chgd.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - UM CHGD</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://chgd.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://chgd.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://chgd.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://chgd.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://chgd.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://chgd.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://chgd.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - UM CHGD</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://colostate.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://colostate.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review Colorado State</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://colostate.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://colostate.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://colostate.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://colostate.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://colostate.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://colostate.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://colostate.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review Colorado State</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://columbia.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://columbia.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Columbia University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://columbia.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://columbia.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://columbia.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://columbia.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://columbia.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://columbia.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://columbia.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Columbia University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cornell.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cornell.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Cornell University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cornell.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cornell.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cornell.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cornell.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cornell.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cornell.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cornell.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Cornell University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://csuari.inforeadyscale.com/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Scale - CSU ARI</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csuari.inforeadyscale.com/uaa/saml/SingleLogout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://csuari.inforeadyscale.com/uaa/saml/SingleLogout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://csuari.inforeadyscale.com/uaa/saml/SingleLogout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csuari.inforeadyscale.com/uaa/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csuari.inforeadyscale.com/uaa/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Scale - CSU ARI</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Aaron Knight</GivenName>
+ <EmailAddress>aknight@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://csucoast.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://csucoast.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - CSU Coast</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csucoast.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://csucoast.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://csucoast.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csucoast.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://csucoast.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csucoast.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://csucoast.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - CSU Coast</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://csueastbay.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://csueastbay.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - CSU East Bay</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csueastbay.infoready4.com/Shibboleth.sso/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://csueastbay.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://csueastbay.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csueastbay.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://csueastbay.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csueastbay.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://csueastbay.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - CSU East Bay</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.om</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://csun.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://csun.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - CSU Northridge</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://csun.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://csusn.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csun.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csun.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://csun.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csun.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://csun.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - CSU Northridge</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@infoready4.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://csus.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://csus.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Sacramento State</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://csus.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://csus.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csusb.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csus.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://csus.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csus.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://csus.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Sacramento State</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://cwru.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cwru.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Case Western Reserve</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cwru.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cwru.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cwru.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cwru.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cwru.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cwru.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cwru.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Case Western Reserve</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://emory.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://emory.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Emory University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://emory.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://emory.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://emory.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://emory.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://emory.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://emory.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://emory.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Emory University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://greenfund.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://greenfund.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - UT Office of Sustainability</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://greenfund.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://greenfund.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://greenfund.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://greenfund.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://greenfund.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://greenfund.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://greenfund.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - UT Office of Sustainability</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://jhu.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://jhu.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Johns Hopkins University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jhu.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://jhu.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://jhu.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jhu.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://jhu.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://jhu.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://jhu.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Johns Hopkins University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://lehigh.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lehigh.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Lehigh University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lehigh.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lehigh.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://lehigh.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lehigh.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lehigh.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lehigh.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lehigh.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Lehigh University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Maurice Collins</GivenName>
+ <EmailAddress>maurice@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://lsu.inforeadyscale.com/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Infoready Scale - LSU</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>
+MIIC6zCCAdOgAwIBAgIJAOO9wmxE2PCSMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV
+BAMTDGluZm9yZHl3aW4wMjAeFw0xMzEwMjkwNjE0NDlaFw0yMzEwMjcwNjE0NDla
+MBcxFTATBgNVBAMTDGluZm9yZHl3aW4wMjCCASIwDQYJKoZIhvcNAQEBBQADggEP
+ADCCAQoCggEBAMpdE35LzF2eEaAhLfxtotv6XhMXfkOMbugHq8xk5rhyx7RKS+Ku
+t9wW8Mv2rG7NAJw+8167dP6N2RQKpRBn17FIOhm/cuSNtiTBJtA9QiTEkyN5D1ma
+ykJjlD95ymo0XdRDWwz/6IP5v+d95BlfbnlkswWOGOMLxCtaWCSZQ00RJFDKudL5
+IrK+2A1KwF4O+DxqivhdLsd/yA+IjX1efYnT7MPsd7Yyh5wKXKkGbKEg9yAW65Dt
+x2xbBCjDT2PCBhJ4ZuRfUv8whBCT2qgH6+pQ5JBN9ZDz1iGDFp8XfQ27UtzlFdBc
+cjvWmtOh/V35fBXl5LIbJdU/ypJMBwehxbcCAwEAAaM6MDgwFwYDVR0RBBAwDoIM
+aW5mb3JkeXdpbjAyMB0GA1UdDgQWBBQTyklRhSLuL0VcI0Nv4tQhZYqHITANBgkq
+hkiG9w0BAQUFAAOCAQEAJyNYKdKAFdp7xvqnjszw+AF3dYl3HQKe5bC0M+gu7G+2
+hJL2D70cFCXXi2bNcdyLsFVPiecMo69QinOP3kqCPNL7S5pSjm48T9bTiRr4WNy1
+hkxJ7nCV++z696YqbE7WYec9LEpcNDnDnmDfQOxvxzdtpIyM3Egw+koKEZu13ebw
+zAs2xgBj3V5YWmzS7nk1wPPJBKpr+9W5xixEGfaKfrrQXayP/LVyN+u/3BjZCZfE
+bfqmalH+rjpJ7ZCck4CQFxCvnLhwl+L5DEuEFXmgTzk7EDb65no+rXaZQd3/IEre
+sazovBHNw8FPYGiOCi2757flvBsb6gW+FbN0SPmtSQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lsu.inforeadyscale.com/uaa/saml/SingleLogout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lsu.inforeadyscale.com/uaa/saml/SingleLogout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lsu.inforeadyscale.com/uaa/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lsu.inforeadyscale.com/uaa/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Infoready Scale - LSU</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Aaron Knight</GivenName>
+ <EmailAddress>aknight@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://lsu.inforeadythrive-preprod.com/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Scale - LSU Preprod</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14228893000503596926, expires on Fri Dec 20 00:17:59 2024 GMT -->
+ <ds:X509Certificate>
+MIIDITCCAgmgAwIBAgIJAMV3LsvKDxd+MA0GCSqGSIb3DQEBBQUAMCkxJzAlBgNV
+BAMTHjY1NjYwNy1hcGFjaGUwMS5pbmZvcmVhZHk0LmNvbTAeFw0xNDEyMjMwMDE3
+NTlaFw0yNDEyMjAwMDE3NTlaMCkxJzAlBgNVBAMTHjY1NjYwNy1hcGFjaGUwMS5p
+bmZvcmVhZHk0LmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMbI
+/FD/xgcj6dyV1d1CqkURDMGW8H9D9ZOOyDcJDIUe6tHzWx9ajWvF2ttV8BEEOe0E
+L0cCm1PIerWr24A2gf5Wgbrgv9RokqiMDCfzKGsvXJPfiX6LWGcWx2uXpbT4QcV4
+YKGUqPv3XhtGPob9P7e1zY6+31Ab34HdFaoF/THCAxV8kYvoYHUIOhsVWG18PnBp
+2hl/2PH2yJQBPriy1rJ0E26DxFv9cPcFWozqL8UGL6rf3kpoNxRlid/C4Jt2z8qU
+O7CKecyVdHbrG0fJy2PrqcdCmUm9U/cU19SAYlbyACnV+pRpzBVV7jkx2iF963Pb
+8VQic3jORB/yYK2TDFkCAwEAAaNMMEowKQYDVR0RBCIwIIIeNjU2NjA3LWFwYWNo
+ZTAxLmluZm9yZWFkeTQuY29tMB0GA1UdDgQWBBQGtEJ95l1B4xGcQ4m7ytkEByet
+9TANBgkqhkiG9w0BAQUFAAOCAQEAWjuZeSM9zCy5BkSoMbV2+EFC6Q32lEDpu8ha
+lWIG5lEgqZBRu0WNiwrEce4BIB04fpbxJqh2xUYOXYKUk3Q0juS2+OlfYKAsrE8A
+9BX142yCTB4NDZQDgeA+qMvomOjvVnhxjGNBp7dFOA99gvKpspgFo7qvo2Ne89kh
+oLNj7hZ1qGfbi8CKCLQOm8ZqxqPQp77Jhwc/o0yFlivYERbAU84jRqnBtIvEXeHe
+rexzq9IotElivRcYbv7HDIXxMz0NLbU5NoRpY9dIZQ3skFVi7AX7JomYpPuyjJar
+rJlw0vf3jErjtnhNs/rcKohV5OeMlpurZ3u4lYYxfXpIaZCo0Q==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lsu.inforeadythrive-preprod.com/uaa/saml/SingleLogout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lsu.inforeadythrive-preprod.com/uaa/saml/SingleLogout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lsu.inforeadythrive-preprod.com/uaa/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lsu.inforeadythrive-preprod.com/uaa/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Scale - LSU Preprod</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Aaron Knight</GivenName>
+ <EmailAddress>aknight@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://medc.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://medc.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Umich MEDC</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://medc.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://medc.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://medc.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://medc.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://medc.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://medc.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://medc.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Umich MEDC</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://micde.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://micde.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - UM MICDE</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>
+MIIC6zCCAdOgAwIBAgIJAOO9wmxE2PCSMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV
+BAMTDGluZm9yZHl3aW4wMjAeFw0xMzEwMjkwNjE0NDlaFw0yMzEwMjcwNjE0NDla
+MBcxFTATBgNVBAMTDGluZm9yZHl3aW4wMjCCASIwDQYJKoZIhvcNAQEBBQADggEP
+ADCCAQoCggEBAMpdE35LzF2eEaAhLfxtotv6XhMXfkOMbugHq8xk5rhyx7RKS+Ku
+t9wW8Mv2rG7NAJw+8167dP6N2RQKpRBn17FIOhm/cuSNtiTBJtA9QiTEkyN5D1ma
+ykJjlD95ymo0XdRDWwz/6IP5v+d95BlfbnlkswWOGOMLxCtaWCSZQ00RJFDKudL5
+IrK+2A1KwF4O+DxqivhdLsd/yA+IjX1efYnT7MPsd7Yyh5wKXKkGbKEg9yAW65Dt
+x2xbBCjDT2PCBhJ4ZuRfUv8whBCT2qgH6+pQ5JBN9ZDz1iGDFp8XfQ27UtzlFdBc
+cjvWmtOh/V35fBXl5LIbJdU/ypJMBwehxbcCAwEAAaM6MDgwFwYDVR0RBBAwDoIM
+aW5mb3JkeXdpbjAyMB0GA1UdDgQWBBQTyklRhSLuL0VcI0Nv4tQhZYqHITANBgkq
+hkiG9w0BAQUFAAOCAQEAJyNYKdKAFdp7xvqnjszw+AF3dYl3HQKe5bC0M+gu7G+2
+hJL2D70cFCXXi2bNcdyLsFVPiecMo69QinOP3kqCPNL7S5pSjm48T9bTiRr4WNy1
+hkxJ7nCV++z696YqbE7WYec9LEpcNDnDnmDfQOxvxzdtpIyM3Egw+koKEZu13ebw
+zAs2xgBj3V5YWmzS7nk1wPPJBKpr+9W5xixEGfaKfrrQXayP/LVyN+u/3BjZCZfE
+bfqmalH+rjpJ7ZCck4CQFxCvnLhwl+L5DEuEFXmgTzk7EDb65no+rXaZQd3/IEre
+sazovBHNw8FPYGiOCi2757flvBsb6gW+FbN0SPmtSQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://micde.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://micde.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://micde.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://micde.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://micde.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://micde.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://micde.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - UM MICDE</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://midas.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://midas.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - MIDAS</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://midas.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://midas.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://midas.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://midas.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://midas.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://midas.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://midas.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - MIDAS</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://mitfunding.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mitfunding.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - MIT</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mitfunding.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mitfunding.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mitfunding.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mitfunding.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mitfunding.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mitfunding.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mitfunding.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - MIT</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nyuad.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nyuad.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - NYU Abu Dabi</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nyuad.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nyuad.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nyuad.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nyuad.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nyuad.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nyuad.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nyuad.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - NYU Abu Dabi</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nyuadtest.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nyuadtest.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - NYU Abu Dabi (Test)</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nyuadtest.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nyuadtest.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nyuadtest.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nyuadtest.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nyuadtest.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nyuadtest.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nyuadtest.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - NYU Abu Dabi (Test)</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nyu.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nyu.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - NYU</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nyu.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://nyuinfoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://nyu.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nyu.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nyu.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nyu.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nyu.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - NYU</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>jtesta@inforeadycorp.com</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>jtesta@inforeadycorp.com</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://olemiss.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://olemiss.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - University of Mississippi</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>
+MIIC6zCCAdOgAwIBAgIJAOO9wmxE2PCSMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV
+BAMTDGluZm9yZHl3aW4wMjAeFw0xMzEwMjkwNjE0NDlaFw0yMzEwMjcwNjE0NDla
+MBcxFTATBgNVBAMTDGluZm9yZHl3aW4wMjCCASIwDQYJKoZIhvcNAQEBBQADggEP
+ADCCAQoCggEBAMpdE35LzF2eEaAhLfxtotv6XhMXfkOMbugHq8xk5rhyx7RKS+Ku
+t9wW8Mv2rG7NAJw+8167dP6N2RQKpRBn17FIOhm/cuSNtiTBJtA9QiTEkyN5D1ma
+ykJjlD95ymo0XdRDWwz/6IP5v+d95BlfbnlkswWOGOMLxCtaWCSZQ00RJFDKudL5
+IrK+2A1KwF4O+DxqivhdLsd/yA+IjX1efYnT7MPsd7Yyh5wKXKkGbKEg9yAW65Dt
+x2xbBCjDT2PCBhJ4ZuRfUv8whBCT2qgH6+pQ5JBN9ZDz1iGDFp8XfQ27UtzlFdBc
+cjvWmtOh/V35fBXl5LIbJdU/ypJMBwehxbcCAwEAAaM6MDgwFwYDVR0RBBAwDoIM
+aW5mb3JkeXdpbjAyMB0GA1UdDgQWBBQTyklRhSLuL0VcI0Nv4tQhZYqHITANBgkq
+hkiG9w0BAQUFAAOCAQEAJyNYKdKAFdp7xvqnjszw+AF3dYl3HQKe5bC0M+gu7G+2
+hJL2D70cFCXXi2bNcdyLsFVPiecMo69QinOP3kqCPNL7S5pSjm48T9bTiRr4WNy1
+hkxJ7nCV++z696YqbE7WYec9LEpcNDnDnmDfQOxvxzdtpIyM3Egw+koKEZu13ebw
+zAs2xgBj3V5YWmzS7nk1wPPJBKpr+9W5xixEGfaKfrrQXayP/LVyN+u/3BjZCZfE
+bfqmalH+rjpJ7ZCck4CQFxCvnLhwl+L5DEuEFXmgTzk7EDb65no+rXaZQd3/IEre
+sazovBHNw8FPYGiOCi2757flvBsb6gW+FbN0SPmtSQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://olemiss.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://olemiss.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://olemiss.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://olemiss.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://olemiss.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://olemiss.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://olemiss.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - University of Mississippi</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ou.inforeadyscale.com/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Scale - Oakland University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ou.inforeadyscale.com/uaa/saml/SingleLogout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ou.inforeadyscale.com/uaa/saml/SingleLogout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ou.inforeadyscale.com/uaa/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ou.inforeadyscale.com/uaa/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Scale - Oakland University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Aaron Knight</GivenName>
+ <EmailAddress>aknight@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://psu.inforeadyscale.com/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Scale - Penn State</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://psu.inforeadyscale.com/uaa/saml/SingleLogout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://psu.inforeadyscale.com/uaa/saml/SingleLogout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://psu.inforeadyscale.com/uaa/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://psu.inforeadyscale.com/uaa/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Scale - Penn State</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Aaron Knight</GivenName>
+ <EmailAddress>aknight@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://psu.inforeadythrive-preprod.com/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Scale - PSU Preprod</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14228893000503596926, expires on Fri Dec 20 00:17:59 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://psu.inforeadythrive-preprod.com/uaa/saml/SingleLogout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://psu.inforeadythrive-preprod.com/uaa/saml/SingleLogout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://psu.inforeadythrive-preprod.com/uaa/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://psu.inforeadythrive-preprod.com/uaa/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Scale - PSU Preprod</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Aaron Knight</GivenName>
+ <EmailAddress>aknight@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://purdue.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://purdue.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Purdue</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://purdue.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://purdue.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://purdue.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://purdue.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://purdue.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://purdue.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://purdue.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Purdue</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://researchcommons.gwu.edu/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Scale - GWU</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://researchcommons.gwu.edu/uaa/saml/SingleLogout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://researchcommons.gwu.edu/uaa/saml/SingleLogout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://researchcommons.gwu.edu/uaa/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://researchcommons.gwu.edu/uaa/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Scale - GWU</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Aaron Knight</GivenName>
+ <EmailAddress>aknight@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://researchcommons.umich.edu/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Scale - Umich Research Commons</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>
+MIIC6zCCAdOgAwIBAgIJAOO9wmxE2PCSMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV
+BAMTDGluZm9yZHl3aW4wMjAeFw0xMzEwMjkwNjE0NDlaFw0yMzEwMjcwNjE0NDla
+MBcxFTATBgNVBAMTDGluZm9yZHl3aW4wMjCCASIwDQYJKoZIhvcNAQEBBQADggEP
+ADCCAQoCggEBAMpdE35LzF2eEaAhLfxtotv6XhMXfkOMbugHq8xk5rhyx7RKS+Ku
+t9wW8Mv2rG7NAJw+8167dP6N2RQKpRBn17FIOhm/cuSNtiTBJtA9QiTEkyN5D1ma
+ykJjlD95ymo0XdRDWwz/6IP5v+d95BlfbnlkswWOGOMLxCtaWCSZQ00RJFDKudL5
+IrK+2A1KwF4O+DxqivhdLsd/yA+IjX1efYnT7MPsd7Yyh5wKXKkGbKEg9yAW65Dt
+x2xbBCjDT2PCBhJ4ZuRfUv8whBCT2qgH6+pQ5JBN9ZDz1iGDFp8XfQ27UtzlFdBc
+cjvWmtOh/V35fBXl5LIbJdU/ypJMBwehxbcCAwEAAaM6MDgwFwYDVR0RBBAwDoIM
+aW5mb3JkeXdpbjAyMB0GA1UdDgQWBBQTyklRhSLuL0VcI0Nv4tQhZYqHITANBgkq
+hkiG9w0BAQUFAAOCAQEAJyNYKdKAFdp7xvqnjszw+AF3dYl3HQKe5bC0M+gu7G+2
+hJL2D70cFCXXi2bNcdyLsFVPiecMo69QinOP3kqCPNL7S5pSjm48T9bTiRr4WNy1
+hkxJ7nCV++z696YqbE7WYec9LEpcNDnDnmDfQOxvxzdtpIyM3Egw+koKEZu13ebw
+zAs2xgBj3V5YWmzS7nk1wPPJBKpr+9W5xixEGfaKfrrQXayP/LVyN+u/3BjZCZfE
+bfqmalH+rjpJ7ZCck4CQFxCvnLhwl+L5DEuEFXmgTzk7EDb65no+rXaZQd3/IEre
+sazovBHNw8FPYGiOCi2757flvBsb6gW+FbN0SPmtSQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://researchcommons.umich.edu/uaa/saml/SingleLogout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://researchcommons.umich.edu/uaa/saml/SingleLogout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://researchcommons.umich.edu/uaa/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://researchcommons.umich.edu/uaa/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Scale - Umich Research Commons</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ru.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ru.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Rhodes University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ru.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ru.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ru.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ru.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ru.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ru.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ru.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Rhodes University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sdstate.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sdstate.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - South Dakota State University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>
+MIIC6zCCAdOgAwIBAgIJAOO9wmxE2PCSMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV
+BAMTDGluZm9yZHl3aW4wMjAeFw0xMzEwMjkwNjE0NDlaFw0yMzEwMjcwNjE0NDla
+MBcxFTATBgNVBAMTDGluZm9yZHl3aW4wMjCCASIwDQYJKoZIhvcNAQEBBQADggEP
+ADCCAQoCggEBAMpdE35LzF2eEaAhLfxtotv6XhMXfkOMbugHq8xk5rhyx7RKS+Ku
+t9wW8Mv2rG7NAJw+8167dP6N2RQKpRBn17FIOhm/cuSNtiTBJtA9QiTEkyN5D1ma
+ykJjlD95ymo0XdRDWwz/6IP5v+d95BlfbnlkswWOGOMLxCtaWCSZQ00RJFDKudL5
+IrK+2A1KwF4O+DxqivhdLsd/yA+IjX1efYnT7MPsd7Yyh5wKXKkGbKEg9yAW65Dt
+x2xbBCjDT2PCBhJ4ZuRfUv8whBCT2qgH6+pQ5JBN9ZDz1iGDFp8XfQ27UtzlFdBc
+cjvWmtOh/V35fBXl5LIbJdU/ypJMBwehxbcCAwEAAaM6MDgwFwYDVR0RBBAwDoIM
+aW5mb3JkeXdpbjAyMB0GA1UdDgQWBBQTyklRhSLuL0VcI0Nv4tQhZYqHITANBgkq
+hkiG9w0BAQUFAAOCAQEAJyNYKdKAFdp7xvqnjszw+AF3dYl3HQKe5bC0M+gu7G+2
+hJL2D70cFCXXi2bNcdyLsFVPiecMo69QinOP3kqCPNL7S5pSjm48T9bTiRr4WNy1
+hkxJ7nCV++z696YqbE7WYec9LEpcNDnDnmDfQOxvxzdtpIyM3Egw+koKEZu13ebw
+zAs2xgBj3V5YWmzS7nk1wPPJBKpr+9W5xixEGfaKfrrQXayP/LVyN+u/3BjZCZfE
+bfqmalH+rjpJ7ZCck4CQFxCvnLhwl+L5DEuEFXmgTzk7EDb65no+rXaZQd3/IEre
+sazovBHNw8FPYGiOCi2757flvBsb6gW+FbN0SPmtSQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sdstate.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sdstate.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sdstate.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sdstate.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sdstate.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sdstate.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sdstate.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - South Dakota State University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://stanford.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://stanford.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Stanford University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stanford.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://stanford.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://stanford.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stanford.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stanford.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stanford.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stanford.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Stanford University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://syracuse.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://syracuse.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Syracuse University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://syracuse.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://syracuse.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://syracuse.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://syracuse.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://syracuse.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://syracuse.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://syracuse.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Syracuse University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://temple.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://temple.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Temple</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://temple.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://temple.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://temple.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://temple.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://temple.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://temple.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://temple.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Temple</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ttu.inforeadyscale.com/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Scale - Texas Tech</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ttu.inforeadyscale.com/uaa/saml/SingleLogout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ttu.inforeadyscale.com/uaa/saml/SingleLogout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ttu.inforeadyscale.com/uaa/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ttu.inforeadyscale.com/uaa/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Scale - Texas Tech</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucdavis.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucdavis.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - UC Davis</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucdavis.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ucdavis.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ucdavis.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucdavis.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucdavis.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucdavis.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucdavis.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - UC Davis</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uchicago.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uchicago.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - University of Chicago</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uchicago.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uchicago.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uchicago.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uchicago.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uchicago.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uchicago.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uchicago.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - University of Chicago</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucsb.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucsb.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Univeristy of California, Santa Barbara</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>
+MIIC6zCCAdOgAwIBAgIJAOO9wmxE2PCSMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV
+BAMTDGluZm9yZHl3aW4wMjAeFw0xMzEwMjkwNjE0NDlaFw0yMzEwMjcwNjE0NDla
+MBcxFTATBgNVBAMTDGluZm9yZHl3aW4wMjCCASIwDQYJKoZIhvcNAQEBBQADggEP
+ADCCAQoCggEBAMpdE35LzF2eEaAhLfxtotv6XhMXfkOMbugHq8xk5rhyx7RKS+Ku
+t9wW8Mv2rG7NAJw+8167dP6N2RQKpRBn17FIOhm/cuSNtiTBJtA9QiTEkyN5D1ma
+ykJjlD95ymo0XdRDWwz/6IP5v+d95BlfbnlkswWOGOMLxCtaWCSZQ00RJFDKudL5
+IrK+2A1KwF4O+DxqivhdLsd/yA+IjX1efYnT7MPsd7Yyh5wKXKkGbKEg9yAW65Dt
+x2xbBCjDT2PCBhJ4ZuRfUv8whBCT2qgH6+pQ5JBN9ZDz1iGDFp8XfQ27UtzlFdBc
+cjvWmtOh/V35fBXl5LIbJdU/ypJMBwehxbcCAwEAAaM6MDgwFwYDVR0RBBAwDoIM
+aW5mb3JkeXdpbjAyMB0GA1UdDgQWBBQTyklRhSLuL0VcI0Nv4tQhZYqHITANBgkq
+hkiG9w0BAQUFAAOCAQEAJyNYKdKAFdp7xvqnjszw+AF3dYl3HQKe5bC0M+gu7G+2
+hJL2D70cFCXXi2bNcdyLsFVPiecMo69QinOP3kqCPNL7S5pSjm48T9bTiRr4WNy1
+hkxJ7nCV++z696YqbE7WYec9LEpcNDnDnmDfQOxvxzdtpIyM3Egw+koKEZu13ebw
+zAs2xgBj3V5YWmzS7nk1wPPJBKpr+9W5xixEGfaKfrrQXayP/LVyN+u/3BjZCZfE
+bfqmalH+rjpJ7ZCck4CQFxCvnLhwl+L5DEuEFXmgTzk7EDb65no+rXaZQd3/IEre
+sazovBHNw8FPYGiOCi2757flvBsb6gW+FbN0SPmtSQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucsb.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ucsb.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ucsb.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucsb.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucsb.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucsb.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucsb.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Univeristy of California, Santa Barbara</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucsc.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucsc.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - University of California, Santa Cruz</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucsc.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ucsc.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ucsc.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucsc.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucsc.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucsc.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucsc.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - University of California, Santa Cruz</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uiowa.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uiowa.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - University of Iowa</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uiowa.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uiowa.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uiowa.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uiowa.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uiowa.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uiowa.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uiowa.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - University of Iowa</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@infoready4.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umd.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://umd.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady - UMD</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UMD Production Instance</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umd.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://umd.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://umd.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umd.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://umd.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umd.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://umd.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady - UMD</ServiceName>
+ <ServiceDescription xml:lang="en">UMD Production Instance</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umich.inforeadyscale.com/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Scale - Umich</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umich.inforeadyscale.com/uaa/saml/SingleLogout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://umich.inforeadyscale.com/uaa/saml/SingleLogout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umich.inforeadyscale.com/uaa/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umich.inforeadyscale.com/uaa/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Scale - Umich</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umich.inforeadythrive-preprod.com/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Scale Testing - Umich</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14228893000503596926, expires on Fri Dec 20 00:17:59 2024 GMT -->
+ <ds:X509Certificate>
+MIIDITCCAgmgAwIBAgIJAMV3LsvKDxd+MA0GCSqGSIb3DQEBBQUAMCkxJzAlBgNV
+BAMTHjY1NjYwNy1hcGFjaGUwMS5pbmZvcmVhZHk0LmNvbTAeFw0xNDEyMjMwMDE3
+NTlaFw0yNDEyMjAwMDE3NTlaMCkxJzAlBgNVBAMTHjY1NjYwNy1hcGFjaGUwMS5p
+bmZvcmVhZHk0LmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMbI
+/FD/xgcj6dyV1d1CqkURDMGW8H9D9ZOOyDcJDIUe6tHzWx9ajWvF2ttV8BEEOe0E
+L0cCm1PIerWr24A2gf5Wgbrgv9RokqiMDCfzKGsvXJPfiX6LWGcWx2uXpbT4QcV4
+YKGUqPv3XhtGPob9P7e1zY6+31Ab34HdFaoF/THCAxV8kYvoYHUIOhsVWG18PnBp
+2hl/2PH2yJQBPriy1rJ0E26DxFv9cPcFWozqL8UGL6rf3kpoNxRlid/C4Jt2z8qU
+O7CKecyVdHbrG0fJy2PrqcdCmUm9U/cU19SAYlbyACnV+pRpzBVV7jkx2iF963Pb
+8VQic3jORB/yYK2TDFkCAwEAAaNMMEowKQYDVR0RBCIwIIIeNjU2NjA3LWFwYWNo
+ZTAxLmluZm9yZWFkeTQuY29tMB0GA1UdDgQWBBQGtEJ95l1B4xGcQ4m7ytkEByet
+9TANBgkqhkiG9w0BAQUFAAOCAQEAWjuZeSM9zCy5BkSoMbV2+EFC6Q32lEDpu8ha
+lWIG5lEgqZBRu0WNiwrEce4BIB04fpbxJqh2xUYOXYKUk3Q0juS2+OlfYKAsrE8A
+9BX142yCTB4NDZQDgeA+qMvomOjvVnhxjGNBp7dFOA99gvKpspgFo7qvo2Ne89kh
+oLNj7hZ1qGfbi8CKCLQOm8ZqxqPQp77Jhwc/o0yFlivYERbAU84jRqnBtIvEXeHe
+rexzq9IotElivRcYbv7HDIXxMz0NLbU5NoRpY9dIZQ3skFVi7AX7JomYpPuyjJar
+rJlw0vf3jErjtnhNs/rcKohV5OeMlpurZ3u4lYYxfXpIaZCo0Q==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umich.inforeadythrive-preprod.com/uaa/saml/SingleLogout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://umich.inforeadythrive-preprod.com/uaa/saml/SingleLogout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umich.inforeadythrive-preprod.com/uaa/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umich.inforeadythrive-preprod.com/uaa/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Scale Testing - Umich</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umichsandbox.inforeadyscale.com/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Scale - Umich Sandbox</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umichsandbox.inforeadyscale.com/uaa/saml/SingleLogout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://umichsandbox.inforeadyscale.com/uaa/saml/SingleLogout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umichsandbox.inforeadyscale.com/uaa/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umichsandbox.inforeadyscale.com/uaa/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Scale - Umich Sandbox</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umichsandbox.inforeadythrive-preprod.com/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review Test - Umich Sandbox</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14228893000503596926, expires on Fri Dec 20 00:17:59 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umichsandbox.inforeadythrive-preprod.com/uaa/saml/SingleLogout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://umichsandbox.inforeadythrive-preprod.com/uaa/saml/SingleLogout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umichsandbox.inforeadythrive-preprod.com/uaa/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umichsandbox.inforeadythrive-preprod.com/uaa/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review Test - Umich Sandbox</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://um-jitri.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://um-jitri.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - UM JITRI</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://um-jitri.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://um-jitri.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://um-jitri.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://um-jitri.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://um-jitri.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://um-jitri.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://um-jitri.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - UM JITRI</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umncla.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://umncla.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - UMN CLA</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umncla.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://umncla.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://umncla.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umncla.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://umncla.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umncla.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://umncla.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - UMN CLA</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umncvmresearch.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://umncvmresearch.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - University of Minnesota College of Veterinary Medicine</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umncvmresearch.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://umncvmresearch.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://umncvmresearch.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umncvmresearch.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://umncvmresearch.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umncvmresearch.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://umncvmresearch.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - University of Minnesota College of Veterinary Medicine</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umsystem.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://umsystem.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - University of Missouri System</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umsystem.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://umsystem.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://umsystem.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umsystem.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://umsystem.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://umsystem.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://umsystem.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - University of Missouri System</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uthscsa.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uthscsa.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - UTHSCSA</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uthscsa.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uthscsa.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uthscsa.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uthscsa.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uthscsa.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uthscsa.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uthscsa.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - UTHSCSA</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@infoready4.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://utsouthwestern.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://utsouthwestern.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - UT Southwestern Medical Center</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://utsouthwestern.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://utsouthwestern.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://utsouthwestern.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://utsouthwestern.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://utsouthwestern.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://utsouthwestern.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://utsouthwestern.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - UT Southwestern Medical Center</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://utsouthwestern.infoready-preprod.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://utsouthwestern.infoready-preprod.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - UT Southwestern Medical Center - (test)</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14228893000503596926, expires on Fri Dec 20 00:17:59 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://utsouthwestern.infoready-preprod.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://utsouthwestern.infoready-preprod.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://utsouthwestern.infoready-preprod.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://utsouthwestern.infoready-preprod.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://utsouthwestern.infoready-preprod.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://utsouthwestern.infoready-preprod.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://utsouthwestern.infoready-preprod.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - UT Southwestern Medical Center - (test)</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wayne.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wayne.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Wayne State</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wayne.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wayne.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://wayne.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wayne.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wayne.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wayne.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wayne.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Wayne State</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wcupa.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wcupa.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Westchester University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wcupa.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wcupa.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://wcupa.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wcupa.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wcupa.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wcupa.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wcupa.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Westchester University</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://yale.infoready4.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://yale.infoready4.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoReady Review - Yale University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://privacy-policy.inforeadycorp.com/InfoReady%20Privacy%20Notice.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="215" width="215" xml:lang="en">https://logo.inforeadycorp.com/infoready_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16410486387475280018, expires on Fri Oct 27 06:14:49 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://yale.infoready4.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://yale.infoready4.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://yale.infoready4.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://yale.infoready4.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://yale.infoready4.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://yale.infoready4.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://yale.infoready4.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoReady Review - Yale University</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoReady Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoReady Corp</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.infoready4.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Testa</GivenName>
+ <EmailAddress>jtesta@inforeadycorp.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Weill Cornell Medical College in Qatar -->
+<EntityDescriptor entityID="https://idp.qatar-weill.cornell.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">qatar-weill.cornell.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Weill Cornell Medical College in Qatar</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://weill.cornell.edu/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="294" xml:lang="en">https://qatar-weill.cornell.edu/Portals/_default/Skins/WCMQ/images/wcmq-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1329432810988848039434389861300477761313918870851, expires on Sat Jun 3 07:27:57 2034 GMT -->
+ <ds:X509Certificate>
+MIIDWDCCAkCgAwIBAgIVAOjd1DnJt9+wai5RSTs4dU7Z3uVDMA0GCSqGSIb3DQEB
+BQUAMCYxJDAiBgNVBAMTG2lkcC5xYXRhci13ZWlsbC5jb3JuZWxsLmVkdTAeFw0x
+NDA2MDMwNzI3NTdaFw0zNDA2MDMwNzI3NTdaMCYxJDAiBgNVBAMTG2lkcC5xYXRh
+ci13ZWlsbC5jb3JuZWxsLmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC
+ggEBANP9iD4QkVd280O25P9msXPV1fG4Tw2RnrVXwHpIYaOncoLJMyV4SMuuarB1
+Pg2zC3uswMzM1xp5iY56UYCSU4QkPY+NzYoBLC7di3dioQsYIYBtHh39B92be8ur
+oLFQrTA8YYH6SllQjKbX6dXAUrkb7qhy1p/h2K9Go9YQIsmgPTune4yycfJAOU7Q
+JcrlFfhl2qeRSDQ+nK/QasYk3+zfuQ3FI3gpANsbyMlVWJnd+75otbizQsnhdATP
+xgZ+JWENLZ2YV5G0tstNCaqm+lSI5FZELAdl6vA0DnH0AZDhUlKM4IrPxbxtD9GU
+epD1RO/C5aGnjbHiiCMtZI1a1+8CAwEAAaN9MHswWgYDVR0RBFMwUYIbaWRwLnFh
+dGFyLXdlaWxsLmNvcm5lbGwuZWR1hjJodHRwczovL2lkcC5xYXRhci13ZWlsbC5j
+b3JuZWxsLmVkdS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU8m1MSVMJCE8xgnT1
+U9ltWX5HcyYwDQYJKoZIhvcNAQEFBQADggEBAKqChi5QJ/KNcqu/4MxaDkxRyUqG
+sz1VdX3DIHhb0+Ol6ZfU1OJey+pwqZjo6pTfJB1GGCKYeDsiYZavgAwf/vhUdNk6
+IZss1WV4OOw+Bp1zkonLqRR/poXV5RR3Me+SuSwYi4U3UIY1lngN4NP9JXzLqOyN
+CS2nRgHvacwUcMn4jubuUxNFfGk2rrZ+32v+KKfcJP6tIh/u7IbMmQ0VQhEYOai6
+mgJ6/63J0fFOShYaGfVzsJk4VtKoO1VeF80vDTWcQ65sCT0vHG79MMizEX5N+9fQ
+ULb3rAmKgl6xBpBfo+sBJMTbsZsIG/ev/mSRyHhKra1GIAA4GTcBYaeOOt8=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.qatar-weill.cornell.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.qatar-weill.cornell.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.qatar-weill.cornell.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.qatar-weill.cornell.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.qatar-weill.cornell.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">qatar-weill.cornell.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1329432810988848039434389861300477761313918870851, expires on Sat Jun 3 07:27:57 2034 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.qatar-weill.cornell.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Weill Cornell Medical College in Qatar</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Weill Cornell Medical College in Qatar</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.qatar-med.cornell.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Ala' Aljaser</GivenName>
+ <EmailAddress>ama2027@qatar-med.cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Adam Elrowmeim</GivenName>
+ <EmailAddress>ade2003@qatar-med.cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Abdulmunem S. Hezam</GivenName>
+ <EmailAddress>ash2004@qatar-med.cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nafe Atari</GivenName>
+ <EmailAddress>nma2004@qatar-med.cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Incommon Security</GivenName>
+ <EmailAddress>incommon-security@qatar-med.cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Incommon Admin</GivenName>
+ <EmailAddress>incommon-admin@qatar-med.cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Incommon Tech</GivenName>
+ <EmailAddress>incommon-tech@qatar-med.cornell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Incommon Support</GivenName>
+ <EmailAddress>incommon-support@qatar-med.cornell.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Workplace Answers, LLC -->
+<EntityDescriptor entityID="https://qas-slate.workplaceanswers.com/NJIT/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://qas-slate.workplaceanswers.com/NJIT/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NJIT</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11191252048812141498, expires on Sun Nov 6 23:03:54 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://qas-slate.workplaceanswers.com/NJIT/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://qas-slate.workplaceanswers.com/NJIT/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://qas-slate.workplaceanswers.com/NJIT/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://qas-slate.workplaceanswers.com/NJIT/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://qas-slate.workplaceanswers.com/NJIT/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://qas-slate.workplaceanswers.com/NJIT/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Workplace Answers, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Workplace Answers, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.workplaceanswers.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Karunakar Pulsani</GivenName>
+ <EmailAddress>pulsani@workplaceanswers.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://qas-slate.workplaceanswers.com/northdakotasu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://qas-slate.workplaceanswers.com/northdakotasu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">northdakotasu</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11191252048812141498, expires on Sun Nov 6 23:03:54 2022 GMT -->
+ <ds:X509Certificate>
+MIIC5TCCAc2gAwIBAgIJAJtPUHHRT2u6MA0GCSqGSIb3DQEBBQUAMBUxEzARBgNV
+BAMTCnFhcy13ZWJkYjEwHhcNMTIxMTA4MjMwMzU0WhcNMjIxMTA2MjMwMzU0WjAV
+MRMwEQYDVQQDEwpxYXMtd2ViZGIxMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIB
+CgKCAQEAytXc6mtznmCKzmQAoP2+4jPfwT+ZQCXHsXZ6a5JZbz75rKKGQ8VnKGHI
+QQOpa3C+WCNun1ycFUP9Mxqgz/GZ0fFamRXnRq4e8KkSvEflvddCfoBsRfdaTxVK
+m4fKcvRJU6o4fR9dgyh+stYJco9H8hejXFh29JLMlxbnscuaF/CLP6W1cTzlMwyj
+P+5kcIUiD6lGoHNEiziSgNFJRkR30Va/hYxSTkyweE6ewPMEaK5lwTfUGptTBgrh
+LXLWcmsNjYn5V2/SaMNfA1G5dAuz2rPJ13qbjg9Vvbi+mF3TFMJk11rR11Oval+F
+lGdfHjoTCsiBJS0AVnMOPmUGm5J0aQIDAQABozgwNjAVBgNVHREEDjAMggpxYXMt
+d2ViZGIxMB0GA1UdDgQWBBQiSvCYSZ9FM7/C/WOBczzFw9T+SDANBgkqhkiG9w0B
+AQUFAAOCAQEAZ3WODCL/ATs8lKRkwc+c0r8YcoKIIk6StI77/rKDg6ajDzmPDBvs
+b5wORlOhg7oc6g/qrZRqoyeSgHgPDxumrFbI/v02Y/N5XanFm6/L050jtpjl74+V
+kMs3FmOCIK7EiA91R9YndvoX7rGm1K94rLOy5mSmwK9s7iLUgvxwWGNRZ1R5Z/0l
+sdYDRXhboc1OKA5e+aQwt2D+SRJoSYiJLgxr6ztjGQIgNo7EoH6zoN2yWrNIdspv
+IxAiaJ2SXzqSnUn4qrSHjE99MkLWglB2WiEVx4ehuBAupZDCpSza+Ry/Em//q3ZN
+IYY8+cJu7kEjcxPZoFP8zBefa91ThaVA+g==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://qas-slate.workplaceanswers.com/northdakotasu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://qas-slate.workplaceanswers.com/northdakotasu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://qas-slate.workplaceanswers.com/northdakotasu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://qas-slate.workplaceanswers.com/northdakotasu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://qas-slate.workplaceanswers.com/northdakotasu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://qas-slate.workplaceanswers.com/northdakotasu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Workplace Answers, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Workplace Answers, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.workplaceanswers.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Bala</GivenName>
+ <EmailAddress>bdurairajan@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://qas-slate.workplaceanswers.com/Olemiss/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://qas-slate.workplaceanswers.com/Olemiss/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Olemiss</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11191252048812141498, expires on Sun Nov 6 23:03:54 2022 GMT -->
+ <ds:X509Certificate>
+MIIC5TCCAc2gAwIBAgIJAJtPUHHRT2u6MA0GCSqGSIb3DQEBBQUAMBUxEzARBgNV
+BAMTCnFhcy13ZWJkYjEwHhcNMTIxMTA4MjMwMzU0WhcNMjIxMTA2MjMwMzU0WjAV
+MRMwEQYDVQQDEwpxYXMtd2ViZGIxMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIB
+CgKCAQEAytXc6mtznmCKzmQAoP2+4jPfwT+ZQCXHsXZ6a5JZbz75rKKGQ8VnKGHI
+QQOpa3C+WCNun1ycFUP9Mxqgz/GZ0fFamRXnRq4e8KkSvEflvddCfoBsRfdaTxVK
+m4fKcvRJU6o4fR9dgyh+stYJco9H8hejXFh29JLMlxbnscuaF/CLP6W1cTzlMwyj
+P+5kcIUiD6lGoHNEiziSgNFJRkR30Va/hYxSTkyweE6ewPMEaK5lwTfUGptTBgrh
+LXLWcmsNjYn5V2/SaMNfA1G5dAuz2rPJ13qbjg9Vvbi+mF3TFMJk11rR11Oval+F
+lGdfHjoTCsiBJS0AVnMOPmUGm5J0aQIDAQABozgwNjAVBgNVHREEDjAMggpxYXMt
+d2ViZGIxMB0GA1UdDgQWBBQiSvCYSZ9FM7/C/WOBczzFw9T+SDANBgkqhkiG9w0B
+AQUFAAOCAQEAZ3WODCL/ATs8lKRkwc+c0r8YcoKIIk6StI77/rKDg6ajDzmPDBvs
+b5wORlOhg7oc6g/qrZRqoyeSgHgPDxumrFbI/v02Y/N5XanFm6/L050jtpjl74+V
+kMs3FmOCIK7EiA91R9YndvoX7rGm1K94rLOy5mSmwK9s7iLUgvxwWGNRZ1R5Z/0l
+sdYDRXhboc1OKA5e+aQwt2D+SRJoSYiJLgxr6ztjGQIgNo7EoH6zoN2yWrNIdspv
+IxAiaJ2SXzqSnUn4qrSHjE99MkLWglB2WiEVx4ehuBAupZDCpSza+Ry/Em//q3ZN
+IYY8+cJu7kEjcxPZoFP8zBefa91ThaVA+g==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://qas-slate.workplaceanswers.com/Olemiss/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://qas-slate.workplaceanswers.com/Olemiss/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://qas-slate.workplaceanswers.com/Olemiss/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://qas-slate.workplaceanswers.com/Olemiss/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://qas-slate.workplaceanswers.com/Olemiss/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://qas-slate.workplaceanswers.com/Olemiss/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Workplace Answers, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Workplace Answers, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.workplaceanswers.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Karunakar Pulsani</GivenName>
+ <EmailAddress>pulsani@workplaceanswers.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://qas-slate.workplaceanswers.com/southernillinoisu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://qas-slate.workplaceanswers.com/southernillinoisu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Southern Illinois University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11191252048812141498, expires on Sun Nov 6 23:03:54 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://qas-slate.workplaceanswers.com/southernillinoisu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://qas-slate.workplaceanswers.com/southernillinoisu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://qas-slate.workplaceanswers.com/southernillinoisu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://qas-slate.workplaceanswers.com/southernillinoisu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://qas-slate.workplaceanswers.com/southernillinoisu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://qas-slate.workplaceanswers.com/southernillinoisu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Workplace Answers, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Workplace Answers, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.workplaceanswers.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Karunakar Pulsani</GivenName>
+ <EmailAddress>pulsani@workplaceanswers.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://qas-slate.workplaceanswers.com/universityofva/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://qas-slate.workplaceanswers.com/universityofva/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">universityofva</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11191252048812141498, expires on Sun Nov 6 23:03:54 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://qas-slate.workplaceanswers.com/universityofva/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://qas-slate.workplaceanswers.com/universityofva/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://qas-slate.workplaceanswers.com/universityofva/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://qas-slate.workplaceanswers.com/universityofva/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://qas-slate.workplaceanswers.com/universityofva/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://qas-slate.workplaceanswers.com/universityofva/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Workplace Answers, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Workplace Answers, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.workplaceanswers.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Karunakar Pulsani</GivenName>
+ <EmailAddress>pulsani@workplaceanswers.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://slate.workplaceanswers.com/libertyuniversity/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://slate.workplaceanswers.com/libertyuniversity/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">libertyuniversity</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16520388914149869804, expires on Wed Nov 23 18:40:13 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slate.workplaceanswers.com/libertyuniversity/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://slate.workplaceanswers.com/libertyuniversity/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slate.workplaceanswers.com/libertyuniversity/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://slate.workplaceanswers.com/libertyuniversity/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://slate.workplaceanswers.com/libertyuniversity/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://slate.workplaceanswers.com/libertyuniversity/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Workplace Answers, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Workplace Answers, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.workplaceanswers.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>bala</GivenName>
+ <EmailAddress>bdurairajan@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://slate.workplaceanswers.com/newyorkuniversity/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://slate.workplaceanswers.com/newyorkuniversity/shibboleth/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">newyorkuniversity</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16520388914149869804, expires on Wed Nov 23 18:40:13 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slate.workplaceanswers.com/newyorkuniversity/shibboleth/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://slate.workplaceanswers.com/newyorkuniversity/shibboleth/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slate.workplaceanswers.com/newyorkuniversity/shibboleth/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://slate.workplaceanswers.com/newyorkuniversity/shibboleth/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slate.workplaceanswers.com/newyorkuniversity/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slate.workplaceanswers.com/newyorkuniversity/Shibboleth.sso/SAML2/Artifac" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Workplace Answers, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Workplace Answers, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.workplaceanswers.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Karunakar Pulsani</GivenName>
+ <EmailAddress>pulsani@workplaceanswers.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://slate.workplaceanswers.com/NJIT/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://slate.workplaceanswers.com/NJIT/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NJIT</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16520388914149869804, expires on Wed Nov 23 18:40:13 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slate.workplaceanswers.com/NJIT/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://slate.workplaceanswers.com/NJIT/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slate.workplaceanswers.com/NJIT/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://slate.workplaceanswers.com/NJIT/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://slate.workplaceanswers.com/NJIT/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://slate.workplaceanswers.com/NJIT/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Workplace Answers, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Workplace Answers, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.workplaceanswers.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Karunakar Pulsani</GivenName>
+ <EmailAddress>pulsani@workplaceanswers.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://slate.workplaceanswers.com/northdakotasu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://slate.workplaceanswers.com/northdakotasu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">northdakotasu</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16520388914149869804, expires on Wed Nov 23 18:40:13 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slate.workplaceanswers.com/northdakotasu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://slate.workplaceanswers.com/northdakotasu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slate.workplaceanswers.com/northdakotasu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://slate.workplaceanswers.com/northdakotasu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://slate.workplaceanswers.com/northdakotasu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://slate.workplaceanswers.com/northdakotasu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Workplace Answers, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Workplace Answers, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.workplaceanswers.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Bala</GivenName>
+ <EmailAddress>bdurairajan@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://slate.workplaceanswers.com/Olemiss/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://slate.workplaceanswers.com/Olemiss/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Olemiss</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16520388914149869804, expires on Wed Nov 23 18:40:13 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slate.workplaceanswers.com/Olemiss/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://slate.workplaceanswers.com/Olemiss/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slate.workplaceanswers.com/Olemiss/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://slate.workplaceanswers.com/Olemiss/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://slate.workplaceanswers.com/Olemiss/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://slate.workplaceanswers.com/Olemiss/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Workplace Answers, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Workplace Answers, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.workplaceanswers.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Karunakar Pulsani</GivenName>
+ <EmailAddress>pulsani@workplaceanswers.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://slate.workplaceanswers.com/southernillinoisu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Southern Illinois University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16520388914149869804, expires on Wed Nov 23 18:40:13 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slate.workplaceanswers.com/southernillinoisu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://slate.workplaceanswers.com/southernillinoisu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slate.workplaceanswers.com/southernillinoisu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://slate.workplaceanswers.com/southernillinoisu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slate.workplaceanswers.com/southernillinoisu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://slate.workplaceanswers.com/southernillinoisu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Workplace Answers, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Workplace Answers, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.workplaceanswers.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>karunakar Pulsani</GivenName>
+ <EmailAddress>pulsani@workplaceanswers.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://slate.workplaceanswers.com/umbcedu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://slate.workplaceanswers.com/umbcedu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UMarylandBaltimoreCounty</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16520388914149869804, expires on Wed Nov 23 18:40:13 2022 GMT -->
+ <ds:X509Certificate>
+MIIC3zCCAcegAwIBAgIJAOVENjBLNEjsMA0GCSqGSIb3DQEBBQUAMBMxETAPBgNV
+BAMTCHByZC13ZWIxMB4XDTEyMTEyNTE4NDAxM1oXDTIyMTEyMzE4NDAxM1owEzER
+MA8GA1UEAxMIcHJkLXdlYjEwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
+AQDKfiELd2dmZMIbCTMgeGiFmMmdEDJq+pGTEIOcj211BnmsQNHf0fQtJW4OwFnG
+Pyy5Y0r1Z6rHpep6ObJIMBLymrR9YH5T/X8L9ErmYz5mefHvjswp9x3FwDtxEC3h
+cHI9UXYxCNS8Lb8S5lmL5XA9OwVPr39xouRKsYZ8sB6wOyEo9w67xw5wHlSwPbuY
+5/2AxjunKKEEN2NBUYXXx6v5Knqp+z0SANNIC5ctyIn/7ZzYdwGMJ9K5mYjYmWGx
+9K0GplWqQgJhPqK9whrxch9T0IfKiB4P86PpA3/M1LyzByKgjjvv/30Sky4LTpAM
+msCs+h+tPHwxovl9nfKuW9gvAgMBAAGjNjA0MBMGA1UdEQQMMAqCCHByZC13ZWIx
+MB0GA1UdDgQWBBRXFSvkluyIb4+c/Ce0wUhFWnTI0TANBgkqhkiG9w0BAQUFAAOC
+AQEAv/5M+zig3NdmOcNcLbAotkDsYFWAjtx6je42nbUNC1OCyBQU9cr5rgp7PXbE
+AzEkKalru36iToNZFut5tDOUhTBjqVHPreL1+0zgn7HNm00aeU6ICTAe6+LOrfiA
+Rc/fdv/OhZkpnIOUIDjZDCxMcll2kEZMV4QAg/4E5yeSw0+/NUveSPOTte06+wNx
++gO4mSkPCKVKfH/qtFpmICm3yJNw4Dlk4Mroa0fH+/dCt/mZSULV9W+mk9TGViP3
+3tsW2k55YVdQQMQXgQQKUxyGgxfH35CVY4MyM0knl29UepiPnSz8AM5V8xJ7tLTJ
+rMNdKfTcAl/m/dwA/1u0lfQJYw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slate.workplaceanswers.com/umbcedu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://slate.workplaceanswers.com/umbcedu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slate.workplaceanswers.com/umbcedu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://slate.workplaceanswers.com/umbcedu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://slate.workplaceanswers.com/umbcedu/Shibboleth.sso/SAML/Post" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://slate.workplaceanswers.com/umbcedu/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Workplace Answers, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Workplace Answers, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.workplaceanswers.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Karunakar Pulsani</GivenName>
+ <EmailAddress>pulsani@workplaceanswers.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://slate.workplaceanswers.com/universityofva/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">universityofva</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16520388914149869804, expires on Wed Nov 23 18:40:13 2022 GMT -->
+ <ds:X509Certificate>
+MIIC3zCCAcegAwIBAgIJAOVENjBLNEjsMA0GCSqGSIb3DQEBBQUAMBMxETAPBgNV
+BAMTCHByZC13ZWIxMB4XDTEyMTEyNTE4NDAxM1oXDTIyMTEyMzE4NDAxM1owEzER
+MA8GA1UEAxMIcHJkLXdlYjEwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
+AQDKfiELd2dmZMIbCTMgeGiFmMmdEDJq+pGTEIOcj211BnmsQNHf0fQtJW4OwFnG
+Pyy5Y0r1Z6rHpep6ObJIMBLymrR9YH5T/X8L9ErmYz5mefHvjswp9x3FwDtxEC3h
+cHI9UXYxCNS8Lb8S5lmL5XA9OwVPr39xouRKsYZ8sB6wOyEo9w67xw5wHlSwPbuY
+5/2AxjunKKEEN2NBUYXXx6v5Knqp+z0SANNIC5ctyIn/7ZzYdwGMJ9K5mYjYmWGx
+9K0GplWqQgJhPqK9whrxch9T0IfKiB4P86PpA3/M1LyzByKgjjvv/30Sky4LTpAM
+msCs+h+tPHwxovl9nfKuW9gvAgMBAAGjNjA0MBMGA1UdEQQMMAqCCHByZC13ZWIx
+MB0GA1UdDgQWBBRXFSvkluyIb4+c/Ce0wUhFWnTI0TANBgkqhkiG9w0BAQUFAAOC
+AQEAv/5M+zig3NdmOcNcLbAotkDsYFWAjtx6je42nbUNC1OCyBQU9cr5rgp7PXbE
+AzEkKalru36iToNZFut5tDOUhTBjqVHPreL1+0zgn7HNm00aeU6ICTAe6+LOrfiA
+Rc/fdv/OhZkpnIOUIDjZDCxMcll2kEZMV4QAg/4E5yeSw0+/NUveSPOTte06+wNx
++gO4mSkPCKVKfH/qtFpmICm3yJNw4Dlk4Mroa0fH+/dCt/mZSULV9W+mk9TGViP3
+3tsW2k55YVdQQMQXgQQKUxyGgxfH35CVY4MyM0knl29UepiPnSz8AM5V8xJ7tLTJ
+rMNdKfTcAl/m/dwA/1u0lfQJYw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slate.workplaceanswers.com/universityofva/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://qas-slate.workplaceanswers.com/universityofva/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slate.workplaceanswers.com/universityofva/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://slate.workplaceanswers.com/universityofva/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://slate.workplaceanswers.com/universityofva/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://slate.workplaceanswers.com/universityofva/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Workplace Answers, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Workplace Answers, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.workplaceanswers.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Karunakar Pulsani</GivenName>
+ <EmailAddress>pulsani@workplaceanswers.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://slate.workplaceanswers.com/UnivPugetSound/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://slate.workplaceanswers.com/UnivPugetSound/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Puget Sound</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://everfi.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="220" xml:lang="en">https://shib.everfi.net/EverFi_Logo_Home.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16520388914149869804, expires on Wed Nov 23 18:40:13 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slate.workplaceanswers.com/UnivPugetSound/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://slate.workplaceanswers.com/UnivPugetSound/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://slate.workplaceanswers.com/UnivPugetSound/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://slate.workplaceanswers.com/UnivPugetSound/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Workplace Answers, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Workplace Answers, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.workplaceanswers.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Karunakar Pulsani</GivenName>
+ <EmailAddress>pulsani@workplaceanswers.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Derek Gallo</GivenName>
+ <EmailAddress>derek@everfi.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- AdventHealth University -->
+<EntityDescriptor entityID="https://saml.adu.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">adu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">AdventHealth University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://my.ahu.edu/university-services/information-technology/incommon-pop</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ahu.edu/campus/policies-and-campus-safety/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="204" width="600" xml:lang="en">https://saml.ahu.edu/simplesaml/module.php/themeADU/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1, expires on Fri Dec 31 23:59:59 9999 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://saml.ahu.edu/simplesaml/saml2/idp/SingleLogoutService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://saml.ahu.edu/simplesaml/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">AdventHealth University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">AdventHealth University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.ahu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>saml.tech@my.adu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Administrative Support</GivenName>
+ <EmailAddress>saml.admin@my.adu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Information Technology</GivenName>
+ <EmailAddress>webmaster@adu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Technology</GivenName>
+ <EmailAddress>webmaster@adu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- DLT Solutions -->
+<EntityDescriptor entityID="https://acs.i2portal.com/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DLT I2 Portal</mdui:DisplayName>
+ <mdui:Description xml:lang="en">DLT I2 Portal</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dlt.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="228" width="672" xml:lang="en">https://s3.amazonaws.com/css-internal-com/DLT-Logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12105646701439932665, expires on Wed Mar 27 14:35:02 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://acs.i2portal.com/sso/post/" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DLT I2 Portal</ServiceName>
+ <ServiceDescription xml:lang="en">DLT I2 Portal</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DLT Solutions</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DLT Solutions</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.dlt.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Greg Agana</GivenName>
+ <EmailAddress>greg.agana@dlt.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Adam Nissley</GivenName>
+ <EmailAddress>adam.nissley@dlt.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>James Soliday</GivenName>
+ <EmailAddress>james.soliday@dlt.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jared Patrick</GivenName>
+ <EmailAddress>jared.patrick@dlt.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Cornerstone OnDemand, Inc. -->
+<EntityDescriptor entityID="https://bc.csod.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Cornerstone OnDemand Inc</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cornerstoneondemand.com/client-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="79" width="300" xml:lang="en">https://bc.csod.com/client/clients/Login_top_banner.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 4978641855995136522459833867602642142, expires on Mon Nov 9 12:00:00 2020 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12900755232727732029163918411965509782, expires on Wed Nov 25 12:00:00 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bc.csod.com/samldefault.aspx" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Cornerstone OnDemand, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Cornerstone OnDemand, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cornerstoneondemand.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Cornerstone OnDemand Support</GivenName>
+ <EmailAddress>support@csod.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>GPS</GivenName>
+ <EmailAddress>gpstechsupport@csod.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>GPS</GivenName>
+ <EmailAddress>gpstechsupport@csod.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Sec &amp; Compliance</GivenName>
+ <EmailAddress>DLITSecurityandCompliance@csod.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nebraskamed-pilot.csod.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Apollo</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cornerstoneondemand.com/client-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="79" width="300" xml:lang="en">https://nebraskamed-pilot.csod.com/client/clients/Login_top_banner.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 4978641855995136522459833867602642142, expires on Mon Nov 9 12:00:00 2020 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12900755232727732029163918411965509782, expires on Wed Nov 25 12:00:00 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nebraskamed-pilot.csod.com/samldefault.aspx?ouid=2" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Cornerstone OnDemand, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Cornerstone OnDemand, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cornerstoneondemand.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>GPS</GivenName>
+ <EmailAddress>gpstechsupport@csod.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>GPS</GivenName>
+ <EmailAddress>gpstechsupport@csod.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>GPS</GivenName>
+ <EmailAddress>gpstechsupport@csod.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ohiostate-stg.csod.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Cornerstone OnDemand, Inc</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cornerstoneondemand.com/client-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="79" width="300" xml:lang="en">https://ohiostate-stg.csod.com/client/clients/Login_top_banner.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 4978641855995136522459833867602642142, expires on Mon Nov 9 12:00:00 2020 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ohiostate-stg.csod.com/samldefault.aspx" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Cornerstone OnDemand, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Cornerstone OnDemand, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cornerstoneondemand.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>GPS</GivenName>
+ <EmailAddress>gpstechsupport@csod.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>GPS</GivenName>
+ <EmailAddress>gpstechsupport@csod.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>GPS</GivenName>
+ <EmailAddress>gpstechsupport@csod.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://psu-stg.csod.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Cornerstone OnDemand Inc</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cornerstoneondemand.com/client-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="79" width="300" xml:lang="en">https://psu-stg.csod.com/client/clients/Login_top_banner.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 4978641855995136522459833867602642142, expires on Mon Nov 9 12:00:00 2020 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12900755232727732029163918411965509782, expires on Wed Nov 25 12:00:00 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://psu-stg.csod.com/samldefault.aspx" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Cornerstone OnDemand, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Cornerstone OnDemand, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cornerstoneondemand.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>GPS</GivenName>
+ <EmailAddress>gpstechsupport@csod.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>GPS</GivenName>
+ <EmailAddress>gpstechsupport@csod.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>GPS</GivenName>
+ <EmailAddress>gpstechsupport@csod.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Reclaim Hosting, LLC -->
+<EntityDescriptor entityID="https://coventry.domains">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Coventry Domains</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://coventry.domains</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://coventry.domains/terms-and-conditions/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="53" width="300" xml:lang="en">https://coventry.domains/wp-content/uploads/Logo_Black-on-Transparent-300x53.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17829692641766648598, expires on Fri Sep 11 13:28:25 2026 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://coventry.domains/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://coventry.domains/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://coventry.domains/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://coventry.domains/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://coventry.domains/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://coventry.domains/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://coventry.domains/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://coventry.domains/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://coventry.domains/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Coventry Domains</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Reclaim Hosting, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Reclaim Hosting, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://reclaimhosting.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Tim Owens</GivenName>
+ <EmailAddress>tim@reclaimhosting.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chris Martin</GivenName>
+ <EmailAddress>ab4756@coventry.ac.uk</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Tim Owens</GivenName>
+ <EmailAddress>tim@reclaimhosting.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nyu.reclaimhosting.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NYU Web Hosting</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://hosting.nyu.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://hosting.nyu.edu/nyu-web-hosting-terms-of-service/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="39" width="300" xml:lang="en">https://hosting.nyu.edu/wp-content/uploads/2015/12/libraries_short_color-300x39.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10647839434054660648, expires on Thu Jan 1 13:24:22 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://hosting.nyu.edu/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://hosting.nyu.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hosting.nyu.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://globalimages.liberalstudies.hosting.nyu.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://globalimages.liberalstudies.hosting.nyu.edu/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://globalimages.liberalstudies.hosting.nyu.edu/Shibboleth.sso/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hosting.nyu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://hosting.nyu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hosting.nyu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://hosting.nyu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://hosting.nyu.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://hosting.nyu.edu/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://globalimages.liberalstudies.hosting.nyu.edu/Shibboleth.sso/SAML2/POST" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://globalimages.liberalstudies.hosting.nyu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://globalimages.liberalstudies.hosting.nyu.edu/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://globalimages.liberalstudies.hosting.nyu.edu/Shibboleth.sso/SAML2/ECP" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://globalimages.liberalstudies.hosting.nyu.edu/Shibboleth.sso/SAML/POST" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://globalimages.liberalstudies.hosting.nyu.edu/Shibboleth.sso/SAML/Artifact" index="12"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NYU Web Hosting</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Reclaim Hosting, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Reclaim Hosting, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://reclaimhosting.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Tim Owens</GivenName>
+ <EmailAddress>tim@reclaimhosting.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jim Groom</GivenName>
+ <EmailAddress>jim@reclaimhosting.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Tim Owens</GivenName>
+ <EmailAddress>tim@reclaimhosting.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Delaware Valley University -->
+<EntityDescriptor entityID="https://sso.delval.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.delval.edu/offices-services/help-desk-technology" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">delval.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Delaware Valley University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.delval.edu/offices-services/marketing-communications/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="900" xml:lang="en">https://sso.delval.edu/assets/images/dvu_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1498486874359, expires on Thu Jun 24 14:21:14 2027 GMT -->
+ <ds:X509Certificate>
+MIIDYjCCAkqgAwIBAgIGAVzkxyD3MA0GCSqGSIb3DQEBCwUAMHIxCzAJBgNVBAYTAlVTMQswCQYD
+VQQIEwJQQTETMBEGA1UEBxMKRG95bGVzdG93bjEjMCEGA1UEChMaRGVsYXdhcmUgVmFsbGV5IFVu
+aXZlcnNpdHkxHDAaBgNVBAMTE2luY29tbW9uLmRlbHZhbC5lZHUwHhcNMTcwNjI2MTQyMTE0WhcN
+MjcwNjI0MTQyMTE0WjByMQswCQYDVQQGEwJVUzELMAkGA1UECBMCUEExEzARBgNVBAcTCkRveWxl
+c3Rvd24xIzAhBgNVBAoTGkRlbGF3YXJlIFZhbGxleSBVbml2ZXJzaXR5MRwwGgYDVQQDExNpbmNv
+bW1vbi5kZWx2YWwuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAilKOW1C8b3m7
+wRUmFKPkC7fw38cWWeWjtq8QZEo6nH/n+2qq+7jsjlILTTyKUyjlH+xjbqohRsG02kE2c/3AzbHv
+drx070C8zA+vsnrkX03hA6cnbs6da22YXHBhSlP2gv5AuCWI3Zbs3Tb1RS0E6toJqk3sDAm/r66k
+tRfLDHW/oXaeIxspZeeVZfWaPM52D4B/tzB8Q5ZshxzIyY1+k1nAk5OAaDJem5a4EA9iFRLiouLK
+RzotxHiwRR/Cs+vh7vfLiBU8BINb55WR6QEmTkc+GanuLrFIQyqDSdSTpkl0Q70IjeJXWwSpej3t
+Iq9TjItDjBtLM8MwqscWCOi6ywIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQAhzXLmq8AnncZ9Bc7r
+f626tsYz+Om8+n/wqpNxGhwM43s856KYpvXJ+FnlQqE64FPKrexiVrXNGKrv8qBhJiUnkdlhlSRk
++IPRxfOSaMRIIprBjZPoS4o6pUil9lDiI51mxgfQtdhGZmXMRzp9mZoRkjJe5PRW0AZwW+WEgI8u
+Q8mAtSoPAyts8lrD69bC9yQKn9uu4RXdrqPAypugIYBWPGOgqYwN4Ku4f0annMMpOZcXyjYy+/qR
+DqEiBb8ADEFSX+4QGGiCEmz8Lt3lww5MqlUiGpAxwlie330nSLTtGmBZ6usGXI9ldsCJCowGoGzK
+Dw45eQVysVvlSukuj1zt
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.delval.edu/idp/SSO.saml2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.delval.edu/idp/SSO.saml2"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Delaware Valley University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Delaware Valley University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.delval.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Davis</GivenName>
+ <EmailAddress>michael.davis@delval.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Davis</GivenName>
+ <EmailAddress>michael.davis@delval.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tim Konopka</GivenName>
+ <EmailAddress>tim.konopka@delval.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Bridgeport -->
+<EntityDescriptor entityID="https://idp.bridgeport.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bridgeport.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Bridgeport</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.bridgeport.edu/about/general-information/policies/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://e6e101a2fa590f9443c3-938dfcbad6f00d623627348cbc74f4be.ssl.cf5.rackcdn.com/Images/Logos/ub-seal-purple-80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 824220118083599194427089373096734712127002097676, expires on Sat Feb 17 17:02:08 2035 GMT -->
+ <ds:X509Certificate>
+MIIDNDCCAhygAwIBAgIVAJBfTu+adrdocAWNWMrxwsQDwbgMMA0GCSqGSIb3DQEB
+CwUAMB0xGzAZBgNVBAMMEmlkcC5icmlkZ2Vwb3J0LmVkdTAeFw0xNTAyMTcxNzAy
+MDhaFw0zNTAyMTcxNzAyMDhaMB0xGzAZBgNVBAMMEmlkcC5icmlkZ2Vwb3J0LmVk
+dTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAISnvHsXiLtSfOwZmxMk
+ZWpmFniFsXRUG5G5NJY2SSScW0lVGdiPHQWL8Zr9YmFiAdSyI4oCt3R5I7U+IG1l
+FYhUkPFSr8glxU41G6iFhPBdpW3DNM0dYZeIE4/3ZX4JSaYEEUDtYtL4v2V7+gho
+FXWTu0gKieH4AME2MPBhK9KKeCbK0Lb1GmotenJbytjLQ3g6iTvbxoVxdTEFQgqZ
+eG63w9yxCuc7VikYO9xRSboI9cv4JikOeX0D2WmjwydJnb4qpFg06oImMqt+PdHW
+RyYlrrPj3hPHF1HZpbGtMh+yIC+L9rUDyWtRJbExSbNQpE/y17sQ4PCDHyn0H93o
+4vECAwEAAaNrMGkwHQYDVR0OBBYEFKPBWfXIDrPwfVJvMxMrrwkygF+GMEgGA1Ud
+EQRBMD+CEmlkcC5icmlkZ2Vwb3J0LmVkdYYpaHR0cHM6Ly9pZHAuYnJpZGdlcG9y
+dC5lZHUvaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBAFuGe9J4DqlY
+9jdvpul5xzjlGqDJYh5ieLmDQKd/6El74jknxzBe68Mk2e1kqHtzvtFVWFPn2EES
+nD5P3xQ6Pxgy2TIZtiBRbbajkyVUF7keKjVDP9iUFbW8189wCjgLVtfOhAEnh7eX
+OU6Gs/5IQM4ji4XL9OH9GMTX2JWWPNBgmFgEhSOtQUAglVvVcfBZPNTwuVeF5y/q
+rYyOmoL9mXRqzHMl05ZcI8fUZlT+E/yVPIvs973WwsG5ucJhtRJo1MCDTJvjWw2e
+4b4d7MXdduNZ9DTkP+xKvxcR0/7njMmhDx+2Ziy6RAXD2NPOPoK7qZU0b2RFkGj2
+Je/ZCyY6zCI=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.bridgeport.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.bridgeport.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.bridgeport.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.bridgeport.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.bridgeport.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bridgeport.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 824220118083599194427089373096734712127002097676, expires on Sat Feb 17 17:02:08 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.bridgeport.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Bridgeport</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Bridgeport</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://bridgeport.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>UB SysAdmin Group</GivenName>
+ <EmailAddress>sysadmin@bridgeport.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IDP Administrator</GivenName>
+ <EmailAddress>idp-admin@bridgeport.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IDP Administrator</GivenName>
+ <EmailAddress>idp-admin@bridgeport.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Uprising Technology, Inc. -->
+<EntityDescriptor entityID="https://cirrusidentity.uprisingtech.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Uprising Technology - Cirrus Identity</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uprisingtech.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="92" width="394" xml:lang="en">https://www.uprisingtech.com/wp-content/uploads/2018/07/ut-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13994310933847627539, expires on Wed May 23 19:18:00 2029 GMT -->
+ <ds:X509Certificate>
+MIIDFTCCAf2gAwIBAgIJAMI1x6Y4WlcTMA0GCSqGSIb3DQEBCwUAMCExHzAdBgNVBAMMFnVwcmlzaW5ndGVjaC5hdXRoMC5jb20wHhcNMTUwOTE0MTkxODAwWhcNMjkwNTIzMTkxODAwWjAhMR8wHQYDVQQDDBZ1cHJpc2luZ3RlY2guYXV0aDAuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvPlBBPD74l71Wql6vW1BLT1Clfvnf23kak9LYaXrs/7+Vmq7nIrJS2oDu49kjoUKqQAd0inbnPDcc0P1jcejhRk89WqLFle5164cf4jMtezbvN3oUoSKb6o4KyYGtApM3S1xFJtrSfwVC2m1GuuuYBjemU8YL/MVVHUhkR6Ba9Gsj7oTobr7Rq/eE3af4tX/xVkH4CkV7lpWQUkIhnNRcM/CAiO2i6U9Cd/ZkrrzUG5ZrbIiwIZ12IE89voAAbZ/3G06jA76E1q8AXXV+lcMaz9hWoBPWsjFRARSpvtXW2NNAhewfMECdEz0DjQXP7WUbhBHsaF0My3/luihY3WSmwIDAQABo1AwTjAdBgNVHQ4EFgQU6VdU06EV7Zxrwj3wVRlarN+qedYwHwYDVR0jBBgwFoAU6VdU06EV7Zxrwj3wVRlarN+qedYwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAU0425mcqCSy71fYpyuq/Avrz7rz9OCE7xuMdsCD2hHqjHtQkSZ+Cx5ksGfPSILZwLJS3iGtCKqPAnVSed0uKbrnSdqjIQiKaIWmfV11dtBnEOJulagnFwd8xOuMiaQoPz+G64fCQdL7It1dGrq4JAf9Hfg/IWCnBB8tZsKUyZ+8qxyuky2r8dbw3BSS1H/7fw6sfsNqAxZwSCiSHkhG2/iN7ZwXDCRGnbJPA8825xfGzfYyfd4DIQDVcHb2BUKo38FJiaeG6Ic0ppFKX0y/1kffY/Zcya7X/vjFi+9XXYdozV18IZ03XOm36Qzn4Lu1wHhjq5vpagl7L8TMWIIO5/A==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uprisingtech.auth0.com/logout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uprisingtech.auth0.com/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uprisingtech.auth0.com/login/callback?connection=cirrus" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Uprising Technology - Cirrus Identity</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Uprising Technology, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Uprising Technology, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uprisingtech.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Regan Holt</GivenName>
+ <EmailAddress>regan@uprisingtech.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Noi Narisak</GivenName>
+ <EmailAddress>noi@uprisingtech.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shaun Cruz</GivenName>
+ <EmailAddress>shaun@uprisingtech.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://northwestern-library-v3.uprisingtech.com/sp/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Northwestern Library v3</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uprisingtech.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="92" width="394" xml:lang="en">https://www.uprisingtech.com/wp-content/uploads/2018/07/ut-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 0, expires on Wed Feb 2 22:03:10 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://northwestern-library-v3.uprisingtech.com/sp/acs" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Northwestern Library v3</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Uprising Technology, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Uprising Technology, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uprisingtech.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Regan Holt</GivenName>
+ <EmailAddress>regan@uprisingtech.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Noi Narisak</GivenName>
+ <EmailAddress>noi@uprisingtech.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shaun Cruz</GivenName>
+ <EmailAddress>shaun@uprisingtech.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- SUNY College at Brockport -->
+<EntityDescriptor entityID="https://login.brockport.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.brockport.edu/authenticationendpoint/retry.do" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">brockport.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SUNY The College at Brockport</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.brockport.edu/support/policies/adopted/aa_lits_web_privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="202" width="199" xml:lang="en">https://www.brockport.edu/about/identity/images/shield.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17164861390341052913, expires on Thu Jun 1 17:47:46 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.brockport.edu/samlsso"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.brockport.edu/samlsso"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SUNY College at Brockport</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SUNY College at Brockport</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.brockport.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>IdM Team</GivenName>
+ <EmailAddress>dl_idm@brockport.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IdM Team</GivenName>
+ <EmailAddress>dl_idm@brockport.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>IdM Team</GivenName>
+ <EmailAddress>dl_idm@brockport.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- DLC Solutions, LLC -->
+<EntityDescriptor entityID="https://uwisc.hosted.ethosce.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Interprofessional Continuing Education Partnership</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Wisconsin - Madison
+School of Medicine and Public Health
+School of Nursing
+School of Pharmacy</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.wisc.edu/privacy-statement/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="113" width="512" xml:lang="en">https://upload.wikimedia.org/wikipedia/commons/thumb/a/a2/Ethosce-logo.svg/512px-Ethosce-logo.svg.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14006887667965928139, expires on Tue Aug 3 18:49:12 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ce.icep.wisc.edu/sites/all/libraries/simplesaml/www/module.php/saml/sp/saml2-logout.php/default-sp"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ce.icep.wisc.edu/sites/all/libraries/simplesaml/www/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Interprofessional Continuing Education Partnership</ServiceName>
+ <ServiceDescription xml:lang="en">University of Wisconsin - Madison
+School of Medicine and Public Health
+School of Nursing
+School of Pharmacy</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DLC Solutions, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DLC Solutions, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.dlc-solutions.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Ezra Wolfe</GivenName>
+ <EmailAddress>ewolfe@dlc-solutions.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ezra Wolfe</GivenName>
+ <EmailAddress>ewolfe@dlc-solutions.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ezra Wolfe</GivenName>
+ <EmailAddress>ewolfe@dlc-solutions.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uwmtest.dlcdev.com/sites/all/libraries/simplesaml/www/module.php/saml/sp/metadata.php/default-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UWM EthosCE Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test environment for the University of Wisconsin - Madison EthosCE learning management system.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.wisc.edu/privacy-statement/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="113" width="512" xml:lang="en">https://upload.wikimedia.org/wikipedia/commons/thumb/a/a2/Ethosce-logo.svg/512px-Ethosce-logo.svg.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13164621782285034701, expires on Sat Jun 5 17:18:52 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uwmtest.dlcdev.com/sites/all/libraries/simplesaml/www/module.php/saml/sp/saml2-logout.php/default-sp"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uwmtest.dlcdev.com/sites/all/libraries/simplesaml/www/module.php/saml/sp/saml2-logout.php/default-sp"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uwisc.hosted.test.cloud.ethosce.com/sites/all/libraries/simplesaml/www/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uwisc.hosted.test.cloud.ethosce.com/sites/all/libraries/simplesaml/www/module.php/saml/sp/saml1-acs.php/default-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uwisc.hosted.test.cloud.ethosce.com/sites/all/libraries/simplesaml/www/module.php/saml/sp/saml2-acs.php/default-sp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uwisc.hosted.test.cloud.ethosce.com/sites/all/libraries/simplesaml/www/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UWM EthosCE Test</ServiceName>
+ <ServiceDescription xml:lang="en">Test environment for the University of Wisconsin - Madison EthosCE learning management system.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DLC Solutions, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DLC Solutions, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.dlc-solutions.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Ezra Wolfe</GivenName>
+ <EmailAddress>ewolfe@dlc-solutions.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ezra Wolfe</GivenName>
+ <EmailAddress>ewolfe@dlc-solutions.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ezra Wolfe</GivenName>
+ <EmailAddress>ewolfe@dlc-solutions.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Contra Costa Community College District -->
+<EntityDescriptor entityID="https://idp.4cd.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">4cd.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Contra Costa Community College District</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.4cd.edu/webapps/Confidentiality/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="117" xml:lang="en">https://webapps.4cd.edu/apps/files/img/4cdLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 132877705468205766313667416144533926859, expires on Sat Jul 30 00:00:00 2016 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 618516739725807169418775056727507462454975689810, expires on Sun Jul 15 22:05:38 2035 GMT -->
+ <ds:X509Certificate>
+MIIDFzCCAf+gAwIBAgIUbFc/9Zd90s2OyW+CDf6IsoyodFIwDQYJKoZIhvcNAQEL
+BQAwFjEUMBIGA1UEAwwLaWRwLjRjZC5lZHUwHhcNMTUwNzE1MjIwNTM4WhcNMzUw
+NzE1MjIwNTM4WjAWMRQwEgYDVQQDDAtpZHAuNGNkLmVkdTCCASIwDQYJKoZIhvcN
+AQEBBQADggEPADCCAQoCggEBAJbSYoWAUTBA7xoIOTmGtfr9OmJixa3N/euDzOay
+Ztlcf7S48qoo7uBW0H4QHkIIBBkK8YstmsgIqRtA03QL+62trDygN9oWqdbtT5CE
+q7JBI0qxcHb2AXW2LMAW1rjgSeyjRMxUdrbii8aNpJ/PQyHSwqo6l62Xdg9kzDRH
+s7NPchMrplv1NIILukLR87Lu1heirZtpBEzJcc/bj8T98A7Pt/BJURsJsixO3pkq
+q8DmCWggrajOFsYuUsNuwK7AObp3SEv/RvDHwoVLbtO9hCqMzVcS5DwpmHT/TRNd
+Su03LWv/U2tWAY7r2HVeVJmB1QoZCXDtIvCtLa8KkFKCP9kCAwEAAaNdMFswHQYD
+VR0OBBYEFPmijRIb0Yjq1QnJUWQQee6zJVxFMDoGA1UdEQQzMDGCC2lkcC40Y2Qu
+ZWR1hiJodHRwczovL2lkcC40Y2QuZWR1L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3
+DQEBCwUAA4IBAQCJjWVXlEaCfNiUUngeOgeU/Afe6juBV7kN0C9+SqxlmK/hgj9l
+32yoALnA/jec86VVif2sQUy7IJBwsl4+rqx4x04mfZxb0y719YDj5kIgP8ZxOT2s
+yknrDzqbGwe21sAkeirtLANYDjCTgWUB3BpKdqz9iBHI8A0rY1g4glKcWxTYVnej
+mDPEfrVywFVFmXyEtwyEYJSYXsfWLrFwAOpeiO1mq9T1Vk2Mr3P/F5+2E4+J06wg
++iP2GsQmy1PGMfVhuKKGDMDx2YhCzbiGaDjF2782KYJ5xHr8jRIr3qzTRr/SIMsd
+5JecuW9DWVNJsuwR/jW02/KrcCa429lfK5mp
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.4cd.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.4cd.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.4cd.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.4cd.edu:8443/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.4cd.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.4cd.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.4cd.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Contra Costa Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Contra Costa Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.4cd.edu/default.aspx</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Fred Tahan</GivenName>
+ <EmailAddress>ftahan@4cd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeanie Smith</GivenName>
+ <EmailAddress>jsmith@4cd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Fred Tahan</GivenName>
+ <EmailAddress>ftahan@4cd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Fred Tahan</GivenName>
+ <EmailAddress>ftahan@4cd.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Kuali, Inc. -->
+<EntityDescriptor entityID="https://ready.ca.kuali.co">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://saml1.ca.kuali.co/ready/saml/meta.xml" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">KualiCo Ready (Canada)</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.kuali.co/products/continuity-planning/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.kuali.co/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="188" xml:lang="en">https://www.kuali.co/wp-content/uploads/2019/02/Combined-Shape.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 3, expires on Tue May 31 13:48:06 2016 GMT -->
+ <ds:X509Certificate>
+MIIFJzCCAw+gAwIBAgIBAzANBgkqhkiG9w0BAQsFADBNMQswCQYDVQQGEwJVUzEL
+MAkGA1UECBMCVVQxDTALBgNVBAcTBExlaGkxEDAOBgNVBAoTB0t1YWxpQ28xEDAO
+BgNVBAMTB0t1YWxpQ28wHhcNMTUwNjAxMTM0ODA2WhcNMTYwNTMxMTM0ODA2WjBZ
+MQswCQYDVQQGEwJVUzELMAkGA1UECBMCVVQxDTALBgNVBAcTBExlaGkxEDAOBgNV
+BAoTB0t1YWxpQ28xHDAaBgNVBAMTE3NhbWwtcmVhZHkua3VhbGkuY28wggEiMA0G
+CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCqA+a+pPEpzVnEG9b19TvGT+d0N1AX
+y8IUIzRsaDRr8O5gYbdolBE8Q0rFG3xxQIQHAFPr4ZM81R31zGbLkdZ7pwl9kcRx
+eYl9QRtZKJvbCiwaHUUrrPF3qnqPzRAHtlFRo4MnfSWO8WuMDW7bQkXWjK0cepyX
+lnNQnH1syLDJ6G1nNTeQ38JVswitA1zF0iLBTK7X0aIlfxLOaL9khzIMHpWSQiLZ
+u0z3FLZNsUm6rOttkemXv7NfImGXlM3qr84N6q8n97tMeFabFdK5kFnKMFcYFBhh
+xhghvfOg7r/UD+pNN/RcKeMEeE8frtOUP1ttzSS/z+6D6mzuQEKYavIpAgMBAAGj
+ggEEMIIBADAJBgNVHRMEAjAAMBEGCWCGSAGG+EIBAQQEAwIGQDAsBglghkgBhvhC
+AQ0EHxYdS3VhbGlDbyBDQSBTaWduZWQgQ2VydGlmaWNhdGUwHQYDVR0OBBYEFDG3
+UQyNeQFKHxyRNgwrW+C8f8bTMH0GA1UdIwR2MHSAFM3mnnoFY2heQlQNYU7Dlsad
+N73LoVGkTzBNMQswCQYDVQQGEwJVUzELMAkGA1UECBMCVVQxDTALBgNVBAcTBExl
+aGkxEDAOBgNVBAoTB0t1YWxpQ28xEDAOBgNVBAMTB0t1YWxpQ2+CCQCOLz3A3i1j
+QzAJBgNVHRIEAjAAMAkGA1UdEQQCMAAwDQYJKoZIhvcNAQELBQADggIBAGcI2b9Y
+XMg25EcndJvQtx/LywZXXUgsOjxS0uIK2wngIy6VJZjxq/LbQOGaRBK+MEbEOe6j
+FU6uhIzDhjMe3xBitZG4kkd4YZ254e6PCojrwRoXKb7MqJqhEs5gmTCRfa2+vPJn
+hM54WuW8tkKPJF/VpnPLFl+a4YHSf0qy8wgkTtl5HG/1MDHVGHf70ZiB+3nvCEkn
+wpRzLD/KRbRCYaPWsVR3n5BwSWt3iZZp65/E3KYLbHvb/1znL+Qg0EWS6JXcxN8y
+iXEUpMem4oLw/hw8nxozmOuNyYHmp1VRTslLDix2D4tOyiChg3T9k5C6SHKLD6In
+6OyM6OuwJJHnmtAU4BwYJwIPV8Wqrglo1lNFcgFguAutAgyz+twf2QqPtvLfxQ/u
+Hm6XieCCFg0pGK3aQgGoTwsdHW6vaFlVrDpeXq6TG8khSOOYhoJYOtIAuI5pmI48
+9veTeEMCYXfkK+Yv2ieYXqYt7jZysSgErNzPtH/hWcdYnp1siSLKcc3PDxcvpxbJ
+8ubMjJBNNRQwmgz1emElQKIIvD8TkJJkgrEjdWRCBaB6WH4TXtUHckEInMvsjvA8
+u/nunlI2/pG2pWG2OgZBNmWhgwjf+loKOjj0jDVemL4KwYbpYRRDo9ax1sqQfJi1
+hPiYli5VqdQ/FDhA5BnPUkP1I1jsqklk9OMo
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 538511128, expires on Mon Jul 18 20:55:48 2039 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saml1.ca.kuali.co/ready/saml/consume" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">KualiCo Ready (Canada)</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Kuali, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Kuali, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.kuali.co/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Ready Help</GivenName>
+ <EmailAddress>ready-help@kuali.co</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Ready Help</GivenName>
+ <EmailAddress>ready-help@kuali.co</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ready Help</GivenName>
+ <EmailAddress>ready-help@kuali.co</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ready Help</GivenName>
+ <EmailAddress>ready-help@kuali.co</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://saas1.kuali.co/auth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://saml1.kuali.co/auth/saml/meta.xml" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Kuali SaaS</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Kuali Software as a Service</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://kuali.co/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.kuali.co/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="188" xml:lang="en">https://www.kuali.co/wp-content/uploads/2017/05/Kuali-Logo-64.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 6116888146092410734793903350744518369, expires on Fri Mar 8 12:00:00 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 2338342389775168422743466871439918571, expires on Wed Mar 10 12:00:00 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saas1.kuali.co/auth/saml/consume" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saas1.kuali.co/auth/saml/consume" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saas2.kuali.co/auth/saml/consume" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saas2.kuali.co/auth/saml/consume" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saml1.kuali.co/auth/saml/consume" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saml1.kuali.co/auth/saml/consume" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saml1-stg.kuali.co/auth/saml/consume" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saml1-stg.kuali.co/auth/saml/consume" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saml1-tst.kuali.co/auth/saml/consume" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saas1-sbx.kuali.co/auth/saml/consume" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saas2-sbx.kuali.co/auth/saml/consume" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saas1-tst.kuali.co/auth/saml/consume" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saas2-stg.kuali.co/auth/saml/consume" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saas1-stg.kuali.co/auth/saml/consume" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saas1-sbx.kuali.co/auth/saml/consume" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saas2-sbx.kuali.co/auth/saml/consume" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saas1-tst.kuali.co/auth/saml/consume" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saas1-stg.kuali.co/auth/saml/consume" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saas2-stg.kuali.co/auth/saml/consume" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saas1.kuali-cor-verify.com/auth/saml/consume" index="20"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saas1.kuali-cor-verify.com/auth/saml/consume" index="21"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saas3.kuali.co/auth/saml/consume" index="22"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saas3.kuali.co/auth/saml/consume" index="23"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saas3-sbx.kuali.co/auth/saml/consume" index="24"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saas3-sbx.kuali.co/auth/saml/consume" index="25"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saas3-stg.kuali.co/auth/saml/consume" index="26"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saas3-stg.kuali.co/auth/saml/consume" index="27"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Kuali SaaS</ServiceName>
+ <ServiceDescription xml:lang="en">Kuali Software as a Service</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Kuali, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Kuali, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.kuali.co/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Kuali Support</GivenName>
+ <EmailAddress>support@kuali.co</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kuali Support</GivenName>
+ <EmailAddress>support@kuali.co</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kuali Support</GivenName>
+ <EmailAddress>support@kuali.co</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kuali Support</GivenName>
+ <EmailAddress>support@kuali.co</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://saas.kualibuild.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://saas.kualibuild.com/app/auth/saml/meta.xml" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Kuali Build</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Kuali Build Software as a Service</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.kuali.co/build</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.kuali.co/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="188" xml:lang="en">https://www.kuali.co/wp-content/uploads/2017/05/Kuali-Logo-64.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14953505581082709649, expires on Fri Feb 16 23:20:00 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saas.kualibuild.com/app/auth/api/v1/auth/saml/consume" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Kuali Build</ServiceName>
+ <ServiceDescription xml:lang="en">Kuali Build Software as a Service</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Kuali, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Kuali, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.kuali.co/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tadd Giles</GivenName>
+ <EmailAddress>tadd@kuali.co</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tadd Giles</GivenName>
+ <EmailAddress>tadd@kuali.co</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Tadd Giles</GivenName>
+ <EmailAddress>tadd@kuali.co</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Kuali Build Support</GivenName>
+ <EmailAddress>build-support@kuali.co</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://us.ready.kuali.co/shibboleth-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Kuali Ready</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Kuali Ready: Continuity Planning Tool</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.kuali.co</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.kuali.co/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="188" xml:lang="en">https://www.kuali.co/wp-content/uploads/2017/05/Kuali-Logo-64.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 155690896141715434714420408620084919895, expires on Thu Dec 3 23:59:59 2015 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://us.ready.kuali.co/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://us.ready.kuali.co/Shibboleth.sso/SAML2/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://us.ready.kuali.co/Shibboleth.sso/SAML2/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://us.ready.kuali.co/Shibboleth.sso/SAML2/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://us.ready.kuali.co/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://us.ready.kuali.co/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Kuali Ready</ServiceName>
+ <ServiceDescription xml:lang="en">Kuali Ready: Continuity Planning Tool</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Kuali, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Kuali, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.kuali.co/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Kuali Ready Technical Support</GivenName>
+ <EmailAddress>ready-help@kuali.co</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ready Help</GivenName>
+ <EmailAddress>ready-help@kuali.co</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ready Help</GivenName>
+ <EmailAddress>ready-help@kuali.co</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ready Help</GivenName>
+ <EmailAddress>ready-help@kuali.co</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Turning Technologies -->
+<EntityDescriptor entityID="https://account.turningtechnologies.com/account/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://account.turningtechnologies.com/account/shibboleth/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Turning Technologies</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.turningtechnologies.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="259" xml:lang="en">https://imgsrv.turningtechnologies.com/images/navbarImage.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16092888854877558787, expires on Mon May 4 14:23:53 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://account.turningtechnologies.com/account/shibboleth/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://account.turningtechnologies.com/account/shibboleth/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://account.turningtechnologies.com/account/shibboleth/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://account.turningtechnologies.com/account/shibboleth/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://account.turningtechnologies.com/account/shibboleth/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://account.turningtechnologies.com/account/shibboleth/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Turning Technologies</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Turning Technologies</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Turning Technologies</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.turningtechnologies.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Single Sign On Support Team</GivenName>
+ <EmailAddress>support@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Single Sign On Technical Support Team</GivenName>
+ <EmailAddress>SSOSupport@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Single Sign On Administrative Team</GivenName>
+ <EmailAddress>SSOSupport@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sign Sign On Security Team</GivenName>
+ <EmailAddress>SSOSupport@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://account.turningtechnologies.eu/account/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://account.turningtechnologies.eu/account/shibboleth/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Turning Technologies EU</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.turningtechnologies.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="259" xml:lang="en">https://imgsrv.turningtechnologies.com/images/navbarImage.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11704768130392539165, expires on Mon May 4 15:02:06 2026 GMT -->
+ <ds:X509Certificate>
+MIIFQjCCBCqgAwIBAgIJAKJvsJmeXEAdMA0GCSqGSIb3DQEBBQUAMIHGMQswCQYD
+VQQGEwJVUzENMAsGA1UECBMET2hpbzETMBEGA1UEBxMKWW91bmdzdG93bjEdMBsG
+A1UEChMUVHVybmluZyBUZWNobm9sb2dpZXMxGTAXBgNVBAsTEEFjY291bnQgU1NP
+IFRlYW0xJzAlBgNVBAMTHmFjY291bnQudHVybmluZ3RlY2hub2xvZ2llcy5ldTEw
+MC4GCSqGSIb3DQEJARYhZGhhbGxhZGF5QHR1cm5pbmd0ZWNobm9sb2dpZXMuY29t
+MB4XDTE2MDUwNjE1MDIwNloXDTI2MDUwNDE1MDIwNlowgcYxCzAJBgNVBAYTAlVT
+MQ0wCwYDVQQIEwRPaGlvMRMwEQYDVQQHEwpZb3VuZ3N0b3duMR0wGwYDVQQKExRU
+dXJuaW5nIFRlY2hub2xvZ2llczEZMBcGA1UECxMQQWNjb3VudCBTU08gVGVhbTEn
+MCUGA1UEAxMeYWNjb3VudC50dXJuaW5ndGVjaG5vbG9naWVzLmV1MTAwLgYJKoZI
+hvcNAQkBFiFkaGFsbGFkYXlAdHVybmluZ3RlY2hub2xvZ2llcy5jb20wggEiMA0G
+CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCqWWMNtNW2kGciy8HiOlCF9z+ZZj8d
+TC7hJq+/CVdQuUANboo8mm97+/ts678u4TEPcmHD0tEc+dkZ8M5Pr5Rte7yAWmKY
+0LN7IgAn0LMSE/2iGhFFPJC8ujr6vinntdjXK0FqFoybassaqQP6PT49ns4y63c5
+WxVUIn4+dmDgQHp3KGj13V0UVitSWG/U8msyd1ISXOqsfs602wZxTgRXVwf40aLd
+8yRSuq5CeOdz3dxjjxMY4kfS+cRbBHfdQAjHjiq0xUhe9Kyj7zUu+m5hvOkk2Eur
+cVVShChJjuzeLmRQkHvzboJFyvRk59cvUr2f4Z/AQTIfW3fOzQX1PNZ9AgMBAAGj
+ggEvMIIBKzAdBgNVHQ4EFgQUMjgiaLK88/6K7pjlZPhSs8RJIOswgfsGA1UdIwSB
+8zCB8IAUMjgiaLK88/6K7pjlZPhSs8RJIOuhgcykgckwgcYxCzAJBgNVBAYTAlVT
+MQ0wCwYDVQQIEwRPaGlvMRMwEQYDVQQHEwpZb3VuZ3N0b3duMR0wGwYDVQQKExRU
+dXJuaW5nIFRlY2hub2xvZ2llczEZMBcGA1UECxMQQWNjb3VudCBTU08gVGVhbTEn
+MCUGA1UEAxMeYWNjb3VudC50dXJuaW5ndGVjaG5vbG9naWVzLmV1MTAwLgYJKoZI
+hvcNAQkBFiFkaGFsbGFkYXlAdHVybmluZ3RlY2hub2xvZ2llcy5jb22CCQCib7CZ
+nlxAHTAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQBOiUjkiE3n+Igs
+mAsiPSIcjwxzZTkN6aQEZTVUkputLKDGbqcOo1UAF+tJgtJft8f/m7EK1C5TGbEl
+9wE3fvG+uAy3/wZUY/FTZY4riQxuY4UoUBTLR1I9NnghdBuaEvU9akcfHJDZ+hio
+YSs03S3eBuFQosdYyqd7S46kQnDczikN7mhu96WlwPCbFzppnwoV6tP9MkjjcSAy
+SF8sTCgXieBXXxLjIN9bjWCE1K52NJSOdfQ66pcKSHKlElpohq9rkwlesf4pyZj2
+w9vU0ESL31wuCK4ay5UjHhQ+BBrDcCBZgLEpTjvVXSWZV1il1WWjPuj6ueS5mz8T
+U0cWQVK7
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://account.turningtechnologies.eu/account/shibboleth/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://account.turningtechnologies.eu/account/shibboleth/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://account.turningtechnologies.eu/account/shibboleth/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://account.turningtechnologies.eu/account/shibboleth/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://account.turningtechnologies.eu/account/shibboleth/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://account.turningtechnologies.eu/account/shibboleth/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Turning Technologies EU</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Turning Technologies</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Turning Technologies</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.turningtechnologies.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Single Sign On Technical Support Team</GivenName>
+ <EmailAddress>SSOSupport@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Single Sign On Support Team</GivenName>
+ <EmailAddress>support@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Single Sign On Administrative Team</GivenName>
+ <EmailAddress>SSOSupport@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Single Sign On Security Team</GivenName>
+ <EmailAddress>SSOSupport@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://account.turningtechnologiessg.net/account/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://account.turningtechnologiessg.net/account/shibboleth/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Turning Technologies Singapore</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.turningtechnologies.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="259" xml:lang="en">https://imgsrv.turningtechnologies.com/images/navbarImage.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9795849423798902663, expires on Mon May 4 15:00:04 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://account.turningtechnologiessg.net/account/shibboleth/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://account.turningtechnologiessg.net/account/shibboleth/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://account.turningtechnologiessg.net/account/shibboleth/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://account.turningtechnologiessg.net/account/shibboleth/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://account.turningtechnologiessg.net/account/shibboleth/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://account.turningtechnologiessg.net/account/shibboleth/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Turning Technologies Singapore</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Turning Technologies</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Turning Technologies</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.turningtechnologies.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Single Sign On Technical Support Team</GivenName>
+ <EmailAddress>SSOSupport@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Single Sign On Support Team</GivenName>
+ <EmailAddress>support@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Single Sign On Administrative Team</GivenName>
+ <EmailAddress>SSOSupport@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Single Sign On Security Team</GivenName>
+ <EmailAddress>SSOSupport@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://account.uat.turningtechnologies.com/account/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://account.uat.turningtechnologies.com/account/shibboleth/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Turning Technologies Beta Testing</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.turningtechnologies.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="259" xml:lang="en">https://imgsrv.turningtechnologies.com/images/navbarImage.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14571425429758528385, expires on Sat Jun 28 15:47:42 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://account.uat.turningtechnologies.com/account/shibboleth/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://account.uat.turningtechnologies.com/account/shibboleth/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://account.uat.turningtechnologies.com/account/shibboleth/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://account.uat.turningtechnologies.com/account/shibboleth/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://account.uat.turningtechnologies.com/account/shibboleth/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://account.uat.turningtechnologies.com/account/shibboleth/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Turning Technologies Beta Testing</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Turning Technologies</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Turning Technologies</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.turningtechnologies.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Single Sign On Support Team</GivenName>
+ <EmailAddress>support@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Single Sign On Technical Support Team</GivenName>
+ <EmailAddress>SSOSupport@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Single Sign On Administrative Team</GivenName>
+ <EmailAddress>SSOSupport@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Single Sign On Security Team</GivenName>
+ <EmailAddress>SSOSupport@turningtechnologies.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Marin Community College District -->
+<EntityDescriptor entityID="https://mycomidp.marin.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">marin.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Marin Community College District</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://policies.marin.edu/sites/policies/files/BP5040-StudentRecordsDirectoryInformationAndPrivacy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="310" width="114" xml:lang="en">https://netapps.marin.edu/Apps/Master/Images/COMLogoIncommon.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1641914560, expires on Tue Aug 17 12:22:31 2038 GMT -->
+ <ds:X509Certificate>
+MIIDczCCAlugAwIBAgIEYd2gwDANBgkqhkiG9w0BAQsFADBqMQswCQYDVQQGEwJV
+UzETMBEGA1UECBMKQ2FsaWZvcm5pYTESMBAGA1UEBxMJS2VudGZpZWxkMQ4wDAYD
+VQQKEwVNYXJpbjEOMAwGA1UECxMFTWFyaW4xEjAQBgNVBAMTCW1hcmluLmVkdTAe
+Fw0xNzEwMjYxMjIyMzFaFw0zODA4MTcxMjIyMzFaMGoxCzAJBgNVBAYTAlVTMRMw
+EQYDVQQIEwpDYWxpZm9ybmlhMRIwEAYDVQQHEwlLZW50ZmllbGQxDjAMBgNVBAoT
+BU1hcmluMQ4wDAYDVQQLEwVNYXJpbjESMBAGA1UEAxMJbWFyaW4uZWR1MIIBIjAN
+BgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAsEjuSQKyzbfTDowlzy3uatAB1eKU
+NbxG5yltDiy3rqrUPvc7lKSHLLWoD9D1bndVu7x3/OjJCQ1lzMUM9y6h9ELPt28A
+vrYLVE2c1OzmjFsyyUGLQTxq0D6dVWlyfP7HALVRSO8Gj8lUR/sM5Wh3PRpa8Amy
+i2Mnd/huozzu3AUUv3GF9vKm4JkgO/3i/dFnJPVHg65QfivWcy7MDkTLK+Sh9uo2
+g/QhD3cMEkyBpvPNEx3ZHEs71zbtQ9AiILl3RQ0t6Fc1f0OStqVOiQG7Z6lvnftC
+QLSaQrBY3uPx8/ReHgAkkFcJ1nFekeG95CIYjf70Je0QtoCHr3O9Scp6KwIDAQAB
+oyEwHzAdBgNVHQ4EFgQUTIeZF5KLrmT5SKK4wI8hcGChS7IwDQYJKoZIhvcNAQEL
+BQADggEBAEzrcY1nLg8lHbubgOUyCJ3kcYDZfe4EJHfv8c4JrtLhSplr4gKPHiG4
+qfRQmsZwHwWzX+Qon0pTqKbYLdHhN0aNr9vZvKGpXF+THiKimb/gjsoVMbddFoyN
+KXGEsNvM01OCVHUcjakR7SJEuGtf1glCEt3N7mhgcbfLgPBCL3A2G8592WQ2ctG2
+NhgLcTmFpb5GqPWg/E6YWEWMZ6rH21YySFC6UzTPtAd6unML187WsYWm0BCya2Wy
+2qTLm6K1E/JsIJyJ02+rsS8g9VXHHlgly9quNJmOFb3Jkkejbtk4XoOOtOMEKLzQ
+zzroWyHc7Csss6Z288/2kf8lfjqXQ90=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.quicklaunchsso.com/samlsso?tenantDomain=marin.edu"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Marin Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Marin Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.marin.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Patrick Ekoue-Totou</GivenName>
+ <EmailAddress>pekouetotou@marin.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Burton Schane</GivenName>
+ <EmailAddress>bschane@marin.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ferhat Indi</GivenName>
+ <EmailAddress>findi@marin.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Ventura County Community College District -->
+<EntityDescriptor entityID="https://account.vcccd.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">vcccd.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ventura County Comm College District</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.vcccd.edu/students/student-privacy-rights</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="100" xml:lang="en">https://www.vcccd.edu/sites/default/files/files/media/vcccd-logo-web-100x100.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12109473421427130713, expires on Mon Mar 19 03:42:24 2029 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://account.vcccd.edu/sso/go.ashx"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://account.vcccd.edu/sso/go.ashx"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ventura County Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ventura County Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.vcccd.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mike Rose</GivenName>
+ <EmailAddress>mrose@vcccd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Victory Kitamura</GivenName>
+ <EmailAddress>vkitamura@vcccd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brandon Jones</GivenName>
+ <EmailAddress>bjones@vcccd.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Trinity College -->
+<EntityDescriptor entityID="https://shibboleth.trincoll.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">trincoll.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Trinity College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.trincoll.edu/LITC/its/security/Pages/Data.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="240" width="240" xml:lang="en">https://upload.wikimedia.org/wikipedia/en/thumb/4/4d/Trinity_College_Connecticut_Seal.svg/240px-Trinity_College_Connecticut_Seal.svg.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1066800363671208000839298579876934638319760895963, expires on Tue Jun 26 14:44:46 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.trincoll.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.trincoll.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">trincoll.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1066800363671208000839298579876934638319760895963, expires on Tue Jun 26 14:44:46 2035 GMT -->
+ <ds:X509Certificate>
+MIIDSDCCAjCgAwIBAgIVALrc+5ZgbULF/LDiUBA01Kqi4O/bMA0GCSqGSIb3DQEB
+CwUAMCIxIDAeBgNVBAMMF3NoaWJib2xldGgudHJpbmNvbGwuZWR1MB4XDTE1MDYy
+NjE0NDQ0NloXDTM1MDYyNjE0NDQ0NlowIjEgMB4GA1UEAwwXc2hpYmJvbGV0aC50
+cmluY29sbC5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCF7xqe
+Xy8pIRbIbG2mLgKpYPN+cSeg91teKXVepQYOJagseHODlLweCEkv3aWcU423Zlx1
+H3C8dPRnAs8SyERiHvimWl8x5aXTaQSK3Vm0DQaO7OVE3lbpsXZHuKZfbV1vB/tI
+0j89hSXBKH9lidXdXhvH7SB74ZBVTrRYUUeRlsKlkxKTal6tlbbOi7li4KtbxXLQ
+4ZMQXxz2yCxMzUD3KSp/40Sla44SFOke+iXUgOL3vOboAIomJtGIAyNhGkfi9DFU
+L+mp81H9fKXcy4YYPBzJ2b7owNKpSXgRksRhePkHnhkcuHjHaSKK0kDe84aLo0TC
+XCshEfxPmC/71BsJAgMBAAGjdTBzMB0GA1UdDgQWBBQoy8UCylo02Y9SMGLIhm1B
+/gJuOzBSBgNVHREESzBJghdzaGliYm9sZXRoLnRyaW5jb2xsLmVkdYYuaHR0cHM6
+Ly9zaGliYm9sZXRoLnRyaW5jb2xsLmVkdS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG
+9w0BAQsFAAOCAQEAGdCIX9uUvslyPFQ0KrohRFYXTKZENV5MXhVmsZvLrGPzbi/e
+jzxxOacc8X0meI6P/EYsfhqfGy/VYtcTqHOTYNqBXvueREwDODu7KWn2qheo11J0
+Hfl4np0/x8d8lGjZslwGAHFeHduWQNeyiovvyHWK6UCjAJqg6V9jTazvNsy/bL7f
+lMjrjBE97L+huQ0Xgwf/eXIQJrfPENrAqYo0TxGLnws7WCOGk/kntrwDXOjSGKq9
+oORQDKx07c1KLu6TyrhSmNqqWK2MCNHzkmaoPo2VfcvNsvBXOl15zhQZlV1aw39D
+EvwMDaT4qZ6HzhrKjYe1G0H82N933NqrPWbypw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.trincoll.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.trincoll.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Trinity College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Trinity College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.trincoll.edu/Pages/default.aspx</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>David Chappell</GivenName>
+ <EmailAddress>David.Chappell@trincoll.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>David Chappell</GivenName>
+ <EmailAddress>David.Chappell@trincoll.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bryan Adams</GivenName>
+ <EmailAddress>Bryan.Adams@trincoll.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Bryan Adams</GivenName>
+ <EmailAddress>Bryan.Adams@trincoll.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Santa Monica Community College District -->
+<EntityDescriptor entityID="https://idp.smc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">smc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Santa Monica Community College District</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.smc.edu/ACG/AcademicSenate/Pages/Privacy-Policy.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="130" width="150" xml:lang="en">https://www.smc.edu/style%20library/SMC/Images/smc-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 609413208747979574700206695420222267603331397428, expires on Mon Feb 25 12:57:54 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.smc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.smc.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Santa Monica Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Santa Monica Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.smc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Dan Rojas</GivenName>
+ <EmailAddress>rojas_dan@smc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chris Bonvenuto</GivenName>
+ <EmailAddress>bonvenuto_chris@smc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Dan Rojas</GivenName>
+ <EmailAddress>rojas_dan@smc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Bryn Mawr College -->
+<EntityDescriptor entityID="https://idp.brynmawr.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">brynmawr.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Bryn Mawr College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.brynmawr.edu/lits/about/policies</mdui:PrivacyStatementURL>
+ <mdui:Logo height="89" width="325" xml:lang="en">https://idp.brynmawr.edu/idp/images/logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1132176237079685393588278422414312586648814266718, expires on Mon Jun 12 15:34:10 2034 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.brynmawr.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.brynmawr.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.brynmawr.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.brynmawr.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.brynmawr.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">brynmawr.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11528657870785852969142780820947014053, expires on Sun Jun 26 23:59:59 2016 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.brynmawr.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Bryn Mawr College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Bryn Mawr College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.brynmawr.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Andrew Chiarello</GivenName>
+ <EmailAddress>achiarello@brynmawr.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Bryn Mawr Help Desk</GivenName>
+ <EmailAddress>help@brynmawr.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>David Bertagni</GivenName>
+ <EmailAddress>dbertagni@brynmawr.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Andrew Chiarello</GivenName>
+ <EmailAddress>achiarello@brynmawr.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Louisville -->
+<EntityDescriptor entityID="https://redmed.louisville.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://redmed.louisville.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Louisville LCMS+ Curriculum Portal</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Curriculum Portal operated by LCMS+ for Louisville</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://louisville.edu/privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="65" width="291" xml:lang="en">https://louisville.edu/brand/logos/primary-signature/main_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12596095993279916437, expires on Thu Jun 24 23:11:20 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://redmed.louisville.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Louisville LCMS+ Curriculum Portal</ServiceName>
+ <ServiceDescription xml:lang="en">Curriculum Portal operated by LCMS+ for Louisville</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Louisville</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Louisville</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://louisville.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>LCMS Support</GivenName>
+ <EmailAddress>support@lcmsplus.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>LCMS Support</GivenName>
+ <EmailAddress>support@lcmsplus.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>LCMS Support</GivenName>
+ <EmailAddress>support@lcmsplus.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LCMS Support</GivenName>
+ <EmailAddress>support@lcmsplus.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://shibboleth.louisville.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">louisville.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Louisville</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://louisville.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://louisville.edu/privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="65" width="291" xml:lang="en">https://louisville.edu/brand/logos/primary-signature/main_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12749407681596335850, expires on Sat Jun 14 17:34:05 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.louisville.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibboleth.louisville.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.louisville.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.louisville.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.louisville.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">louisville.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12749407681596335850, expires on Sat Jun 14 17:34:05 2025 GMT -->
+ <ds:X509Certificate>
+MIIDGzCCAgOgAwIBAgIJALDu/ry2L6bqMA0GCSqGSIb3DQEBBQUAMCQxIjAgBgNV
+BAMMGXNoaWJib2xldGgubG91aXN2aWxsZS5lZHUwHhcNMTUwNjE3MTczNDA1WhcN
+MjUwNjE0MTczNDA1WjAkMSIwIAYDVQQDDBlzaGliYm9sZXRoLmxvdWlzdmlsbGUu
+ZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAv8A4Tzxa/PMT6NaC
+iqlQkARIILJhzO4rjL1Kcl1Pic9nSSCBOaLTAT3EpSWScS0u939zzfSLGFtv2NYs
+Hl2UuSi6jgalL8wDoYLsrKjU178i5zqzIdo1+zIS+fx3jeV0qAwqjiJEknzolol+
+roQD945++3tn1fmo1rsyMm0ET+6E1zgKaxyzeOGxciUoddv+9IaaoU96ZXOlRYm6
+QSlxrrPFv6tsJ9BGTU/5KaOAzcP6keZRAJqs0hxzButeyRnpuSOxjv97Ouwyl1b/
+BxFuWVaXMmvYtOcqL6eTy4Ev0asQglQo+Z1Let3GL4lHS197XksL3N7lI/6x7sFg
+V1NowQIDAQABo1AwTjAdBgNVHQ4EFgQUxv0kRZN8bw+FTTgvXNzWQjaC0pQwHwYD
+VR0jBBgwFoAUxv0kRZN8bw+FTTgvXNzWQjaC0pQwDAYDVR0TBAUwAwEB/zANBgkq
+hkiG9w0BAQUFAAOCAQEAJAWkC8Mu1BKt2HtV3Uh2A4zwqQj0hrlt9UFICJZ8M6Vo
+nD+A194tS8aL4DM03SfM1GFZxzC0ZWq1Uwpy4ncfeGQJ4scTpQQxvOV+EUA7merr
+RTALxWh4QJeN4ctico/5cLn0U1jFfmTIHpmrdShCyj62uXP1sxXGktIDnYLL6HJ1
+9tax85z5ayftqJYrZtk3tnK4LmxYoYC5tXq0AU2f1dvqIfmCUYKr6zEu8bI4oniy
+qeO+hQCk0ogILP/3WDJe8nkDLGsjy4aQguui//rgJu5R975bmdBmMwuXYo7ZJGOM
+/RUeiSUWA/0+u7DLASHh+VR3fG5e1XEH8YDch0/sjA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibboleth.louisville.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Louisville</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Louisville</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://louisville.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Derick Hill</GivenName>
+ <EmailAddress>derick.hill@louisville.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keith Stevenson</GivenName>
+ <EmailAddress>keith.stevenson@louisville.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Derick Hill</GivenName>
+ <EmailAddress>derick.hill@louisville.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mike Purcell</GivenName>
+ <EmailAddress>mike.purcell@louisville.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Enterprise Security</GivenName>
+ <EmailAddress>secureit@louisville.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of West Florida -->
+<EntityDescriptor entityID="https://idp.uwf.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://confluence.uwf.edu/x/w4EeAw" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwf.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of West Florida</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://confluence.uwf.edu/x/wIEeAw</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://uwf.edu/offices/general-counsel/uwf-policies-procedures-notices-regulations/privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="130" width="260" xml:lang="en">https://idp.uwf.edu/idp/images/shib_logo_uwf.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1401660441237064353578385514488078561774957464360, expires on Mon Oct 8 12:37:59 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.uwf.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.uwf.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of West Florida</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of West Florida</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://uwf.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Melanie Haveard</GivenName>
+ <EmailAddress>mhaveard@uwf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Geissler Golding</GivenName>
+ <EmailAddress>ggolding@uwf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Justin Andrews</GivenName>
+ <EmailAddress>jandrews@uwf.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UWF ITS Helpdesk</GivenName>
+ <EmailAddress>helpdesk@uwf.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Emerson College -->
+<EntityDescriptor entityID="https://duo.emerson.edu/dag/saml2/idp/metadata.php">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">emerson.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Emerson College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.emerson.edu/policy/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="230" width="686" xml:lang="en">https://www.emerson.edu/sites/all/themes/emerson_bootstrap/build/img/footerLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11778316704472597821, expires on Mon Apr 1 19:48:09 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://duo.emerson.edu/dag/saml2/idp/SingleLogoutService.php?ReturnTo=https://duo.emerson.edu/dag/module.php/duosecurity/logout.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://duo.emerson.edu/dag/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Emerson College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Emerson College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.emerson.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Francis Frain</GivenName>
+ <EmailAddress>Francis_Frain@emerson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Bryce Riner</GivenName>
+ <EmailAddress>bryce_riner@emerson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ryan Flanagan</GivenName>
+ <EmailAddress>ryan_flanagan@emerson.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- The MathWorks, Inc. -->
+<EntityDescriptor entityID="https://www.mathworks.com/edu-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">MathWorks Edu Service Provider</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.mathworks.com/company/aboutus/policies_statements.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="61" width="300" xml:lang="en">https://www.mathworks.com/etc/designs/mathworks/img/pic-header-mathworks-logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9701653247412470172, expires on Sat Jul 5 13:01:42 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.mathworks.com/auth-edu-sp/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.mathworks.com/auth-edu-sp/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.mathworks.com/auth-edu-sp/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.mathworks.com/auth-edu-sp/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.mathworks.com/auth-edu-sp/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.mathworks.com/auth-edu-sp/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">MathWorks Edu Service Provider</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The MathWorks, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">The MathWorks, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.mathworks.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jordan Schmidt</GivenName>
+ <EmailAddress>jordan.schmidt@mathworks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tony Felice</GivenName>
+ <EmailAddress>tony.felice@mathworks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>MathWorks Security Team</GivenName>
+ <EmailAddress>security@mathworks.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Macalester College -->
+<EntityDescriptor entityID="https://idp.macalester.edu/openathens">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">macalester.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Macalester College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity Provider for Macalester College</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://openathens.org/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.eduserv.org.uk/terms-and-conditions/privacy-and-cookie-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="300" xml:lang="en">https://maceis.macalester.edu/authenticationendpoint/ellucian/ellucian-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1424769570, expires on Mon Feb 24 09:20:06 2025 GMT -->
+ <ds:X509Certificate>
+MIIDvjCCAqagAwIBAgIEVOxCIjANBgkqhkiG9w0BAQsFADCBoDEoMCYGCSqGSIb3DQEJARYZYXRo
+ZW5zaGVscEBlZHVzZXJ2Lm9yZy51azELMAkGA1UEBhMCR0IxETAPBgNVBAgMCFNvbWVyc2V0MQ0w
+CwYDVQQHDARCYXRoMRAwDgYDVQQKDAdFZHVzZXJ2MRMwEQYDVQQLDApPcGVuQXRoZW5zMR4wHAYD
+VQQDDBVnYXRld2F5LmF0aGVuc2Ftcy5uZXQwHhcNMTUwMjI0MDkyMDA2WhcNMjUwMjI0MDkyMDA2
+WjCBoDEoMCYGCSqGSIb3DQEJARYZYXRoZW5zaGVscEBlZHVzZXJ2Lm9yZy51azELMAkGA1UEBhMC
+R0IxETAPBgNVBAgMCFNvbWVyc2V0MQ0wCwYDVQQHDARCYXRoMRAwDgYDVQQKDAdFZHVzZXJ2MRMw
+EQYDVQQLDApPcGVuQXRoZW5zMR4wHAYDVQQDDBVnYXRld2F5LmF0aGVuc2Ftcy5uZXQwggEiMA0G
+CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCandpa4o0Njtw1DqbrrNTfOVe1PqyXIIVmDrJ6VUR/
+mokXXu+m5Gm+1f+3lyN5IA2YMn9Z8Yo37JQjIHs+xVS3q4nT1ewS7S3en1pdXKsH1WnUnVWUmpl9
+WJZrUwi5i8X80LNyr7PmudhuKNEATGUXkA/xWCkk2d8jf91hy7Qu+HA8LOKtdbbNigErh2IY/YuN
+WUVUqgGbMH5BGr7ZEhPrz+Vwcf9lhPW+tKpKpZEzJfQiq8EoPaeMXEpKWBEErm67gkWFCA5VhfcJ
+LqFjQEC3pWOxt5rZVS8gl/Z33VSJZVzY5jWcQzmGaLXPHXyiKPmixl6+DjGlUM0ylNF7GvtDAgMB
+AAEwDQYJKoZIhvcNAQELBQADggEBAFhmhujLZueiJ6F7mQCpfB0Hj4Y8FyFUUc8NMAt5Set7H4DK
+SSl4shcqisZBa5yTdyenYwkmBszvCWs6Yeep+zJmCR62cb/f1M32oMzLm02OlznWMkE8/IajGmdx
+TnB6Z/XcdMMIiCeok4kqe5KMd5oRAyNskHYZ+8kzhs2zTveR+rqCtYxa/AYpwf7n0VQR9clBSNCI
+T4BCRi10aPE531VIxl4ljY3CwNoZ4lQTU/0aj8O4j68V2neiQb8lewAii0b2xoyOGYP4okd7T2tl
+4gl2noVbCvYNjd6GYze/w4lgwiemkby7wu5sN1lEudgKDV+H54wU29ZIyDEFM6DDNE4=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.openathens.net/saml/2/sso/macalester.edu/c/incommon"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Macalester College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Macalester College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.macalester.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Rabin Bajracharya</GivenName>
+ <EmailAddress>bajracharya@macalester.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Rabin Bajracharya</GivenName>
+ <EmailAddress>bajracharya@macalester.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ramon Rentas</GivenName>
+ <EmailAddress>rentas@macalester.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ramon Rentas</GivenName>
+ <EmailAddress>rentas@macalester.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- San Jose - Evergreen Community College District -->
+<EntityDescriptor entityID="https://sso.sjeccd.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://misc.sjeccd.edu/error" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sjeccd.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">evc.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">sjcc.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">stu.evc.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">stu.sjcc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">San Jose - Evergreen Community College District</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Portal Guard</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://misc.sjeccd.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="260" xml:lang="en">https://misc.sjeccd.edu/logo</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16187155006242239644, expires on Sun Jun 20 15:17:33 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.sjeccd.edu/sso/go.ashx"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.sjeccd.edu/sso/go.ashx"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">San Jose - Evergreen Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">San Jose - Evergreen Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sjeccd.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Katie Vang</GivenName>
+ <EmailAddress>katie.vang@sjeccd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Edwin Gaitan</GivenName>
+ <EmailAddress>edwin.gaitan@sjeccd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Peter Teipe</GivenName>
+ <EmailAddress>peter.teipe@sjeccd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ben Seaberry</GivenName>
+ <EmailAddress>ben.seaberry@sjeccd.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Wesleyan University -->
+<EntityDescriptor entityID="https://shibboleth.wesleyan.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wesleyan.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Wesleyan University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.wesleyan.edu/its/policies/datasecurity.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="49" width="136" xml:lang="en">https://www.wesleyan.edu/resources/img/WesBlack.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1397977964257916767357734952196837694409870762495, expires on Tue Jul 17 18:11:26 2035 GMT -->
+ <ds:X509Certificate>
+MIIDSDCCAjCgAwIBAgIVAPTff/7l5xVFGm3Q5cWR0/GUPWH/MA0GCSqGSIb3DQEB
+CwUAMCIxIDAeBgNVBAMMF3NoaWJib2xldGgud2VzbGV5YW4uZWR1MB4XDTE1MDcx
+NzE4MTEyNloXDTM1MDcxNzE4MTEyNlowIjEgMB4GA1UEAwwXc2hpYmJvbGV0aC53
+ZXNsZXlhbi5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCYt1SW
+WmBt2NRRNcYIm+9ltSuRA14i44UUMSPCtO5XcU62i4FH4KQh2UOyvpfYnhzngvUp
+Ff1lyVbn9147j5v5ZSZZyRWffwqWvQXyBn0utS0a7ClpQQdBaJrNeZ3ZsaHHAdq9
+HnH3g0wflFvIJi+m8of1R8Mp8dyLQxKRCmJzSvcNXDXpUeqOVB0phsH2eBb6rhNO
+YehFRkF0/fsRxJRQHbmIpF4o0JDBfpia+/j9E17S2rHlJ5f6Wxx8hmiwGv609avc
+3Jw2Rzh79jP37vNjcMZovXDLEVr00E41mD7bSbePUFPPUzEgAK6rCv/4ER3E9jpy
+m9mxuFg3QZmexdy3AgMBAAGjdTBzMB0GA1UdDgQWBBQ9RhzKNYdQF6UI2uIp4C3G
+S3wy/jBSBgNVHREESzBJghdzaGliYm9sZXRoLndlc2xleWFuLmVkdYYuaHR0cHM6
+Ly9zaGliYm9sZXRoLndlc2xleWFuLmVkdS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG
+9w0BAQsFAAOCAQEADfCRG4I3nJn/+AP2YwD50NYp/5CFwfOuvsTZdg14nJCcMa/x
+uaAPdSYmD/MQ9c4zHAV0683KQIjETLEagIYG7nwn4Ou1DGFaFEoVR9Mj4XfIJivF
+P5Y2r5y9bcUwRJVzwNHi4h/Pz+S139+uThbiXBOhuDby48buIHBNBR2pk1T+ITbq
+cLDy1FzBKxWZTiKjLJIrLpjfpNbHf7YQATwiaIr//lJwXNIo0a3YL2yqUmnX/NcB
+w46Gsh9taFr99vG8RFFE5j9b2iZflG06fVxUtnmAVFG15PdCCRlnURzXSE/6Kxrc
+XGtZcvEywQ1NaUML7UQBd790xFk+T/vX0UGcYA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.wesleyan.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.wesleyan.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Wesleyan University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Wesleyan University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wesleyan.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Unix Systems</GivenName>
+ <EmailAddress>unix_admins@wesleyan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Karen Waren</GivenName>
+ <EmailAddress>its@wesleyan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Karen Warren</GivenName>
+ <EmailAddress>its@wesleyan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Antonio Crespo</GivenName>
+ <EmailAddress>security@wesleyan.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Hartnell Community College District -->
+<EntityDescriptor entityID="https://hartnell.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">hartnell.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Hartnell Community College District</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.hartnell.edu/sites/default/files/Library_Documents/documents/incommonpop_hartnell.pdf</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.hartnell.edu/sites/default/files/Library_Documents/board_documents/policies/5040.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="161" width="161" xml:lang="en">https://www.hartnell.edu/sites/default/files/Library_Documents/about/seal_72dpi_burgundy_gold.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 862877422997795476015669277060631044270117895619, expires on Fri Jan 23 23:12:50 2037 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fedgate.hartnell.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fedgate.hartnell.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Hartnell Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Hartnell Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hartnell.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kerry Gray</GivenName>
+ <EmailAddress>kgray@hartnell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>David Phillips</GivenName>
+ <EmailAddress>dphillips@hartnell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kerry Gray</GivenName>
+ <EmailAddress>kgray@hartnell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>kerry gray</GivenName>
+ <EmailAddress>kgray@hartnell.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Connecticut College -->
+<EntityDescriptor entityID="https://cas.conncoll.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">conncoll.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Connecticut College</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.conncoll.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.conncoll.edu/web-privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="143" xml:lang="en">https://www.conncoll.edu/media/website-media/visualidentity/images/2Line-LogoSig-Color.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1398802465099954271597430467349857614536857450488, expires on Fri Oct 28 16:07:55 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cas.conncoll.edu:443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://cas.conncoll.edu:443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://cas.conncoll.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cas.conncoll.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://cas.conncoll.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">conncoll.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1398802465099954271597430467349857614536857450488, expires on Fri Oct 28 16:07:55 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://cas.conncoll.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Connecticut College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Connecticut College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.conncoll.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Andrew Tillinghast</GivenName>
+ <EmailAddress>atilling@conncoll.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jean Dailey</GivenName>
+ <EmailAddress>jdailey@conncoll.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Laurie Schaeffer</GivenName>
+ <EmailAddress>lbsch@conncoll.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John Schaeffer</GivenName>
+ <EmailAddress>jsch@conncoll.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- San Luis Obispo County Community College District -->
+<EntityDescriptor entityID="https://auth.cuesta.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cuesta.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">San Luis Obispo County Community College District</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cuesta.edu/about/info/security_policy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="232" width="600" xml:lang="en">https://www.cuesta.edu/about/images/marketing-images/cclogos/CuestaCollege_logo_horz_fullcolor_blktxt.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 731842022361325430752023121856146482562369360242, expires on Tue Aug 16 19:39:11 2033 GMT -->
+ <ds:X509Certificate>
+MIIDKDCCAhCgAwIBAgIVAIAw7mdzQvhvDYdlbe6LSFeu0JFyMA0GCSqGSIb3DQEB
+BQUAMBoxGDAWBgNVBAMTD2F1dGguY3Vlc3RhLmVkdTAeFw0xMzA4MTYxOTM5MTFa
+Fw0zMzA4MTYxOTM5MTFaMBoxGDAWBgNVBAMTD2F1dGguY3Vlc3RhLmVkdTCCASIw
+DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBALcfXxPnR5WchpF1BZd2cLAwBnbQ
+ZlEu3y3DyiFgK15/44f/S9FWd5VPVn9ED3vB5qUFW8YwWI2xnXLHOz7K7S86OslL
+J5ftdHAZJZ2W/Il8EZ3JVO5wUQA3CcNJXjtXiLX2WdTn83BKT2iZKipnG7G0Apla
+6Rc9rholmmHe7t4G77a5yQQ+8eGUs/z/XwZsU6FNO+m2WGa1DDvhyqRHwWHrEKqK
+X4eACjSU7R8019dMiMhiH/kEI6mlLp9CtwxEoA5oEUoer5MdDkiPtT/fun2oElfK
+YYRfEXN/ZQSZq/KIVKv20eW/r2RMzgEv1bGSTPVpDrS+WJs09pWoxXuwO7ECAwEA
+AaNlMGMwQgYDVR0RBDswOYIPYXV0aC5jdWVzdGEuZWR1hiZodHRwczovL2F1dGgu
+Y3Vlc3RhLmVkdS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQUPDHXnk1nJz6wgHfX
+kO7/lut59vwwDQYJKoZIhvcNAQEFBQADggEBAFjhWciX1R35tN5vHh3356ZtebJp
+6K4jXIxK+BQaTpBTQC9Y3i8AOtfkAocSYlFCv7T13Sl8s1+Vk4w1DDDeyuslpgph
+g1TWmdjukwg6wZov9qtp8EsXOk6TtjZabXltpo2dUibm9kMn5osDpO9VOld5Xr1E
+Qkr7ZL4NDhEyoltg+3vJh5YURWcakXbQIo+ZtsE6v7dXWIB1qhIKr+67ComxRMqN
+4I7frzr/S1NaLfihZfRPGkhko/ln0fxEnPvLpGPQwuNt0gJwExmsysshJrQmoLl2
+YG/ehiHKfY8eq/yNHESttfLptEG4jEOIPp1dQXNGsOCdTMXWrTGkqXE632A=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.cuesta.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.cuesta.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">San Luis Obispo County Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">San Luis Obispo County Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cuesta.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Don Orr</GivenName>
+ <EmailAddress>donald_orr@cuesta.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keith Stearns</GivenName>
+ <EmailAddress>keith_stearns@cuesta.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jesse Dabill</GivenName>
+ <EmailAddress>jesse_dabill@cuesta.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- National Institutes of Health -->
+<EntityDescriptor entityID="https://login.icermali.org/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.icermali.org/federation/error" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">icermali.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ICER - Mali</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://login.icermali.org/federation/info</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://login.icermali.org/federation/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login.icermali.org/federation/ui/logo/icermalilogo80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9297489912737134465, expires on Sun May 4 20:26:30 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.icermali.org:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.icermali.org/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.icermali.org/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.icermali.org/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.icermali.org/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">icermali.org</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 101885281549621578777214562300267673920, expires on Sun May 14 14:26:58 2017 GMT -->
+ <ds:X509Certificate>
+MIIG9zCCBd+gAwIBAgIQTKZkNukxqpAJx+ddgmk5QDANBgkqhkiG9w0BAQsFADB4
+MQswCQYDVQQGEwJJTDEWMBQGA1UEChMNU3RhcnRDb20gTHRkLjEpMCcGA1UECxMg
+U3RhcnRDb20gQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkxJjAkBgNVBAMTHVN0YXJ0
+Q29tIENsYXNzIDEgRFYgU2VydmVyIENBMB4XDTE2MDUxNDE0MjY1OFoXDTE3MDUx
+NDE0MjY1OFowHTEbMBkGA1UEAwwSbG9naW4uaWNlcm1hbGkub3JnMIICIjANBgkq
+hkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA80Uu+EkGun4QzEinvlV8Gsr5+cswsra2
+Itr3yf9foBH7yENUSAwGFgQCOUrKQUiZJif1Gei2cmBFJ4UEFnrWf5/xX1yP6Wii
+dNYXsf9ip9jc0myQjbLodUvnOt/nr95Vk1pn65/g9zccvIj4UB9diEhy1jC5MaAx
+gBzGVF6h9vLgnQZssevNPmQ5S3PA1v2LMJMxKI9j+O/Tcd9/1rEhYcg13ftHChVM
+vlNqxQ9A8+7fD9xT6DmM4+NvJjK9rgBR9Yh8WFsz6cOogWGjv7yCFxGfPS357HUA
+v1P3q6GXQPlmAjhcbtZCz0kibtK8bhQy7c0FXsKWdsQ2Zo5BBYQi2yDxrbHTNswo
+sOC0LTko3XLRl1mciKVb001WCZAZLovQR/e13a7rKYZrR1RqvKuCvCElvKx3Js3b
+vyMI/vvcDK9MTKahYYWRHuVOTyKxz59d+mnliz4HqcU8EpfOchRaPv8D1NPYNB9F
+zm9XeomZIxrRWwqiCno/Ny8d4iaGumuXeafdgU0X0Ro2ZpH48+fpN01Pk+Eb6Hqi
+pYXLpWfv/1MYlbdMVkEiYjuwFJytjd7Tba/ZnARLtL08gfACsBD7VPnq4Jo+xP8T
+nFf/Wdhmn/3oWmmvwfP25KtbSccbFiLcyVHeJ9es6WWOWNIpP4MIErwcfofuvvci
+iWyNY8u8/osCAwEAAaOCAtYwggLSMA4GA1UdDwEB/wQEAwIFoDAdBgNVHSUEFjAU
+BggrBgEFBQcDAgYIKwYBBQUHAwEwCQYDVR0TBAIwADAdBgNVHQ4EFgQUISwvSbXQ
+lGDBR+Q6rO6YzB2nbBMwHwYDVR0jBBgwFoAU15FOAcSwv/jIZ5NEnOcz+q2TDK8w
+bwYIKwYBBQUHAQEEYzBhMCQGCCsGAQUFBzABhhhodHRwOi8vb2NzcC5zdGFydHNz
+bC5jb20wOQYIKwYBBQUHMAKGLWh0dHA6Ly9haWEuc3RhcnRzc2wuY29tL2NlcnRz
+L3NjYS5zZXJ2ZXIxLmNydDA4BgNVHR8EMTAvMC2gK6AphidodHRwOi8vY3JsLnN0
+YXJ0c3NsLmNvbS9zY2Etc2VydmVyMS5jcmwwKwYDVR0RBCQwIoISbG9naW4uaWNl
+cm1hbGkub3JnggxpY2VybWFsaS5vcmcwIwYDVR0SBBwwGoYYaHR0cDovL3d3dy5z
+dGFydHNzbC5jb20vMFEGA1UdIARKMEgwCAYGZ4EMAQIBMDwGCysGAQQBgbU3AQIF
+MC0wKwYIKwYBBQUHAgEWH2h0dHBzOi8vd3d3LnN0YXJ0c3NsLmNvbS9wb2xpY3kw
+ggEEBgorBgEEAdZ5AgQCBIH1BIHyAPAAdQBo9pj4H2SCvjqM7rkoHUz8cVFdZ5PU
+RNEKZ6y7T0/7xAAAAVSvx7WAAAAEAwBGMEQCIAmy0+qHT97DR8Xc+O0ZcMrmUtVd
+q0mZ4LT2HY4d0n60AiBb3PKo+9UIy+JR0LmGXn6ahogwYPQMe59hCmdOtzVp5wB3
+AO5Lvbd1zmC64UJpH6vhnmajD35fsHLYgwDEe4l6qP3LAAABVK/HuGsAAAQDAEgw
+RgIhAI2XfKFk2fh8j4KNREzVcSHdhd+fddw+qF7hev20iLf4AiEA5MtvOEnmv7OV
+G00KYPQ42oyA64wQQCqTGtKfjsZ0CNowDQYJKoZIhvcNAQELBQADggEBAFd8aS2f
+Sv93jhaR3YGlmx5PKIyU15+YrRwTH8Wuvpoz8yxlzwKex+8gdu9XjnOdryDALpPH
+dfsuHfJ9r7wB5egSzR5eisZwK+Qe6aV/Vp9x+3OYVRyE0a68gmi+aghn3pG3ddrt
+pRsvRGv66u9tmkOLOUblMy9yPlpPOGzirmr4IfkK6kMtKskCFIhIS8dsJ1iziOvT
+P7mNkJWfRKptqjwe4fmYsYf0AjEiVg2udl9jI+3vOGAGiD+oBnXNdXXqy115tupC
+2SAUeQ+9xBjq+MMIjcVFMudUiNyzsdjngcqssukaWs3YlusUgNfqdJ1rLBFWh0Gp
+eLBgYfihx4dUWlA=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.icermali.org:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">National Institutes of Health</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">ICER - Mali</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nih.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>NIAID ICER VRO Technical Support</GivenName>
+ <EmailAddress>icer-vro-support@list.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>NIAID ICER VRO Technical Support</GivenName>
+ <EmailAddress>icer-vro-support@list.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>NIAID ICER VRO Technical Support</GivenName>
+ <EmailAddress>icer-vro-support@list.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>NIAID ICER VRO Administrative Support</GivenName>
+ <EmailAddress>icer-vro-admin@list.nih.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- National Institutes of Health -->
+<EntityDescriptor entityID="https://login.iceruganda.org/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.iceruganda.org/federation/error" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">iceruganda.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ICER - Uganda</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://login.iceruganda.org/federation/info</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://login.iceruganda.org/federation/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login.iceruganda.org/federation/ui/logo/icerugandalogo80x60.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14735401927039073463, expires on Sun May 4 20:06:37 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.iceruganda.org:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.iceruganda.org/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.iceruganda.org/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.iceruganda.org/idp/profile/SAML2/SOAP/ECP"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.iceruganda.org/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">iceruganda.org</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 27446659782300060830752751483987795797, expires on Sun May 14 14:10:03 2017 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.iceruganda.org:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">National Institutes of Health</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">ICER - Uganda</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nih.gov/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>NIAID ICER VRO Technical Support</GivenName>
+ <EmailAddress>icer-vro-support@list.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>NIAID ICER VRO Administrative Support</GivenName>
+ <EmailAddress>icer-vro-admin@list.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>NIAID ICER VRO Technical Support</GivenName>
+ <EmailAddress>icer-vro-support@list.nih.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>NIAID ICER VRO Technical Support</GivenName>
+ <EmailAddress>icer-vro-support@list.nih.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Copper Mountain Community College District -->
+<EntityDescriptor entityID="https://idp.cmccd.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cmccd.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Copper Mountain Community College District</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Access to online services made available by Copper Mountain Community College District</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.boarddocs.com/ca/cmccd/Board.nsf/goto?open&amp;id=AUQV2B792DB9</mdui:PrivacyStatementURL>
+ <mdui:Logo height="81" width="200" xml:lang="en">https://idp.cmccd.edu/idp/images/cmc-idp.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 926218414996676042359076267356940457392983577725, expires on Tue Mar 15 17:17:16 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.cmccd.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.cmccd.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.cmccd.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.cmccd.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Copper Mountain Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Copper Mountain Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cmccd.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeremy S. Jones</GivenName>
+ <EmailAddress>jjones@cmccd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>help@cmccd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Admin Contact</GivenName>
+ <EmailAddress>IdPsupport@cmccd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tech Contact</GivenName>
+ <EmailAddress>IdPsupport@cmccd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Contact</GivenName>
+ <EmailAddress>IdPsupport@cmccd.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- StarRez, Inc. -->
+<EntityDescriptor entityID="https://ballioloxford.starrezhousing.com/StarRezPortalX/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">BALLIOLOXFORD StarRezPortalX</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 189501315767336083497949534920932449673988542887, expires on Sat Oct 2 17:23:01 2021 GMT -->
+ <ds:X509Certificate>
+MIIETzCCAzegAwIBAgIUITGIa2UNXEMWd319QYdiELMkEacwDQYJKoZIhvcNAQELBQAwgbYxCzAJBgNVBAYTAkFVMREwDwYDVQQIDAhWaWN0b3JpYTESMBAGA1UEBwwJTWVsYm91cm5lMRAwDgYDVQQKDAdTdGFyUmV6MR4wHAYDVQQLDBVDbG91ZCAtIEJBTExJT0xPWEZPUkQxKTAnBgNVBAMMIGJhbGxpb2xveGZvcmQuc3RhcnJlemhvdXNpbmcuY29tMSMwIQYJKoZIhvcNAQkBFhRzdGFyY2FyZUBzdGFycmV6LmNvbTAeFw0xOTEwMDMxNzIzMDFaFw0yMTEwMDIxNzIzMDFaMIG2MQswCQYDVQQGEwJBVTERMA8GA1UECAwIVmljdG9yaWExEjAQBgNVBAcMCU1lbGJvdXJuZTEQMA4GA1UECgwHU3RhclJlejEeMBwGA1UECwwVQ2xvdWQgLSBCQUxMSU9MT1hGT1JEMSkwJwYDVQQDDCBiYWxsaW9sb3hmb3JkLnN0YXJyZXpob3VzaW5nLmNvbTEjMCEGCSqGSIb3DQEJARYUc3RhcmNhcmVAc3RhcnJlei5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC6fmSQYt5qsZiAGbfBgH1KIvne6puJb1pTeloCYyfvS9gRgaoEJB7O34XePuOl7x/96FuU2WL7R9zlqhsfRj3IhdzqSaGLC/ZGsQRXxkXbVO9QXYr4XXp+GvK89snVI/RqrVYSE/rtMV6QyL52UD/uy2R5Vn8YGeP29VGfhHHm+xeUSaWGSZdohKNwyJ4XTnYUaCFtRQTJhl+uOhnn446dWWF4/9QVRaXO7K0YrcgvM/18ZCrpSSfyai//Af5SXZTywPB59NdhK24T3+1fH9Mbq4zRKxUhNe1fu2vVfQRViX01WDGt2qGrFkPVU4CL7vdfuemuM/LqmK2YFPPRgqz1AgMBAAGjUzBRMB0GA1UdDgQWBBSCIibf93JzOImtyy4Y56ntX+rMWTAfBgNVHSMEGDAWgBSCIibf93JzOImtyy4Y56ntX+rMWTAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQBo6ccOL4EdMYLnsuYNnY98Osu9toRS6AdrYjC0Hsz//1NHg2COEI9Et7YpDlsRtMhbti7mbFXYFPQba3jQXRT635wBJ9b+31ZBBoJebG40gsFOWwoPJtsTeqfN9qzniCZ07DOcK5/+UznnkaVchFNt2xg3ZVsj6YPruuDIzPeivD+jxlN9KWlgWk/NQ7fe8lr4B5/bziGiKhJ7wTMl0cjekt3BKB9haEmIzW8qFiS9kWjJRT4IV8ojDBeRim0Gp2DUDfeaTTHl0sW0TebZddjbsulKjjpi/aLck6JbEqHUrdxMsbzdTi+0wdTgQ202bY2KI4s+nfFxnGyWmRio9aJW
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ballioloxford.starrezhousing.com/StarRezPortalX/auth/Logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ballioloxford.starrezhousing.com/StarRezPortalX/RedirectLogin/StarNet.Core.AuthProviders.Shibboleth" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ballioloxford.starrezhousing.com/StarRezWeb/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">BALLIOLOXFORD StarRezWeb</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 189501315767336083497949534920932449673988542887, expires on Sat Oct 2 17:23:01 2021 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ballioloxford.starrezhousing.com/StarRezWeb/auth/Logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ballioloxford.starrezhousing.com/StarRezWeb/RedirectLogin/StarNet.StarRez.AuthProviders.ShibbolethStaff" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://darwinstedmunds.starrezhousing.com/StarRezPortal/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DARWIN STEDMUNDS StarRezPortal</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13579571747520336693, expires on Thu Mar 25 11:30:12 2021 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://darwinstedmunds.starrezhousing.com/StarRezPortal/auth/Logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://darwinstedmunds.starrezhousing.com/StarRezPortal/RedirectLogin/StarNet.Core.AuthProviders.Shibboleth" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://darwinstedmunds.starrezhousing.com/StarRezPortalDarwin/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DARWINSTEDMUNDS StarRezPortalDarwin</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13579571747520336693, expires on Thu Mar 25 11:30:12 2021 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://darwinstedmunds.starrezhousing.com/StarRezPortalDarwin/auth/Logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://darwinstedmunds.starrezhousing.com/StarRezPortalDarwin/RedirectLogin/StarNet.Core.AuthProviders.Shibboleth" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://darwinstedmunds.starrezhousing.com/StarRezWeb/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DARWIN STEDMUNDS StarRezWeb</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13579571747520336693, expires on Thu Mar 25 11:30:12 2021 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://darwinstedmunds.starrezhousing.com/StarRezWeb/auth/Logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://darwinstedmunds.starrezhousing.com/StarRezWeb/RedirectLogin/StarNet.StarRez.AuthProviders.ShibbolethStaff" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://darwinstedmunds.starrezhousing.com/StarRezWebDev/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DARWIN STEDMUNDS StarRezWebDev</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13579571747520336693, expires on Thu Mar 25 11:30:12 2021 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://darwinstedmunds.starrezhousing.com/StarRezWebDev/auth/Logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://darwinstedmunds.starrezhousing.com/StarRezWebDev/RedirectLogin/StarNet.StarRez.AuthProviders.ShibbolethStaff" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://devportal.gradacc.ox.ac.uk/StarRezPortalDev/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">OXGRAD DEV Student Portal</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12160753717081875811, expires on Thu Nov 5 09:42:14 2020 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://devportal.gradacc.ox.ac.uk/StarRezPortalDev/RedirectLogin/StarNet.Core.AuthProviders.Shibboleth" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://fanshawec.starrezhousing.com/StarRezPortal/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">FANSHAWEC StarRezPortal</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15311546539958415174, expires on Thu Jan 30 20:06:23 2020 GMT -->
+ <ds:X509Certificate>
+MIIEMTCCAxmgAwIBAgIJANR9inQ8FS9GMA0GCSqGSIb3DQEBCwUAMIGuMQswCQYDVQQGEwJBVTERMA8GA1UECAwIVmljdG9yaWExEjAQBgNVBAcMCU1lbGJvdXJuZTEQMA4GA1UECgwHU3RhclJlejEaMBgGA1UECwwRQ0xPVUQgLSBGQU5TSEFXRUMxJTAjBgNVBAMMHGZhbnNoYXdlYy5zdGFycmV6aG91c2luZy5jb20xIzAhBgkqhkiG9w0BCQEWFHN0YXJjYXJlQHN0YXJyZXouY29tMB4XDTE4MDEzMDIwMDYyM1oXDTIwMDEzMDIwMDYyM1owga4xCzAJBgNVBAYTAkFVMREwDwYDVQQIDAhWaWN0b3JpYTESMBAGA1UEBwwJTWVsYm91cm5lMRAwDgYDVQQKDAdTdGFyUmV6MRowGAYDVQQLDBFDTE9VRCAtIEZBTlNIQVdFQzElMCMGA1UEAwwcZmFuc2hhd2VjLnN0YXJyZXpob3VzaW5nLmNvbTEjMCEGCSqGSIb3DQEJARYUc3RhcmNhcmVAc3RhcnJlei5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC1uPAufJRE9/GK9vdKeOkLz1fLfKlM1h8BHvUqvHJCBBAXCKiI8noIGc8bAmvgsZODzxL41yaNUNVUNS/apLZvyrOiIBX09y2FPrAnaTsQrLVo4bOQP6sKtc1FJzDGaUfVBUkn77jiqopPFSLY1COJ5yPTKSfXXBnfuqStjeduKY/SMCPOhnWzCbUSgRSS16+84Zt7NFl594SSag1B2r5ZAEE7tbE8v+YRyxdME4xi8iESvkfvi0BvjTLA5aqUB1i7md08TIYaqRz3C1Zi0joGooCCVTyESpnFf8isZpM+6HBg+lx/1aEIM9xr/2wKOUSg4t9D69hU+R8uxFX0XngDAgMBAAGjUDBOMB0GA1UdDgQWBBRZhm2BlBMiTgLR4c08K4zKdNu27zAfBgNVHSMEGDAWgBRZhm2BlBMiTgLR4c08K4zKdNu27zAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQBXP6JFOuiaLCaWOuQvMkDLM0Eg4NczR5N02idUBthN7EFcEI0JJ32oSJemwpEroGt0VTRNOdntx+bIHChvbsS85TQo4XQzxkgj1Y5g1XawmBH4xOPUGn/q4Obbpuq5Em2bi7us8zUHhAc8YwX8lb1ZboXHeS04JIq6TgpDa1z0IS6fkX6KniPgdCW6wlKJ9xZqM02w9FzkiDIfIy9wv00NHIK/V7Ac5w6sgjK4zh9rjyzMBwBkZxOAjoDpUWfG2FPnWxt2DtjW8oPf/+l1nzt0Xsd7EALy32TpHATy23vVj8gMHUe3yFgJ0nU/4su7ConWo21dggHsn3ZESHKKme7u
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fanshawec.starrezhousing.com/StarRezPortal/RedirectLogin/StarNet.Core.AuthProviders.Shibboleth" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://glos.starrezhousing.com/StarRezPortalX/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">GLOS StarRezPortal</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9977270412750751045, expires on Fri Jun 12 11:52:25 2020 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://glos.starrezhousing.com/StarRezPortalX/RedirectLogin/StarNet.Core.AuthProviders.Shibboleth" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://glos.starrezhousing.com/StarRezWeb/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">GLOS StarRezWeb</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15984788062754766270, expires on Fri May 29 09:49:11 2020 GMT -->
+ <ds:X509Certificate>
+MIIEHTCCAwWgAwIBAgIJAN3VYA1SZv2+MA0GCSqGSIb3DQEBCwUAMIGkMQswCQYDVQQGEwJBVTERMA8GA1UECAwIVmljdG9yaWExEjAQBgNVBAcMCU1lbGJvdXJuZTEQMA4GA1UECgwHU3RhclJlejEVMBMGA1UECwwMQ2xvdWQgLSBHTE9TMSAwHgYDVQQDDBdHTE9TLnN0YXJyZXpob3VzaW5nLmNvbTEjMCEGCSqGSIb3DQEJARYUc3RhcmNhcmVAc3RhcnJlei5jb20wHhcNMTgwNTMwMDk0OTExWhcNMjAwNTI5MDk0OTExWjCBpDELMAkGA1UEBhMCQVUxETAPBgNVBAgMCFZpY3RvcmlhMRIwEAYDVQQHDAlNZWxib3VybmUxEDAOBgNVBAoMB1N0YXJSZXoxFTATBgNVBAsMDENsb3VkIC0gR0xPUzEgMB4GA1UEAwwXR0xPUy5zdGFycmV6aG91c2luZy5jb20xIzAhBgkqhkiG9w0BCQEWFHN0YXJjYXJlQHN0YXJyZXouY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzkpGaKMj57rAUNfSi04t8ekEsG/kVtQqH8EptCYj9K4hmDPObcAbZ4FC57duyZqAUxVwmuS8o2vEvh7owb9nOe7h/Vebngzv9j/dSZ4J6Y7q6NpHjwvQ6D2bOtWkjVBJ3V59WLcvIRfVnsLwOefufW8AL6arx5XSJb85ocmKB4afzQhlhFhCEWqo1Jq4gKjHjITQqm4Tf3NHN1OD4UvnwvD3SaoMSZr1A7W0FMt0kr2SP48sX1M7IWP8q35D959GSD1F/xLJeHMBEvD4Nqokp1ziSwM4XVnKWa7NAcaWMagusw412AA97tQyPCIs+dtBCKAW0zMvKKax+PxtgqO3TwIDAQABo1AwTjAdBgNVHQ4EFgQUkMyId7Nx1rD6QXNi3Mzoll4vl/IwHwYDVR0jBBgwFoAUkMyId7Nx1rD6QXNi3Mzoll4vl/IwDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEACQNyHOawd9kyBw2JYJG1cK0pZpYe/VC7zP9I/iakzj+5RWjPDaBZjYn7XHoZqj/dqFy+u0ga0wYHDUXXpYu/pJuk2mKlviKE8Lf6rNYiK4cTJ+797WuWySpepyOvjD3yeWPdn11NJjx2CvbwfjLrKRZ30Elm19JMMZjCkdrUxn36Hok8vmiSE+wvjOC+2oGJSDTnsAM3ifW4QtQKSZNNyeuZdzD5a1RZ798sS9MSGcplmZDQSbCHWxqyfnnP4UfSntnER06W9qTKjnx0JkGYWJAHnFkzdyDiQm1fX2KyiSnl/UNPWgz3Lyi/Mk3CqHiyEyz6PE9NHDyWBG2WTTzwHA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://glos.starrezhousing.com/StarRezWeb/RedirectLogin/StarNet.StarRez.AuthProviders.ShibbolethStaff" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://gtcoxford.starrezhousing.com/StarRezPortal/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">GTCOXFORD StarRezPortal</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10332659736293146037, expires on Sun Aug 25 21:33:43 2019 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gtcoxford.starrezhousing.com/StarRezPortal/RedirectLogin/StarNet.Core.AuthProviders.Shibboleth" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://hughescambridge.starrezhousing.com/StarRezPortalX/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">HUGHES CAMBRIDGE StarRezPortalX</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17090984155280020176, expires on Fri Mar 26 16:26:18 2021 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hughescambridge.starrezhousing.com/StarRezPortalX/RedirectLogin/StarNet.Core.AuthProviders.Shibboleth" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://hughescambridge.starrezhousing.com/StarRezWeb/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">HUGHES CAMBRIDGE StarRezWeb</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17090984155280020176, expires on Fri Mar 26 16:26:18 2021 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hughescambridge.starrezhousing.com/StarRezWeb/RedirectLogin/StarNet.StarRez.AuthProviders.ShibbolethStaff" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://hughescambridge.starrezhousing.com/StarRezWebDev/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">HUGHES CAMBRIDGE StarRezWebDev</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17090984155280020176, expires on Fri Mar 26 16:26:18 2021 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hughescambridge.starrezhousing.com/StarRezWebDev/RedirectLogin/StarNet.StarRez.AuthProviders.ShibbolethStaff" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://oxgrad.starrezhousing.com/StarRezWeb/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">OXGRAD StarRezWeb</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12160753717081875811, expires on Thu Nov 5 09:42:14 2020 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oxgrad.starrezhousing.com/StarRezWeb/RedirectLogin/StarNet.StarRez.AuthProviders.ShibbolethStaff" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://oxgrad.starrezhousing.com/StarRezWebDev/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">OXGRAD StarRezWebDev</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12160753717081875811, expires on Thu Nov 5 09:42:14 2020 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oxgrad.starrezhousing.com/StarRezWebDev/RedirectLogin/StarNet.StarRez.AuthProviders.ShibbolethStaff" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://portal.gradacc.ox.ac.uk/StarRezPortal/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">OXGRAD Student Portal</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12160753717081875811, expires on Thu Nov 5 09:42:14 2020 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.gradacc.ox.ac.uk/StarRezPortal/RedirectLogin/StarNet.Core.AuthProviders.Shibboleth" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sheffield.starrezhousing.com/StarRezPortalX/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Sheffield StarRezPortalX</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17156724108103358750, expires on Thu Feb 20 15:17:40 2020 GMT -->
+ <ds:X509Certificate>
+MIIEMTCCAxmgAwIBAgIJAO4Y7a0U4ZkeMA0GCSqGSIb3DQEBCwUAMIGuMQswCQYDVQQGEwJBVTERMA8GA1UECAwIVmljdG9yaWExEjAQBgNVBAcMCU1lbGJvdXJuZTEQMA4GA1UECgwHU3RhclJlejEaMBgGA1UECwwRQ2xvdWQgLSBTaGVmZmllbGQxJTAjBgNVBAMMHHNoZWZmaWVsZC5zdGFycmV6aG91c2luZy5jb20xIzAhBgkqhkiG9w0BCQEWFHN0YXJjYXJlQHN0YXJyZXouY29tMB4XDTE4MDIyMDE1MTc0MFoXDTIwMDIyMDE1MTc0MFowga4xCzAJBgNVBAYTAkFVMREwDwYDVQQIDAhWaWN0b3JpYTESMBAGA1UEBwwJTWVsYm91cm5lMRAwDgYDVQQKDAdTdGFyUmV6MRowGAYDVQQLDBFDbG91ZCAtIFNoZWZmaWVsZDElMCMGA1UEAwwcc2hlZmZpZWxkLnN0YXJyZXpob3VzaW5nLmNvbTEjMCEGCSqGSIb3DQEJARYUc3RhcmNhcmVAc3RhcnJlei5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDjYjdY9/CT4fuSIj8ekzO3qqvepQ+7AE17gdrSgTn0D1sM+eErFNn1jPwMsKoCrgbPa+8QthJctmPCWH8b/OVJ86dmEt752okJZYxy0yIHzIMjeG5b1w8Yqswsk7mXTD2Z3oRiXJB9jqCe98YUG7Zo+hDxNvJyn9QVXSCDtFig70hnNRNO6l6vv8kltPSa6NrXyc625D8TvEx63/2Xer8NIplIZQ9j8UYocG/1gxBmZ9mp8gJp9PvuO7i33M6MLSBgR+PgaV/KWTpce8I814XrbN47fNtFTaIx1L46HP1lrURkcnykcYTgP6RDq2sd2OZdtQNEJ/82gZQvtZFFlHVVAgMBAAGjUDBOMB0GA1UdDgQWBBT4vsmK1SoaGLddwP73pjmWxyCCgzAfBgNVHSMEGDAWgBT4vsmK1SoaGLddwP73pjmWxyCCgzAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQC/9zJAf5F/VsbFymKwr/QJSZZpehWc64TTq7SZ/XTQYasBfQXK3sJGcg+gh9t3vQTRYCG2zcwEN9pkLt3Av6qdIoOXMWSJo0t9zGplMmo1Y/XQAH1pQfnFh2IcH9IwLx2fdumgloPd6SGS6kSsk4QLYJwFq7WlWqc6QlGJSbE29LF5HiSVklDKvCWZ6M4ElRp+MVPx3unGJQF8ra1nOkcXwpF10e6LyeHFTdtUMLWlw5Wzxxo6atpGqctoWyxVaILv/uUOSF4Ike9RuER629ytuUdmnSGo6eXeygAiNfYj4lhMQ6ahqs78fn3BepeCrtM1tasz4kwkzMHrG5tQj3s8
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sheffield.starrezhousing.com/StarRezPortalX/RedirectLogin/StarNet.Core.AuthProviders.Shibboleth" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://starrez-web.sthildas.ox.ac.uk/StarRezPortal/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">STHILDAS - StarRezPortal</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Student login in for StarRezPortal</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11769955271085702659, expires on Fri Dec 4 12:09:06 2020 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://starrez-web.sthildas.ox.ac.uk/StarRezPortal/auth/Logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://starrez-web.sthildas.ox.ac.uk/StarRezPortal/RedirectLogin/StarNet.Core.AuthProviders.Shibboleth" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://starrez-web.sthildas.ox.ac.uk/StarRezWeb/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">STHILDAS - StarRezWeb</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Staff Login for StarRezWeb</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11769955271085702659, expires on Fri Dec 4 12:09:06 2020 GMT -->
+ <ds:X509Certificate>
+MIIELTCCAxWgAwIBAgIJAKNXR/WLTL4DMA0GCSqGSIb3DQEBCwUAMIGsMQswCQYDVQQGEwJBVTERMA8GA1UECAwIVmljdG9yaWExEjAQBgNVBAcMCU1lbGJvdXJuZTEQMA4GA1UECgwHU3RhclJlejEZMBcGA1UECwwQQ2xvdWQgLSBTVEhJTERBUzEkMCIGA1UEAwwbU1RISUxEQVMuc3RhcnJlemhvdXNpbmcuY29tMSMwIQYJKoZIhvcNAQkBFhRzdGFyY2FyZUBzdGFycmV6LmNvbTAeFw0xODEyMDUxMjA5MDZaFw0yMDEyMDQxMjA5MDZaMIGsMQswCQYDVQQGEwJBVTERMA8GA1UECAwIVmljdG9yaWExEjAQBgNVBAcMCU1lbGJvdXJuZTEQMA4GA1UECgwHU3RhclJlejEZMBcGA1UECwwQQ2xvdWQgLSBTVEhJTERBUzEkMCIGA1UEAwwbU1RISUxEQVMuc3RhcnJlemhvdXNpbmcuY29tMSMwIQYJKoZIhvcNAQkBFhRzdGFyY2FyZUBzdGFycmV6LmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJR/em8L2WNg/euGjDi3w4BsIZnLdJ3meSvLe4psYTxWCXE08b1BZdBgfjELKRPQdlvFn+JqpZJQe33XYRQ8bdgj2glctyqvWJw6Y4WgApV8pXQd7xDlC2LecLVMdd9WThYd3eQZ9bzZmqmZtmThUey1pqhft7SyDho7TwhkC/SKSl4zRCl+Tam0EL2PBvwm2k8Zxw5XLeKfYpomHMnWuw7DuF5ZTlanVg2ESRFWSRGdvvH760V6mcOlAMFy0KwR0b41RZY2vSB/xHj41tzLEZcriSpDPsFcf1CbBqYqEif4dhFE588SbhSqkw27gQa+sIFnGC9zym0D3BIeqqB8tt8CAwEAAaNQME4wHQYDVR0OBBYEFCdyYykSqyyUjBUePgX1uiFvp4cjMB8GA1UdIwQYMBaAFCdyYykSqyyUjBUePgX1uiFvp4cjMAwGA1UdEwQFMAMBAf8wDQYJKoZIhvcNAQELBQADggEBAIgj5G9PFsymU7cxCxIj4wkugoiPwVgNnIXh4dW9mOwxkKHS6Fgw5R7/ZBrLBisiMHwKHcW34hA27dlLqsi0kan7sBx0bODMlxz8oF1biFt6BwfxwspdoXiK0/0e5FDF8BI9Bjo3vwwdEsZ6Oy7vvLmMBu+2CYZcGz7j+nvlWHsgCgwAIkAyOLE5vYsdRnJWw2Z9xoWB30eMhtBl/4tcSKOz+UhoWLGkq2M9dZKCRi4sgu3zSRvlXlD2eoB/gIykelsESf5/HGgbJP8alOvbUTfeUh5FPAUf4Hn4EdChzzq8kHGjKKyGc/oDKL7Yrs60GXRIAXINNx/N6SbvyU247HU=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://starrez-web.sthildas.ox.ac.uk/StarRezWeb/auth/Logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://starrez-web.sthildas.ox.ac.uk/StarRezWeb/RedirectLogin/StarNet.StarRez.AuthProviders.ShibbolethStaff" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://starrez-web.sthildas.ox.ac.uk/StarRezWebDev/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">STHILDAS - StarRezWebDev</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Staff Login for StarRezWebDev</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11769955271085702659, expires on Fri Dec 4 12:09:06 2020 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://starrez-web.sthildas.ox.ac.uk/StarRezWebDev/auth/Logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://starrez-web.sthildas.ox.ac.uk/StarRezWebDev/RedirectLogin/StarNet.StarRez.AuthProviders.ShibbolethStaff" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wolfson.starrezhousing.com/StarRezPortalX/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">WOLFSON StarRezPortalX</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18021099735588198745, expires on Fri Mar 26 16:30:15 2021 GMT -->
+ <ds:X509Certificate>
+MIIEKTCCAxGgAwIBAgIJAPoXzrrJntlZMA0GCSqGSIb3DQEBCwUAMIGqMQswCQYDVQQGEwJBVTERMA8GA1UECAwIVmljdG9yaWExEjAQBgNVBAcMCU1lbGJvdXJuZTEQMA4GA1UECgwHU3RhclJlejEYMBYGA1UECwwPQ2xvdWQgLSBXT0xGU09OMSMwIQYDVQQDDBpXT0xGU09OLnN0YXJyZXpob3VzaW5nLmNvbTEjMCEGCSqGSIb3DQEJARYUc3RhcmNhcmVAc3RhcnJlei5jb20wHhcNMTkwMzI3MTYzMDE1WhcNMjEwMzI2MTYzMDE1WjCBqjELMAkGA1UEBhMCQVUxETAPBgNVBAgMCFZpY3RvcmlhMRIwEAYDVQQHDAlNZWxib3VybmUxEDAOBgNVBAoMB1N0YXJSZXoxGDAWBgNVBAsMD0Nsb3VkIC0gV09MRlNPTjEjMCEGA1UEAwwaV09MRlNPTi5zdGFycmV6aG91c2luZy5jb20xIzAhBgkqhkiG9w0BCQEWFHN0YXJjYXJlQHN0YXJyZXouY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAogqtnLH5hEvWAYdd13eA4R3h8u2mZo5+MUkSuUj1+8PtyjlaFB+Qrs97JogNAenRGHr5bH0w0Qtyg51SFA9kELfCF/wjqVs4IVSR3C92JOeXMASFknPmvFUA84R56HyR7FbLjn6/CPI9t+5RiVhzQDco1MJ9los/lI4YOJoEOMnzdIvH+xTNzGi0daVZYdw3VpCAU0U6rTtt9AFeHzp2egH6EacnGOUVJvDzB4aVZlKf3w5FBBKNQ8qVLkzMKWzAlp05dxKC94SisF/cSJw8FMh9zXMASkH+5bAOs7BDEusrPp0v8RZkv65/Dn8mCnuZpG+up/xW+NyJ5rAcp/D5bQIDAQABo1AwTjAdBgNVHQ4EFgQUGT+sKR6On8oL7tNHpnMncQdnj38wHwYDVR0jBBgwFoAUGT+sKR6On8oL7tNHpnMncQdnj38wDAYDVR0TBAUwAwEB/zANBgkqhkiG9w0BAQsFAAOCAQEAVPp+4zB9PnCp4/0NpNEs5SNAiwhzkzAQb5VVoloaCuhQD3LpH4rsZvELx4JGjdYvqRxpwxaT7eG1bZrZKuIua3cJUHH956lOSXs9WpMBBtd0iMGDrfvD0jL/rpb10gM5GYcahA2mgbEWy4/TuzlNEXHDZiYX6qcBNLdpqq1oJx9kcfuWYQIGW4Mu2qRuOOSY0SuNnO253oRpu6YExg9NX8U1RJuUa5wvZmlLcDX9xzugVLRvuKl2Labbh0/RQ4VeYQiteMyL8Jqj+afCA/t5A1pog6vVrfD7ATizxgua8yX1zT2fu9Ho1zkhsbKyDhjH41zRy+1DeY5SaULl7/02Kw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wolfson.starrezhousing.com/StarRezPortalX/RedirectLogin/StarNet.Core.AuthProviders.Shibboleth" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wolfson.starrezhousing.com/StarRezPortalXDev/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">WOLFSON StarRezPortalXDev</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.starrez.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.starrez.com/starrez-incommon-participant-operational-practices-pop/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="414" xml:lang="en">https://starrezcloudcdn.azureedge.net/content/incommon/starrezlogoconfluencemarch2018.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18021099735588198745, expires on Fri Mar 26 16:30:15 2021 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wolfson.starrezhousing.com/StarRezPortalXDev/RedirectLogin/StarNet.Core.AuthProviders.Shibboleth" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">StarRez, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">StarRez, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.starrez.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>StarCare Technical Support</GivenName>
+ <EmailAddress>StarCare@starrez.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Mt. San Antonio Community College District -->
+<EntityDescriptor entityID="https://idp.mtsac.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mtsac.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Mt. San Antonio Community College District</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.mtsac.edu/it/infosecurity/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="126" width="126" xml:lang="en">https://idp01.mtsac.edu/idp/images/mtsac-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 24668586338832494206372400323702086665639748757, expires on Mon Feb 27 18:22:36 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp01.mtsac.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp01.mtsac.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp01.mtsac.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp01.mtsac.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp01.mtsac.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Mt. San Antonio Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Mt. San Antonio Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.mtsac.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Kenneth Frank</GivenName>
+ <EmailAddress>kfrank2@mtsac.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chris Schroeder</GivenName>
+ <EmailAddress>cschroeder@mtsac.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dale Vickers</GivenName>
+ <EmailAddress>dvickers@mtsac.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Mt. SAC Help Desk</GivenName>
+ <EmailAddress>helpdesk@mtsac.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- InnoSoft Canada Inc. -->
+<EntityDescriptor entityID="https://baylorbridge.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://myrec.baylor.edu:1008/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fusion Prod Baylor Bridge</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.baylor.edu/about/index.php?id=90107</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="263" xml:lang="en">https://myrec.baylor.edu/Content/Images/baylor-logo-main.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16042369399222760071, expires on Fri May 12 13:16:15 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myrec.baylor.edu:1008/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://myrec.baylor.edu:1008/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://myrec.baylor.edu:1008/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://myrec.baylor.edu:1008/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Baylor Helpdesk</GivenName>
+ <EmailAddress>helpdesk@baylor.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Baylor Helpdesk</GivenName>
+ <EmailAddress>helpdesk@baylor.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Baylor Helpdesk</GivenName>
+ <EmailAddress>helpdesk@baylor.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Baylor Helpdesk</GivenName>
+ <EmailAddress>helpdesk@baylor.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://baylor.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://myrec.baylor.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Baylor Campus Recreation</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.baylor.edu/about/index.php?id=90104</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="263" xml:lang="en">https://myrec.baylor.edu/Content/Images/baylor-logo-main.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16042369399222760071, expires on Fri May 12 13:16:15 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myrec.baylor.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://myrec.baylor.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://myrec.baylor.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://myrec.baylor.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Fusion Support</GivenName>
+ <EmailAddress>Support@innosoftfusion.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>InnoSoft Support</GivenName>
+ <EmailAddress>support@innosoft.ca</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Baylor Helpdesk</GivenName>
+ <EmailAddress>helpdesk@baylor.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Baylor Helpdesk</GivenName>
+ <EmailAddress>helpdesk@baylor.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://baylortestbridge.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://myrec-test.baylor.edu:1008/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fusion Test Baylor Bridge</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.baylor.edu/about/index.php?id=90104</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="263" xml:lang="en">https://myrec.baylor.edu/Content/Images/baylor-logo-main.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14317112134363771399, expires on Sun May 7 18:10:59 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myrec-test.baylor.edu:1008/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://myrec-test.baylor.edu:1008/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://myrec-test.baylor.edu:1008/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://myrec-test.baylor.edu:1008/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Fusion Support</GivenName>
+ <EmailAddress>support@innosoftfusion.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>InnoSoft Support</GivenName>
+ <EmailAddress>support@innosoft.ca</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Baylor Helpdesk</GivenName>
+ <EmailAddress>helpdesk@baylor.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Baylor Helpdesk</GivenName>
+ <EmailAddress>helpdesk@baylor.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://baylortest.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://myrec-test.baylor.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fusion Test Baylor Portal</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.baylor.edu/about/index.php?id=90104</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="263" xml:lang="en">https://myrec.baylor.edu/Content/Images/baylor-logo-main.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14317112134363771399, expires on Sun May 7 18:10:59 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myrec-test.baylor.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://myrec-test.baylor.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://myrec-test.baylor.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://myrec-test.baylor.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Fusion Support</GivenName>
+ <EmailAddress>support@innosoftfusion.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>InnoSoft Support</GivenName>
+ <EmailAddress>support@innosoft.ca</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Baylor Helpdesk</GivenName>
+ <EmailAddress>helpdesk@baylor.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Baylor Helpdesk</GivenName>
+ <EmailAddress>helpdesk@baylor.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://memphisbridge.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cris.memphis.edu:1008/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fusion Prod Memphis Bridge</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.memphis.edu/notice/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="118" width="350" xml:lang="en">https://sso.memphis.edu/idp/images/uofmlogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12494571026173677240, expires on Fri Dec 17 17:18:59 2027 GMT -->
+ <ds:X509Certificate>
+MIID9DCCAlygAwIBAgIJAK1loiYz+E64MA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV
+BAMTD2VjMmFtYXotYnY1amRrdDAeFw0xNzEyMTkxNzE4NTlaFw0yNzEyMTcxNzE4
+NTlaMBoxGDAWBgNVBAMTD2VjMmFtYXotYnY1amRrdDCCAaIwDQYJKoZIhvcNAQEB
+BQADggGPADCCAYoCggGBAKr8M/qK/GknNQo9B+1FraeqLebHX1auRB1cDYJUKBik
+qz6YhtPjXiTr0dVElZkjyxpUgBR0wJRpEkBeTupXHLjWRz3eDWmauTTqJ4WSiuoh
+bZcYFOdkmKZVCu9vrOcP7+unl6rc+zUNZq0PEa3GElNepZifcPia4PoAwvcJCOsp
+qMCX22a/cEKtndr6D6PnDv5jyPlUVi7f0Qp/CCkEKRf27THyDdYZpApGGbNCKSwN
+3rixp044UEsRlpGxBXis7ON3cKqyfjPbvHlxnImtAPn5Xxmt0lac1WOOv2vlYfV+
+OKo8sKGis7jEAj/ijocEQd2+YqN8KzuuJFZsHeTmjYDrT9LTBB4cs0cRmlh8Beo6
+snnalir0yErAvqXplNOLYZo2QlvgUEBWjhaABe6SYt0em/Ay1KDKUNPJOkUIl34G
+CpQZktYaYAux/C4HuMAWeCVMj8oroUN4cWlMhfE2LDLTV7qdZ7x0YmLQT2Ebmnkm
+CVg3eRBavsq3LfDi/XwX5QIDAQABoz0wOzAaBgNVHREEEzARgg9lYzJhbWF6LWJ2
+NWpka3QwHQYDVR0OBBYEFMSUkPAhHtQItbW+bDKUV5S2Is7nMA0GCSqGSIb3DQEB
+CwUAA4IBgQCQL38cthT38hnw0Yk1x9ZcVo/MkRfdtROtrTTpI24TirqEnvWhYIX4
+NG/9daHbKAamKs8ZzeIIpqkA29xiQj+VwUUgXicmufsSZGrjPluqtKJmNVJ9Tqo1
+Yrk6vSrbjE3YPd5SoCxa4Z0cKVG3o86IINzqQSdcThOWkNZtO1EOS5dz7t1ON4AQ
+hXli3nggARlgaGL4nDiJsBbLwWAlSBf5cWdNphDlHEVxnwcdbUJqtGSGUXEOrg44
+9XikpigE1CtMRZmVGAv+55HK5t9DnhEg5B10nX0jF0M5Z4p7TtnglETWhW33jqp8
+lCzYjDMYEYOGgo6EGCq/BQE/xpd2DW/7t7M0BOoeYC/A8VZVe6jGpaCgK5GZSdMk
+GybUhxjjwaPNExuGgxNmaJU5OinBnHYA+kOCSEDxakvRNuo9e0ldMb4osgZcK/rq
+SgMvDeFjbNu01JLFHORwTqofW0jHUDXNDcI+YX3wc/xfSCNCOGG9NqwWUDdFNbBR
+H2zpJqmqTFU=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cris.memphis.edu:1008/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cris.memphis.edu:1008/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cris.memphis.edu:1008/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cris.memphis.edu:1008/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>InnoSoft</GivenName>
+ <EmailAddress>support@innosoft.ca</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>InnoSoft Support</GivenName>
+ <EmailAddress>support@innosoft.ca</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>InnoSoft</GivenName>
+ <EmailAddress>support@innosoft.ca</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://memphisportal.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cris.memphis.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Memphis Campus Recreation Intramural Services</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.memphis.edu/notice/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="118" width="350" xml:lang="en">https://sso.memphis.edu/idp/images/uofmlogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12494571026173677240, expires on Fri Dec 17 17:18:59 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cris.memphis.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cris.memphis.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cris.memphis.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cris.memphis.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>InnoSoft</GivenName>
+ <EmailAddress>support@innosoft.ca</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>InnoSoft Support</GivenName>
+ <EmailAddress>support@innosoft.ca</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>InnoSoft</GivenName>
+ <EmailAddress>support@innosoft.ca</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://miamibridge.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wellness.miami.edu:1008/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fusion Prod U Miami Bridge</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://welcome.miami.edu/privacy-and-legal/index.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="127" width="580" xml:lang="en">https://wellness.miami.edu/Content/Images/umiami-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15207679046230138204, expires on Thu Oct 21 22:54:34 2027 GMT -->
+ <ds:X509Certificate>
+MIID9DCCAlygAwIBAgIJANMMh4TQst1cMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV
+BAMTD2VjMmFtYXotbjJtZXA3bTAeFw0xNzEwMjMyMjU0MzRaFw0yNzEwMjEyMjU0
+MzRaMBoxGDAWBgNVBAMTD2VjMmFtYXotbjJtZXA3bTCCAaIwDQYJKoZIhvcNAQEB
+BQADggGPADCCAYoCggGBALkGDOSr9kzcqCXOYOBNYd2vD1/hTA23GQbMDzsfGwsb
+rn2EHAY8dzyepI80zsRsOTApbROlZleUCiusmWObKm8H0TX8po5tN2C7P/C08B4l
+lGljNtbxq2lbsSwCfTHyDjrxACFYwvk5X4VsOvuE2YQtXRwl62X+jMRo8GttR6ZG
+sVSpEJi7rnDsh1dPsuHhqviDTpdg1bACsilwIP+UcOm+7eJW95ENYQ48k+Huqozy
+mK5jxjdSsN4NEd0PveqVV5XhS0o+7lWl+TNdp0eurzXfKZzoCqhicU4HNKqnCgOj
+WWtPlvM4oLedS6K7ystcQHwiuZLbEWOFpbXy2Ezsof5Cqe53G6+0/DkSqnCxg71U
+IgPm2PQaKFNcWN45KSbRRuEoUZQaAjEt/XVpYWNJJ6KCV2sk8ebMeKobACieVdV/
+Pf2sW3S4B/FPIMsHmDjGZSybsCsZx6JbaI5oLdKyGxNj0XIQVD2wkeJlmDSbavHS
+WqMrDSUXUmtny3ZNQ0OzRQIDAQABoz0wOzAaBgNVHREEEzARgg9lYzJhbWF6LW4y
+bWVwN20wHQYDVR0OBBYEFAjSQHLuc+gJD7lxJudnmxOFydLsMA0GCSqGSIb3DQEB
+CwUAA4IBgQBId4S9dsAPw2AueplzHUnqzxRKwbEY0Es9OtK3feLkoVKBeJoHgg0a
+dZm6hBdvjNd8W+WEu9Sfx2r49uR5Bpz+kLJknu6dtiAkxQBfUW+asDEwHZpPjtD5
+fb3BWABedsetIlw9HVfN2LKgUY1ySp5D+n0Q+/ZviTHw5C02K4YVZl7OC/Qna3ju
+Wslfd1+WK3YXIf08uiduh2UsTyiJSrmK9JfpJ9SX/xniSTYDe06g0Fu50qoe7Ffk
+qUhk6qQoyb3lKcExO5m/IrIoRVSuwnMkLAmo7ATeYlEXr1tHJX0kUtdMovYIGY3/
+20EsCGkV3fX9v7lAop4p8S+KKL8RL5DOtN7M0uoA8tUkOu7Awlpjh3n70/CIjtAa
+dQCRxNgF38khlHFdx354m5+eEl+ttcJwp7MrAB+l3EsDteQ4G0GVutocIAWs5hPw
++dc2V/wufJ78VCLH9VtsoaqMfc/m3YknOTg9sFnbVJAqaK1uS59C3pmX5MyD+qny
+Q/C1+EetdUE=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wellness.miami.edu:1008/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wellness.miami.edu:1008/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wellness.miami.edu:1008/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wellness.miami.edu:1008/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Nelson Kerbel</GivenName>
+ <EmailAddress>nelson@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Student Affairs Information Systems</GivenName>
+ <EmailAddress>sais@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Student Affairs Information Systems</GivenName>
+ <EmailAddress>sais@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Felipe Lam</GivenName>
+ <EmailAddress>f.lam@umiami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chris Booth</GivenName>
+ <EmailAddress>cbooth@miami.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://miamiportal.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wellness.miami.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Miami Patti &amp; Allan Herbert Wellness Center</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://welcome.miami.edu/privacy-and-legal/index.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="127" width="580" xml:lang="en">https://wellness.miami.edu/Content/Images/umiami-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15207679046230138204, expires on Thu Oct 21 22:54:34 2027 GMT -->
+ <ds:X509Certificate>
+MIID9DCCAlygAwIBAgIJANMMh4TQst1cMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV
+BAMTD2VjMmFtYXotbjJtZXA3bTAeFw0xNzEwMjMyMjU0MzRaFw0yNzEwMjEyMjU0
+MzRaMBoxGDAWBgNVBAMTD2VjMmFtYXotbjJtZXA3bTCCAaIwDQYJKoZIhvcNAQEB
+BQADggGPADCCAYoCggGBALkGDOSr9kzcqCXOYOBNYd2vD1/hTA23GQbMDzsfGwsb
+rn2EHAY8dzyepI80zsRsOTApbROlZleUCiusmWObKm8H0TX8po5tN2C7P/C08B4l
+lGljNtbxq2lbsSwCfTHyDjrxACFYwvk5X4VsOvuE2YQtXRwl62X+jMRo8GttR6ZG
+sVSpEJi7rnDsh1dPsuHhqviDTpdg1bACsilwIP+UcOm+7eJW95ENYQ48k+Huqozy
+mK5jxjdSsN4NEd0PveqVV5XhS0o+7lWl+TNdp0eurzXfKZzoCqhicU4HNKqnCgOj
+WWtPlvM4oLedS6K7ystcQHwiuZLbEWOFpbXy2Ezsof5Cqe53G6+0/DkSqnCxg71U
+IgPm2PQaKFNcWN45KSbRRuEoUZQaAjEt/XVpYWNJJ6KCV2sk8ebMeKobACieVdV/
+Pf2sW3S4B/FPIMsHmDjGZSybsCsZx6JbaI5oLdKyGxNj0XIQVD2wkeJlmDSbavHS
+WqMrDSUXUmtny3ZNQ0OzRQIDAQABoz0wOzAaBgNVHREEEzARgg9lYzJhbWF6LW4y
+bWVwN20wHQYDVR0OBBYEFAjSQHLuc+gJD7lxJudnmxOFydLsMA0GCSqGSIb3DQEB
+CwUAA4IBgQBId4S9dsAPw2AueplzHUnqzxRKwbEY0Es9OtK3feLkoVKBeJoHgg0a
+dZm6hBdvjNd8W+WEu9Sfx2r49uR5Bpz+kLJknu6dtiAkxQBfUW+asDEwHZpPjtD5
+fb3BWABedsetIlw9HVfN2LKgUY1ySp5D+n0Q+/ZviTHw5C02K4YVZl7OC/Qna3ju
+Wslfd1+WK3YXIf08uiduh2UsTyiJSrmK9JfpJ9SX/xniSTYDe06g0Fu50qoe7Ffk
+qUhk6qQoyb3lKcExO5m/IrIoRVSuwnMkLAmo7ATeYlEXr1tHJX0kUtdMovYIGY3/
+20EsCGkV3fX9v7lAop4p8S+KKL8RL5DOtN7M0uoA8tUkOu7Awlpjh3n70/CIjtAa
+dQCRxNgF38khlHFdx354m5+eEl+ttcJwp7MrAB+l3EsDteQ4G0GVutocIAWs5hPw
++dc2V/wufJ78VCLH9VtsoaqMfc/m3YknOTg9sFnbVJAqaK1uS59C3pmX5MyD+qny
+Q/C1+EetdUE=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wellness.miami.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wellness.miami.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wellness.miami.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wellness.miami.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Student Affairs Information Systems</GivenName>
+ <EmailAddress>sais@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Nelson Kerbel</GivenName>
+ <EmailAddress>nelson@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Felipe Lam</GivenName>
+ <EmailAddress>f.lam@umiami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chris Booth</GivenName>
+ <EmailAddress>cbooth@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Student Affairs Information Systems</GivenName>
+ <EmailAddress>sais@miami.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://miamitestbridge.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wellness.dev.miami.edu:1008/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fusion Test U Miami Bridge</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://welcome.miami.edu/privacy-and-legal/index.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="127" width="580" xml:lang="en">https://wellness.miami.edu/Content/Images/umiami-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18027346908442476866, expires on Thu Oct 21 22:54:00 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wellness.dev.miami.edu:1008/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wellness.dev.miami.edu:1008/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wellness.dev.miami.edu:1008/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wellness.dev.miami.edu:1008/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Student Affairs Information Systems</GivenName>
+ <EmailAddress>sais@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Nelson Kerbel</GivenName>
+ <EmailAddress>nelson@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Student Affairs Information Systems</GivenName>
+ <EmailAddress>sais@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Felipe Lam</GivenName>
+ <EmailAddress>f.lam@umiami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chris Booth</GivenName>
+ <EmailAddress>cbooth@miami.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://miamitestportal.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://wellness.dev.miami.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fusion Test U Miami Portal</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://welcome.miami.edu/privacy-and-legal/index.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="127" width="580" xml:lang="en">https://wellness.miami.edu/Content/Images/umiami-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18027346908442476866, expires on Thu Oct 21 22:54:00 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wellness.dev.miami.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wellness.dev.miami.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wellness.dev.miami.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wellness.dev.miami.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Student Affairs Information Systems</GivenName>
+ <EmailAddress>sais@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Nelson Kerbel</GivenName>
+ <EmailAddress>nelson@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Student Affairs Information Systems</GivenName>
+ <EmailAddress>sais@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chris Booth</GivenName>
+ <EmailAddress>cbooth@miami.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Felipe Lam</GivenName>
+ <EmailAddress>f.lam@umiami.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://oregonstatebridge.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shop.recsports.oregonstate.edu:1008/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fusion Oregon State U Bridge</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://shop.recsports.oregonstate.edu/Home/Terms</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="250" xml:lang="en">https://shop.recsports.oregonstate.edu/Content/Images/oregonstate-logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12773508840467365491, expires on Fri Oct 20 18:18:46 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9918523672832781341, expires on Fri Oct 20 18:18:40 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shop.recsports.oregonstate.edu:1008/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shop.recsports.oregonstate.edu:1008/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shop.recsports.oregonstate.edu:1008/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shop.recsports.oregonstate.edu:1008/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Oregon State IAM Team</GivenName>
+ <EmailAddress>IAMteam@oregonstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Oregon State IAM Team</GivenName>
+ <EmailAddress>IAMteam@oregonstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Oregon State IAM Team</GivenName>
+ <EmailAddress>IAMteam@oregonstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Oregon State IAM Team</GivenName>
+ <EmailAddress>IAMteam@oregonstate.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://oregonstatetestbridge.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shoptest.recsports.oregonstate.edu:1008/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fusion Test Oregon State U Bridge</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://shoptest.recsports.oregonstate.edu/Home/Terms</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="180" xml:lang="en">https://shoptest.recsports.oregonstate.edu/Content/Images/oregonstate-logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10556702107283615234, expires on Fri Oct 20 18:11:49 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9311993629063577821, expires on Fri Oct 20 18:11:45 2028 GMT -->
+ <ds:X509Certificate>
+MIIECTCCAnGgAwIBAgIJAIE62N5bCQDdMA0GCSqGSIb3DQEBCwUAMCExHzAdBgNV
+BAMTFnVhdC1mdXNpb24tb3JlZ29uc3RhdGUwHhcNMTgxMDIzMTgxMTQ1WhcNMjgx
+MDIwMTgxMTQ1WjAhMR8wHQYDVQQDExZ1YXQtZnVzaW9uLW9yZWdvbnN0YXRlMIIB
+ojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAtu1lzGMrVTlBnwJRjRNlL6lh
+BK5JX0VuDvyEI30UpK9+iwEaJQMjYrbC0q0NaTEL/SQn1NCRrjbW0N4YtG9tGt6X
+9KZqrRPB1vQkHaEC88sypDXRqb4fJD4TgjWy6ycziQ8tt4sB/Ugc/x+7xaXLPsBY
+fDHqouEy/YQAZxtE+jugxvyWsR1lTezA8mVCEsl0JcG4LizBTkU4q9Gr4wE1fZqm
+GPKBxuohKZFEfxfgf2Mmej9kcwRs9qNVzvanK5M93H/mM8+WWtBlXj6TDv45k0hp
+tf2eLXlek31h9CLUC0MhPITIsFpmR8u2Afhe5xS7YhrkoivlLPI0lxPt8gpFu55q
+Ptfbw9FOBdoK4YZGc8rEGm4o8BkXnuzQhRdDrhEmBWrQ4us14b2Faw/wpsMo3P1S
+IwKOPwtSViL7ozYC6fYO+6uKg2nFNM3YO2vjPAhUmPFmupUBh7tnA3oP8JPvXjyA
+QkweBqrW7hUxuxbtHGNUxpb+FR+GM/pI4tKVFJrJAgMBAAGjRDBCMCEGA1UdEQQa
+MBiCFnVhdC1mdXNpb24tb3JlZ29uc3RhdGUwHQYDVR0OBBYEFJaS+aU/pdI7pJPY
+YeZweSCk9Q/vMA0GCSqGSIb3DQEBCwUAA4IBgQCOOQv4K66GKnM7lYJ4YkXqwMyw
+CSNiH76HbuUpH8Fe/igUyLUp2UzR3hW0raWkgFPGYys2AeBGYbRGST296qlKjfW1
+1AqAo2XvZZ0jb7Yc7zE10xnryM6cUoVEW8F7FHoQzoXRuwOAQmiQdPea65fbO1YL
+hi15YDl9wqqV2jNmKT4zegbY61Rscaym3vSpDonLJLj1O+5hly4j5IBgXj3jErdR
+7DADHAevHG47P70yrTOlMsA78v6WyPZTONxgWDIRsR2UNWO1xEYq6brQpLLQeg2S
+ZtH1j6E33+8N657jTgG8dncZYv79cUwJGWAbxaLqaILxv18zwm0eWF+NlNMPu4d0
+zVk3c+q4mtG7e5d6TmfY9tIoyGSDFU/L9nIt1r2lII/svT1siSOCaYydU1F17d4k
+hUsdH87ln6wDeEu6u73opyiG6ybc8y1OQxg7uUrUnTd+B5AJ0gBGJ1BOi30uvZhd
+eFuIrejQLpH6y3kq8+ZiaKydZuT7JZTePavgXoE=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shoptest.recsports.oregonstate.edu:1008/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shoptest.recsports.oregonstate.edu:1008/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shoptest.recsports.oregonstate.edu:1008/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shoptest.recsports.oregonstate.edu:1008/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Oregon State IAM Team</GivenName>
+ <EmailAddress>IAMteam@oregonstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Oregon State IAM Team</GivenName>
+ <EmailAddress>IAMteam@oregonstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Oregon State IAM Team</GivenName>
+ <EmailAddress>IAMteam@oregonstate.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://oregonstatetest.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shoptest.recsports.oregonstate.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fusion Test Oregon State U Portal</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://shoptest.recsports.oregonstate.edu/Home/Terms</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="180" xml:lang="en">https://shoptest.recsports.oregonstate.edu/Content/Images/oregonstate-logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10556702107283615234, expires on Fri Oct 20 18:11:49 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9311993629063577821, expires on Fri Oct 20 18:11:45 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shoptest.recsports.oregonstate.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shoptest.recsports.oregonstate.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shoptest.recsports.oregonstate.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shoptest.recsports.oregonstate.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Oregon State IAM Team</GivenName>
+ <EmailAddress>IAMteam@oregonstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Oregon State IAM Team</GivenName>
+ <EmailAddress>IAMteam@oregonstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Oregon State IAM Team</GivenName>
+ <EmailAddress>IAMteam@oregonstate.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://psutestbridge.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://testpennstatecampusrec.org:1008/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fusion Test Penn State Bridge</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policy.psu.edu/policies/ad53</mdui:PrivacyStatementURL>
+ <mdui:Logo height="82" width="250" xml:lang="en">https://pennstatecampusrec.org/Content/Images/pennstate-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14044666102071176529, expires on Thu Jul 1 17:28:40 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testpennstatecampusrec.org:1008/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://testpennstatecampusrec.org:1008/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://testpennstatecampusrec.org:1008/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testpennstatecampusrec.org:1008/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://testpennstatecampusrec.org:1008/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://testpennstatecampusrec.org:1008/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://testpennstatecampusrec.org:1008/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Fusion Test Penn State Bridge</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>ITS Service Desk</GivenName>
+ <EmailAddress>itservicedesk@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Team</GivenName>
+ <EmailAddress>security@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>ITS Service Desk</GivenName>
+ <EmailAddress>itservicedesk@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity and Access Management Team</GivenName>
+ <EmailAddress>security@psu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://psutestmp1.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://testpennstatecampusrec.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fusion Test Penn State Portal</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policy.psu.edu/policies/ad53</mdui:PrivacyStatementURL>
+ <mdui:Logo height="82" width="250" xml:lang="en">https://pennstatecampusrec.org/Content/Images/pennstate-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14044666102071176529, expires on Thu Jul 1 17:28:40 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testpennstatecampusrec.org/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://testpennstatecampusrec.org/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://testpennstatecampusrec.org/Shibboleth.sso/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testpennstatecampusrec.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://testpennstatecampusrec.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://testpennstatecampusrec.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://testpennstatecampusrec.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Fusion Test Penn State Portal</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>ITS Service Desk</GivenName>
+ <EmailAddress>itservicedesk@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Team</GivenName>
+ <EmailAddress>security@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>ITS Service Desk</GivenName>
+ <EmailAddress>itservicedesk@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity and Access Management Team</GivenName>
+ <EmailAddress>security@psu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://psutestmp2.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://testpennstatecampusrec.org:8443/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fusion Test Penn State Portal</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policy.psu.edu/policies/ad53</mdui:PrivacyStatementURL>
+ <mdui:Logo height="82" width="250" xml:lang="en">https://pennstatecampusrec.org/Content/Images/pennstate-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14044666102071176529, expires on Thu Jul 1 17:28:40 2027 GMT -->
+ <ds:X509Certificate>
+MIID9DCCAlygAwIBAgIJAMLorWhy7C1RMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV
+BAMTD3dpbi1pdTZjczczdXZqZzAeFw0xNzA3MDMxNzI4NDBaFw0yNzA3MDExNzI4
+NDBaMBoxGDAWBgNVBAMTD3dpbi1pdTZjczczdXZqZzCCAaIwDQYJKoZIhvcNAQEB
+BQADggGPADCCAYoCggGBAJT4gkMwUcX0FPAaz5Z/98pNA5Ks7b2+IvPlDUsTVl+r
+JVaV4gnTnqiqk8w3fui0+w+cWtinhMoM77taGIN8KZlfeXS/DYq36gHeYpH3NLyj
+MP5wKj6oeBnzXS+maeCfcPvfMhCchGErlZdtydyVLbhVTEXN1SkaJp+htAMM3wS5
+EJQhpgD2MaLO3hAM2CYaQQ0zUdOPbuprj9ClLYQPCNJHQaJ4gNZIRjBkC07moMLH
+a71Z+qYtNzlGo2G5a4tf4091n9UrFDkkUfBMlxRqOFLvloWzbeyjg5rJofgr3YMs
+fmfoxXuIddlvjBhYxhLbl/xaEwXSHoJazso59ofO30qQdCOQH7tDpanQk7mBXRC/
+xM105XlxYvTbqcLBCCM9b5QewqqzKe0q+ZknVlW2P8utrA3q6p1od3MdQLNvLhe6
+aBiZG/vPBSbsLZHzxvsueFAi29MeJbP5gjFojtYyLgsLhxUyJENTtga/4pliO613
+4mMxKKYi2wvIADazQhB7tQIDAQABoz0wOzAaBgNVHREEEzARgg93aW4taXU2Y3M3
+M3V2amcwHQYDVR0OBBYEFAe+fIB5L2bVW2GVhGKmhlfvzHqKMA0GCSqGSIb3DQEB
+CwUAA4IBgQAVpzY0c1fvqmCp3vjxyUgmEL2/9Bu9c6jQ5ZxZv4H/VmHHAAxhCZo2
+/NNkF7MZRJjGpVg2QskBb+LJkMsGqyz4IPNKGFh/87F2n0CMAQ/0DOhVhsHTX2Bz
+nv6/4e3+qiTSdUVzCjWND/5aEYcSV1wtyqz50oCekLDkYDeQhlPER1eIGlf/57xy
+DhgVxo/NhtCYwi51DVEF7AvwHBlDJEz3FN7WumySFumP7x/7s/YPlyWHvR0zC+bp
+KAlEvqly/gD4d7mbDPJAxZ33Ucx/QSc6v9ruhPmtRjz3Cuf9RVfbCRIiGlgzHSbR
+1E5UdeLEICH5fijpDbpfxLh/LD4PR0A+C7fP0DYTYfTa34AIt9CbTpbeRNRL8tKN
+33vlV1liKxOZ8fMjSuiOVVH59rnGtGb7WsG3Hwcs25/IVJKuhLym6a7tLfQvJE7J
+9c1rBIeU1WtCjJHQSxhm0bku59xqfavdWb3FfweFJOOM/tQZV5dboh9j+lSyx61m
+6YUO1jizKYw=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://testpennstatecampusrec.org:8443/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testpennstatecampusrec.org:8443/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://testpennstatecampusrec.org:8443/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testpennstatecampusrec.org:8443/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://testpennstatecampusrec.org:8443/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://testpennstatecampusrec.org:8443/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://testpennstatecampusrec.org:8443/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Fusion Test Penn State Portal</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>ITS Service Desk</GivenName>
+ <EmailAddress>itservicedesk@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Team</GivenName>
+ <EmailAddress>security@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>ITS Service Desk</GivenName>
+ <EmailAddress>itservicedesk@psu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity and Access Management Team</GivenName>
+ <EmailAddress>security@psu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://stanfordbridge.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://recwell.stanford.edu:1008/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fusion Prod Stanford Bridge</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stanford.edu/site/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="60" xml:lang="en">https://login.stanford.edu/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14003149074749360584, expires on Fri May 12 22:38:18 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://recwell.stanford.edu:1008/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://recwell.stanford.edu:1008/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://recwell.stanford.edu:1008/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://recwell.stanford.edu:1008/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Toai Vo</GivenName>
+ <EmailAddress>toaivo@stanford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Toai Vo</GivenName>
+ <EmailAddress>toaivo@stanford.ed</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Toai Vo</GivenName>
+ <EmailAddress>toaivo@stanford.ed</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Toai Vo</GivenName>
+ <EmailAddress>toaivo@stanford.ed</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://stanford.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://recwell.stanford.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stanford University Recreation &amp; Wellness</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stanford.edu/site/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="60" xml:lang="en">https://login.stanford.edu/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14003149074749360584, expires on Fri May 12 22:38:18 2028 GMT -->
+ <ds:X509Certificate>
+MIIEAzCCAmugAwIBAgIJAMJVLeRBRonIMA0GCSqGSIb3DQEBCwUAMB8xHTAbBgNV
+BAMTFHByb2QtZnVzaW9uLXN0YW5mb3JkMB4XDTE4MDUxNTIyMzgxOFoXDTI4MDUx
+MjIyMzgxOFowHzEdMBsGA1UEAxMUcHJvZC1mdXNpb24tc3RhbmZvcmQwggGiMA0G
+CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDMkuq2y9RVReEEbsyP2IWIiT2to3Kk
+IWVGo2/V0YqqplPzrgzt1NBsm+3mFSxBNj/C/6smbu9uyYc4OUemDN50Ud7Mb3qg
+qzxPYVVD25T629c40CYKGCgV/oazu+HV4EwB7PHx7p6/aiFIVA0T1LQu0hzuCwz1
+F1D7REplLnu5D+aEHLuha/bMVvrSqojfZPbpNg+D865yFi4UDLlNbMzQ0gmBsuSd
+u2Up/3EOAWmNZCNGTiUT9kEngYgxR7qJI0jwqS0T6ZmdO3Nbw7vlE5WRdDouJ2aU
+UDu8lp0IQafZRQJCdWpliaVmcNnJne8vXjAwtmWTZs+AT6R0EyVGEYzHyj0/Lbrj
+BFaUpUvs8jYoPALK9FFcfrSSZC8GZ3Gd4V1jjsL+lyrmYVmRlY/IxYgZe7A9XMR4
+k7k2VaxJ06NsoAm9i/6yXTxEY+mLJkqwr3Eua38E1PYVOiVMpsDvRcUvOLOBmM1r
+iYprjrBlViOxKMgxBM3VHVq3/CtAoFddw4cCAwEAAaNCMEAwHwYDVR0RBBgwFoIU
+cHJvZC1mdXNpb24tc3RhbmZvcmQwHQYDVR0OBBYEFGl1qAjqDBF/2biLZOFuLq7j
+9t6WMA0GCSqGSIb3DQEBCwUAA4IBgQAnryKsyBh7uUOBQEjqB/O0+PHgolaX4w8J
+TwEKY8TY/fmZjLwEKOpByl0H3qpm2B2mVyb1ls8PmMoMb3kQMOu+y1TxtWMZU10N
+M3+hVqrXvWPLo653jquIv6nYfTfTT8+lwbAiGKArBrjQvw/mnpNMV7uIu1kmqRKj
+RDfAB/h9CrXl21ssNhYvEClVpI2sCE/7buB9XFp4yFLbZpIeU+JC8tUFQCW9UN2l
+UXCRbfhz1YfveKEySpnYoC2fBEydXGOqf2z7rVJMWSPhznU3XuXS1MoxU3SKb6zq
+YOet+zeK8JOFrZZkD7mdzAQufUoOu+y2v/tPTPBQhSXZjUfAtoKFSFejoTuHOhCg
+NoUMaW0wH0b6M53oaZ63Ni8NBX8UduGkZPwXlIZ5eylZYNqZEVxNw9tZsUHgD8So
+954+Af9M4pVM/OWrFrl9y8jP9afg9a5jrWFMZro1Gg3SKiWXLVuFyaKVqaXyKOue
+rQ8mzEJPs5hVu+QwrwIYdF9tSXzXd0k=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://recwell.stanford.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://recwell.stanford.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://recwell.stanford.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://recwell.stanford.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Toai Vo</GivenName>
+ <EmailAddress>toaivo@stanford.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Toai Vo</GivenName>
+ <EmailAddress>toaivo@stanford.ed</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Toai Vo</GivenName>
+ <EmailAddress>toaivo@stanford.ed</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Toai Vo</GivenName>
+ <EmailAddress>toaivo@stanford.ed</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uncgprodmp2.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rec-well.uncg.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UNC Greensboro Department of Recreation &amp; Wellness</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policy.uncg.edu/university-policies/data/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="233" width="590" xml:lang="en">https://recwell.uncg.edu/wp-content/uploads/AbbrevRWHColor.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15456767038194132929, expires on Sat Jun 24 16:04:14 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rec-well.uncg.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rec-well.uncg.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rec-well.uncg.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rec-well.uncg.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeff Williams</GivenName>
+ <EmailAddress>jfwillia@uncg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mike Rollins</GivenName>
+ <EmailAddress>jmrollin@uncg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tim Pilson</GivenName>
+ <EmailAddress>tdpilson@uncg.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uncgreensboro.innosoftfusion.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fusion.uncg.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fusion Prod UNCGreensboro Bridge</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policy.uncg.edu/university-policies/data/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="233" width="590" xml:lang="en">https://recwell.uncg.edu/wp-content/uploads/AbbrevRWHColor.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15456767038194132929, expires on Sat Jun 24 16:04:14 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fusion.uncg.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fusion.uncg.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fusion.uncg.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fusion.uncg.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Fusion Prod UNCGreensboro Bridge</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InnoSoft Canada Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InnoSoft Canada Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://innosoft.ca/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mike Rollins</GivenName>
+ <EmailAddress>jmrollin@uncg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeff Williams</GivenName>
+ <EmailAddress>jfwillia@uncg.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tim Pilson</GivenName>
+ <EmailAddress>tdpilson@uncg.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Lawrence Livermore National Security, LLC -->
+<EntityDescriptor entityID="https://eams-pf.llnl.gov">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">LLNL EAMS Hub SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Lawrence Livermore National Laboratory Enterprise Access Management System Hub Service Provider</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://partnergateway.llnl.gov/pg</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.llnl.gov/disclaimer</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="150" xml:lang="en">https://eams.llnl.gov/pg-hub/img/logos/llnl.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 359991780545571521044389, expires on Sat Dec 2 21:10:43 2017 GMT -->
+ <ds:X509Certificate>
+MIIHmzCCBoOgAwIBAgIKTDsxiwAAAAAfpTANBgkqhkiG9w0BAQUFADCBtDELMAkGA1UEBhMCVVMx
+EzARBgoJkiaJk/IsZAEZFgNnb3YxFDASBgoJkiaJk/IsZAEZFgRsbG5sMRMwEQYDVQQIEwpDYWxp
+Zm9ybmlhMRIwEAYDVQQHEwlMaXZlcm1vcmUxLzAtBgNVBAoTJkxhd3JlbmNlIExpdmVybW9yZSBO
+YXRpb25hbCBMYWJvcmF0b3J5MSAwHgYDVQQDExdMTE5MLUFELUVudGVycHJpc2UtQ0EwODAeFw0x
+NTEyMDMyMTEwNDNaFw0xNzEyMDIyMTEwNDNaMIGSMQswCQYDVQQGEwJVUzETMBEGA1UECBMKQ2Fs
+aWZvcm5pYTESMBAGA1UEBxMJTGl2ZXJtb3JlMS8wLQYDVQQKEyZMYXdyZW5jZSBMaXZlcm1vcmUg
+TmF0aW9uYWwgTGFib3JhdG9yeTEOMAwGA1UECxMFTGl2SVQxGTAXBgNVBAMTEGVhbXMtcGYubGxu
+bC5nb3YwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDGMIWUKiaJsogODfODzXxsmmrE
+/wzNaQrfWcmUUYIwM7lQXuycxRefVOzJFNyOjS/2EyXsFPvul7JOttTZwCUQK5OAi6o/q1FKQCac
+X+d+UVBT4s5hCgVpg/k4Vt7ZY1QVDp1Pgoi28pNc4+4DF95BRMeGJ8yloh03fb0H4mR85YfndrhC
+YiIbJFAjYrsTxFTr9t9b3tX9fv0TchvK5n0AX32ux0scmF2LuzHgNfKQx83iHxo98Ghin8Iq4m82
+KAwcn4vof1zMigqZj5VAYM5IStt62RALejcQjamoOQgaAmFsPh1QJJSHb2SBExoPk7mwIR3jgmTG
+MFcflMlfd9STAgMBAAGjggPNMIIDyTAdBgNVHQ4EFgQUtQcn7FhScfznsOmQuSZ4P5Re7u8wHwYD
+VR0jBBgwFoAUH/p8r7XTIX2lBxv3a44vcZ5/6yYwggFkBgNVHR8EggFbMIIBVzCCAVOgggFPoIIB
+S4Y1aHR0cDovL2FkcGtpY2VydC5sbG5sLmdvdi9MTE5MLUFELUVudGVycHJpc2UtQ0EwOC5jcmyG
+gclsZGFwOi8vL0NOPUxMTkwtQUQtRW50ZXJwcmlzZS1DQTA4LENOPUFEUEtJMDgsQ049Q0RQLENO
+PVB1YmxpYyUyMEtleSUyMFNlcnZpY2VzLENOPVNlcnZpY2VzLENOPUNvbmZpZ3VyYXRpb24sREM9
+ZW1wdHktcm9vdCxEQz1sbG5sLERDPWdvdj9jZXJ0aWZpY2F0ZVJldm9jYXRpb25MaXN0P2Jhc2U/
+b2JqZWN0Q2xhc3M9Y1JMRGlzdHJpYnV0aW9uUG9pbnSGRmh0dHA6Ly9hZHBraTA4LnRoZS1sYWIu
+bGxubC5nb3YvQ2VydEVucm9sbC9MTE5MLUFELUVudGVycHJpc2UtQ0EwOC5jcmwwggGfBggrBgEF
+BQcBAQSCAZEwggGNMFoGCCsGAQUFBzAChk5odHRwOi8vYWRwa2ljZXJ0LmxsbmwuZ292L0FEUEtJ
+MDgudGhlLWxhYi5sbG5sLmdvdl9MTE5MLUFELUVudGVycHJpc2UtQ0EwOC5jcnQwgcEGCCsGAQUF
+BzAChoG0bGRhcDovLy9DTj1MTE5MLUFELUVudGVycHJpc2UtQ0EwOCxDTj1BSUEsQ049UHVibGlj
+JTIwS2V5JTIwU2VydmljZXMsQ049U2VydmljZXMsQ049Q29uZmlndXJhdGlvbixEQz1lbXB0eS1y
+b290LERDPWxsbmwsREM9Z292P2NBQ2VydGlmaWNhdGU/YmFzZT9vYmplY3RDbGFzcz1jZXJ0aWZp
+Y2F0aW9uQXV0aG9yaXR5MGsGCCsGAQUFBzAChl9odHRwOi8vYWRwa2kwOC50aGUtbGFiLmxsbmwu
+Z292L0NlcnRFbnJvbGwvQURQS0kwOC50aGUtbGFiLmxsbmwuZ292X0xMTkwtQUQtRW50ZXJwcmlz
+ZS1DQTA4LmNydDALBgNVHQ8EBAMCBaAwPQYJKwYBBAGCNxUHBDAwLgYmKwYBBAGCNxUIhcbwY4aG
+o3CC9Z0zl/BBhND0cIEbgvDpaYG5gU4CAWUCAQAwEwYDVR0lBAwwCgYIKwYBBQUHAwEwGwYJKwYB
+BAGCNxUKBA4wDDAKBggrBgEFBQcDATANBgkqhkiG9w0BAQUFAAOCAQEAOj52N9q5ORYxxDFkKpfy
+EcVxhInI0tQJ+yQOY8Di0EuQkjmFnE5W+47O9dXzdWvkW1w9e0xWwPY/xTTPQXQHy1oE/aNMVeJY
+bBShpiWZ7wyRWM3aAvCobdW33n3Gh98O2j3h77a+RHanIKwYlP2l+fgrMdAWppzbOq7ERHRjqW8d
+qmqhm1KxupnsL0QeTdyjCVrWwIu66Lbomc88okelim6vfZpAa4h39876fUPmkr/3pqEqo7hN7QEo
+090A2X89pLHeDQoRcPPiEt8jvKYEeRTnmIJejCcnowCggtWwl70vCurA53CpGJ+Tb25Juazgf77F
+JQMLE6gnNDWHlL1Fuw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1512278218563, expires on Wed Dec 2 05:16:58 2020 GMT -->
+ <ds:X509Certificate>
+MIIFpDCCA4ygAwIBAgIGAWAazldDMA0GCSqGSIb3DQEBDQUAMIGSMQswCQYDVQQGEwJVUzETMBEG
+A1UECBMKQ2FsaWZvcm5pYTESMBAGA1UEBxMJTGl2ZXJtb3JlMQ4wDAYDVQQKEwVMaXZJVDEvMC0G
+A1UECxMmTGF3cmVuY2UgTGl2ZXJtb3JlIE5hdGlvbmFsIExhYm9yYXRvcnkxGTAXBgNVBAMTEGVh
+bXMtcGYubGxubC5nb3YwHhcNMTcxMjAzMDUxNjU4WhcNMjAxMjAyMDUxNjU4WjCBkjELMAkGA1UE
+BhMCVVMxEzARBgNVBAgTCkNhbGlmb3JuaWExEjAQBgNVBAcTCUxpdmVybW9yZTEOMAwGA1UEChMF
+TGl2SVQxLzAtBgNVBAsTJkxhd3JlbmNlIExpdmVybW9yZSBOYXRpb25hbCBMYWJvcmF0b3J5MRkw
+FwYDVQQDExBlYW1zLXBmLmxsbmwuZ292MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA
+jGZZTzROIrLx6VoSnbYCuQkBGtA6DofEMBfYaMhqAdzOW/lBoPBsMvyELw6W6Hmklozz6XhwQ0PD
+5n2T8NK0X+BlheCiDOvxxqeizIKX/seTe7YfLiRZj/2RzOMxKRtkj4LKFTTYfn7rlDPEOeBwwWbL
+ho3Bd8IriEdJiGI4GfR9jLDQ812Vsd0+hxpn1+C5YyytRAAVVEcOMCdQnTS26p20qh6Ej4C3UcS3
+uSMzFA/sZm0lY1Db9pKSAHxd7KSLM8il5WziYlAEhRGojxDILU4LoxjCSRxviaFW581HPnBa0NZ3
+Ss5Qr+HDC8Yv6jc45v6IhWpZbPXa+QlCJdG3/HxM+iYiDOqafuD29zOJxWlAYsJ6nlmCijE2+rbl
+Ba5Um5vp8Dz5crrvfzW1L2WsG5V2fSNPAL3CCXbwvMqumg98576dKBgQ5PE4onMHX4VDq4SH7x+t
+RQgwur1bvCXIFm8Gk3Iow2JABsg1AlG8UTNrJ6jto78xRCC0GUgZODuAX+Cq4DF/tmfnY1StqVTN
+wdHmdnBQC1B8rVuZYBQ2Zio5E6R8vytHTUuK6c5mn6muIWIGSFOg/x81XwD1w4+V6zK6mfmC6zLX
+lLfMyTk6VG4I7AI0ZgCnhWUWakDgHmQTBcg5MDrlpcXCqQZQb7SnlvCGRP01FFZFksUoamOaPhkC
+AwEAATANBgkqhkiG9w0BAQ0FAAOCAgEAKaAFeuCxmUJUNRe+0b0kTYqwIlOOkOgaLknWPIWoRQNG
+E+UAgopuV5jXcUy85ByFQsw8otVxKe/AnzjdPBy5a6+ddOP4uO/QKYLNSIQT5jtD/2pDxjX5Uz42
+UAmY88sx3n46gNvXOAQZsU5owOcUfd+kuUJzGsSiBEc8FfzVkr4qCqZY+acX6Bzeuzqxu6fV4OW9
+l3ku7WC0KQiBySSyZF4eKbWhFSi4FOInbpsOpAwRIfZB8g4G88ENTbgS++FCR5lBabrhwFxcE2s3
+AzU+8uswq0ivobWfTMT+CB65mt3mTUaPA1jP/IHpKftd/o804UIv6e+u/d+vCZAnJbKrDwJKYBjr
+A9grbLWZL7Zsnt0Y5H80EicVXdMA2WDf1n3s1FvFpeRRGFGa+aMgKpLv0bdrT2cZt6DOTozyD6x9
+3ViqdJCxNZZahb3mkDV7kL53xIJdjH+TQ2k5hV2jbaxtC5OhvqXlkcl48/KGmXv8M4NkUTLQTHBu
+w3vBuWi4Y7YfkeN3uLOsriz9vbg6eC8pLS6x1trkLcNVU0kW2ZwNeUH2NuRkSSSjExELzqAgXjKw
+iEzEIbx5JTrJYaiezVKDXv0O48SE51X+DKdFK1Tm3iZ3CRICooiN+/knNtiCrPUhd8/tHdUVFPqt
+1SriL4ZZL/N/wjuUhaJFaIyCwYNA3R4=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eams-pf.llnl.gov/sp/SLO.saml2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eams-pf.llnl.gov/sp/ACS.saml2" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">LLNL EAMS Hub SP</ServiceName>
+ <ServiceDescription xml:lang="en">Lawrence Livermore National Laboratory Enterprise Access Management System Hub Service Provider</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lawrence Livermore National Security, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lawrence Livermore National Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://llnl.gov</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Partner Gateway Support</GivenName>
+ <EmailAddress>pg-support@llnl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>LLNL PartnerGateway Administrator</GivenName>
+ <EmailAddress>pg-support@llnl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LLNL PartnerGateway Adminstrator</GivenName>
+ <EmailAddress>pg-support@llnl.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://eidp.llnl.gov">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">llnl.gov</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Lawrence Livermore National Laboratory</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Lawrence Livermore National Laboratory Identity Provider for individuals with LLNL issued credentials</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://partnergateway.llnl.gov/pg</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.llnl.gov/disclaimer</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="150" xml:lang="en">https://eams.llnl.gov/pg-hub/img/logos/llnl.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1510010343955, expires on Thu Nov 5 23:19:03 2020 GMT -->
+ <ds:X509Certificate>
+MIIFnjCCA4agAwIBAgIGAV+ToVITMA0GCSqGSIb3DQEBDQUAMIGPMQswCQYDVQQGEwJVUzETMBEG
+A1UECBMKQ2FsaWZvcm5pYTESMBAGA1UEBxMJTGl2ZXJtb3JlMS8wLQYDVQQKEyZMYXdyZW5jZSBM
+aXZlcm1vcmUgTmF0aW9uYWwgTGFib3JhdG9yeTEOMAwGA1UECxMFTGl2SVQxFjAUBgNVBAMTDWVp
+ZHAubGxubC5nb3YwHhcNMTcxMTA2MjMxOTAzWhcNMjAxMTA1MjMxOTAzWjCBjzELMAkGA1UEBhMC
+VVMxEzARBgNVBAgTCkNhbGlmb3JuaWExEjAQBgNVBAcTCUxpdmVybW9yZTEvMC0GA1UEChMmTGF3
+cmVuY2UgTGl2ZXJtb3JlIE5hdGlvbmFsIExhYm9yYXRvcnkxDjAMBgNVBAsTBUxpdklUMRYwFAYD
+VQQDEw1laWRwLmxsbmwuZ292MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEAivQOiiZL
+Bc9orCJ4UTIbBuwBfHk+zn0xH3coQmHW1TpXJLmNXEeCuEHBhppZAfQJWOEoEu+QVsLf7DHWKoOY
+6v1HqK9G5Sd6I0lnvO8SIRGkgows7kY9W7HVZFgIYTJNQRpIjwMju+FA5XKXI3alDZlsKEEAsspC
+DbXdxeSZsaEiZ1jgfjd4k8Xz8v+5OnxtBXovXG/KhLPMu5utrNWSC6zlXtK1LHQ5wgTikUIgG6dl
+j1sp5wViDfIyr64r7HmdLJQEnTzSvg133SESUr3v+dImWf3r0K13eJ36zE5+hUb8G/hMg7KiYu11
+zzTPpAJ/+zFzbGX/Mw4abnYhE+uLeC0QEkfHH0KdM5UYkgYsAcmqbVTZjAJVcz8rYBaFKY+qwt2/
+9SrRZXWhYr1mrknlE5AxBK+ErGP1sJawHYLZv/VDob+SJxt9VH89bzO52jAs2WnSSbldx9XbO6yq
+kOUvIprlLWSexse5rv1gXhVOYOJmJ5hSYuGp//JAtqiOH4Wi8PHiGyyrM9jUwg17Gade2yZUF9JX
+iOCy2Mu0/D+DWwpocIte07QD/5+HG/TrSpFopUXnyFBa5ucstiVeX9wdin6N8FM43/kcrxS3PYnk
+tdOmQCG0K5oUMtPGp4aVllxUpCOuy1TF8qbPpwUlFk1UL1yWyuSY2GKLgJJt0PjOSJkCAwEAATAN
+BgkqhkiG9w0BAQ0FAAOCAgEAMsiIy7WLGeFbLsItBF8M/05WEEdoaEKXrN6ymfiMFMLweF9nXQnC
+eSnfKhRJxfoYqK+JU0bCLXnADAtzMAJXy7Kg0DzNFhZnmjDm6VDJIJ5pswGaC+pbjZnv09q9FYJ1
+tKHqbwSM9Kp7uKORhY88ZGcNUG+jjhQ/CUcExDW7PpTOKSQiRz5VwvGqQfbDptkWGTYIFEkBL0VQ
+Iw2aFnzU9buggK/Nku4RxCp3s/3ePuVrK3ISpBpmNCmqW8MBDMtQThcjl5FN8DpphvtL+xMXdjY+
+m8pGtwqy8m5uiPRbcsjecs5XzXfi2MW6VKKPU7bcn5fJOj+PyEvxlF80vTBT4eM+75Ot5s8XrVGm
+OA6p1Wy08TzXUgG5dkDKYIfkI2/MlJHbV+bMLavRprz/tCXZ3/vlTobKvbPHbPk6rmOsQJfbnzFt
+7eA5CyFXYbS9n3d1vjEwjiaUBBrSFnOCimYHBSQnts1lV6lZTqHQb0ho4z7Jfa+ZRrUjnzlxJ2q4
+11JjveBU1xB/z8TDm/fQKrW6V62hp5G//nn6H1/EPygpR8wS69zLYIjRIUd3YEksCyoO2ZMKhICa
+p2gAWcMd/gk8NTpsg2hnBkocbkllRkzBdwsmDO6Lr4JkMAhu9VmG2Kan2vAe1WV3xF1cXylM8mfP
+ktHp83/OaWn6cEu6pJqL3zI=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://eidp.llnl.gov/idp/ARS.ssaml2" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eidp.llnl.gov/idp/SLO.saml2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eidp.llnl.gov/idp/SLO.saml2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://eidp.llnl.gov/idp/SSO.saml2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eidp.llnl.gov/idp/SSO.saml2"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lawrence Livermore National Security, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lawrence Livermore National Laboratory</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://llnl.gov</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Partner Gateway Support</GivenName>
+ <EmailAddress>pg-support@llnl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>LLNL IdP Administrator</GivenName>
+ <EmailAddress>ping-admins@llnl.gov</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>LLNL IdP Administrators</GivenName>
+ <EmailAddress>ping-admins@llnl.gov</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Ithaca College -->
+<EntityDescriptor entityID="https://login.ithaca.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ithaca.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ithaca College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Ithaca College Identity Provider</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ithaca.edu/it/general/policies/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="99" width="399" xml:lang="en">https://login.ithaca.edu/idp/images/sso-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 512331594981064072933540422793814259292553571637, expires on Fri Mar 6 18:40:44 2037 GMT -->
+ <ds:X509Certificate>
+MIIDKzCCAhOgAwIBAgIUWb2+Rx66dRNqzL7iWRGUHNQ7bTUwDQYJKoZIhvcNAQEL
+BQAwGzEZMBcGA1UEAwwQbG9naW4uaXRoYWNhLmVkdTAeFw0xNzAzMDYxODQwNDRa
+Fw0zNzAzMDYxODQwNDRaMBsxGTAXBgNVBAMMEGxvZ2luLml0aGFjYS5lZHUwggEi
+MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCrF3xHl0jGsQof9AVZQj9AsKbc
+9JbGqSMcX8OQ61pstijiaPvxZbtEiwgblcA0OQLZFz28l5+6ck3hk3XRmrR2GL4X
+Xls600KoUhAuPkHFs9iVIeuw/NYOTlUA7C57Ow3NzzfBopOTApNS2kcvyerPV+lM
+oSXmRXN+QtC9LnbsuBcOtHxOmtEOloTD2aWCsdMFbsrHSH8HFrhcwbfCf2nJ7CbU
+DAR9j3SIhNC1HlmpeR2rf6c00FtFfNCRQlypGtrGoNm+UafcTKMHxg86kzBzH25c
+YjK47Re2vxomIv1REkXsvub26h18Bnz4JDc/b1v07Bh1RwWiFnYSkV9iEdaDAgMB
+AAGjZzBlMB0GA1UdDgQWBBQ944Nh0D8Eo1PrLO+NGTGus7iRiDBEBgNVHREEPTA7
+ghBsb2dpbi5pdGhhY2EuZWR1hidodHRwczovL2xvZ2luLml0aGFjYS5lZHUvaWRw
+L3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBADaRN6f89xlsVhH1DeRsHKWb
+w1pd2jLCJtKpjZG0CYF1li8olHvZYYZJWbEtMkX4Wpsh0iG43rv/rZRqoCMq5B5Q
+sLXLNlMF3+xmyzbBfnOy0tDISQedL2WcQz1C1DQi2mZgE9qOmJ+P1notq/SWWHvl
+2KD/rpe1o2Yawgb+DT9B2KSEXylKBUAKlOcDS6dvalBV4MWt1k9Pad22vJ2SnSnW
+iQtnhZBCMpVVH/HRwCSB+4pmDyLCJTaeyWw9csoAO+UsUcicF42yx8ovixfiCMWl
+WxUdtqYOQp3ki7f/uaiG0p+deEMTHjYkqXExrqoU+m1jNB/QyWnfhUUzolCVfR0=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.ithaca.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ithaca.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://login.ithaca.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ithaca College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ithaca College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ithaca.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Security Office</GivenName>
+ <EmailAddress>infosec@ithaca.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Administrative Support</GivenName>
+ <EmailAddress>shibbolethadmin@ithaca.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Support Team</GivenName>
+ <EmailAddress>shibbolethadmin@ithaca.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Service Desk</GivenName>
+ <EmailAddress>shibbolethadmin@ithaca.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- West Chester University of Pennsylvania -->
+<EntityDescriptor entityID="https://shibidp.wcupa.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wcupa.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">West Chester University of Pennsylvania</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://wcupa.edu/infoservices/security/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://wcupa.edu/infoservices/security/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="201" xml:lang="en">https://wcupa.edu/images/WCULogo100x201.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 672991351678309036362046539852496665879982631429, expires on Tue Oct 30 20:35:34 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibidp.wcupa.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibidp.wcupa.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">West Chester University of Pennsylvania</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">West Chester University of Pennsylvania</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://wcupa.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Rashed Kabir</GivenName>
+ <EmailAddress>rkabir@wcupa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Frank Piscitello</GivenName>
+ <EmailAddress>fpiscitello@wcupa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>abuse@wcupa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT HelpDesk</GivenName>
+ <EmailAddress>helpdesk@wcupa.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Neocase Software Inc. -->
+<EntityDescriptor entityID="https://neo529-Ipj65v.neocase-software.net">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PennStateBackoffice</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.psu.edu/legal-statements</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="456" xml:lang="en">https://www.dept.psu.edu/ids/public/psulogoforincommon-456x150.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 19856044687647502762800444221520708077, expires on Thu Aug 1 12:00:00 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://neo529-ipj65v.neocase-software.net/SSOSAML/AssertionConsumerService.aspx" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Neocase Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Neocase Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.neocasesoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Catherine Mitchell</GivenName>
+ <EmailAddress>cmitchell@neocasesoftware.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stéphane Dutertre</GivenName>
+ <EmailAddress>sdutertre@neocasesoftware.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sylvain Crouet</GivenName>
+ <EmailAddress>scrouet@neocasesoftware.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nsf529-Ipj65v.neocase-software.net">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PennStatePortal</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.psu.edu/legal-statements</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="456" xml:lang="en">https://www.dept.psu.edu/ids/public/psulogoforincommon-456x150.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 19856044687647502762800444221520708077, expires on Thu Aug 1 12:00:00 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nsf529-ipj65v.neocase-software.net/SSOSAML/AssertionConsumerService.aspx" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Neocase Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Neocase Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.neocasesoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Catherine Mitchell</GivenName>
+ <EmailAddress>cmitchell@neocasesoftware.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Stéphane Dutertre</GivenName>
+ <EmailAddress>sdutertre@neocasesoftware.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sylvain Crouet</GivenName>
+ <EmailAddress>scrouet@neocasesoftware.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://psuhr.neocaseonline.com/connexion_neocase">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Penn State Production Back office</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.psu.edu/legal-statements</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="456" xml:lang="en">https://www.dept.psu.edu/ids/public/psulogoforincommon-456x150.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10809056657183236711, expires on Tue Jan 27 01:03:56 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://psuhr.neocaseonline.com/connexion_neocase/SAML/AssertionConsumerService.aspx" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Neocase Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Neocase Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.neocasesoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Stéphane Dutertre</GivenName>
+ <EmailAddress>sdutertre@neocasesoftware.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Catherine Mitchell</GivenName>
+ <EmailAddress>cmitchell@neocasesoftware.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sylvain CROUET</GivenName>
+ <EmailAddress>scrouet@neocasesoftware.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://psuportal.neocaseonline.com/connexion_neocase">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Penn State Production portal</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.psu.edu/legal-statements</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="456" xml:lang="en">https://www.dept.psu.edu/ids/public/psulogoforincommon-456x150.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10809056657183236711, expires on Tue Jan 27 01:03:56 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://psuportal.neocaseonline.com/connexion_neocase/SAML/AssertionConsumerService.aspx" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Neocase Software Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Neocase Software Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.neocasesoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Stéphane Dutertre</GivenName>
+ <EmailAddress>sdutertre@neocasesoftware.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Catherine Mitchell</GivenName>
+ <EmailAddress>cmitchell@neocasesoftware.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sylvain CROUET</GivenName>
+ <EmailAddress>scrouet@neocasesoftware.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Scripps College -->
+<EntityDescriptor entityID="https://webauth.scrippscollege.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://webauth.scrippscollege.edu/idp/error.jsp" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">scrippscollege.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Scripps College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity Provider service for Scripps College.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.scrippscollege.edu/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="55" width="250" xml:lang="en">https://inside.scrippscollege.edu/communication/wp-content/uploads/sites/7/scripps-college-word-mark-03.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1337410294524164059137211191093157659580346907843, expires on Tue Aug 29 00:06:22 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.scrippscollege.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.scrippscollege.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.scrippscollege.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.scrippscollege.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Scripps College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Scripps College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.scrippscollege.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jeff Sessler</GivenName>
+ <EmailAddress>jeff@scrippscollege.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeff Sessler</GivenName>
+ <EmailAddress>jeff@scrippscollege.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Jeff Sessler</GivenName>
+ <EmailAddress>jeff@scrippscollege.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jeff Sessler</GivenName>
+ <EmailAddress>jeff@scrippscollege.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Involvio -->
+<EntityDescriptor entityID="https://involvio.com/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Involvio</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Involvio is a student engagement platform</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://involvio.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://involvio.com/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="319" xml:lang="en">https://s3.amazonaws.com/involvio-production/involvio.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 246930529419271877634213494898312756946, expires on Sat May 9 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
+MIIFUTCCBDmgAwIBAgIRALnFFw9uJLuduEdMQjYSPtIwDQYJKoZIhvcNAQELBQAw
+gZAxCzAJBgNVBAYTAkdCMRswGQYDVQQIExJHcmVhdGVyIE1hbmNoZXN0ZXIxEDAO
+BgNVBAcTB1NhbGZvcmQxGjAYBgNVBAoTEUNPTU9ETyBDQSBMaW1pdGVkMTYwNAYD
+VQQDEy1DT01PRE8gUlNBIERvbWFpbiBWYWxpZGF0aW9uIFNlY3VyZSBTZXJ2ZXIg
+Q0EwHhcNMTgwMjA5MDAwMDAwWhcNMjAwNTA5MjM1OTU5WjBaMSEwHwYDVQQLExhE
+b21haW4gQ29udHJvbCBWYWxpZGF0ZWQxHDAaBgNVBAsTE0NPTU9ETyBTU0wgV2ls
+ZGNhcmQxFzAVBgNVBAMMDiouaW52b2x2aW8uY29tMIIBIjANBgkqhkiG9w0BAQEF
+AAOCAQ8AMIIBCgKCAQEAsgT4nMGHIXLETYvvqqgIma0C+A7gCqhx8U2m5/LzKGzG
+gc4GFsJ9KaNY63HP1tPYF+jdKlLPin2fDSA32PQKRuCFpNJsIB+mGvnVOGduaZjq
+962quc/ucOoMWqxSraE8VYU0VXRR+887St9uyNDFpymtfh9dlwLBnpTdMvYG06c/
+7fsHD6HGmIO6sK/4sY4gvbzzAWjnCsyI8p92PPWeSN4xEGY8kV7mMrL4/6r9ebHQ
+JEod83lPHpWCGdsciQe2p4zKlRn3d/1EunMMxtFq7EnNMEhGEd7pEnbHOoERSHce
+KpFgD8NUI5NoqIPBswSDrfqeZG2ppYBq/jJUcnbYBQIDAQABo4IB2TCCAdUwHwYD
+VR0jBBgwFoAUkK9qOpRaC9iQ6hJWc99DtDoo2ucwHQYDVR0OBBYEFADkW4W+wUZp
+ma4jeuRRQlvPMnPnMA4GA1UdDwEB/wQEAwIFoDAMBgNVHRMBAf8EAjAAMB0GA1Ud
+JQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjBPBgNVHSAESDBGMDoGCysGAQQBsjEB
+AgIHMCswKQYIKwYBBQUHAgEWHWh0dHBzOi8vc2VjdXJlLmNvbW9kby5jb20vQ1BT
+MAgGBmeBDAECATBUBgNVHR8ETTBLMEmgR6BFhkNodHRwOi8vY3JsLmNvbW9kb2Nh
+LmNvbS9DT01PRE9SU0FEb21haW5WYWxpZGF0aW9uU2VjdXJlU2VydmVyQ0EuY3Js
+MIGFBggrBgEFBQcBAQR5MHcwTwYIKwYBBQUHMAKGQ2h0dHA6Ly9jcnQuY29tb2Rv
+Y2EuY29tL0NPTU9ET1JTQURvbWFpblZhbGlkYXRpb25TZWN1cmVTZXJ2ZXJDQS5j
+cnQwJAYIKwYBBQUHMAGGGGh0dHA6Ly9vY3NwLmNvbW9kb2NhLmNvbTAnBgNVHREE
+IDAegg4qLmludm9sdmlvLmNvbYIMaW52b2x2aW8uY29tMA0GCSqGSIb3DQEBCwUA
+A4IBAQBfkE7PRyLowMj75DJlW7o5N8RX7Wa2CiyZexfxUYcCjS8KNFahac1/ARSC
+0uzQubqjH6/asS5GpcaCddDJ2YTcRV5o7nFACxhkWVqCNJRzJLYoouVjfAo1CjfQ
+ac9e3ikiEod+CW0Wmiy2/m/R1tLQQoWw5h+cGfOY01vAKjAXaopFN1Dv4gHWdiJi
+UZ8uBLA7YHZqeZd+01PikbU/q7TsVHQ1OmS8KyMJMMnfSxEpze1XKSBwVR3sLq5A
+bBPLn8/66LJlmfm15ZJdQD6SGRiECji4vJYAPEg+Yg8g3E3+DS+fgzlKctxv0LF1
+cbBAvgPn5wM0hyMnJ7lqpki3zn/B
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://us.involvio.com/saml/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://us.involvio.com/saml/acs" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Involvio</ServiceName>
+ <ServiceDescription xml:lang="en">Involvio is a student engagement platform</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Involvio</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Involvio</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://involvio.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Ari Winkleman</GivenName>
+ <EmailAddress>ari@involvio.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ari Winkleman</GivenName>
+ <EmailAddress>ari@involvio.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ari Winkleman</GivenName>
+ <EmailAddress>ari@involvio.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ari Winkleman</GivenName>
+ <EmailAddress>ari@involvio.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- InfoEd International, Inc. dba InfoEd Global -->
+<EntityDescriptor entityID="https://spin.infoedglobal.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://spin.infoedglobal.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">InfoEd SPIN</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SPINâ„¢ is an online searchable database of worldwide government-, foundation-, and industry-sponsored funding opportunities.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.infoedglobal.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://infoedglobal.com/legal/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="52" width="120" xml:lang="en">https://spin.infoedglobal.com/Content/Images/logo_infoed.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18095255515302171256, expires on Mon May 17 18:15:10 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://spin.infoedglobal.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://spin.infoedglobal.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://spin.infoedglobal.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://spin.infoedglobal.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">InfoEd SPIN</ServiceName>
+ <ServiceDescription xml:lang="en">SPINâ„¢ is an online searchable database of worldwide government-, foundation-, and industry-sponsored funding opportunities.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">InfoEd International, Inc. dba InfoEd Global</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">InfoEd International, Inc. dba InfoEd Global</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://infoedglobal.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Nick Ruisi</GivenName>
+ <EmailAddress>nruisi@infoedglobal.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Justin Maroni</GivenName>
+ <EmailAddress>jmaroni@infoedglobal.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Roger Wood</GivenName>
+ <EmailAddress>rwood@infoedglobal.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Roger Wood</GivenName>
+ <EmailAddress>rwood@infoedglobal.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Palomar Community College District -->
+<EntityDescriptor entityID="https://idmpg.palomar.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">palomar.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Palomar Community College District</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www2.palomar.edu/pages/about/privacy-policy</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www2.palomar.edu/pages/about/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="160" width="300" xml:lang="en">https://idmpg.palomar.edu/_layouts/images/pg/images/PalomarLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15370396457127614735, expires on Mon May 24 20:39:54 2027 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idmpg.palomar.edu/_layouts/PG/signout.aspx"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idmpg.palomar.edu/sso/go.ashx"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idmpg.palomar.edu/sso/go.ashx"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Palomar Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Palomar Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www2.palomar.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mike Dimmick</GivenName>
+ <EmailAddress>mdimmick@palomar.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Daniel Gunawan</GivenName>
+ <EmailAddress>dgunawan@palomar.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Daniel Gunawan</GivenName>
+ <EmailAddress>dgunawan@palomar.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Hebrew Union College - Jewish Institute of Religion -->
+<EntityDescriptor entityID="https://idp.huc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.huc.edu/idp/profile/error" protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">huc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Hebrew Union College - Jewish Institute of Religion</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Hebrew Union College - Jewish Institute of Religion</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://huc.edu/about</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://huc.edu/employees/information-systems-department/huc-jir-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="20" width="20" xml:lang="en">https://idp.huc.edu/idp/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 414122340521904729725253906221230788093580237409, expires on Mon Sep 17 15:16:23 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.huc.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.huc.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.huc.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.huc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.huc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.huc.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">huc.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 414122340521904729725253906221230788093580237409, expires on Mon Sep 17 15:16:23 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.huc.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.huc.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Hebrew Union College - Jewish Institute of Religion</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Hebrew Union College - Jewish Institute of Religion</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://huc.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>John Bruggeman</GivenName>
+ <EmailAddress>john@huc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>John Bruggeman</GivenName>
+ <EmailAddress>john@huc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Mark Jennings</GivenName>
+ <EmailAddress>mjennings@huc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark Jennings</GivenName>
+ <EmailAddress>mjennings@huc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Texas Rio Grande Valley -->
+<EntityDescriptor entityID="https://idp.utrgv.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idm.utsystem.edu/error.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utrgv.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Texas Rio Grande Valley</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Logon service for The University of Texas Rio Grande Valley</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.utsystem.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="75" xml:lang="en">https://idm.utsystem.edu/images/UTRGV_Logo_Sm.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 499593989015991500270282969154923927707092730214, expires on Mon Jul 10 21:59:16 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.utrgv.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.utrgv.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.utrgv.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.utrgv.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.utrgv.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.utrgv.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.utrgv.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.utrgv.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">utrgv.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 499593989015991500270282969154923927707092730214, expires on Mon Jul 10 21:59:16 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.utrgv.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.utrgv.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Texas Rio Grande Valley</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Texas Rio Grande Valley</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.utrgv.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Jaime Nunez</GivenName>
+ <EmailAddress>jaime.nunez@utrgv.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jaime Nunez</GivenName>
+ <EmailAddress>jaime.nunez@utrgv.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jaime Nunez</GivenName>
+ <EmailAddress>jaime.nunez@utrgv.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jaime Nunez</GivenName>
+ <EmailAddress>jaime.nunez@utrgv.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Massachusetts - Dartmouth -->
+<EntityDescriptor entityID="https://idp.umassd.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">umassd.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Massachusetts - Dartmouth</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.umassd.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.umassd.edu/registrar/ferpa-faq/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="55" width="350" xml:lang="en">https://idp.umassd.edu/idp/images/umassd.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 862344446587183614780588430566383491810836073803, expires on Sat Nov 10 16:25:30 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.umassd.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.umassd.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Massachusetts - Dartmouth</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Massachusetts - Dartmouth</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.umassd.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Craig R. Oliveira</GivenName>
+ <EmailAddress>coliveira@umassd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Pacheco</GivenName>
+ <EmailAddress>mike.p@umassd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brian Sullivan</GivenName>
+ <EmailAddress>bsullivan@umassd.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Comcast Corporation -->
+<EntityDescriptor entityID="https://fed.ccp.xcal.tv">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Xfinity On Campus Fed</mdui:DisplayName>
+ <mdui:Description xml:lang="en">New Fed Server for XoC</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://my.xfinity.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="37" width="115" xml:lang="en">https://xfinityoncampus.com/library/images/xfinity-logo-black-1x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 574526507, expires on Sat Oct 20 15:13:04 2029 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 569246729, expires on Sat Oct 20 15:19:41 2029 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fed.ccp.xcal.tv/sp/SLO.saml2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fed.ccp.xcal.tv/sp/SLO.saml2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fed.ccp.xcal.tv/sp/SLO.ssaml2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fed.ccp.xcal.tv/sp/ACS.saml2" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fed.ccp.xcal.tv/sp/ACS.saml2" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fed.ccp.xcal.tv/sp/ACS.saml2" index="3"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Xfinity On Campus Fed</ServiceName>
+ <ServiceDescription xml:lang="en">New Fed Server for XoC</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Comcast Corporation</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Comcast Corporation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.comcast.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jason Smith</GivenName>
+ <EmailAddress>Jason_G_Smith@cable.comcast.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jason Smith</GivenName>
+ <EmailAddress>Jason_G_Smith@cable.comcast.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jason Smith</GivenName>
+ <EmailAddress>Jason_G_Smith@cable.comcast.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://fed-stage.ccp.xcal.tv">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Xfinity On Campus Fed Stage</mdui:DisplayName>
+ <mdui:Description xml:lang="en">New XoC Ping Stage</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://my.xfinity.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="37" width="115" xml:lang="en">https://xfinityoncampus.com/library/images/xfinity-logo-black-1x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1457156126, expires on Thu Nov 1 16:50:00 2029 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 605173597, expires on Thu Nov 1 16:50:07 2029 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fed-stage.ccp.xcal.tv/sp/SLO.saml2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fed-stage.ccp.xcal.tv/sp/SLO.saml2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fed-stage.ccp.xcal.tv/sp/SLO.ssaml2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fed-stage.ccp.xcal.tv/sp/ACS.saml2" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fed-stage.ccp.xcal.tv/sp/ACS.saml2" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fed-stage.ccp.xcal.tv/sp/ACS.saml2" index="3"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Xfinity On Campus Fed Stage</ServiceName>
+ <ServiceDescription xml:lang="en">New XoC Ping Stage</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Comcast Corporation</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Comcast Corporation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.comcast.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jason Smith</GivenName>
+ <EmailAddress>Jason_G_Smith@cable.comcast.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jason Smith</GivenName>
+ <EmailAddress>Jason_G_Smith@cable.comcast.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jason Smith</GivenName>
+ <EmailAddress>Jason_G_Smith@cable.comcast.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://xoc.sp.comcast.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Xfinity On Campus</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Xfinity On Campus Service Provider to allow access to Xfinity TV services.</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://my.xfinity.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="37" width="115" xml:lang="en">https://xfinityoncampus.com/library/images/xfinity-logo-black-1x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1320194571, expires on Fri May 8 19:55:55 2026 GMT -->
+ <ds:X509Certificate>
+MIIDuzCCAqOgAwIBAgIETrCSCzANBgkqhkiG9w0BAQsFADCBjTELMAkGA1UEBhMC
+VVMxFTATBgNVBAgTDFBlbm5zeWx2YW5pYTEVMBMGA1UEBxMMUGhpbGFkZWxwaGlh
+MTQwMgYDVQQKEytDb21jYXN0IENhYmxlIENvbW11bmljYXRpb25zIE1hbmFnZW1l
+bnQgTExDMRowGAYDVQQDExF4b2NzcC5jY3AueGNhbC50djAeFw0xNjA2MjkxOTU1
+NTVaFw0yNjA1MDgxOTU1NTVaMIGNMQswCQYDVQQGEwJVUzEVMBMGA1UECBMMUGVu
+bnN5bHZhbmlhMRUwEwYDVQQHEwxQaGlsYWRlbHBoaWExNDAyBgNVBAoTK0NvbWNh
+c3QgQ2FibGUgQ29tbXVuaWNhdGlvbnMgTWFuYWdlbWVudCBMTEMxGjAYBgNVBAMT
+EXhvY3NwLmNjcC54Y2FsLnR2MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKC
+AQEAukKAdEzlZDpsa5FxWvMpFPvf9nM0oQXO4RWQCsh4dKDMwPtuw8OUHLBEqnmt
+fyvkxZG7D53YDabE+eU8Aar8+/Vqci+iN7BYr7kokcEzm0g10yKL8T5beXbvcj/C
+l6DrX0NU8i/sL7eJxLBQaY51MQCO06yGdVs9dUUhRh+K9B++9/ge6BSs/r94rKOx
+JmdBqgldlRs3OG+G4VFqfRis9xZpzsusGjXZI0M9NAubovW3iOau2Z+Iced6vaAK
+5QDfWzJCESqCD5x1bll5PIJjUNMhGbX9SZJfRTzsc14p+U2Vx0rSOHAD4JwVOIf7
+SmX691Pkm3y/1DGpOuF6MhKR2QIDAQABoyEwHzAdBgNVHQ4EFgQU0zP/KHU18j+A
+HEZwi5tVdVJXNhswDQYJKoZIhvcNAQELBQADggEBACff/jgL/6XdrGVelwWdiHEQ
+fDU3yw4MD8tqrWpAurGUH/OOPzXJ0mT+h7sGd4zEUKK8242r4FKc6wRcNqlEyGx7
+aY2iMJvU7X26f3rc1zy8lipJucK17zHnI/jMqPs4A0felbva6yAm4HOV1GCM1UV3
+KOoXTDMgiQC8h2i9hUgTMPlC1U/ubMnOUMU7kuP6PWJOnsHLxGs7Y/uXlMvsWAic
+dSA/K3e034cff/JCIc/L0Yc3p9IzDELS++FIk8SKVUI8bXE/80Q3RgpknmrzvjHu
+ywedPgmwP5OFHnzwZyCkjzxxiIls9hscQFutMNJjur1WYxs/0a7Ak/d5Fjp+Z/E=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 84660118, expires on Fri May 8 19:56:10 2026 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://xocsp.ccp.xcal.tv:8443/openam/SPSloPOST/metaAlias/sp1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://xocsp.ccp.xcal.tv:8443/openam/SPSloSoap/metaAlias/sp1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://xocsp.ccp.xcal.tv:8443/openam/SPSloRedirect/metaAlias/sp1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://xocsp.ccp.xcal.tv:8443/openam/Consumer/metaAlias/sp1" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://xocsp.ccp.xcal.tv:8443/openam/Consumer/metaAlias/sp1" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://xocsp.ccp.xcal.tv:8443/openam/Consumer/ECP/metaAlias/sp1" index="3"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Xfinity On Campus</ServiceName>
+ <ServiceDescription xml:lang="en">Xfinity On Campus Service Provider to allow access to Xfinity TV services.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true">
+ <saml:AttributeValue>http://www.xfinityoncampus.com/xoc-access</saml:AttributeValue>
+ <saml:AttributeValue>http://www.xfinityoncampus.com/xoc-access-manual</saml:AttributeValue>
+ <saml:AttributeValue>1</saml:AttributeValue>
+ <saml:AttributeValue>0</saml:AttributeValue>
+ <saml:AttributeValue>true</saml:AttributeValue>
+ <saml:AttributeValue>false</saml:AttributeValue>
+ </RequestedAttribute>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Comcast Corporation</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Comcast Corporation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.comcast.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jason Smith</GivenName>
+ <EmailAddress>Jason_G_Smith@cable.comcast.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jason Smith</GivenName>
+ <EmailAddress>Jason_G_Smith@cable.comcast.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jason Smith</GivenName>
+ <EmailAddress>Jason_G_Smith@cable.comcast.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://xoc-staging.sp.comcast.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Xfinity On Campus - Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Xfinity On Campus Test SP</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://my.xfinity.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="37" width="115" xml:lang="en">https://xfinityoncampus.com/library/images/xfinity-logo-black-1x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17216566676884873681, expires on Mon Mar 16 17:24:02 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16174935808129438853, expires on Mon Mar 16 18:52:24 2026 GMT -->
+ <ds:X509Certificate>
+MIIDDTCCAfWgAwIBAgIJAOB46mtETRSFMA0GCSqGSIb3DQEBBQUAMB0xGzAZBgNVBAMMEnhvYy5z
+cC5jb21jYXN0LmNvbTAeFw0xNjAzMTgxODUyMjRaFw0yNjAzMTYxODUyMjRaMB0xGzAZBgNVBAMM
+EnhvYy5zcC5jb21jYXN0LmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKrJ7xec
+ZH/Sm0DDYqyUdbpxiR/Iy2VmU00Dz3J/3jyhh3+1IKPhI2/LHHAhlhZ4IFK1q18yYTUQmNv1Fw/f
+S3cu7WkWtKE9W9WKGb3cLCUHpSXbS247awzsNL5r67ibJfXrRGZ05fJA9oobOdlxreYaGCuNIIgQ
+/LXKf5Gn2dMu7NpA13jVexTwbifM/ZgLsTu9qAiZVXVjODipHqdzPj1se1mssU3ASW4g8lrUi3Ss
+Oq5qRAXtujm6cZYqTzlCKzeHzN5BM48VSM0TSOazpUDRP3jycGB/0j2xEyOeMCA6aIz4hINd6aYx
+lzdRmxngkYW+QooYdhKFl+/dOSk04JUCAwEAAaNQME4wHQYDVR0OBBYEFPekbCJvEVp9OBiHFPcj
+K9mNF1ZsMB8GA1UdIwQYMBaAFPekbCJvEVp9OBiHFPcjK9mNF1ZsMAwGA1UdEwQFMAMBAf8wDQYJ
+KoZIhvcNAQEFBQADggEBACFCt8WdMcur4pWJdaEnG5KAyv10Gnf3tbzoEyaPvkaXuyaQiX7VWWNd
+SB4OMjQZ3U03Qyrg2zei9xBvs6u8hcwta7vGnD3/3frtwvXYMRKmxofjrEyu7QXOxzUclTJIR53I
+BrDtA1+5SAJ56ilzsW2fzN2CNsYRFyBghuQjCaNo4i7nHAUeNzUFU5r26Ycq4Ge6UcnRx58R2MJ0
+Sl1RYyz3A9LEteiIt443GIIXKtZlV2QJRH6t0jmufBGbBhWMWkN+rypiY2qE7XI6JeIyMt+3YZO/
+U80JF+2Bv0KlDss4r3ER0Q8nMrO2Pc4V+vUOc/UezA3DcrJ/6Pg7xekz2P8=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://xocsp-staging.ccp.xcal.tv:8443/openam/SPSloRedirect/metaAlias/sp2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://xocsp-staging.ccp.xcal.tv:8443/openam/SPSloPOST/metaAlias/sp2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://xocsp-staging.ccp.xcal.tv:8443/openam/SPSloSoap/metaAlias/sp2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://xocsp-staging.ccp.xcal.tv:8443/openam/Consumer/metaAlias/sp2" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://xocsp-staging.ccp.xcal.tv:8443/openam/Consumer/metaAlias/sp2" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://xocsp-staging.ccp.xcal.tv:8443/openam/Consumer/ECP/metaAlias/sp2" index="3"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Xfinity On Campus - Test</ServiceName>
+ <ServiceDescription xml:lang="en">Xfinity On Campus Test SP</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true">
+ <saml:AttributeValue>http://www.xfinityoncampus.com/xoc-access</saml:AttributeValue>
+ <saml:AttributeValue>http://www.xfinityoncampus.com/xoc-access-manual</saml:AttributeValue>
+ <saml:AttributeValue>1</saml:AttributeValue>
+ <saml:AttributeValue>0</saml:AttributeValue>
+ <saml:AttributeValue>true</saml:AttributeValue>
+ <saml:AttributeValue>false</saml:AttributeValue>
+ </RequestedAttribute>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Comcast Corporation</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Comcast Corporation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.comcast.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jason Smith</GivenName>
+ <EmailAddress>Jason_G_Smith@cable.comcast.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jason Smith</GivenName>
+ <EmailAddress>Jason_G_Smith@cable.comcast.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jason Smith</GivenName>
+ <EmailAddress>Jason_G_Smith@cable.comcast.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- CUNY Graduate School and University Center -->
+<EntityDescriptor entityID="https://sso.gc.cuny.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">gc.cuny.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CUNY Graduate Center</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www2.cuny.edu/website/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="85" xml:lang="en">https://www.gc.cuny.edu/shared/images/shared/CUNY-GC-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 421212012999062393542855531509845572167113198978, expires on Sun Jun 21 14:17:48 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.gc.cuny.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.gc.cuny.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">CUNY Graduate School and University Center</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">CUNY Graduate School and University Center</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://gc.cuny.edu/Home</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>CUNYGC IT Services</GivenName>
+ <EmailAddress>itservices@gc.cuny.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>CUNYGC IT Services</GivenName>
+ <EmailAddress>itservices@gc.cuny.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Matthew Liston</GivenName>
+ <EmailAddress>mliston@gc.cuny.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>CUNYGC IT Security</GivenName>
+ <EmailAddress>it_security@gc.cuny.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Coastal Carolina University -->
+<EntityDescriptor entityID="https://shib1.coastal.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">coastal.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Coastal Carolina University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.coastal.edu/aboutccu/sitepolicy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="500" xml:lang="en">https://www.coastal.edu/media/logo-masthead-teal@2x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1425400283768662277558295800310711720754590916281, expires on Fri Dec 21 19:40:08 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib1.coastal.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib1.coastal.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib1.coastal.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Coastal Carolina University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Coastal Carolina University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.coastal.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Bill Griffin-Dubson</GivenName>
+ <EmailAddress>ccurhadmin@coastal.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Bill Griffin-Dubson</GivenName>
+ <EmailAddress>ccurhadmin@coastal.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Bill Griffin-Dubson</GivenName>
+ <EmailAddress>ccurhadmin@coastal.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bill Griffin-Dubson</GivenName>
+ <EmailAddress>ccurhadmin@coastal.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Lamar Institute of Technology -->
+<EntityDescriptor entityID="https://idp.lit.edu/simplesamlidp/saml2/idp/metadata.php">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lit.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Lamar Institute of Technology</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Policies Information Technology</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.lit.edu/information-technology/policies</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.lit.edu/information-technology/policies</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="291" xml:lang="en">https://www.lit.edu/media/LIT/MediaLibrary/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15027952283203527960, expires on Fri Feb 26 16:06:40 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.lit.edu/simplesamlidp/saml2/idp/SingleLogoutService.php"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.lit.edu/simplesamlidp/saml2/idp/SingleLogoutService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.lit.edu/simplesamlidp/saml2/idp/SSOService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.lit.edu/simplesamlidp/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lamar Institute of Technology</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lamar Institute of Technology</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.lit.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@lit.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Darren McIntire</GivenName>
+ <EmailAddress>dpmcintire@lit.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Sam Dockens</GivenName>
+ <EmailAddress>sjdockens@lit.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Sam Dockens</GivenName>
+ <EmailAddress>sjdockens@lit.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- San Bernardino Community College District -->
+<EntityDescriptor entityID="https://idp.sbccd.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sbccd.cc.ca.us</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">San Bernardino Community College District</mdui:DisplayName>
+ <mdui:Description xml:lang="en">IdP for the San Bernardino Community College District. Serves both San Bernardino Valley College and Crafton Hills College</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://idp.sbccd.edu/ap-5040.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="360" width="360" xml:lang="en">https://idp.sbccd.edu/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10981797694755993021, expires on Sun Apr 22 17:40:21 2029 GMT -->
+ <ds:X509Certificate>
+MIIDWjCCAkICCQCYZy7RvyJ1vTANBgkqhkiG9w0BAQsFADBvMQ4wDAYDVQQKEwVTQkNDRDENMAsGA1UECxMEVEVTUzEXMBUGA1UEBxMOU2FuIEJlcm5hcmRpbm8xCzAJBgNVBAgTAkNBMQswCQYDVQQGEwJVUzEbMBkGA1UEAxMSUEdJZFAgU2lnbmluZyBDZXJ0MB4XDTE5MDQyNTE3NDAyMVoXDTI5MDQyMjE3NDAyMVowbzEOMAwGA1UEChMFU0JDQ0QxDTALBgNVBAsTBFRFU1MxFzAVBgNVBAcTDlNhbiBCZXJuYXJkaW5vMQswCQYDVQQIEwJDQTELMAkGA1UEBhMCVVMxGzAZBgNVBAMTElBHSWRQIFNpZ25pbmcgQ2VydDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANIsdVz5/UrZHOLF6J9mpsTenblnZVRRheOoi4/Tbp0FbWkf7hQqEKz17iTuTJGMI9EyR/GBx8/xP6oYVuQbiCXb8WaerM70r0SPbnzc0cMknmsfBJsgCewI1biNmM0gaqkLNvnVinL8UKmnXCwVo0Uy1DDWQhJX/TdeSr2Cl7EsV/Z0PyUBf73evDU1vBoLXjqEi3nTQqzWcA5LN7Hf98Lvsjv4+/AYag5NZZuIfea6pjwYoI1Pv6hvXXfMq2NItSEn5dbn/TazekOJc1+s/m2ABn6ZS5w76qkK/cTpb/e0/JDhl5grXyFTDnGtm0GaitP5VOP3FiaCOt34feXLZ7MCAwEAATANBgkqhkiG9w0BAQsFAAOCAQEAbAhfEqb0WuABQaW2vCq0noNF+GjAFXOzFrXrI8EAQcGz5bo5V22iEjDG7Mlb4XyiQyHoREbdrw+8ofkpKjC6EXS3D/JJZ6lq/Ns0Umk14FjIxk0ay01Ema5CBZ3/A2En3Q8VW1xdhosEDwdafUhLv5sYmFRiqXRLb67yEPjbS+nVeiHVpgINp/EOccyXbdSp2CpYbmmhogvb52mDQ5gmBnnv5T3el9JibRL9/VhE8h3PmdkxHedv6D9rGkbqBQBjLkXlVsFdXhI2oFEQrv+B31T9QTYq36eNJl2TZsJrVHEDCIHW0SNXp1q5uKKQQqs0k3wl92yvutJcPv265AJBfw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.sbccd.edu/sso/go.ashx"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.sbccd.edu/sso/go.ashx"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">San Bernardino Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">San Bernardino Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sbccd.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>SBCCD Technical Support</GivenName>
+ <EmailAddress>incommon@sbccd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>SBCCD Technical Support</GivenName>
+ <EmailAddress>incommon@sbccd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>SBCCD Technical Support</GivenName>
+ <EmailAddress>incommon@sbccd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>SBCCD Technical Support</GivenName>
+ <EmailAddress>incommon@sbccd.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Unizin -->
+<EntityDescriptor entityID="https://myla.iu.sit.cloud.unizin.org/accounts/metadata/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Unizin - IU - My Learning Analytics</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://github.com/tl-its-umich-edu/my-learning-analytics</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://github.com/tl-its-umich-edu/my-learning-analytics</mdui:PrivacyStatementURL>
+ <mdui:Logo height="84" width="243" xml:lang="en">https://unizin.org/wp-content/uploads/2017/05/Unizin-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 601220045310093301694201540532388801376786264247, expires on Tue Feb 19 17:10:11 2047 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://myla.iu.sit.cloud.unizin.org/accounts/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myla.iu.sit.cloud.unizin.org/accounts/ls/post"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myla.iu.sit.cloud.unizin.org/accounts/acs/" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Unizin - IU - My Learning Analytics</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Unizin</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Unizin</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://unizin.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://myla.sit.cloud.unizin.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://myla.sit.cloud.unizin.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Unizin - My Learning Analytics</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://github.com/tl-its-umich-edu/my-learning-analytics</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://github.com/tl-its-umich-edu/my-learning-analytics</mdui:PrivacyStatementURL>
+ <mdui:Logo height="84" width="243" xml:lang="en">https://unizin.org/wp-content/uploads/2017/05/Unizin-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 601220045310093301694201540532388801376786264247, expires on Tue Feb 19 17:10:11 2047 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myla.sit.cloud.unizin.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://myla.sit.cloud.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://myla.sit.cloud.unizin.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://myla.sit.cloud.unizin.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Unizin - My Learning Analytics</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Unizin</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Unizin</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://unizin.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://myla.uiowa.sit.cloud.unizin.org/accounts/metadata/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://myla.uiowa.sit.cloud.unizin.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Unizin - UIOWA - My Learning Analytics</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://sites.google.com/umich.edu/my-learning-analytics-help/home/about-myla</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://sites.google.com/umich.edu/my-learning-analytics-help/home/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="84" width="243" xml:lang="en">https://unizin.org/wp-content/uploads/2017/05/Unizin-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 601220045310093301694201540532388801376786264247, expires on Tue Feb 19 17:10:11 2047 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myla.uiowa.sit.cloud.unizin.org/accounts/ls/post"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://myla.uiowa.sit.cloud.unizin.org/accounts/ls/"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myla.uiowa.sit.cloud.unizin.org/accounts/acs/" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Unizin - UIOWA - My Learning Analytics</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Unizin</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Unizin</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://unizin.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://myla.umdearborn.sit.cloud.unizin.org/accounts/metadata/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://myla.umdearborn.sit.cloud.unizin.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Unizin - UMDEADBORN - My Learning Analytics</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://github.com/tl-its-umich-edu/my-learning-analytics</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://github.com/tl-its-umich-edu/my-learning-analytics</mdui:PrivacyStatementURL>
+ <mdui:Logo height="84" width="243" xml:lang="en">https://unizin.org/wp-content/uploads/2017/05/Unizin-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 601220045310093301694201540532388801376786264247, expires on Tue Feb 19 17:10:11 2047 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://myla.umdearborn.sit.cloud.unizin.org/accounts/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myla.umdearborn.sit.cloud.unizin.org/accounts/ls/post"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myla.umdearborn.sit.cloud.unizin.org/accounts/acs/" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Unizin - UMDEADBORN - My Learning Analytics</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Unizin</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Unizin</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://unizin.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://myla.umn.sit.cloud.unizin.org/accounts/metadata/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://myla.umn.sit.cloud.unizin.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Unizin - UMN - My Learning Analytics</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://github.com/tl-its-umich-edu/my-learning-analytics</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://github.com/tl-its-umich-edu/my-learning-analytics</mdui:PrivacyStatementURL>
+ <mdui:Logo height="84" width="243" xml:lang="en">https://unizin.org/wp-content/uploads/2017/05/Unizin-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 601220045310093301694201540532388801376786264247, expires on Tue Feb 19 17:10:11 2047 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myla.umn.sit.cloud.unizin.org/accounts/acs/" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://myla.umn.sit.cloud.unizin.org/accounts/acs/" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://myla.umn.sit.cloud.unizin.org/accounts/acs/" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://myla.umn.sit.cloud.unizin.org/accounts/acs/" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Unizin - UMN - My Learning Analytics</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Unizin</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Unizin</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://unizin.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://myla.unl.sit.cloud.unizin.org/accounts/metadata/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://myla.umn.unl.cloud.unizin.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Unizin - UML - My Learning Analytics</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://github.com/tl-its-umich-edu/my-learning-analytics</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://github.com/tl-its-umich-edu/my-learning-analytics</mdui:PrivacyStatementURL>
+ <mdui:Logo height="84" width="243" xml:lang="en">https://unizin.org/wp-content/uploads/2017/05/Unizin-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 601220045310093301694201540532388801376786264247, expires on Tue Feb 19 17:10:11 2047 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://myla.unl.sit.cloud.unizin.org/accounts/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myla.unl.sit.cloud.unizin.org/accounts/ls/post"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myla.unl.sit.cloud.unizin.org/accounts/acs/" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Unizin - UML - My Learning Analytics</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Unizin</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Unizin</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://unizin.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://myla.wisc.sit.cloud.unizin.org/accounts/metadata/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://myla.wisc.sit.cloud.unizin.org/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Unizin - WISC - My Learning Analytics</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://github.com/tl-its-umich-edu/my-learning-analytics</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://github.com/tl-its-umich-edu/my-learning-analytics</mdui:PrivacyStatementURL>
+ <mdui:Logo height="84" width="243" xml:lang="en">https://unizin.org/wp-content/uploads/2017/05/Unizin-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 601220045310093301694201540532388801376786264247, expires on Tue Feb 19 17:10:11 2047 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://myla.wisc.sit.cloud.unizin.org/accounts/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myla.wisc.sit.cloud.unizin.org/accounts/ls/post"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://myla.wisc.sit.cloud.unizin.org/accounts/acs/" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Unizin - WISC - My Learning Analytics</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Unizin</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Unizin</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://unizin.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Rafael Fernandez</GivenName>
+ <EmailAddress>rafael.fernandez@unizin.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ordertool.prod.unizin.org/secure">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Unizin Order Tool</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The Unizin Order Tool service provider for the prod environment</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://resources.unizin.org/display/OT</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://resources.unizin.org/pages/viewpage.action?pageId=7635133</mdui:PrivacyStatementURL>
+ <mdui:Logo height="120" width="420" xml:lang="en">https://unizin.org/wp-content/uploads/2017/05/Unizin-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18255253972813987543, expires on Sun Jan 16 16:44:17 2028 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uiowa.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uiowa.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uiowa.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uiowa.ordertool.prod.unizin.org/Shibboleth.sso/SAML/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iu.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://iu.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://iu.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://iu.ordertool.prod.unizin.org/Shibboleth.sso/SAML/POST" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wisc.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wisc.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wisc.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wisc.ordertool.prod.unizin.org/Shibboleth.sso/SAML/POST" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://colostate.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://colostate.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://colostate.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/ECP" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://colostate.ordertool.prod.unizin.org/Shibboleth.sso/SAML/POST" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://demo.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/POST" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://demo.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://demo.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/ECP" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://demo.ordertool.prod.unizin.org/Shibboleth.sso/SAML/POST" index="20"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://osu.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/POST" index="21"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://osu.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="22"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://osu.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/ECP" index="23"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://osu.ordertool.prod.unizin.org/Shibboleth.sso/SAML/POST" index="24"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://miamioh.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/POST" index="25"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://miamioh.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="26"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://miamioh.ordertool.prod.unizin.org/Shibboleth.sso/SAML2/ECP" index="27"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://miamioh.ordertool.prod.unizin.org/Shibboleth.sso/SAML/POST" index="28"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Unizin Order Tool</ServiceName>
+ <ServiceDescription xml:lang="en">The Unizin Order Tool service provider for the prod environment</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Unizin</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Unizin</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://unizin.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk Team</GivenName>
+ <EmailAddress>etienne.pelaprat@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Support Team</GivenName>
+ <EmailAddress>etienne.pelaprat@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Team</GivenName>
+ <EmailAddress>etienne.pelaprat@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Community Team</GivenName>
+ <EmailAddress>etienne.pelaprat@unizin.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ordertool.uat.unizin.org/secure">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Unizin Order Tool (UAT)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The Unizin Order Tool service provider for the UAT environment</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://resources.unizin.org/display/OT</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://resources.unizin.org/pages/viewpage.action?pageId=7635133</mdui:PrivacyStatementURL>
+ <mdui:Logo height="120" width="420" xml:lang="en">https://unizin.org/wp-content/uploads/2017/05/Unizin-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16157175120626033954, expires on Sun Nov 28 00:41:47 2027 GMT -->
+ <ds:X509Certificate>
+MIIENjCCAp6gAwIBAgIJAOA50Sr2saUiMA0GCSqGSIb3DQEBCwUAMDAxLjAsBgNV
+BAMTJW9yZGVydG9vbC1kZXBsb3ltZW50LTM4NTk4MDQzNzctZDRxd3YwHhcNMTcx
+MTMwMDA0MTQ3WhcNMjcxMTI4MDA0MTQ3WjAwMS4wLAYDVQQDEyVvcmRlcnRvb2wt
+ZGVwbG95bWVudC0zODU5ODA0Mzc3LWQ0cXd2MIIBojANBgkqhkiG9w0BAQEFAAOC
+AY8AMIIBigKCAYEAq5yKzCAHmAoebkiT1CisCk10vleq//D2yzfCtFwvPuneLxz/
+BF83RL6iMZB6E/uuGaES5887iwnyzeSe+oSEyD2/0j+cXUzJYiPflqfXh7pr9nFJ
+eE2t0YOXCQHQ2ZTEA1V6maKZIBYbxx3pDn8/QYdNLQhJWQfOwerWAJm8SiE9hBXS
+VV/ww73WJicYirtDhFK3A85Z03PMjfV+fRcyB9xkLq8NkMqhDkG/Nvvdy7q6BtJ4
+gx8TEKW1ArHiifkI6HF3I8XkhiygS325prhHM3Ts+iXzeh1g5yuD5Ubb8UOzweTE
+Cc1bhnPKX7MesshrTVKuJcBfAX6PH0KDFGUE+DshTLMaP/aumDqR6SP1q5PFshLT
+BF4wzr0vjeGh1ZxJ1OZQDmwFqYmXioOL0ApUmGL8Czqso71n5pEqe7gaNhZo0YxO
+V8b2Oi6Mf90DiRSw6tkasCIDWpC/mJlv5YWT/J/hGN0tu0Hu+w4OgaBE2aQiihJV
+MwOnMnuM3pVevoCTAgMBAAGjUzBRMDAGA1UdEQQpMCeCJW9yZGVydG9vbC1kZXBs
+b3ltZW50LTM4NTk4MDQzNzctZDRxd3YwHQYDVR0OBBYEFEe3IZGsODKt27teVcxY
+9baaS1WKMA0GCSqGSIb3DQEBCwUAA4IBgQA1dvhDY8oOCAGnCD4tDyrKDkJbsxIn
+dyZWlwrlD34/caROxj5N9EMhMNCxB/8kTLUVPgD3gPldadrkVATOHAYcEds43u5E
+yUAVI6PoseRHc4p5byK6I+L5q9t14W6/F7S/4P97kVkNhHJWrAixnxBh25uXtzk0
+R+jXwZBgYRd+HTFLqy/8NfQhlycUYQqLSa6GDfxZsdkbFtmJznW25Yth6izAKKOp
+occL5fZxuXNRn6U+YOpX267GHQjCeOJZJQTGRV+RHE7NfEnBYpCgBNKjQIOeQkJa
+Jxm9YmW8S0TQBbGatSg/NXl7x6R6EbEKxBXinq/VYvpqVXA99kURmo/DocU3udvx
+EFAntKXSYZDCKYs6WDFhFSAE/2VEN505mzhSrN7KPaY1EcbSeElcg3gQa6kt05Zr
+YbkVbS60P36Q/W+c596zpAS8+mSXtoZx7/Kj07qdCepEXv7/lxO80Qhr2LFMc8xN
+ctaFa/jSDcLpSSERJ16wA4Z4DkV3NuLnBYA=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uiowa.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uiowa.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uiowa.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uiowa.ordertool.uat.unizin.org/Shibboleth.sso/SAML/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iu.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://iu.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://iu.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://iu.ordertool.uat.unizin.org/Shibboleth.sso/SAML/POST" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uhowie.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wisc.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wisc.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wisc.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wisc.ordertool.uat.unizin.org/Shibboleth.sso/SAML/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://colostate.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://colostate.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://colostate.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/ECP" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://colostate.ordertool.uat.unizin.org/Shibboleth.sso/SAML/POST" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://demo.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://demo.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://demo.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/ECP" index="20"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://demo.ordertool.uat.unizin.org/Shibboleth.sso/SAML/POST" index="21"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://osu.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST" index="22"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://osu.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="23"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://osu.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/ECP" index="24"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://osu.ordertool.uat.unizin.org/Shibboleth.sso/SAML/POST" index="25"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umn.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST" index="26"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://umn.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="27"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://umn.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/ECP" index="28"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://umn.ordertool.uat.unizin.org/Shibboleth.sso/SAML/POST" index="29"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://miamioh.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST" index="30"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://miamioh.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="31"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://miamioh.ordertool.uat.unizin.org/Shibboleth.sso/SAML2/ECP" index="32"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://miamioh.ordertool.uat.unizin.org/Shibboleth.sso/SAML/POST" index="33"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Unizin Order Tool (UAT)</ServiceName>
+ <ServiceDescription xml:lang="en">The Unizin Order Tool service provider for the UAT environment</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Unizin</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Unizin</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://unizin.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Team</GivenName>
+ <EmailAddress>etienne.pelaprat@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk Team</GivenName>
+ <EmailAddress>etienne.pelaprat@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Community Team</GivenName>
+ <EmailAddress>etienne.pelaprat@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Support Team</GivenName>
+ <EmailAddress>etienne.pelaprat@unizin.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Etienne Pelaprat</GivenName>
+ <EmailAddress>etienne.pelaprat@unizin.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Williams College -->
+<EntityDescriptor entityID="https://idp.williams.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">williams.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Williams College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Williams College Identity Provider</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://oit.williams.edu/policies/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="130" width="450" xml:lang="en">https://idp.williams.edu/idp/images/williams-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1025145656348206493688761549860657366647977148475, expires on Sun Jan 6 19:45:56 2036 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.williams.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.williams.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Williams College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Williams College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.williams.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ashley Frost</GivenName>
+ <EmailAddress>afrost@williams.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Ashley Frost</GivenName>
+ <EmailAddress>afrost@williams.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Ashley Frost</GivenName>
+ <EmailAddress>afrost@williams.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Ashley Frost</GivenName>
+ <EmailAddress>afrost@williams.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Cedar Crest College -->
+<EntityDescriptor entityID="https://webauth.cedarcrest.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">webauth.cedarcrest.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">cedarcrest.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Cedar Crest College</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.cedarcrest.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.cedarcrest.edu/marcom/privacy_policy.shtm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="120" width="451" xml:lang="en">https://webauth.cedarcrest.edu/idp/images/CCC-Logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 302953838334557342950570358154043533285877600306, expires on Mon Feb 15 20:23:35 2038 GMT -->
+ <ds:X509Certificate>
+MIIDQzCCAiugAwIBAgIUNRDrgc41XdGeK5BWdEfcw+iL0DIwDQYJKoZIhvcNAQEL
+BQAwITEfMB0GA1UEAwwWd2ViYXV0aC5jZWRhcmNyZXN0LmVkdTAeFw0xODAyMTUy
+MDIzMzVaFw0zODAyMTUyMDIzMzVaMCExHzAdBgNVBAMMFndlYmF1dGguY2VkYXJj
+cmVzdC5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC79U1NvZaS
+PeeLzzwORWuq50uNs0NRGQy7nMyROPkmjzTg8XR91l+ep9AW9WjopaxlFFUMl9x3
+mElucKET79jqTBrBF0tc3ryyF/PesSLRCIE4ecV1T6NgFZG/0OC981uCvTZGknUd
+oGuxJ18yvkeTWG7awL9iZkfUcbUUESs2LR5+Te4VlYU+Y1eZd0Wl3r7/VlQ9VHbD
+0NK+DZBUgizZconfzeiswz04tsu/YBhRLN4ngJkUpTDx+J3TQRATU6IAB2KnixaT
+x2/EyzB2Lmon6Hvpm82l9Wh34EdRgX6vcFXixavykHL/gV/UT4IR4auWiZsCeMGO
+WdBSNzCkiNIpAgMBAAGjczBxMB0GA1UdDgQWBBRk5LhlyAAS/uWbtJsyltXKrwP/
+3DBQBgNVHREESTBHghZ3ZWJhdXRoLmNlZGFyY3Jlc3QuZWR1hi1odHRwczovL3dl
+YmF1dGguY2VkYXJjcmVzdC5lZHUvaWRwL3NoaWJib2xldGgwDQYJKoZIhvcNAQEL
+BQADggEBAFYSe5mPGKg7Vc+ybGaH6bowD8mTgKZHoYIzGiyAVG6e8AvdTZ28ahcm
+ySjCMJ7AIwy3eKFhIcGhr26H/JYGYD0q23CEpdMhvqZO6QBO+xVOOXNUCxDhovMB
+5+Pt9/JHZmfgwmHcQqpu2feGoZ5nqZrYsXyyHawXtPx27hW7zViAWvEzRD00nJNv
+xugGcBlQSqrT5Z2M+rh8iuR/cQ5vMZ+EHZLWIwO2BLgM+nGpf/DFN+MuUxit9wf3
+pGFW71hHybhSwCoECBu+ZQdYU1UecNQX5R2miQccUIvPuKi+3F4dKEjOU2op0GQd
+Vyl9gNMsTtakgdBtbdkXhfA/GIg2mAY=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.cedarcrest.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://webauth.cedarcrest.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.cedarcrest.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://webauth.cedarcrest.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.cedarcrest.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webauth.cedarcrest.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.cedarcrest.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">webauth.cedarcrest.edu</shibmd:Scope>
+ <shibmd:Scope regexp="false">cedarcrest.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 302953838334557342950570358154043533285877600306, expires on Mon Feb 15 20:23:35 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://webauth.cedarcrest.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Cedar Crest College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Cedar Crest College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://cedarcrest.edu/ca/index.shtm</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Jake Kim</GivenName>
+ <EmailAddress>jake.kim@cedarcrest.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bruce Sarte</GivenName>
+ <EmailAddress>bsarte@cedarcrest.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Jake Kim</GivenName>
+ <EmailAddress>jake.kim@cedarcrest.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jake Kim</GivenName>
+ <EmailAddress>jake.kim@cedarcrest.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Sul Ross State University -->
+<EntityDescriptor entityID="https://idp.sulross.edu/simplesaml/saml2/idp/metadata.php">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">sulross.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Sul Ross State University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.sulross.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.sulross.edu/page/259/privacy-security-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="190" xml:lang="en">https://srinfo.sulross.edu/ex_share/barSRbar_RED_transparent_190x150.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12887710676109459153, expires on Sat Jul 27 21:05:29 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.sulross.edu/simplesaml/saml2/idp/SingleLogoutService.php"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.sulross.edu/simplesaml/saml2/idp/SingleLogoutService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.sulross.edu/simplesaml/saml2/idp/SSOService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.sulross.edu/simplesaml/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Sul Ross State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Sul Ross State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.sulross.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>David Gibson</GivenName>
+ <EmailAddress>dgibson@sulross.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Systems Administrators</GivenName>
+ <EmailAddress>sysadmin@sulross.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help-Desk</GivenName>
+ <EmailAddress>techs@sulross.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>David Gibson</GivenName>
+ <EmailAddress>dgibson@sulross.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Tapingo, Inc. -->
+<EntityDescriptor entityID="https://sp.tapingo.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Grubhub</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.grubhub.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.grubhub.com/legal/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="107" width="251" xml:lang="en">https://s2.q4cdn.com/723557020/files/Grubhub-logo-251by107px@2x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13019460239961754873, expires on Thu Dec 7 16:55:09 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp.tapingo.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sp.tapingo.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp.tapingo.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp.tapingo.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Tapingo, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Tapingo, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.tapingo.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Tapingo Support</GivenName>
+ <EmailAddress>support@tapingo.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jared Frey</GivenName>
+ <EmailAddress>jared.frey@tapingo.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Udi Oster</GivenName>
+ <EmailAddress>udi@tapingo.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Darrell Cohn</GivenName>
+ <EmailAddress>darrell@tapingo.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Pittsburgh -->
+<EntityDescriptor entityID="https://passport-dev.pitt.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://passport-dev.pitt.edu/idp/error.jsp" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pitt.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">zTest - University of Pittsburgh Test IdP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Welcome to the test and development IdP Single Sign-On Experience for the University of Pittsburgh. This service is intended for testing and development. Please do not select!</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://technology.pitt.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://technology.pitt.edu/research-computing/rc-incommon-shibboleth/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="400" width="400" xml:lang="en">https://www.pitt.edu/seal/seal-400x400-72rgb.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 174569624331036728560726569111910034241578921253, expires on Mon May 14 13:58:40 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://passport-dev.pitt.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://passport-dev.pitt.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://passport-dev.pitt.edu/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://passport-dev.pitt.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://passport-dev.pitt.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://passport-dev.pitt.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://passport-dev.pitt.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://passport-dev.pitt.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pitt.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 174569624331036728560726569111910034241578921253, expires on Mon May 14 13:58:40 2035 GMT -->
+ <ds:X509Certificate>
+MIIDPzCCAiegAwIBAgIUHpP5AhDVbBH8VDf3hTigY7K87SUwDQYJKoZIhvcNAQEL
+BQAwIDEeMBwGA1UEAwwVcGFzc3BvcnQtZGV2LnBpdHQuZWR1MB4XDTE1MDUxNDEz
+NTg0MFoXDTM1MDUxNDEzNTg0MFowIDEeMBwGA1UEAwwVcGFzc3BvcnQtZGV2LnBp
+dHQuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAhKyfJVLXWpVM
+pIw+JByKmtnTjlfJlwmJVxq4kdlF8cSlVbZqDdiBIoxLSa79gTjjp2yqJEHj5auo
+0uh2uzLzv+bgCS27MtHx3xit8EzrcNlNii/coO3OuqnYxymaEFSY99b8mo8lopjB
+JaBECTJcUk70sKzbsdd6BSNpmeeeUpj3iHcX3+dfmZn/fMxVGvsY2IJaRm+QW/W+
+o1wVYHJMelnZ1rV3ZRiqpwakO22Ny0Ynz1OUZafuhZrKCuHD/AujgKJiaH3WE4wD
+YUuWko8gKSrqchnoQY9JoWkKGgwplnEezC/baIUg4BXlOBtrjZTb33QprOUC9qKQ
+fnzM91qLRwIDAQABo3EwbzAdBgNVHQ4EFgQUFjy8FNm+rrlHA4TySxpCTG9gtJow
+TgYDVR0RBEcwRYIVcGFzc3BvcnQtZGV2LnBpdHQuZWR1hixodHRwczovL3Bhc3Nw
+b3J0LWRldi5waXR0LmVkdS9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOC
+AQEAgcKximAtQqwc/elb7LjzKayqVlG8myL2XulrR2p7lqkw00LIoUGd4UtZFNRU
+4PJQdI1ZTxIbExl9sgO4y6zHmoUNZAbF56/NyiU8ulZQJXV3VIWawoOCHjGeQzKC
+JMltCySpUH1zABMLrVAaEHwW7HbyU0FfI46fgtctMX2upvE0jv/xNVozSeJLhhUt
+3vF4a6l05gOTmEpUocBtXZDymtiigdhQHUzoaLjZO9LPS0F3BXa15/eo7LTfEbbF
+MfQBoqjbHLteEDH2wGym7z8gPPk5s+XKX6rhqpyUDhnXCw6Y6SQWcSdmEKN1N53P
+ohuxQwrAWgTIq1+TKO4KZfHlww==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://passport-dev.pitt.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://passport-dev.pitt.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Pittsburgh</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">zTest_University of Pittsburgh Test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.pitt.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Technology Helpdesk</GivenName>
+ <EmailAddress>helpdesk@pitt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:icmd="http://id.incommon.org/metadata" contactType="other" icmd:contactType="http://id.incommon.org/metadata/contactType/security">
+ <GivenName>Technology Helpdesk</GivenName>
+ <EmailAddress>helpdesk@pitt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Technology Helpdesk</GivenName>
+ <EmailAddress>helpdesk@pitt.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Technology Helpdesk</GivenName>
+ <EmailAddress>helpdesk@pitt.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Marist College -->
+<EntityDescriptor entityID="https://auth.it.marist.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">marist.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Marist College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Marist College IDP</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.marist.edu/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="80" xml:lang="en">https://www.marist.edu/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1497623546, expires on Wed Jun 16 14:34:23 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.it.marist.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.it.marist.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Marist College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Marist College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.marist.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>server administrators</GivenName>
+ <EmailAddress>server.admins@marist.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Server Admins</GivenName>
+ <EmailAddress>server.admins@marist.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>helpdesk@marist.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>security responsible person</GivenName>
+ <EmailAddress>security@marist.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- New Mexico State University - Main Campus -->
+<EntityDescriptor entityID="https://myidp.nmsu.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">nmsu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">New Mexico State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">IaaS provider QuickLaunch IdP.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://nmsu.edu/about.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nmsu.edu/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="69" width="114" xml:lang="en">https://nmsu.edu/source/images/nmsu-logoIcon114x69.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1426561551, expires on Sun Jul 4 10:00:23 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.quicklaunchsso.com/samlsso?tenantDomain=nmsu.edu"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">New Mexico State University - Main Campus</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">New Mexico State University - Main Campus</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://nmsu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Office of the CIO</GivenName>
+ <EmailAddress>cio@nmsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Systems Administration</GivenName>
+ <EmailAddress>systems@nmsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>infosec@nmsu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>ICT Help Desk</GivenName>
+ <EmailAddress>help@nmsu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Texas Christian University -->
+<EntityDescriptor entityID="https://idp.tcu.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.tcu.edu/idp/error.jsp" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">tcu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Texas Christian University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.tcu.edu/privacy.asp</mdui:PrivacyStatementURL>
+ <mdui:Logo height="750" width="1177" xml:lang="en">https://brand.tcu.edu/wp-content/uploads/2015/12/TCULogo_purple_5X7-01.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1176203710683968784158056510574224919009414559640, expires on Sun Sep 14 06:25:49 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.tcu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.tcu.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Texas Christian University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Texas Christian University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://tcu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Craig Carlson</GivenName>
+ <EmailAddress>itshibbolethsupport@tcu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Brian Nevius</GivenName>
+ <EmailAddress>itshibbolethsupport@tcu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Joshua Tooley</GivenName>
+ <EmailAddress>itshibbolethsupport@tcu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Aaron Munoz</GivenName>
+ <EmailAddress>itshibbolethsupport@tcu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Lake Tahoe Community College -->
+<EntityDescriptor entityID="https://idp.ltcc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ltcc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Lake Tahoe Community College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.boarddocs.com/ca/ltcc/Board.nsf/goto?open&amp;id=AL7QWM6B4F96</mdui:PrivacyStatementURL>
+ <mdui:Logo height="171" width="87" xml:lang="en">https://www.boarddocs.com/ca/ltcc/Board.nsf/files/PRINT_LOGO/$file/LTCC%20Logo%20with%20color.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 800546488461040472679147833699363476245535977887, expires on Tue Feb 5 22:17:29 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ltcc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ltcc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.ltcc.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lake Tahoe Community College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lake Tahoe Community College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://ltcc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Bill Abiko</GivenName>
+ <EmailAddress>abiko@ltcc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bill Abiko</GivenName>
+ <EmailAddress>abiko@ltcc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bill Abiko</GivenName>
+ <EmailAddress>abiko@ltcc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Bill Abiko</GivenName>
+ <EmailAddress>abiko@ltcc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Florida Gulf Coast University -->
+<EntityDescriptor entityID="https://sso.fgcu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fgcu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Florida Gulf Coast University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://sso.fgcu.edu/authenticationendpoint/metadata.xml</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www2.fgcu.edu/generalcounsel/privacystatement.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="350" xml:lang="en">https://www.fgcu.edu/_resources/images/logo-blue@2x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 6079701871155504398578152770668171696, expires on Wed Jun 10 00:00:00 2020 GMT -->
+ <ds:X509Certificate>
+MIIHaTCCBlGgAwIBAgIQBJLocfHiMtu6qtu/VQ2RsDANBgkqhkiG9w0BAQsFADBNMQswCQYDVQQG
+EwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMScwJQYDVQQDEx5EaWdpQ2VydCBTSEEyIFNlY3
+VyZSBTZXJ2ZXIgQ0EwHhcNMTgwMzA4MDAwMDAwWhcNMjAwNjEwMDAwMDAwWjCBmTELMAk
+GA1UEBhMCVVMxEDAOBgNVBAgTB0Zsb3JpZGExEjAQBgNVBAcTCUZ0LiBNeWVyczEmMCQGA1UE
+ChMdRmxvcmlkYSBHdWxmIENvYXN0IFVuaXZlcnNpdHkxJTAjBgNVBAsTHEJ1c2luZXNzIFRlY2hub2xv
+Z3kgU2VydmljZXMxFTATBgNVBAMTDHNzby5mZ2N1LmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggE
+PADCCAQoCggEBAKVbHmV/woK+GNBdtYjLjI2Pkk3661npi/ckNzVScAUl3ZfnzyAu4ArmivKwQhgtRWn
+H1uilpODeUirh7KZFFrOSCn0gMCzh0jy5SnMJRzN51GDZ5ZK0HsPbhZanzVX+g2sb7/gar2S0Ap2JRo7m
+UXuaTaw/vHTt2NOAu5Le1xBeOBdGOh1+8uGkb2KDvHBufV1UNYchkyGIlhN+KemBe8Qgm1MuwOOB
+z+z87X6O1PivvzFYjxuBbXqbOA9+J1Z8bwV24JBGlFdSoR81j3mVrNawT+cGqOwnf3yyLPOxz3YGzFYGK
+YbXubNd3W5/SG5OAt0fnz6OoLYDRsAPPtu9/Q8CAwEAAaOCA/YwggPyMB8GA1UdIwQYMBaAFA+AY
+RyCMWHVLyjnjUY4tCzhxtniMB0GA1UdDgQWBBQTlCwVJk1why5XXazSjA0KtRQ8ATBBBgNVHREEOj
+A4ggxzc28uZmdjdS5lZHWCE2ZnY3UtZWlzMDEuZmdjdS5lZHWCE2ZnY3UtZWlzMDIuZmdjdS5lZHUwD
+gYDVR0PAQH/BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEFBQcDAjBrBgNVHR8EZ
+DBiMC+gLaArhilodHRwOi8vY3JsMy5kaWdpY2VydC5jb20vc3NjYS1zaGEyLWc2LmNybDAvoC2gK4YpaH
+R0cDovL2NybDQuZGlnaWNlcnQuY29tL3NzY2Etc2hhMi1nNi5jcmwwTAYDVR0gBEUwQzA3BglghkgBhv
+1sAQEwKjAoBggrBgEFBQcCARYcaHR0cHM6Ly93d3cuZGlnaWNlcnQuY29tL0NQUzAIBgZngQwBAgIwfA
+YIKwYBBQUHAQEEcDBuMCQGCCsGAQUFBzABhhhodHRwOi8vb2NzcC5kaWdpY2VydC5jb20wRgYIKw
+YBBQUHMAKGOmh0dHA6Ly9jYWNlcnRzLmRpZ2ljZXJ0LmNvbS9EaWdpQ2VydFNIQTJTZWN1cmVTZX
+J2ZXJDQS5jcnQwDAYDVR0TAQH/BAIwADCCAfUGCisGAQQB1nkCBAIEggHlBIIB4QHfAHYApLkJkLQY
+WBSHuxOizGdwCjw1mAT5G9+443fNDsgN3BAAAAFiB2KSfAAABAMARzBFAiBb7C60sbWavvN+nMQhp
+RGZGC3GqxpyCO2PsU2f90H8uwIhAKEXiqZw2I7iZX38No9htvrThD/EDfsRO2s04hcVAcNnAHYAb1N2rD
+HwMRnYmQCkURX/dxUcEdkCwQApBo2yCJo32RMAAAFiB2KUBQAABAMARzBFAiEA75QJglUj5tdoFhp
+VCVJ7p8IJ8Lnh2cj74SzQxxT2Vy0CIA2WpuZSxCtcb5QBwxeL4Ia6pG4tBjY0dq1TcdBKhPZaAHUAu9nfvB
++KcbWTlCOXqpJ7RzhXlQqrUugakJZkNo4e0YUAAAFiB2KSuwAABAMARjBEAiB6u4y4s6LCzSaXfJjHwOH
+Z00fB7JoUMpuOvv3+wL5KKgIgXDw/F57LBxsEw8wb/vLQ9q05ZyTKeU5ZJDLYWzNPblgAdgBVgdTCFpA
+2AUrqC5tXPFPwwOQ4eHAlCBcvo6odBxPTDAAAAWIHYpUlAAAEAwBHMEUCIH3SWryCV4YrhZ3/O9m
+6M/8JDT5VKL144SStrnh2tAg1AiEAtXnVLw7Z6BIGHjFZghj/WXyHWKDnJjjMuziHx7tU1JAwDQYJKoZIhv
+cNAQELBQADggEBAEyaHMNVLhpP6/0VdaWgia+E14d213oOiTI1yDMaWV8HI9HA1SdHpRP2ARfolDUz8
+ZAcJlESsNF74ziHmhFfkvOz+xPVp1Lc9mHtW3uCOqCxojXP29IBR7ZJn4OCvIJIchat/VhH/1Jv8Re/HifR7/Yg
+b7pFCOtd8He7ZOPh6k+bRqm9CNTpS+YTFZGuVR4wX3CxUnW0CNeDrysjBjzzq5bCsFNDrYj5XgxCGxk74
+8tEz86IXxV58kn4u+W6tjGzBQufCDMeIoEmKPgmBPgVwFhyIj/w4EC2XOH8sDWWGv78EKbhG9/NQ4V/S
+S88UPQTGHBAIOoL3PYotsdcpjGbbQ4=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.fgcu.edu/shibboleth-idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.fgcu.edu/shibboleth-idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.fgcu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.fgcu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.fgcu.edu/shibboleth-idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sso.fgcu.edu/shibboleth-idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Florida Gulf Coast University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Florida Gulf Coast University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www2.fgcu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Sven Hahues</GivenName>
+ <EmailAddress>shahues@fgcu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tony Dalton</GivenName>
+ <EmailAddress>tdalton@fgcu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Team</GivenName>
+ <EmailAddress>abuse@fgcu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Medicat, LLC -->
+<EntityDescriptor entityID="https://sso.medicatconnect.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sso.medicatconnect.com/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://patient-nd.medicatconnect.com/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://nd.medicatconnect.com/Shibboleth.sso/Login" index="3"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://elon.medicatconnect.com/Shibboleth.sso/Login" index="4"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://swarthmore.medicatconnect.com/Shibboleth.sso/Login" index="5"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://brandeis.medicatconnect.com/Shibboleth.sso/Login" index="6"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://patient-pointloma.medicatconnect.com/Shibboleth.sso/Login" index="7"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://pointloma.medicatconnect.com/Shibboleth.sso/Login" index="8"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mhc.medicatconnect.com/Shibboleth.sso/Login" index="9"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://njit.medicatconnect.com/Shibboleth.sso/Login" index="10"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://patient-njit.medicatconnect.com/Shibboleth.sso/Login" index="11"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://unthsc.medicatconnect.com/Shibboleth.sso/Login" index="12"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://smith.medicatconnect.com/Shibboleth.sso/Login" index="13"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://amherst.medicatconnect.com/Shibboleth.sso/Login" index="14"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://unthsc.medicatconnect.com/Shibboleth.sso/Login" index="15"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://patient-unthsc.medicatconnect.com/Shibboleth.sso/Login" index="16"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uchicago.medicatconnect.com/Shibboleth.sso/Login" index="17"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://radford.medicatconnect.com/Shibboleth.sso/Login" index="18"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://delval.medicatconnect.com/Shibboleth.sso/Login" index="19"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rutgers.medicatconnect.com/Shibboleth.sso/Login" index="20"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rbhs.medicatconnect.com/Shibboleth.sso/Login" index="21"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://patient-rbhs.medicatconnect.com/Shibboleth.sso/Login" index="22"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://brockport.medicatconnect.com/Shibboleth.sso/Login" index="23"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uncg.medicatconnect.com/Shibboleth.sso/Login" index="24"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://miami.medicatconnect.com/Shibboleth.sso/Login" index="25"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gmu.medicatconnect.com/Shibboleth.sso/Login" index="26"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://patient-gmu.medicatconnect.com/Shibboleth.sso/Login" index="27"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://usm.medicatconnect.com/Shibboleth.sso/Login" index="28"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cwu.medicatconnect.com/Shibboleth.sso/Login" index="29"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ccis.medicatconnect.com/Shibboleth.sso/Login" index="30"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://jefferson.medicatconnect.com/Shibboleth.sso/Login" index="31"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://patient-fairfield.medicatconnect.com/Shibboleth.sso/Login" index="32"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://fairfield.medicatconnect.com/Shibboleth.sso/Login" index="33"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://willamette.medicatconnect.com/Shibboleth.sso/Login" index="34"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://carleton.medicatconnect.com/Shibboleth.sso/Login" index="35"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://lehman.medicatconnect.com/Shibboleth.sso/Login" index="36"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ringling.medicatconnect.com/Shibboleth.sso/Login" index="37"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://marist.medicatconnect.com/Shibboleth.sso/Login" index="38"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://patient-carleton.medicatconnect.com/Shibboleth.sso/Login" index="39"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://memphis.medicatconnect.com/Shibboleth.sso/Login" index="40"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://gettysburg.medicatconnect.com/Shibboleth.sso/Login" index="41"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://juilliard.medicatconnect.com/Shibboleth.sso/Login" index="42"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://upbpitt.medicatconnect.com/Shibboleth.sso/Login" index="43"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://esu.medicatconnect.com/Shibboleth.sso/Login" index="44"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uncc.medicatconnect.com/Shibboleth.sso/Login" index="45"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uoregon.medicatconnect.com/Shibboleth.sso/Login" index="46"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://saic.medicatconnect.com" index="47"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://patient-saic.medicatconnect.com" index="48"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://syr.medicatconnect.com/Shibboleth.sso/Login" index="49"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://tcu.medicatconnect.com/Shibboleth.sso/Login" index="50"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://msjc.medicatconnect.com/Shibboleth.sso/Login" index="51"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Medicat</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://medicat.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="79" width="175" xml:lang="en">https://medicat.com/wp-content/uploads/medicat-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12947073973797162364, expires on Fri May 8 18:30:07 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sso.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://patient-nd.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://patient-nd.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://patient-nd.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://patient-nd.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://patient-nd.medicatconnect.com/Shibboleth.sso/SAML/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://patient-nd.medicatconnect.com/Shibboleth.sso/SAML/Artifact" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://nd.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://nd.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://nd.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://nd.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://nd.medicatconnect.com/Shibboleth.sso/SAML/POST" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://nd.medicatconnect.com/Shibboleth.sso/SAML/Artifact" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://elon.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://elon.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://elon.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://elon.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="20"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://elon.medicatconnect.com/Shibboleth.sso/SAML/POST" index="21"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://elon.medicatconnect.com/Shibboleth.sso/SAML/Artifact" index="22"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://swarthmore.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="23"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://swarthmore.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="24"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://swarthmore.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="25"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://swarthmore.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="26"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://brandeis.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="27"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://brandeis.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="28"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://brandeis.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="29"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://brandeis.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="30"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://patient-pointloma.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="31"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://patient-pointloma.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="32"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://patient-pointloma.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="33"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://patient-pointloma.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="34"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pointloma.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="35"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://pointloma.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="36"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pointloma.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="37"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pointloma.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="38"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mhc.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="39"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mhc.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="40"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mhc.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="41"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mhc.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="42"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://njit.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="43"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://njit.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="44"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://njit.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="45"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://njit.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="46"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://patient-njit.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="47"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://patient-njit.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="48"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://patient-njit.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="49"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://patient-njit.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="50"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unthsc.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="51"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://unthsc.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="52"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://unthsc.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="53"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://unthsc.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="54"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://smith.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="55"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://smith.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="56"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://smith.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="57"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://smith.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="58"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://amherst.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="59"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://amherst.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="60"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://amherst.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="61"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://amherst.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="62"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://patient-unthsc.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="63"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://patient-unthsc.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="64"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://patient-unthsc.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="65"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://patient-unthsc.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="66"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uchicago.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="67"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uchicago.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="68"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uchicago.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="69"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uchicago.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="70"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://radford.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="71"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://radford.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="72"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://radford.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="73"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://radford.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="74"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://delval.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="75"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://delval.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="76"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://delval.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="77"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://delval.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="78"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rutgers.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="79"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rutgers.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="80"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rutgers.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="81"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rutgers.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="82"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rbhs.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="83"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rbhs.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="84"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rbhs.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="85"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rbhs.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="86"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://patient-rbhs.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="87"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://patient-rbhs.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="88"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://patient-rbhs.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="89"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://patient-rbhs.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="90"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://brockport.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="91"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://brockport.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="92"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://brockport.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="93"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://brockport.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="94"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uncg.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="95"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uncg.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="96"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uncg.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="97"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uncg.medicatconnect.com/Shibboleth.sso/SAML/ECP" index="98"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://miami.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="99"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://miami.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="100"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://miami.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="101"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://miami.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="102"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gmu.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="103"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gmu.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="104"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gmu.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="105"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gmu.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="106"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://patient-gmu.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="107"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://patient-gmu.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="108"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://patient-gmu.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="109"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://patient-gmu.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="110"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://usm.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="111"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://usm.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="112"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://usm.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="113"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://usm.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="114"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cwu.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="115"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cwu.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="116"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cwu.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="117"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cwu.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="118"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ccis.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="119"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ccis.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="120"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ccis.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="121"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ccis.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="122"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jefferson.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="123"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://jefferson.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="124"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://jefferson.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="125"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://jefferson.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="126"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://patient-fairfield.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="127"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://patient-fairfield.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="128"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://patient-fairfield.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="129"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://patient-fairfield.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="130"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fairfield.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="131"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://fairfield.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="132"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fairfield.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="133"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fairfield.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="134"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://willamette.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="135"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://willamette.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="136"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://willamette.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="137"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://willamette.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="138"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://carleton.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="139"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://carleton.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="140"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://carleton.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="141"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://carleton.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="142"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lehman.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="143"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lehman.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="144"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lehman.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="145"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lehman.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="146"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://patient-carleton.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="147"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://patient-carleton.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="148"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://patient-carleton.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="149"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://patient-carleton.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="150"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ringling.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="151"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ringling.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="152"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ringling.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="153"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ringling.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="154"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://marist.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="155"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://marist.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="156"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://marist.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="157"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://marist.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="158"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://memphis.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="159"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://memphis.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="160"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://memphis.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="161"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://memphis.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="162"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://gettysburg.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="163"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://gettysburg.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="164"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://gettysburg.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="165"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://gettysburg.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="166"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://juilliard.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="167"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://juilliard.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="168"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://juilliard.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="169"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://juilliard.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="170"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://upbpitt.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="171"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://upbpitt.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="172"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://upbpitt.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="173"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://upbpitt.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="174"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://esu.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="175"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://esu.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="176"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://esu.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="177"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://esu.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="178"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uncc.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="179"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uncc.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="180"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uncc.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="181"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uncc.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="182"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uoregon.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="183"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uoregon.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="184"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uoregon.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="185"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uoregon.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="186"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saic.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="187"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://saic.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="188"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://saic.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="189"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://saic.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="190"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://patient-saic.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="191"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://patient-saic.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="192"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://patient-saic.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="193"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://patient-saic.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="194"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://syr.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="195"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://syr.medicatconnect.com/Shibboleth.sso/SAML2/POSTSimpleSign" index="196"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://syr.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="197"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://syr.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="198"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tcu.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="199"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tcu.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="200"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tcu.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="201"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tcu.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="202"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://msjc.medicatconnect.com/Shibboleth.sso/SAML2/POST" index="203"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://msjc.medicatconnect.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="204"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://msjc.medicatconnect.com/Shibboleth.sso/SAML2/Artifact" index="205"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://msjc.medicatconnect.com/Shibboleth.sso/SAML2/ECP" index="206"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Medicat</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Medicat, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Medicat, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://medicat.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Chris Short</GivenName>
+ <EmailAddress>its@medicat.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chis Short</GivenName>
+ <EmailAddress>its@medicat.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chis Short</GivenName>
+ <EmailAddress>its@medicat.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- North Carolina Central University -->
+<EntityDescriptor entityID="https://idp.nccu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.nccu.edu/idp/error.jsp" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">nccu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">North Carolina Central University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity provider for North Carolina Central University.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.nccu.edu/knowledgebase/faq.cfm?id=442</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nccu.edu/policies/retrieve.cfm?id=162</mdui:PrivacyStatementURL>
+ <mdui:Logo height="97" width="200" xml:lang="en">https://idp.nccu.edu/idp/images/nccu-logo-200x97.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16984809649687533022, expires on Thu Jun 11 16:02:49 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.nccu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.nccu.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">North Carolina Central University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">North Carolina Central University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nccu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Joel Faison</GivenName>
+ <EmailAddress>joel.faison@nccu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Hawkins</GivenName>
+ <EmailAddress>mike.hawkins@nccu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dindo Liboon</GivenName>
+ <EmailAddress>dliboon@nccu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Zachery Mitcham</GivenName>
+ <EmailAddress>zmitcham@nccu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- NameCoach -->
+<EntityDescriptor entityID="https://stanford-uat.name-coach.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NameCoach UAT Environment for Stanford University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://cloud.name-coach.com/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="76" width="233" xml:lang="en">https://name-coach.com/blog/wp-content/uploads/2018/04/logo2.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14805300137077311664, expires on Sat Oct 14 12:20:22 2028 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://stanford-uat.name-coach.com/accounts/auth/saml/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stanford-uat.name-coach.com/accounts/auth/saml/acs" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">NameCoach UAT Environment for Stanford University</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NameCoach</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NameCoach</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.name-coach.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jack Green</GivenName>
+ <EmailAddress>jack@name-coach.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jack Green</GivenName>
+ <EmailAddress>jack@name-coach.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jack Green</GivenName>
+ <EmailAddress>jack@name-coach.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Wayne State College -->
+<EntityDescriptor entityID="https://shib.wsc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://shib.wsc.edu/idp/error.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wsc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Wayne State College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Located in Wayne NE, Wayne State College is a comprehensive college devoted to freedom of inquiry, excellence in teaching and learning, and regional service and development.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.wsc.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nscs.edu/directory/1/policy_manual</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="492" xml:lang="en">https://shib.wsc.edu/idp/images/wsc-color-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 202983592526009386384128232028863695203684254035, expires on Sun Jul 13 17:53:47 2036 GMT -->
+ <ds:X509Certificate>
+MIIDGzCCAgOgAwIBAgIUI44ZXc9R3C1akBSUHU1EyUG/AVMwDQYJKoZIhvcNAQEL
+BQAwFzEVMBMGA1UEAwwMc2hpYi53c2MuZWR1MB4XDTE2MDcxMzE3NTM0N1oXDTM2
+MDcxMzE3NTM0N1owFzEVMBMGA1UEAwwMc2hpYi53c2MuZWR1MIIBIjANBgkqhkiG
+9w0BAQEFAAOCAQ8AMIIBCgKCAQEAlP14xBoQYRDzB224hegYCMmRWA96gXHcnrvc
+6YCxTV3arHqVSyJgELA3bKoqG3sELpCVZSbVmLp+GTc37ITTYsnRrtRXS9goy/ZK
+BMJE1xhQpBehUVszKwyQZsnHW1kAKSl9NiLyEhnVV7a9LSCwtjiQv3BIDANK1Rzs
+ZG9pOaT0FTYiq2BVQJK/rbJciKtsMQPu6GZ6Jp2PdE3Qmo2fsELVhzIHuB+qDj0x
+ZUDfy3eHQcKBfekD9lsemgMZdvegzg2Sw/EdXFnF7WGg3DrRIQ18Zmi16TT6fJRp
+RoWZd6ZyfMUoC5pqMbavtz82Y4q2lKT6FRdQq68u76gNwUL1QwIDAQABo18wXTAd
+BgNVHQ4EFgQUayb6jyiHctGlKqAPUc7wLdqSG/gwPAYDVR0RBDUwM4IMc2hpYi53
+c2MuZWR1hiNodHRwczovL3NoaWIud3NjLmVkdS9pZHAvc2hpYmJvbGV0aDANBgkq
+hkiG9w0BAQsFAAOCAQEAPyvIUbTkIyjO6z25gaytlwvjsxHMkrlX1O+1x+9cpsvs
+tXk7piewWS1EWV6M5EJIUCL+AItZ1wDz9Pxgau4dfhKK4lPnC/lk4/TB2msRsztK
+dWCglY9mYWfjWuKySGTm6t+3hgLfU6mJHaV8o0qSyQQurNJb9ThGGef0sijNxgkb
+1ROmZe4L5Tpbv6lL1yc/QtvSic+j9USKsPs2QXpWcZVt+LPFjQ0nw4BvThIfiKnS
+sNzSLhl38WFiI+SXfuWAdBdT0Hr25v29x/HOUDboyFQHNIxeilkpIIc6ZOVkKYDW
+LcwPSgyTwm0QGzbFcZccu5Ky4rb6G0kE8z99ij6GrA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shib.wsc.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.wsc.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.wsc.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.wsc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.wsc.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Wayne State College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Wayne State College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.wsc.edu/site/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Wayne State College Help Desk</GivenName>
+ <EmailAddress>helpdesk@wsc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>NetTech Team</GivenName>
+ <EmailAddress>nettech@wsc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brandon Eckmann</GivenName>
+ <EmailAddress>breckma1@wsc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>NetTech Team</GivenName>
+ <EmailAddress>nettech@wsc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Space Telescope Science Institute -->
+<EntityDescriptor entityID="https://ssoportal.stsci.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://ssoportal.stsci.edu/idpinfo/idp_error.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">stsci.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Space Telescope Science Institute</mdui:DisplayName>
+ <mdui:Description xml:lang="en">We help humanity explore the universe with advanced space telescopes and ever-growing data archives.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://outerspace.stsci.edu/display/SSO</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.stsci.edu/institute/Privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="116" xml:lang="en">https://ssoportal.stsci.edu/idpinfo/stsci-logo-horiz-116x64.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 741432323931145268727989167770731814442439914048, expires on Mon Jan 16 20:42:40 2034 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ssoportal.stsci.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ssoportal.stsci.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Space Telescope Science Institute</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Space Telescope Science Institute</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.stsci.edu/portal/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>SSO administrative contact</GivenName>
+ <EmailAddress>sso_admin@stsci.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>SSO technical contact</GivenName>
+ <EmailAddress>sso_tech@stsci.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Security Office</GivenName>
+ <EmailAddress>security-staff@stsci.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>IT Support</GivenName>
+ <EmailAddress>support@stsci.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Coast Community College District -->
+<EntityDescriptor entityID="https://pgsso.cccd.edu/sso">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.cccd.edu/employees/ITServiceDesk/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cccd.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Coast Community College District</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Coast College Central SSO - Portal Guard</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cccd.edu/boardoftrustees/Documents/BP_5040_Student_Records_Directory_Information_and_Privacy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="58" width="190" xml:lang="en">https://www.cccd.edu/Style%20Library/CCCD/Images/Cccd-logo1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16139840946882527750, expires on Fri Mar 26 18:54:37 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pgsso.cccd.edu/sso/slo.ashx"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://pgsso.cccd.edu/sso/go.ashx"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pgsso.cccd.edu/sso/go.ashx"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Coast Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Coast Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.cccd.edu/Pages/home.aspx</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Steve Mihatov</GivenName>
+ <EmailAddress>stevem@coastline.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Eric Hobbs</GivenName>
+ <EmailAddress>ehobbs@cccd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kevin Riley</GivenName>
+ <EmailAddress>kriley@cccd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ralph Looney</GivenName>
+ <EmailAddress>rlooney@cccd.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Illinois at Urbana-Champaign -->
+<EntityDescriptor entityID="https://cilogon.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://cilogon.org/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://test.cilogon.org/Shibboleth.sso/Login" index="2"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://polo1.cilogon.org/Shibboleth.sso/Login" index="3"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://polo2.cilogon.org/Shibboleth.sso/Login" index="4"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://polo3.cilogon.org/Shibboleth.sso/Login" index="5"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://polo4.cilogon.org/Shibboleth.sso/Login" index="6"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://co.cilogon.org/Shibboleth.sso/Login" index="7"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CILogon</mdui:DisplayName>
+ <mdui:Description xml:lang="en">CILogon facilitates secure access to CyberInfrastructure (CI).</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.cilogon.org/faq</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://ca.cilogon.org/policy/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="380" xml:lang="en">https://cilogon.org/logo</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11980383261225967181, expires on Sun Jan 1 16:34:00 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cilogon.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://cilogon.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cilogon.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://cilogon.org/Shibboleth.sso/SAML/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://cilogon.org/Shibboleth.sso/SAML/Artifact" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.cilogon.org/Shibboleth.sso/SAML2/POST" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://test.cilogon.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test.cilogon.org/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://test.cilogon.org/Shibboleth.sso/SAML/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://test.cilogon.org/Shibboleth.sso/SAML/Artifact" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cilogon.org/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test.cilogon.org/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://polo1.cilogon.org/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://polo2.cilogon.org/Shibboleth.sso/SAML2/POST" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://polo1.cilogon.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://polo2.cilogon.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://polo1.cilogon.org/Shibboleth.sso/SAML2/Artifact" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://polo2.cilogon.org/Shibboleth.sso/SAML2/Artifact" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ecp.cilogon.org/Shibboleth.sso/SAML2/ECP" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://polo1.cilogon.org/Shibboleth.sso/SAML/POST" index="20"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://polo2.cilogon.org/Shibboleth.sso/SAML/POST" index="21"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://polo1.cilogon.org/Shibboleth.sso/SAML/Artifact" index="22"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://polo2.cilogon.org/Shibboleth.sso/SAML/Artifact" index="23"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://polo3.cilogon.org/Shibboleth.sso/SAML2/POST" index="24"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://polo3.cilogon.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="25"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://polo3.cilogon.org/Shibboleth.sso/SAML2/Artifact" index="26"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://polo3.cilogon.org/Shibboleth.sso/SAML/POST" index="27"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://polo3.cilogon.org/Shibboleth.sso/SAML/Artifact" index="28"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://polo4.cilogon.org/Shibboleth.sso/SAML2/POST" index="29"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://polo4.cilogon.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="30"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://polo4.cilogon.org/Shibboleth.sso/SAML2/Artifact" index="31"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://polo4.cilogon.org/Shibboleth.sso/SAML/POST" index="32"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://polo4.cilogon.org/Shibboleth.sso/SAML/Artifact" index="33"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://co.cilogon.org/Shibboleth.sso/SAML2/POST" index="34"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://co.cilogon.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="35"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://co.cilogon.org/Shibboleth.sso/SAML2/Artifact" index="36"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://co.cilogon.org/Shibboleth.sso/SAML/POST" index="37"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://co.cilogon.org/Shibboleth.sso/SAML/Artifact" index="38"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CILogon</ServiceName>
+ <ServiceDescription xml:lang="en">CILogon facilitates secure access to CyberInfrastructure (CI).</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Illinois at Urbana-Champaign</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">National Center for Supercomputing Applications</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ncsa.illinois.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>CILogon Support</GivenName>
+ <EmailAddress>help@cilogon.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>CILogon Support</GivenName>
+ <EmailAddress>help@cilogon.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CILogon Support</GivenName>
+ <EmailAddress>help@cilogon.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>NCSA Security</GivenName>
+ <EmailAddress>security@ncsa.illinois.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://idp.ncsa.illinois.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.ncsa.illinois.edu/error" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ncsa.illinois.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">National Center for Supercomputing Applications</mdui:DisplayName>
+ <mdui:Description xml:lang="en">National Center for Supercomputing Applications (NCSA)</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://idp.ncsa.illinois.edu/policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="148" xml:lang="en">https://idp.ncsa.illinois.edu/idp/images/logos_ncsa.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1019852690662639587419779309546272435592313615447, expires on Sun Jan 6 21:15:04 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.ncsa.illinois.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.ncsa.illinois.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Illinois at Urbana-Champaign</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">National Center for Supercomputing Applications</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.ncsa.illinois.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>NCSA Help Desk</GivenName>
+ <EmailAddress>help+idp@ncsa.illinois.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>NCSA Help Desk</GivenName>
+ <EmailAddress>help+idp@ncsa.illinois.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>NCSA Security</GivenName>
+ <EmailAddress>security@ncsa.illinois.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>NCSA Help Desk</GivenName>
+ <EmailAddress>help+idp@ncsa.illinois.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Marymount University -->
+<EntityDescriptor entityID="https://shib.marymount.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">marymount.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Marymount University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.marymount.edu/Privacy-Policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="104" width="325" xml:lang="en">https://www.marymount.edu/App_Themes/MarymountUniversity/images/desktop-view-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 752092232212528114417994700535707076449071380653, expires on Fri Sep 23 14:37:19 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.marymount.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.marymount.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.marymount.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.marymount.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Marymount University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Marymount University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.marymount.edu/Home</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Steve Munson</GivenName>
+ <EmailAddress>smunson@marymount.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Yong Shin</GivenName>
+ <EmailAddress>yshin@marymount.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Dave Lutes</GivenName>
+ <EmailAddress>dlutes@marymount.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Pipop Nuangpookka</GivenName>
+ <EmailAddress>pnuangpo@marymount.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- American Museum of Natural History - Richard Gilder Graduate School -->
+<EntityDescriptor entityID="http://adfs.amnh.org/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">amnh.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">American Museum of Natural History - Richard Gilder Graduate School</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.amnh.org</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.amnh.org/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="796" width="1046" xml:lang="en">https://adfs.amnh.org/adfs/portal/illustration/illustration.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 41368772400469184482936197459333117945, expires on Sat Feb 17 17:18:17 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adfs.amnh.org/adfs/ls/?wa=wsignout1.0"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://adfs.amnh.org/adfs/ls/?wa=wsignout1.0"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://adfs.amnh.org/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adfs.amnh.org/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">American Museum of Natural History - Richard Gilder Graduate School</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">American Museum of Natural History - Richard Gilder Graduate School</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.amnh.org/our-research/richard-gilder-graduate-school</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Benedetto</GivenName>
+ <EmailAddress>mbenedetto@amnh.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>IDP Admins</GivenName>
+ <EmailAddress>idpadmins@amnh.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>AMNH Security</GivenName>
+ <EmailAddress>security@amnh.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Huron Consulting Services, LLC -->
+<EntityDescriptor entityID="https://unl.huronecc.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://unl.huronecc.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Huron's Employee Compensation Compliance (formerly ecrt) effort reporting solution</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.huronconsultinggroup.com/legal/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="540" width="1040" xml:lang="en">https://www.huronconsultinggroup.com/img/logo-huron.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11929907563152447229, expires on Sun Nov 5 18:08:05 2028 GMT -->
+ <ds:X509Certificate>
+MIIEFDCCAnygAwIBAgIJAKWPi7io8pb9MA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV
+BAMTEHVubC5odXJvbmVjYy5jb20wHhcNMTgxMTA4MTgwODA1WhcNMjgxMTA1MTgw
+ODA1WjAbMRkwFwYDVQQDExB1bmwuaHVyb25lY2MuY29tMIIBojANBgkqhkiG9w0B
+AQEFAAOCAY8AMIIBigKCAYEAmeP5NiLxUDRztF6GjRsalyUzoeXmM5NwbKTNiQJR
+6oFynAjqYZewotxR8uvmiVe4ZiYrNi8BkgBiGD90V+sbmI9Xd55clzsybHEljl+g
+R9TS+K8CJFSWVC/BiP4Jhhrsslw6ofZUz+1s8ogvQE4qcHvpoq4H0virVFXqi7V1
+FAQYeR9DsXvCPkxRUlz1e8ia2wVQHskTPhm+2CE3VtzLtrUuiAun4qiCDJcxW7/C
+Z5jvZNt+sHPyNJYfe//1bFcMrl5UUSPgyALBdjIOfm6daQO1YZ7Zzhkqw9jjqI4Z
+92w72lPOTAaXvDYjI5dM26TLyRhAHahCk7UiLjU9vxyVDEa8OvIHdd6rFxhB+05b
+p5sAUqtpCiDTZ3Cz113Q0a16EJ7PehqzsxM3O+LxDT1YwKUCu7ZzBZq16rK4O24v
+lryarILidYmHW3wcHy8ccuQwY+uE69h4rFuOdZDBAHwSejUa86R51IrXVMZUCU32
+goayke5EK+3SDoiLGwwg+iE3AgMBAAGjWzBZMDgGA1UdEQQxMC+CEHVubC5odXJv
+bmVjYy5jb22GG3VubC5odXJvbmVjYy5jb20vc2hpYmJvbGV0aDAdBgNVHQ4EFgQU
+7RAUbvUGXSBy0aCnrTqbgYwCbyQwDQYJKoZIhvcNAQELBQADggGBAHBWVwiXQzLo
+UEbj9f/WsXuQ3LSGCV3hySLGJZffK0CIH5qeKH5U0EMIg1/NVAj2FsweySwsFygt
+5VU89rJQGWDliiT5IUCjWNPJbKnKYjKVUCSZCuFhl3gkIbqE8ALbh+eabjBhLUxP
+Tp+fkj8hk/Q8mL76m9Az2110DtLIPNDoY8pQeFtoTjNKc79+Fw2s1ipbKIltYnLN
+4wpP3IhIsTmv/QCGXNk+8v+I1t5cbxaqDt4mnqAyPNAmxdNr8aOpg9oDZS/gQoy+
+2ZrK73SuCIiowCVlFy0yADF9YLm5URGxve/lqbWpPWTB5u9tGUFV9hYq5iDvU5+A
+XfOLNQzarjNiDbLiiVsaIhXgRxIw+vmbtOSkDIyLsncbtX8ONWV/yJn8Pp+E2ge8
+oT7iKiVXBtnOkqy0IkmceWvQcfUmuySrQN1rN+IjJAZd2EmQ3VfOPrl0J6lgTKNs
+cwu0QkjOOuS66A2SCUrbb9zGPyq4jqM73zeK/3e7FzLzIOZXmSBaPA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://unl.huronecc.com/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://unl.huronecc.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unl.huronecc.com/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unl.huronecc.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://unl.huronecc.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://unl.huronecc.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://unl.huronecc.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Huron's Employee Compensation Compliance (formerly ecrt) effort reporting solution</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Huron Consulting Services, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Huron Consulting Group</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.huronconsultinggroup.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cathy Spears</GivenName>
+ <EmailAddress>ecrt-shib@huronconsultinggroup.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Huron Hosting Services</GivenName>
+ <EmailAddress>ecrt-shib@huronconsultinggroup.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Cathy Spears</GivenName>
+ <EmailAddress>ecrt-shib@huronconsultinggroup.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Ceannate Corp -->
+<EntityDescriptor entityID="https://demo.portal.iontuition.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">IontuitionSP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Access point for IonTuition, a student loan aggregate service.
+</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://demo.iontuition.com/Privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="222" xml:lang="en">https://demo.iontuition.com/Content/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13123848289017572425350910165257146194, expires on Thu Oct 8 12:00:00 2020 GMT -->
+ <ds:X509Certificate>
+MIIIeDCCB2CgAwIBAgIQCd+PrXXKj0tDvI9pj73PUjANBgkqhkiG9w0BAQsFADB1
+MQswCQYDVQQGEwJVUzEVMBMGA1UEChMMRGlnaUNlcnQgSW5jMRkwFwYDVQQLExB3
+d3cuZGlnaWNlcnQuY29tMTQwMgYDVQQDEytEaWdpQ2VydCBTSEEyIEV4dGVuZGVk
+IFZhbGlkYXRpb24gU2VydmVyIENBMB4XDTE4MTAwNDAwMDAwMFoXDTIwMTAwODEy
+MDAwMFowgf0xHTAbBgNVBA8MFFByaXZhdGUgT3JnYW5pemF0aW9uMRMwEQYLKwYB
+BAGCNzwCAQMTAlVTMRkwFwYLKwYBBAGCNzwCAQITCERlbGF3YXJlMRAwDgYDVQQF
+Ewc1MTg0ODE3MQswCQYDVQQGEwJVUzERMA8GA1UECBMISWxsaW5vaXMxGDAWBgNV
+BAcTD1JvbGxpbmcgTWVhZG93czEZMBcGA1UEChMQSW9udHVpdGlvbiwgSW5jLjEg
+MB4GA1UECxMXSW5mcmFzdHJ1Y3R1cmUgU2VydmljZXMxIzAhBgNVBAMTGmRlbW8u
+cG9ydGFsLmlvbnR1aXRpb24uY29tMIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIIC
+CgKCAgEAwPLmVixy8rljwnIqjgsBiPIiJK94YVFIh8UV3I/2A8ZeONBHMlYnGGqN
+tEsVkTd3/NIaRl2oAM9v2036fjIvN0DvpVFBBbP34/ecdkGLHCMjKjt07Ui6O0JF
+qB7cr5VJ+B7bhWvodgDlbxQLjkllrkUNB7Xc2blZXfEEWSfOd8+tqp/eNWVsGo16
+Zs1sDM3mIqRr5DyeBdWkpftlp5ByDZPQqAnrXpzVCpJ2JA0ttrmpjSybHpYDVrot
+1fvknpkMo0pApCnzzFWA5nnJy9Xoa4azKmVi/DSR1P00ykdUPitfR6VJfPBSk9vt
+zeQDSFpN1p0O6o+XlM4RTKw9p1H/h4oucHobKBRd3A/GOYQiRMCd7lX7OgznSrr0
+Vq4BkVH1oqBU0D1nD1atxn0mG92ZkVUgn0p/Zq9NFQ2lDATqYD6BkGvYChorGzgE
+lsLhmpdSiVcZiGdUX9WM4XgHmnQ+zOLeZ7lxhEiGU51zJlGYjFh89Uahxpk0pVJ/
+8JiVl+ctfHAtIIwjNQpHWm2oESTW/yr9DnBHdmM0eNohcEmVbFDz1cOvNKIm7j1E
+Xma06rz+ZPwa/igCkSPqHNFMJfb9t4uFHtfuHrOAYZgYV9SnY1a2Tuf9HB4KDys/
+ZUKbakZPCRvrRzwJybLRVdveOLv47PweC3lDlu6TUk3fKrJA0NcCAwEAAaOCA3kw
+ggN1MB8GA1UdIwQYMBaAFD3TUKXWoK3u80pgCmXTIdT4+NYPMB0GA1UdDgQWBBT4
+auI0A13GZvUQODmVo6mBZECYpjAlBgNVHREEHjAcghpkZW1vLnBvcnRhbC5pb250
+dWl0aW9uLmNvbTAOBgNVHQ8BAf8EBAMCBaAwHQYDVR0lBBYwFAYIKwYBBQUHAwEG
+CCsGAQUFBwMCMHUGA1UdHwRuMGwwNKAyoDCGLmh0dHA6Ly9jcmwzLmRpZ2ljZXJ0
+LmNvbS9zaGEyLWV2LXNlcnZlci1nMi5jcmwwNKAyoDCGLmh0dHA6Ly9jcmw0LmRp
+Z2ljZXJ0LmNvbS9zaGEyLWV2LXNlcnZlci1nMi5jcmwwSwYDVR0gBEQwQjA3Bglg
+hkgBhv1sAgEwKjAoBggrBgEFBQcCARYcaHR0cHM6Ly93d3cuZGlnaWNlcnQuY29t
+L0NQUzAHBgVngQwBATCBiAYIKwYBBQUHAQEEfDB6MCQGCCsGAQUFBzABhhhodHRw
+Oi8vb2NzcC5kaWdpY2VydC5jb20wUgYIKwYBBQUHMAKGRmh0dHA6Ly9jYWNlcnRz
+LmRpZ2ljZXJ0LmNvbS9EaWdpQ2VydFNIQTJFeHRlbmRlZFZhbGlkYXRpb25TZXJ2
+ZXJDQS5jcnQwDAYDVR0TAQH/BAIwADCCAX4GCisGAQQB1nkCBAIEggFuBIIBagFo
+AHYApLkJkLQYWBSHuxOizGdwCjw1mAT5G9+443fNDsgN3BAAAAFmP0rJjwAABAMA
+RzBFAiAfDj6kt8qo4FTtwBgtmLpgiAaqIny9Ylamn7MK6Zn9UQIhAOW33glflLjz
+yV53FvgOdeDdCCwa3zxF5mugcSZfB7TiAHYAVhQGmi/XwuzT9eG9RLI+x0Z2ubyZ
+EVzA75SYVdaJ0N0AAAFmP0rJ0gAABAMARzBFAiBKy5mFb4Qi+9vn8e5EFbbxiD2x
+d8cHtykooJeiJPrxMwIhAJnoGdtnqusC0S8XlBEQJUx/AQGQw6rNwkTQr+KJV91n
+AHYAu9nfvB+KcbWTlCOXqpJ7RzhXlQqrUugakJZkNo4e0YUAAAFmP0rKWwAABAMA
+RzBFAiByEwe19/bIOS7jAVezJb5Amy4EKHZ8zmEJEoRE4HKkagIhALF3ySs4yYPh
+l/zfs5sgnYesE97LZup+XQYkQq1slv3yMA0GCSqGSIb3DQEBCwUAA4IBAQDICRex
+PiRImdqCfpeEG6OkuVQ8AK7RUlB+J8EVjYIg4ghEKEVVVGph73NXt4xPR/Xpy8Fy
+3eu7ylCXh3gzizaBa7su+UTwa9Q904VNGaHAliR77Neqxig92VtdyX7iCVTS8Nt8
+b0HNQHasKQPbzr3ad71MZsQdLTpz1ha8nPStaLpi8jvcrb68+KWZBgVwhsLQX32P
+4HOmE3/GAu0qxes0HAR0RFKYsHfLxt5520UAcvdjxYZ7eomTqU9597BW3zA0Ov3f
+SMjUxCrzm+Uu6gMu4P6E7cfxGsmNLycL/c4FVBBLsFA9MfXVEZaL+itD0nQpx4K/
+SqsiqlofTGktgphx
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://demo.portal.iontuition.com/SAML/SLOService"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://demo.portal.iontuition.com/SAML/AssertionConsumerService" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">IontuitionSP</ServiceName>
+ <ServiceDescription xml:lang="en">Access point for IonTuition, a student loan aggregate service.
+</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ceannate Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">IonTuition</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://iontuition.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jonathan Domanus</GivenName>
+ <EmailAddress>jdomanus@ceannate.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jonathan Domanus</GivenName>
+ <EmailAddress>jdomanus@ceannate.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>David Bradley</GivenName>
+ <EmailAddress>dbradley@ceannate.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Keith Kuchaes</GivenName>
+ <EmailAddress>kkuchaes@ceannate.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://www.iontuition.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">IontuitionSP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Access point for Iontuition, a student borrower service. </mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.iontuition.com/Privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="222" xml:lang="en">https://www.iontuition.com/Content/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11171905976671445220099962134412641146, expires on Fri Dec 31 14:00:00 2049 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.iontuition.com/SAML/SLOService"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.iontuition.com/SAML/SLOService"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.iontuition.com/SAML/AssertionConsumerService" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal.iontuition.com/SAML/AssertionConsumerService" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">IontuitionSP</ServiceName>
+ <ServiceDescription xml:lang="en">Access point for Iontuition, a student borrower service. </ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ceannate Corp</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">IonTuition</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://iontuition.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jonathan Domanus</GivenName>
+ <EmailAddress>JDomanus@ceannate.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Keith Kuchaes</GivenName>
+ <EmailAddress>kkuchaes@ceannate.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Keith Kuchaes</GivenName>
+ <EmailAddress>kkuchaes@ceannate.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>David Bradley</GivenName>
+ <EmailAddress>DBradley@ceannate.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- El Camino Community College District -->
+<EntityDescriptor entityID="https://idp.elcamino.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www3.elcamino.edu/uportal/helpfiles/login_info.htm" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">elcamino.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">El Camino Community College District</mdui:DisplayName>
+ <mdui:Description xml:lang="en">El Camino College IdP site</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www3.elcamino.edu/uportal/helpfiles/login_info.htm</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.elcamino.edu/privacy-policy.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="476" xml:lang="en">https://www.elcamino.edu</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 691670211027497122584278921720006331996747814897, expires on Sun Feb 5 04:22:23 2034 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.elcamino.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.elcamino.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.elcamino.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">El Camino Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">El Camino Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.elcamino.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Paul Yoder</GivenName>
+ <EmailAddress>pyoder@elcamino.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Will Warren</GivenName>
+ <EmailAddress>wewarren@elcamino.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Paul Yoder</GivenName>
+ <EmailAddress>pyoder@elcamino.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Malone University -->
+<EntityDescriptor entityID="https://idp.malone.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://helpdesk.malone.edu/helpdesk/WebObjects/Helpdesk.woa/wa/FaqActions/view?faqId=365" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">malone.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Malone University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Malone University Identity Provider</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://helpdesk.malone.edu/helpdesk/WebObjects/Helpdesk.woa/wa/FaqActions/view?faqId=364</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://helpdesk.malone.edu/helpdesk/WebObjects/Helpdesk.woa/wa/FaqActions/view?faqId=355</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="404" xml:lang="en">https://idp.malone.edu/idp/images/MaloneLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 565717773450932636375000441648493087489242080836, expires on Sun Sep 20 21:14:22 2037 GMT -->
+ <ds:X509Certificate>
+MIIDIzCCAgugAwIBAgIUYxepjSDajvFrXfDeSYd3SI42pkQwDQYJKoZIhvcNAQEL
+BQAwGTEXMBUGA1UEAwwOaWRwLm1hbG9uZS5lZHUwHhcNMTcwOTIwMjExNDIyWhcN
+MzcwOTIwMjExNDIyWjAZMRcwFQYDVQQDDA5pZHAubWFsb25lLmVkdTCCASIwDQYJ
+KoZIhvcNAQEBBQADggEPADCCAQoCggEBAKXq/pO5LnUqYFnFPPBqIQP78NamXzHi
+YZ0Gf8PFXssuteue5Skmgv5n5d2p+9Enj52AMtwwWnhoGhp+LJEoxhNmKpzRSoJI
+kJM3lG9KS8zEfdQhDFudneL3/Xxwp3BKMrp07FLuEmfo58bS9fZ5wq2Y+a3TUkre
+Psw5tX81UcIsaNuWrc2Dm/WSsEp+S6+RcBOXPaU3R6eDI8gj92NXjx8VMuECM+LV
+bJLuE3hSXMtQxua8MID1mk/S0dD9y6GlKB7gB511bkYz3gZu7vEzcWuj9kEdhdkB
+OwXWo77Y3PEw9G/KaKZXbFDazNBOojdrak7t4yY02zF1oAA5WB3yON8CAwEAAaNj
+MGEwHQYDVR0OBBYEFD/bQgz2KfhQ74NXFyF8sZLCz3eIMEAGA1UdEQQ5MDeCDmlk
+cC5tYWxvbmUuZWR1hiVodHRwczovL2lkcC5tYWxvbmUuZWR1L2lkcC9zaGliYm9s
+ZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQB8awFhLHlEVx+qfyn4021Up42cdqkXazsw
+93MPIHYUO2/4nbweRxD3MpxFeGGlnVsII7TJrJTNtyKIK2Mx3zr3lzfVznElqDr5
+MoMMV0dTLxY7iRP0DqsbkuVt5fsqCFalBqi6tJqmhkwtBIxWtFB3Tbj4XepzkfKH
+vAux5WMcXtp0hJ1b0zSAfKLhute6gpmQd5DfKqfWukGozIMlnt6iT25pTO+Viqle
+mH/IIu82kQOGBG+wwZnquX1Du1WnlyH/dYNEFDNnRbYRs7UWLRiVAB3X00o2DmsB
+Iuo0bOkI5mImhXOGGx968I2HlzH5eZ4hIlCSzBfGMXzs66Y5eTga
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.malone.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.malone.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Malone University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Malone University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.malone.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Malone InCommon Security</GivenName>
+ <EmailAddress>helpdesk@malone.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Malone InCommon Support</GivenName>
+ <EmailAddress>helpdesk@malone.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Malone InCommon Technical</GivenName>
+ <EmailAddress>helpdesk@malone.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Malone InCommon Administrative</GivenName>
+ <EmailAddress>helpdesk@malone.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://research-sp.malone.edu/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://research-sp.malone.edu/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Malone University Research</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Malone University Research Service Provider</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://helpdesk.malone.edu/helpdesk/WebObjects/Helpdesk.woa/wa/FaqActions/view?faqId=355</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="404" xml:lang="en">https://research-sp.malone.edu/MaloneLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16146814476203926283, expires on Thu Dec 9 16:42:36 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://research-sp.malone.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://research-sp.malone.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://research-sp.malone.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://research-sp.malone.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Malone University Research</ServiceName>
+ <ServiceDescription xml:lang="en">Malone University Research Service Provider</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Malone University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Malone University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.malone.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Malone Research InCommon Technical</GivenName>
+ <EmailAddress>incommon@malone.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Malone Research InCommon Administrative</GivenName>
+ <EmailAddress>incommon@malone.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Malone Research InCommon Support</GivenName>
+ <EmailAddress>incommon@malone.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Malone Research InCommon Security</GivenName>
+ <EmailAddress>incommon@malone.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Modern Language Association of America -->
+<EntityDescriptor entityID="https://msucommons-dev.hcommons-dev.org/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">MSU Humanities Commons Website (Dev)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service provider supports the MSU Humanities Commons project development and hosts the development website. This is a development service.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://msucommons-dev.org/about</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://msucommons-dev.org/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="55" width="54" xml:lang="en">https://msucommons-dev.org/app/uploads/sites/1000360/2016/10/hc_55.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16831238921148204990, expires on Tue Mar 21 15:32:56 2028 GMT -->
+ <ds:X509Certificate>
+MIID+zCCAuOgAwIBAgIJAOmUkp+AxIe+MA0GCSqGSIb3DQEBCwUAMIGTMQswCQYD
+VQQGEwJVUzERMA8GA1UECAwITmV3IFlvcmsxETAPBgNVBAcMCE5ldyBZb3JrMRsw
+GQYDVQQKDBJIdW1hbml0aWVzIENvbW1vbnMxHzAdBgNVBAMMFmh1cnN0b24ubWxh
+Y29tbW9ucy5vcmcxIDAeBgkqhkiG9w0BCQEWEXJ3aWxsaWFtc0BtbGEub3JnMB4X
+DTE4MDMyMjE1MzI1NloXDTI4MDMyMTE1MzI1NlowgZMxCzAJBgNVBAYTAlVTMREw
+DwYDVQQIDAhOZXcgWW9yazERMA8GA1UEBwwITmV3IFlvcmsxGzAZBgNVBAoMEkh1
+bWFuaXRpZXMgQ29tbW9uczEfMB0GA1UEAwwWaHVyc3Rvbi5tbGFjb21tb25zLm9y
+ZzEgMB4GCSqGSIb3DQEJARYRcndpbGxpYW1zQG1sYS5vcmcwggEiMA0GCSqGSIb3
+DQEBAQUAA4IBDwAwggEKAoIBAQCdSWRJG6I+LdxBb8Q9sjO/WM0gKaiNS7Vx/bun
+tOMzCQvQjQi61NImtN1WMLv4hfD8IXQ+2nFile1pQrxyymZIV66xGGgmqQSF2xZ+
+QIUntzDIQWLHVpi1HsIl+mWn277AimGKn4Pnf6myDOVS9aPrG8NT9iaAG5cDDBzl
+kY5EHpVhMH1eXjV4frt+HuNI6bOImAR1OPlSKBZxV5AovlB9u1ysKVO1NpHzn6NU
+KNObq1PiIDSWp3LEXRQF6FDXtq9J3q9pMHLY/HgzbpTcKhUIEiA/1iS8C1sm6StW
+hxCWZtfLzFk2EG7X5KW8aNAQthWQmMBpeCrxd69Y1cIxQ1ZHAgMBAAGjUDBOMB0G
+A1UdDgQWBBRXv3THr2rNWv0EJ2Zv6trUK2kSRjAfBgNVHSMEGDAWgBRXv3THr2rN
+Wv0EJ2Zv6trUK2kSRjAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQCK
+T9R3fo8T1xU98jB6uV3LgKH4WFYEURbwir7DyZavxqYuzlY9toFdvSDb4Q9S5Qwp
+quDiDlGHw7mZ3UWYWZBQ573E7DBTOokp1PhxgLTQpnbslqdQOSLmfzelkMCnSq23
+yXqrQCMaEez5OdQ9Ucv12oUCeb/TY/cU227ZjzQ6aQed53FaAgJjFcv05j4aJfWv
+fgifbLCce/teM+hJ40rPJjUONXv++w25GBlA5JpwqkkNMncOceKNl62lhChyOsxg
+Sw6oBJGsRApk5xw0TGyOONWlZaDD9y6cIrmd6WgJLq3zaoqkIwoGbINVV1BzKo5p
+kWtctxWLoQDup+ZcjrqB
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://msucommons-dev.org/simplesaml/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://msucommons-dev.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">MSU Humanities Commons Website (Dev)</ServiceName>
+ <ServiceDescription xml:lang="en">This service provider supports the MSU Humanities Commons project development and hosts the development website. This is a development service.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Modern Language Association of America</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Modern Language Association of America</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.mla.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>HC Admin</GivenName>
+ <EmailAddress>admin@hcommons.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>HC Admin</GivenName>
+ <EmailAddress>admin@hcommons.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>HC Admin</GivenName>
+ <EmailAddress>admin@hcommons.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://proxy.hcommons.org/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Humanities Commons SAML Proxy SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SAML proxy supporting the Humanities Commons environment</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://proxy.hcommons.org/sp-info.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://proxy.hcommons.org/sp-privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://proxy.hcommons.org/sp-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17666880602959133952, expires on Sun May 27 13:58:56 2029 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy.hcommons.org/Saml2/acs/pos" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Humanities Commons SAML Proxy SP</ServiceName>
+ <ServiceDescription xml:lang="en">SAML proxy supporting the Humanities Commons environment</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Modern Language Association of America</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Modern Language Association of America</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.mla.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>HC Admin</GivenName>
+ <EmailAddress>admin@hcommons.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>HC Admin</GivenName>
+ <EmailAddress>admin@hcommons.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>HC Admin</GivenName>
+ <EmailAddress>admin@hcommons.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Technolutions, Inc. -->
+<EntityDescriptor entityID="https://slate.technolutions.net/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Technolutions Slate</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://technolutions.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://technolutions.com/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="64" width="64" xml:lang="en">https://technolutions.com/slate-box.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12806383751795476644, expires on Tue Feb 14 16:52:46 2034 GMT -->
+ <ds:X509Certificate>
+MIIDtTCCAp2gAwIBAgIJALG5aivPGoikMA0GCSqGSIb3DQEBBQUAMHExCzAJBgNVBAYTAlVTMRQw
+EgYDVQQIDAtDb25uZWN0aWN1dDESMBAGA1UEBwwJTmV3IEhhdmVuMRwwGgYDVQQKDBNUZWNobm9s
+dXRpb25zLCBJbmMuMRowGAYDVQQDDBF0ZWNobm9sdXRpb25zLm5ldDAeFw0xNDAyMTkxNjUyNDZa
+Fw0zNDAyMTQxNjUyNDZaMHExCzAJBgNVBAYTAlVTMRQwEgYDVQQIDAtDb25uZWN0aWN1dDESMBAG
+A1UEBwwJTmV3IEhhdmVuMRwwGgYDVQQKDBNUZWNobm9sdXRpb25zLCBJbmMuMRowGAYDVQQDDBF0
+ZWNobm9sdXRpb25zLm5ldDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAM2sdZZ0Uyz9
+GWt7TArUAKfhQ4+3FKX/U5QkWRgqY5HgScXmxfaqBbuHrx6wan7pyxbcpqA2Ikw0sa5dpVnFrFJk
+xnSNwveiMznosiI8J55LII93Y1Zb3Mrsyw0JeK4v/ChJwFt1bhxyK0XDWUaD8ow8BOkKzf2yfjpy
+VKeNKIFrzDGKzcBx6eTAsEuyKxba8dWiMr26ivv2unpVDgrgIwMFlOELMP8NnAuyu6XgvpBm35xN
+dLpWmCz2eO6GI62e63RPHolu+6isM1rpTeVnRebe8VV8MwQIpSm/5Pc7mqtziFG5EAsMZoPKwVYT
+yltm+DWEXKQFHgRHArAHYscavFkCAwEAAaNQME4wHQYDVR0OBBYEFCcv22/twdAGFuaYbNAP4wR7
+AHWlMB8GA1UdIwQYMBaAFCcv22/twdAGFuaYbNAP4wR7AHWlMAwGA1UdEwQFMAMBAf8wDQYJKoZI
+hvcNAQEFBQADggEBAA761g+U7OIiqz3rwPP4x1vJ0t+w/TIjIuP76z8ASQcfzgeDuj/eb0HRDxjW
+Oqjg2fGTzxqkF5qdnTwVio/WK7tcgGwyT7ZqauKiQHh0r1i/eE+1D27liaIGEYarks6dkSZ+pYl5
+7N3/wjNvVhgV/G0lEa78DEQpzu5MrwKFcMf2CcXww9palhTZYaUD9HdwwiUaank8ZfCL7SvcDInR
+2cvnMV/Z9pEtuz9owPRanpmZi7m1GYoPJCoel+iBkFWHOfNJYXeJ69wDn4VE7bkjGG4rWw8aN2sB
+FL1TigqwdKl/AZ1Up3BcsJnHDEEa8YRwsiPuCD5VvWqVu8/CUJv3vk4=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slate.technolutions.net/manage/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slate.technolutions.net/manage/login" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Technolutions Slate</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Technolutions, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Technolutions, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://technolutions.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Peter Snow</GivenName>
+ <EmailAddress>psnow@technolutions.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Peter Snow</GivenName>
+ <EmailAddress>psnow@technolutions.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Peter Snow</GivenName>
+ <EmailAddress>psnow@technolutions.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of North Georgia -->
+<EntityDescriptor entityID="https://sso.ung.edu/simplesaml2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ung.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of North Georgia</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://ung.edu/registrar/ferpa.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="160" width="210" xml:lang="en">https://sso.ung.edu/ung_sso_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18391398031574203726, expires on Sun Nov 15 16:50:19 2026 GMT -->
+ <ds:X509Certificate>
+MIID7DCCAtQCCQD/O18RYsx9TjANBgkqhkiG9w0BAQsFADCBtzELMAkGA1UEBhMC
+VVMxEDAOBgNVBAgMB0dlb3JnaWExEjAQBgNVBAcMCURhaGxvbmVnYTEkMCIGA1UE
+CgwbVW5pdmVyc2l0eSBvZiBOb3J0aCBHZW9yZ2lhMR8wHQYDVQQLDBZJbmZvcm1h
+dGlvbiBUZWNobm9sb2d5MRkwFwYDVQQDDBBVTkdJVC1TZWxmU2lnbmVkMSAwHgYJ
+KoZIhvcNAQkBFhF3ZWJtYXN0ZXJAdW5nLmVkdTAeFw0xNjExMTcxNjUwMTlaFw0y
+NjExMTUxNjUwMTlaMIG3MQswCQYDVQQGEwJVUzEQMA4GA1UECAwHR2VvcmdpYTES
+MBAGA1UEBwwJRGFobG9uZWdhMSQwIgYDVQQKDBtVbml2ZXJzaXR5IG9mIE5vcnRo
+IEdlb3JnaWExHzAdBgNVBAsMFkluZm9ybWF0aW9uIFRlY2hub2xvZ3kxGTAXBgNV
+BAMMEFVOR0lULVNlbGZTaWduZWQxIDAeBgkqhkiG9w0BCQEWEXdlYm1hc3RlckB1
+bmcuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwWpVqBDqD7aS
+rc9IqrnofbLdLzp9r6BKTNUWLlwLZTHWNn8jfm7Kd39skmgYF77VA1MCLkGClcFR
+rM7zJ4TD9CNC0fNViKkix9nm5vhj5n+SREs2VAQeqgZdVC6hUiTCQ+HbR9FJkjUR
+Sum1JyVO4o0rt31t5b4sXZOHns8fA7DqBBpf2QvAJZqe1QDp2uK/F6vHpe2C+SFw
+VYLl4yiBaNA2vlwz0bOAP618pzwUgGjHj/wKdmhRzsD6JfT6QjJObov/fzPzmzf2
+RfBPV3D1xHPNwhEMx1Q0icoShHNHe6I18vTGstEVCoiIYjT5uOli0HvhEEhRd9A3
+rY+B+rsv7QIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQArsOJNp0ZWsO0KFzGNAB+8
+uNfudEgdp8kDci0HrCEsLWi21/bHI+EZLa44RkJ3wfnQ94Re+WiHVTZToMtOBvZX
+0yMQqT15lNB0gA5xOBm2vhwD2T0wjzqJkWIX9Us/SnypxW8K8V015eMuX7K6W1yU
++4kGz6ts9yrX2M4e6IPUYr9u6tCoGFeMIbSElfu2L5oQr0E+2uJJtAgibnMwyYvt
+EpLnrSvw+mVbXbT9zKDo/gaeEaW1LgJ6FtRno0zZkXUQiSpRaXI3FFPQYdVYoxfT
+Xebta96HBoG+uYMLjZPp6QTvEUlw+AuVeDOiOYomKEvbHzPf4yCTZAN/Trrce9YA
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.ung.edu/simplesaml2/saml2/idp/SingleLogoutService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.ung.edu/simplesaml2/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of North Georgia</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of North Georgia</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://ung.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>JET</GivenName>
+ <EmailAddress>jet@ung.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>JET</GivenName>
+ <EmailAddress>jet@ung.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Service Desk</GivenName>
+ <EmailAddress>helpdesk@ung.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Service Desk</GivenName>
+ <EmailAddress>helpdesk@ung.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- TreeTop Commons, LLC -->
+<EntityDescriptor entityID="https://accounts.cecollaboratory.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Collaboratory</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.cecollaboratory.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cecollaboratory.com/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="81" width="320" xml:lang="en">https://static1.squarespace.com/static/56942366cbced6cface3bc8b/t/5696b3f81115e07e997fedb9/1497276324001</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 20779225689732338565152102179101377171, expires on Tue Sep 19 12:00:00 2017 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://api.cecollaboratory.com/sso/saml_consume/col" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Collaboratory</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">TreeTop Commons, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">TreeTop Commons, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.treetopcommons.com/#intro</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Lisa Keyne</GivenName>
+ <EmailAddress>lkeyne@treetopcommons.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Judah McAuley</GivenName>
+ <EmailAddress>jmcauley@treetopcommons.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Support</GivenName>
+ <EmailAddress>incommon-support@treetopllc.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>IT Security</GivenName>
+ <EmailAddress>incommon-security@treetopllc.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Fordham University -->
+<EntityDescriptor entityID="https://loginp.fordham.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fordham.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fordham University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.fordham.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.fordham.edu</mdui:PrivacyStatementURL>
+ <mdui:Logo height="78" width="297" xml:lang="en">https://loginp.fordham.edu/cas/images/fordham_logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 856709385924825922627203439762894586356799206645, expires on Sun Apr 8 15:06:32 2035 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://loginp.fordham.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://loginp.fordham.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://loginp.fordham.edu/cas/logoutPopUp.jsp"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://loginp.fordham.edu/cas/logoutPopUp.jsp"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://loginp.fordham.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://loginp.fordham.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://loginp.fordham.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://loginp.fordham.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Fordham University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Fordham University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.fordham.edu/site/index.php</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Charles-Henri Sanson</GivenName>
+ <EmailAddress>csanson@fordham.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Joli Patino</GivenName>
+ <EmailAddress>patino@fordham.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mathew Tams</GivenName>
+ <EmailAddress>tams@fordham.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Karl Bajenting</GivenName>
+ <EmailAddress>kbajenting@fordham.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Upland Software, Inc. -->
+<EntityDescriptor entityID="https://caltech.filebound.com/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Caltech FileBound</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Caltech FileBound </mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://uplandsoftware.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="86" width="512" xml:lang="en">https://uplandsoftware.com/filebound/wp-content/uploads/sites/7/2017/03/Upland-Blue_FileBound.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1073262011967825163550673394239934121, expires on Mon Oct 19 16:39:25 2026 GMT -->
+ <ds:X509Certificate>
+MIIDWDCCAkCgAwIBAgIQAM6z5xOpcMca4WR3eDoOqTANBgkqhkiG9w0BAQ0FADAqMSgwJgYDVQQD
+DB9odHRwczovL2NhbHRlY2g3LmZpbGVib3VuZC5jb20vMB4XDTE2MTAxMjE2MzkyNVoXDTI2MTAx
+OTE2MzkyNVowKjEoMCYGA1UEAwwfaHR0cHM6Ly9jYWx0ZWNoNy5maWxlYm91bmQuY29tLzCCASIw
+DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMEDp9TsgN9WU4o4SUG8VwjDzi6kg3qzhuj6hEO9
+1AojuMDkVPxQwbN91VDfapnuebdqtmiUPIbKfj5QouQJCRvM33wstohFvlDTMettbQf9nrxtx9hz
+YMZ16W4b5wQYVQbLFMXK5EEg43Z/nDq3ApplUw8bhJYPzw4v6QngtpQS6vm+yat6iH/o6csYAvP+
+/CNxDiMygg8KJAGY7LSc8UuctySYaGkXdl3h8s/781PpFxIMiTWB1EjtMnydBIWmAm0NtSMHXw/0
+ScT4GDko+01rDr7mpGFxZY/XfLaEubfsqSlX+pPHyUPHCuzySB2jP6u/z9xCXkRy+Zuu/rZPu6kC
+AwEAAaN6MHgwYQYDVR0jBFowWIAUTvuLdkQYeQoAQcZ6Pfis2G2QJeKhLqQsMCoxKDAmBgNVBAMM
+H2h0dHBzOi8vY2FsdGVjaDcuZmlsZWJvdW5kLmNvbS+CEADOs+cTqXDHGuFkd3g6DqkwEwYDVR0l
+BAwwCgYIKwYBBQUHAwEwDQYJKoZIhvcNAQENBQADggEBAD2ythI+kEtlJCKZ3xC9fYGzzCsqEIcV
+WwxI57rx77OTpMV+Q0OxsGRfgYv5V+lfBLultUOhWSpai2CgYz4K4sdYUqt3rPQeIeo9AdaPO7Un
+QUyy20mxblX8CwcxUoN75v3ONR5rdFb1WEz7RIjZymay7DCMk0pLLF9LWSaGaWFDe0kzZAvmPEpl
+115VKOUVvJqr6dNa9aLSHk+s9oxXO3mlP/vSxYL2lw8qsHRiNlWYi+MxesKV3v6PJW3KvkUqAaHl
+x7qbbjMyIr+ImPr/040o2/+Bu3rczdQXT8CBSW+nQ1CwOgRX9YfRDYY5SBUUr9dGv4/akTms9mQL
+v/Rr+DY=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://caltech.filebound.com/saml/SLOservice/"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://caltech.filebound.com/saml/AssertionConsumerService/" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Caltech FileBound</ServiceName>
+ <ServiceDescription xml:lang="en">Caltech FileBound </ServiceDescription>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Upland Software, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Upland Software, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://uplandsoftware.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Samuel Goldmann</GivenName>
+ <EmailAddress>samuel.goldmann@edocsol.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Samuel Goldmann</GivenName>
+ <EmailAddress>samuel.goldmann@ancorasoftware.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jane Christie</GivenName>
+ <EmailAddress>jane.christie@ancorasoftware.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Doug Jordan</GivenName>
+ <EmailAddress>doug@ancorasoftware.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Wayne Mustard</GivenName>
+ <EmailAddress>wmustard@uplandsoftware.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Mansfield University of Pennsylvania -->
+<EntityDescriptor entityID="https://sso.mansfield.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mansfield.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Mansfield University of Pennsylvania</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.mansfield.edu/policies-procedures/upload/Privacy-and-Security.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="213" width="948" xml:lang="en">https://www.mansfield.edu/style/png/mu-primary.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14582521376162439887, expires on Wed Mar 24 18:12:49 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.mansfield.edu/idp/profile/Logout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.mansfield.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.mansfield.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.mansfield.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Mansfield University of Pennsylvania</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Mansfield University of Pennsylvania</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.mansfield.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>alex miller</GivenName>
+ <EmailAddress>amiller@mansfield.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nick Andre</GivenName>
+ <EmailAddress>nandre@mansfield.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Alex Miller</GivenName>
+ <EmailAddress>amiller@mansfield.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Touro College -->
+<EntityDescriptor entityID="https://idp.touro.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">touro.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Touro College</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://touroone.touro.edu/cas/Acceptable%20Use%20Policy.pdf</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://touroone.touro.edu/cas/Acceptable%20Use%20Policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="105" width="384" xml:lang="en">https://touroone.touro.edu/cas/img/mockup/touroonelogo2.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 410724535799845252640132001070093916356942678830, expires on Tue Jan 13 17:21:24 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.touro.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.touro.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.touro.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.touro.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.touro.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Touro College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Touro College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.touro.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Patricia Ciuffo</GivenName>
+ <EmailAddress>Patricia.Ciuffo@touro.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Franklin Steen</GivenName>
+ <EmailAddress>franklin.steen@touro.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Daniel Redfern</GivenName>
+ <EmailAddress>daniel.redfern@touro.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Daniel Redfern</GivenName>
+ <EmailAddress>daniel.redfern@touro.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- TIAA -->
+<EntityDescriptor entityID="https://tiaa.org/development">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">TIAA</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.tiaa.org/public/support/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="29" width="100" xml:lang="en">https://www.tiaa.org/public/images/765/2123/50000007652123/logo_1000_1x.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1137345598538574806414644995200702434701103270, expires on Thu Jun 20 15:34:31 2019 GMT -->
+ <ds:X509Certificate>
+MIIFYzCCBEugAwIBAgITMwAWUKY/Gacm3cHC5wABABZQpjANBgkqhkiG9w0BAQsFADBmMRMwEQYK
+CZImiZPyLGQBGRYDb3JnMRkwFwYKCZImiZPyLGQBGRYJdGlhYS1jcmVmMRIwEAYKCZImiZPyLGQB
+GRYCYWQxIDAeBgNVBAMTF1RJQUEtQ1JFRi1BRElzc3VpbmdDQTAxMB4XDTE3MDYyMDE1MzQzMVoX
+DTE5MDYyMDE1MzQzMVowgZcxCzAJBgNVBAYTAlVTMRcwFQYDVQQIEw5Ob3J0aCBDYXJvbGluYTES
+MBAGA1UEBxMJQ2hhcmxvdHRlMQ0wCwYDVQQKEwRUSUFBMSEwHwYDVQQLExhUZWNobm9sb2d5IEFu
+ZCBPcGVyYXRpb24xKTAnBgNVBAMTIGZlZGVyYXRpb24tZGV2Lm9wcy50aWFhLWNyZWYub3JnMIIB
+IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA9r247SF1b5Zw4cb2ffXRh6QGha7bYlKwgxGs
+yX5n3FFas0ozW19h3BuZMv6ACsd3VY+zotcqgSHxhZ2lm2EgzjLJaXKsj2OdSBHZiinWmwocm9sF
+CNCkGH9IOYYzJUK+GpuNoD3VViH6pckvIP1xyvUowYTfH5NUL075UiBfcfnGvmnLHKqLPnAyZ47h
+GVpUsg4zi9aJhSbTcZo3LyhT985As08RW0TdNzXDyfYxu1ovqN8RbU3Bf1+sw4gvUxsC0sE+wwI/
+lPUHB+Gx5Blds3hB2Gf8Sw7KbqzEBkd0nTW7iusQXwF6LKyk4NPbmzRM3Gpepzr9oCRsUH9LOsQL
+PwIDAQABo4IB1jCCAdIwCwYDVR0PBAQDAgWgMD0GCSsGAQQBgjcVBwQwMC4GJisGAQQBgjcVCIT/
+zjKEqJhThIWVBIa1/FGD0fdggQqf5mSFv+4eAgFkAgEFMB0GA1UdDgQWBBRR0X3x6D0mRugf5wSB
+q/Pk8KOPOzAfBgNVHSMEGDAWgBSAhzWQ0tn9M9AJtLVqNO5BoZGKIzBRBgNVHR8ESjBIMEagRKBC
+hkBodHRwOi8vcGtpLm9wcy50aWFhLWNyZWYub3JnL1BLSURpc3QvVElBQS1DUkVGLUFESXNzdWlu
+Z0NBMDEuY3JsMIG+BggrBgEFBQcBAQSBsTCBrjB8BggrBgEFBQcwAoZwaHR0cDovL0NIQVBEQzNQ
+S0lDQTAyLmFkLnRpYWEtY3JlZi5vcmcvQ2VydEVucm9sbC9DSEFQREMzUEtJQ0EwMi5hZC50aWFh
+LWNyZWYub3JnX1RJQUEtQ1JFRi1BRElzc3VpbmdDQTAxKDEpLmNydDAuBggrBgEFBQcwAYYiaHR0
+cDovL29jc3Aub3BzLnRpYWEtY3JlZi5vcmcvb2NzcDATBgNVHSUEDDAKBggrBgEFBQcDATAbBgkr
+BgEEAYI3FQoEDjAMMAoGCCsGAQUFBwMBMA0GCSqGSIb3DQEBCwUAA4IBAQAzOTcM0el2ept4/5qa
+Cjs52Yc1ExXd3JI8ve0WibpaFwC4g3ehoCZNRxSKSEQF4+eU9KGnHydlMw1BnxdkwQrPTJb3Tltj
+L6BtiNOgXDTliuveWldVMNyP2+F0yEDdYH2Dn7pITGqO7rri8fITNsgzwSi2XcoEsyJ241chw1nO
+k9WWu60IV9FQTsE2Uf86Ori27kTv4eS3SnxARzXztVfxFIHlWPei5DyMsmCacxI9qKd7FrdEI0vG
+zGG5xe//12D4ENHYfz0nmJdunbIt/lJOREXU0o+aiKhvhtUMIPP1GqQ/x9oWFoc3TqS7ofnyNXAQ
+UEbrBwHf2O/nSSGvUKc1
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://origin-auth-st2.test.tiaa.org/sp/SLO.saml2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://origin-auth-st2.test.tiaa.org/sp/SLO.saml2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://origin-auth-st2.test.tiaa.org/sp/SLO.saml2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://origin-auth-st2.test.tiaa.org/sp/ACS.saml2" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://origin-auth-st2.test.tiaa.org/sp/ACS.saml2" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://origin-auth-st2.test.tiaa.org/sp/ACS.saml2" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://origin-auth-st2.test.tiaa.org/sp/ACS.saml2" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://origin-auth-st2.test.tiaa.org/sp/ACS.saml2" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://origin-auth-st2.test.tiaa.org/sp/ACS.saml2" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">TIAA</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">TIAA</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">TIAA</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.tiaa.org/public/index.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohamed Saleh</GivenName>
+ <EmailAddress>msaleh@tiaa.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rob Davis</GivenName>
+ <EmailAddress>rcdavis@tiaa.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Paresh Birla</GivenName>
+ <EmailAddress>pbirla@tiaa.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mohamed Saleh</GivenName>
+ <EmailAddress>msaleh@tiaa.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://tiaa.org/production">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">TIAA</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.tiaa.org/public/support/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="29" width="100" xml:lang="en">https://www.tiaa.org/public/images/765/2123/50000007652123/logo_1000_1x.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 93830725706205046730096011361555521277, expires on Sat Sep 26 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
+MIIH/zCCBuegAwIBAgIQRpcj832Bz5Hues2RbNMe/TANBgkqhkiG9w0BAQsFADCBkjELMAkGA1UE
+BhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UEBxMHU2FsZm9yZDEaMBgG
+A1UEChMRQ09NT0RPIENBIExpbWl0ZWQxODA2BgNVBAMTL0NPTU9ETyBSU0EgRXh0ZW5kZWQgVmFs
+aWRhdGlvbiBTZWN1cmUgU2VydmVyIENBMB4XDTE4MDkyNzAwMDAwMFoXDTIwMDkyNjIzNTk1OVow
+ggGOMQ4wDAYDVQQFEwU2OTM0NTETMBEGCysGAQQBgjc8AgEDEwJVUzEZMBcGCysGAQQBgjc8AgEC
+EwhOZXcgWW9yazEdMBsGA1UEDxMUUHJpdmF0ZSBPcmdhbml6YXRpb24xCzAJBgNVBAYTAlVTMQ4w
+DAYDVQQREwUxMDAxNzERMA8GA1UECBMITmV3IFlvcmsxETAPBgNVBAcTCE5ldyBZb3JrMRQwEgYD
+VQQJEws3MzAgM3JkIEF2ZTE+MDwGA1UEChM1VGVhY2hlcnMgSW5zdXJhbmNlIGFuZCBBbm51aXR5
+IEFzc29jaWF0aW9uIG9mIEFtZXJpY2ExDTALBgNVBAsTBERQQVMxSDBGBgNVBAsTP0hvc3RlZCBi
+eSBUZWFjaGVycyBJbnN1cmFuY2UgYW5kIEFubnVpdHkgQXNzb2NpYXRpb24gb2YgQW1lcmljYTEj
+MCEGA1UECxMaQ09NT0RPIEVWIE11bHRpLURvbWFpbiBTU0wxFjAUBgNVBAMTDWF1dGgudGlhYS5v
+cmcwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC+m8Uthz36+EM8nZlqnSqiepTFM5d2
+cMpc1SzuxqkUP3HGuaQqzCi6CHneY5VNhxtooyZwjlVm8VYGlq+TwAHYahbZEug0Ye8MaWsFMh5R
+/6H+ddUet+lkm2XGNe0Gw7qzrrN7/3EmTSQZ79ePm4RddqBbnjT+hrEvUPRhWNTVAXzN5KNmt009
+jFHECi07Z5x/zFhMlatzH19H6Hh5OQ+wgL9SpmAKBd8r1iUQxV+FdexvssLKtqEyzBqqX1xGoKWU
+dwsPhX8nIYzjfZCNl6NvZaLcWXKmNAYoae7kT2Y3S2QnH4FvJs6k9WoijSDDvIFKHF8+FkC8+x8k
+J7KUlWR5AgMBAAGjggNQMIIDTDAfBgNVHSMEGDAWgBQ52v/KKBSKqHQTCLnkDqnS+n6daTAdBgNV
+HQ4EFgQUNOh4gpiMVDvle/hZHq/BPqGoOyQwDgYDVR0PAQH/BAQDAgWgMAwGA1UdEwEB/wQCMAAw
+HQYDVR0lBBYwFAYIKwYBBQUHAwEGCCsGAQUFBwMCME8GA1UdIARIMEYwOwYMKwYBBAGyMQECAQUB
+MCswKQYIKwYBBQUHAgEWHWh0dHBzOi8vc2VjdXJlLmNvbW9kby5jb20vQ1BTMAcGBWeBDAEBMFYG
+A1UdHwRPME0wS6BJoEeGRWh0dHA6Ly9jcmwuY29tb2RvY2EuY29tL0NPTU9ET1JTQUV4dGVuZGVk
+VmFsaWRhdGlvblNlY3VyZVNlcnZlckNBLmNybDCBhwYIKwYBBQUHAQEEezB5MFEGCCsGAQUFBzAC
+hkVodHRwOi8vY3J0LmNvbW9kb2NhLmNvbS9DT01PRE9SU0FFeHRlbmRlZFZhbGlkYXRpb25TZWN1
+cmVTZXJ2ZXJDQS5jcnQwJAYIKwYBBQUHMAGGGGh0dHA6Ly9vY3NwLmNvbW9kb2NhLmNvbTAYBgNV
+HREEETAPgg1hdXRoLnRpYWEub3JnMIIBfgYKKwYBBAHWeQIEAgSCAW4EggFqAWgAdQCkuQmQtBhY
+FIe7E6LMZ3AKPDWYBPkb37jjd80OyA3cEAAAAWYbsODZAAAEAwBGMEQCIGsDo90ZAaJ6vP7je375
+ClaGyZfIZNwXXom1/CbTKi9HAiBZfMzMibFDY5fk0Zr7x10Pt3XEuAN8AFgabUMuhHg8lgB3AFWB
+1MIWkDYBSuoLm1c8U/DA5Dh4cCUIFy+jqh0HE9MMAAABZhuw4ZIAAAQDAEgwRgIhAIosopCiS+KJ
+ZJcka7lpg+RGeIOEdGfaxB88L/Uqq2ToAiEAnmbI5hUpLBIzxIbtubyr3KfuLjPgOiOtWFig8ikz
+TUcAdgDuS723dc5guuFCaR+r4Z5mow9+X7By2IMAxHuJeqj9ywAAAWYbsOCsAAAEAwBHMEUCIQCR
+l0c9Zkb1bvqLLBZZsWhAuvAkB15dVZDNKbdh3pnsqQIgZlZS8Q3uA0pK4saof/0DnXnbusAsVE/J
+bElpdNVFks0wDQYJKoZIhvcNAQELBQADggEBACBrNEP9xNcnq5mrMAywP+z7Kx0r6ovgSNNBaK39
+J6MT3g/jsxYQm5BV64iqcrTGV2tzkRsDXi70Gvh3E/CabEBQy0yLns/+KiOPh2YHn5wJmNYLODMZ
+Y1pX4TZQrFpswN1dYNhv/l5HO1K/oqNVMLoRLPBmbodL/+xH5AY1xahM7aQwUxUDsoqj7zm22Itw
+YxQkYCVjL60odgXvfz6Pnms93ci2prpsVOrtppFy5r4QXyqbx4JHHxorAz1VWOkXqKRSCGuojs6v
+cMLCJ0WZr1xc73kAziikEMMhQWAPC8YEgoRN+f1340Wc4ppF2jQNyZIH0Qn4rRcffW0BcUq7xbk=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publictools.tiaa-cref.org/sp/SLO.saml2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://publictools.tiaa-cref.org/sp/SLO.saml2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://publictools.tiaa-cref.org/sp/SLO.saml2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://publictools.tiaa-cref.org/sp/ACS.saml2" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://publictools.tiaa-cref.org/sp/ACS.saml2" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://publictools.tiaa-cref.org/sp/ACS.saml2" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://publictools.tiaa-cref.org/sp/ACS.saml2" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://publictools.tiaa-cref.org/sp/ACS.saml2" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://publictools.tiaa-cref.org/sp/ACS.saml2" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">TIAA</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">TIAA</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">TIAA</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.tiaa.org/public/index.html</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mohamed Saleh</GivenName>
+ <EmailAddress>msaleh@tiaa.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rob Davis</GivenName>
+ <EmailAddress>rcdavis@tiaa.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Paresh Birla</GivenName>
+ <EmailAddress>pbirla@tiaa.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mohamed Saleh</GivenName>
+ <EmailAddress>msaleh@tiaa.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Dickinson College -->
+<EntityDescriptor entityID="https://auth.dickinson.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.dickinson.edu/info/20198/technology_services" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">dickinson.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Dickinson College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Dickinson College Single Sign-On Service</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.dickinson.edu/info/20043/about/3700/privacy_statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="379" xml:lang="en">https://auth.dickinson.edu/cas/dickinson.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12582690454098709749, expires on Wed Dec 3 19:28:22 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.dickinson.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.dickinson.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Dickinson College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Dickinson College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.dickinson.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Dickinson Security</GivenName>
+ <EmailAddress>idp-sec@dickinson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Dickinson Support</GivenName>
+ <EmailAddress>idp-sup@dickinson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dickinson Technical</GivenName>
+ <EmailAddress>idp-tech@dickinson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dickinson Administrative</GivenName>
+ <EmailAddress>idp-admin@dickinson.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Collaborative Institutional Training Initiative (CITI Program) -->
+<EntityDescriptor entityID="https://dev.citiprogram.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://dev.citiprogram.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CITIProgram Development</mdui:DisplayName>
+ <mdui:Description xml:lang="en">CITI Program, a Division of BRANY. Our mission is to promote the public's trust in the research enterprise by providing high quality, peer reviewed, web based, research education materials to enhance the integrity and professionalism of investigators and staff conducting research.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.citiprogram.org/index.cfm?pageID=1</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.citiprogram.org/index.cfm?pageID=266</mdui:PrivacyStatementURL>
+ <mdui:Logo height="125" width="246" xml:lang="en">https://www.CitiProgram.org/images/CITI-Program-solo-logo-blue-box.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 88390886227741956485102470722149309017, expires on Mon Apr 22 00:00:00 2024 GMT -->
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev.citiprogram.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dev.citiprogram.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dev.citiprogram.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dev.citiprogram.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CITIProgram Development</ServiceName>
+ <ServiceDescription xml:lang="en">CITI Program, a Division of BRANY. Our mission is to promote the public's trust in the research enterprise by providing high quality, peer reviewed, web based, research education materials to enhance the integrity and professionalism of investigators and staff conducting research.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Collaborative Institutional Training Initiative (CITI Program)</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Collaborative Institutional Training Initiative (CITI Program)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.citiprogram.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cynthia Cruciger</GivenName>
+ <EmailAddress>ccruciger@Citiprogram.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>CITI SSO Support</GivenName>
+ <EmailAddress>shibboleth@citiprogram.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Reid Cushman</GivenName>
+ <EmailAddress>RCushman@Citiprogram.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jonathan Fineout</GivenName>
+ <EmailAddress>JFineout@Citiprogram.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>CITI SSO Security</GivenName>
+ <EmailAddress>security@citiprogram.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://www.citiprogram.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CITI Program</mdui:DisplayName>
+ <mdui:Description xml:lang="en">CITI Program, a Division of BRANY. Our mission is to promote the public's trust in the research enterprise by providing high quality, peer reviewed, web based, research education materials to enhance the integrity and professionalism of investigators and staff conducting research.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.citiprogram.org/index.cfm?pageID=1</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://about.citiprogram.org/en/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="125" width="246" xml:lang="en">https://www.citiprogram.org/images/CITI-Program-solo-logo-blue-box.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 107805940152573270411477406590580962489, expires on Sun Apr 21 00:00:00 2024 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.citiprogram.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.citiprogram.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.citiprogram.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.citiprogram.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.citiprogram.org/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.citiprogram.org/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CITI Program</ServiceName>
+ <ServiceDescription xml:lang="en">CITI Program, a Division of BRANY. Our mission is to promote the public's trust in the research enterprise by providing high quality, peer reviewed, web based, research education materials to enhance the integrity and professionalism of investigators and staff conducting research.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Collaborative Institutional Training Initiative (CITI Program)</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Collaborative Institutional Training Initiative (CITI Program)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.citiprogram.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Cynthia Cruciger</GivenName>
+ <EmailAddress>ccruciger@citiprogram.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>CITI SSO Support</GivenName>
+ <EmailAddress>shibboleth@citiprogram.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>CITI SSO Security</GivenName>
+ <EmailAddress>security@citiprogram.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>CITI SSO Administrators</GivenName>
+ <EmailAddress>info@citiprogram.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Center for Open Science, Inc. -->
+<EntityDescriptor entityID="https://accounts.osf.io/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Center for Open Science - Open Science Framework</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Our mission is to provide expertise, tools, and training to help researchers create and promote open science within their teams and institutions. Promoting these practices within the research funding and publishing communities accelerates scientific progress. </mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://cos.io</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://github.com/CenterForOpenScience/centerforopenscience.org/blob/master/TERMS_OF_USE.md</mdui:PrivacyStatementURL>
+ <mdui:Logo height="96" width="150" xml:lang="en">https://cdn.cos.io/static/images/cos_stack.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11134212473868937553, expires on Fri Dec 26 00:11:37 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://accounts.osf.io/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://accounts.osf.io/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://accounts.osf.io/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://accounts.osf.io/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://accounts.osf.io/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://accounts.osf.io/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://accounts.osf.io/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://accounts.osf.io/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://accounts.osf.io/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Center for Open Science - Open Science Framework</ServiceName>
+ <ServiceDescription xml:lang="en">Our mission is to provide expertise, tools, and training to help researchers create and promote open science within their teams and institutions. Promoting these practices within the research funding and publishing communities accelerates scientific progress. </ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Center for Open Science, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Center for Open Science, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://cos.io/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Development Operations Team</GivenName>
+ <EmailAddress>ops-admin+sso@cos.io</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Development Operations Team</GivenName>
+ <EmailAddress>ops-admin+sso@cos.io</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Development Operations Team</GivenName>
+ <EmailAddress>ops-admin+sso@cos.io</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Development Operations Team</GivenName>
+ <EmailAddress>ops-admin+sso@cos.io</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Wichita State University -->
+<EntityDescriptor entityID="https://shib.wichita.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wichita.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Wichita State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">WSU Shibboleth logon</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.wichita.edu/about/policy/ch_19/ch19_01.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="108" width="360" xml:lang="en">https://shib.wichita.edu/idp/images/wsulogo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18183202118829799477, expires on Fri Jan 22 13:01:44 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shib.wichita.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.wichita.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Wichita State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Wichita State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.wichita.edu/thisis/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Rob Phillips</GivenName>
+ <EmailAddress>robert.phillips@wichita.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rob Phillips</GivenName>
+ <EmailAddress>robert.phillips@wichita.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Rob Phillips</GivenName>
+ <EmailAddress>robert.phillips@wichita.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Keith Neufeld</GivenName>
+ <EmailAddress>keith.neufeld@wichita.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Baptist Health System School of Health Professions -->
+<EntityDescriptor entityID="https://idp.bshp.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.bshp.edu/error.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">bshp.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Baptist School of Health Professions</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Baptist School of Health Professions</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.bshp.edu/wp-content/uploads/sites/6250/2018/06/InCommon_POP.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="320" xml:lang="en">https://idp.bshp.edu/idpLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 723740316649876676191998678740139757206700564555, expires on Sat Jun 18 14:41:38 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.bshp.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.bshp.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.bshp.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Baptist Health System School of Health Professions</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Baptist Health System School of Health Professions</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.bshp.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>System Administrator</GivenName>
+ <EmailAddress>admin@bshp.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Tech Support</GivenName>
+ <EmailAddress>support@bshp.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jason Everling</GivenName>
+ <EmailAddress>jeverling@bshp.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jason Everling</GivenName>
+ <EmailAddress>jeverling@bshp.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Union College -->
+<EntityDescriptor entityID="https://sso.union.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">union.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Union College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Union College Identity Provider</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.union.edu/information-technology-services/policies</mdui:PrivacyStatementURL>
+ <mdui:Logo height="65" width="107" xml:lang="en">https://sso.union.edu/idp/images/UC_logo_with_date.PMS202.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1241919463899137328369172971177746709063509728379, expires on Tue Oct 21 17:34:33 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.union.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.union.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Union College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Union College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.union.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ellen Yu Borkowski</GivenName>
+ <EmailAddress>borkowse@union.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Val Kania</GivenName>
+ <EmailAddress>kaniav@union.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Val Kania</GivenName>
+ <EmailAddress>kaniav@union.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Val Kania</GivenName>
+ <EmailAddress>kaniav@union.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Ohlone Community College District -->
+<EntityDescriptor entityID="https://login.ohlone.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ohlone.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ohlone Community College District</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.ohlone.edu/board-trustees/policies-administrative-procedures/bp-5040-student-records-directory-information-and</mdui:PrivacyStatementURL>
+ <mdui:Logo height="889" width="1089" xml:lang="en">https://www.ohlone.edu/sites/default/files/documents/imported/ohlonelogo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 335247445393884824595127098674080061010855158246, expires on Mon Oct 6 18:23:38 2036 GMT -->
+ <ds:X509Certificate>
+MIIDKzCCAhOgAwIBAgIUOrkD73hkv7XK9Y/d3vjB1rXpYeYwDQYJKoZIhvcNAQEL BQAwGzEZMBcGA1UEAwwQbG9naW4ub2hsb25lLmVkdTAeFw0xNjEwMDYxODIzMzha Fw0zNjEwMDYxODIzMzhaMBsxGTAXBgNVBAMMEGxvZ2luLm9obG9uZS5lZHUwggEi MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCGpnVUxxUhh2+yHNXkrFjQQ0XN UtQnqg123Sjt1xm8RSksdCKo4Ft+u7XthDkfrCrlIkD0zh2W5It5MP/eKc1yLDzB zAut+nYp5YO+UrIyAs8+aCr97MdZvQURxKwJRedmvCfoBG4xBg1nDvVQMhpJyTqa Y3arso+XsRIB4+RBwPiTe9CIIM0mT9vk7HQyS+08j/XMBFiXOKkifI7BK8CKunE7 qIJqHGVunkkKNR9FF9bxzGtyKlfEpfs3IiHle2yRaAEOYS/TQ/sEgTWdZ8fujBAo 4Ic0tKfTMZXMAgiqjiB3j6SNUhCfgxkhVZx7ZrwL20jgfR1S6+w9Zwv9XbENAgMB AAGjZzBlMB0GA1UdDgQWBBRFKj4tei9tx8OrCstip9hrf7WfgDBEBgNVHREEPTA7 ghBsb2dpbi5vaGxvbmUuZWR1hidodHRwczovL2xvZ2luLm9obG9uZS5lZHUvaWRw L3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBAH/nymqaVQDVEXlslz7fwuho LtSrkj6XSo4MvgVhXzEVMVKBsx0uQr0TWqq2x21nLiNZFAHDUz0AXeTMGb++ZhNi nOBu5ND2ttE4+uUlD/8R8HD4Ut4hBEHYcQdzin5N2ODUC9LO/peYnZxPjFcNEh51 pc2GihYSVMp4KZ2j6pP7Lviass4fdH5+BdwHpH0ogDzfB/F+fzrEFlh7UNFM8MSH hDkbXKSEktrks9b2cjUQzLqEH+wIfcWcfA4WKDJZzZcHrdjSg34720F25VHOhm/F DFiahVIbaWD9K2Z+2ca+M0VnTy4g4vwq0dfyQxrAlAn8k/mXRyG2kikCdzY6Gvw=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ohlone.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.ohlone.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.ohlone.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ohlone Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ohlone Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://ohlone.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Scott Snyder</GivenName>
+ <EmailAddress>ssnyder4@ohlone.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kevin Chen</GivenName>
+ <EmailAddress>kchen@ohlone.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kevin Chen</GivenName>
+ <EmailAddress>kchen@ohlone.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Steven Reeves</GivenName>
+ <EmailAddress>sreeves@ohlone.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Appalachian State University -->
+<EntityDescriptor entityID="https://shibb.its.appstate.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">appstate.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Appalachian State University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://sso.appstate.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.appstate.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="381" xml:lang="en">https://shibb.its.appstate.edu/local/appstate.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9235148746991185600, expires on Thu Nov 3 19:57:22 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibb.its.appstate.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibb.its.appstate.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibb.its.appstate.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibb.its.appstate.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibb.its.appstate.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibb.its.appstate.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">appstate.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9235148746991185600, expires on Thu Nov 3 19:57:22 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://shibb.its.appstate.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://shibb.its.appstate.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Appalachian State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Appalachian State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.appstate.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Dave Hayler</GivenName>
+ <EmailAddress>haylerd@appstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeffrey Tickle</GivenName>
+ <EmailAddress>ticklejw@appstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jim Webb</GivenName>
+ <EmailAddress>webbjt@appstate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Support at Appstate.edu</GivenName>
+ <EmailAddress>support@appstate.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Southern Mississippi -->
+<EntityDescriptor entityID="https://idp.usm.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">usm.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Southern Mississippi</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.usm.edu/about/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://apps.usm.edu/appdev/aaws-images/USMLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12157865687541570607, expires on Wed Apr 15 00:26:43 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.usm.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.usm.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.usm.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.usm.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Southern Mississippi</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Southern Mississippi</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.usm.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>USM Technical Contact</GivenName>
+ <EmailAddress>usmtc@usm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>USM Administrative Contact</GivenName>
+ <EmailAddress>usmac@usm.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Information Security</GivenName>
+ <EmailAddress>infosec@usm.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Liaison Holdings LLC d/b/a Liaison International LLC -->
+<EntityDescriptor entityID="https://iugrad.webadmit.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://iugrad.webadmit.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">IU Grad</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.liaisonedu.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="184" xml:lang="en">https://www.liaisonedu.com/wp-content/uploads/2017/09/cropped-liaison-logo-no-intl-1-1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11121653171584833297, expires on Fri Jun 13 20:54:13 2025 GMT -->
+ <ds:X509Certificate>
+MIIC9zCCAd+gAwIBAgIJAJpYDKJvaRcRMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV
+BAMTEGlwLTEwLTE4MS0xNTUtMzgwHhcNMTUwNjE2MjA1NDEzWhcNMjUwNjEzMjA1
+NDEzWjAbMRkwFwYDVQQDExBpcC0xMC0xODEtMTU1LTM4MIIBIjANBgkqhkiG9w0B
+AQEFAAOCAQ8AMIIBCgKCAQEAw5gJ4dmPVb+E8HvxGXDN1qTvX85LBbHd6e28JDiG
+i540KEpyyUSv05nfvgknGdV0GMPfJto0RUioxn8BC7iWTrYPgIIZhZW/cCpLFq6y
+9nNOkpZnn9K1PUCfFsSqMfvLR4fWo97qZdma3CEWDz35nupDuoU5e2FxqxisE1f9
+WtDxskGuAOyTwQAp0kr30scZ6P26KAlSV1mu4FGFQzD+qGT0VbsbbuoXwds9M2aR
+ONN0tN+RUoSIhILCkRnVEfSoDKZON17J2wZfNxi44dbU7h3TBZ367hBsnG9dnlLZ
+RFE26BFhK2E6gnywnrt3sTOwkCsGKx+vbuJQXbY3S+SVmwIDAQABoz4wPDAbBgNV
+HREEFDASghBpcC0xMC0xODEtMTU1LTM4MB0GA1UdDgQWBBSEh6UlQvZhqtVHS+v8
+bba+yOzHAjANBgkqhkiG9w0BAQUFAAOCAQEAse7PYDx2zOAzr9UUxiMZg5HRixAg
+te5EAdD15HMiuVhiS7Wo/LhkPZl9FRWyOOYfrfp6GrLDagTCfGB/8LGoRTZRlcK+
+xILubyciMROtrm+HygGRukg8Qb1T8LCED+tekscuvf9p2QSS033vXnETWD6EhN6G
+UYn+yEgrWnHPzHk5NNAUOeGnbQyLxJEGJSTuNXKAgvDJf5TJff0wPuENnSHfu51E
+RPzzRpbRMzSXtH8fZ9HSbtEJAhvYbBXwpii/CJC0PmzBsKRXOTe25vevdu9J1uYJ
+JMk9QlTMNwPHeeSnBY0ki5nP2WBa1g/Rfxf+uoM0aPkwlGClRoiZv0KefQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://iugrad.webadmit.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://iugrad.webadmit.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://iugrad.webadmit.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://iugrad.webadmit.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Liaison Holdings LLC d/b/a Liaison International LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Liaison Holdings LLC d/b/a Liaison International LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.liaisonedu.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Margitich</GivenName>
+ <EmailAddress>mmargitich@liaison-intl.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Pierre Fortin Carrier</GivenName>
+ <EmailAddress>pfortincarrier@liaisonedu.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Richard Weir</GivenName>
+ <EmailAddress>rweir@liaisonedu.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://shib-test.webadmit.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shib-test.webadmit.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">shib-test Webadmit</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.liaisonedu.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="184" xml:lang="en">https://www.liaisonedu.com/wp-content/uploads/2017/09/cropped-liaison-logo-no-intl-1-1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11121653171584833297, expires on Fri Jun 13 20:54:13 2025 GMT -->
+ <ds:X509Certificate>
+MIIC9zCCAd+gAwIBAgIJAJpYDKJvaRcRMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV
+BAMTEGlwLTEwLTE4MS0xNTUtMzgwHhcNMTUwNjE2MjA1NDEzWhcNMjUwNjEzMjA1
+NDEzWjAbMRkwFwYDVQQDExBpcC0xMC0xODEtMTU1LTM4MIIBIjANBgkqhkiG9w0B
+AQEFAAOCAQ8AMIIBCgKCAQEAw5gJ4dmPVb+E8HvxGXDN1qTvX85LBbHd6e28JDiG
+i540KEpyyUSv05nfvgknGdV0GMPfJto0RUioxn8BC7iWTrYPgIIZhZW/cCpLFq6y
+9nNOkpZnn9K1PUCfFsSqMfvLR4fWo97qZdma3CEWDz35nupDuoU5e2FxqxisE1f9
+WtDxskGuAOyTwQAp0kr30scZ6P26KAlSV1mu4FGFQzD+qGT0VbsbbuoXwds9M2aR
+ONN0tN+RUoSIhILCkRnVEfSoDKZON17J2wZfNxi44dbU7h3TBZ367hBsnG9dnlLZ
+RFE26BFhK2E6gnywnrt3sTOwkCsGKx+vbuJQXbY3S+SVmwIDAQABoz4wPDAbBgNV
+HREEFDASghBpcC0xMC0xODEtMTU1LTM4MB0GA1UdDgQWBBSEh6UlQvZhqtVHS+v8
+bba+yOzHAjANBgkqhkiG9w0BAQUFAAOCAQEAse7PYDx2zOAzr9UUxiMZg5HRixAg
+te5EAdD15HMiuVhiS7Wo/LhkPZl9FRWyOOYfrfp6GrLDagTCfGB/8LGoRTZRlcK+
+xILubyciMROtrm+HygGRukg8Qb1T8LCED+tekscuvf9p2QSS033vXnETWD6EhN6G
+UYn+yEgrWnHPzHk5NNAUOeGnbQyLxJEGJSTuNXKAgvDJf5TJff0wPuENnSHfu51E
+RPzzRpbRMzSXtH8fZ9HSbtEJAhvYbBXwpii/CJC0PmzBsKRXOTe25vevdu9J1uYJ
+JMk9QlTMNwPHeeSnBY0ki5nP2WBa1g/Rfxf+uoM0aPkwlGClRoiZv0KefQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib-test.webadmit.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shib-test.webadmit.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shib-test.webadmit.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shib-test.webadmit.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Liaison Holdings LLC d/b/a Liaison International LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Liaison Holdings LLC d/b/a Liaison International LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.liaisonedu.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Pierre Fortin Carrier</GivenName>
+ <EmailAddress>pfortincarrier@liaisonedu.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Margitich</GivenName>
+ <EmailAddress>mmargitich@liaison-intl.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Richard Weir</GivenName>
+ <EmailAddress>rweir@liaisonedu.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://vcugrad-test.webadmit.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vcugrad-test.webadmit.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">VCU Grad Test</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.liaisonedu.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="184" xml:lang="en">https://www.liaisonedu.com/wp-content/uploads/2017/09/cropped-liaison-logo-no-intl-1-1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11121653171584833297, expires on Fri Jun 13 20:54:13 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vcugrad-test.webadmit.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://vcugrad-test.webadmit.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vcugrad-test.webadmit.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://vcugrad-test.webadmit.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Liaison Holdings LLC d/b/a Liaison International LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Liaison Holdings LLC d/b/a Liaison International LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.liaisonedu.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Margitich</GivenName>
+ <EmailAddress>mmargitich@liaison-intl.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Pierre Fortin Carrier</GivenName>
+ <EmailAddress>pfortincarrier@liaisonedu.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Richard Weir</GivenName>
+ <EmailAddress>rweir@liaisonedu.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://vcugrad.webadmit.org/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://vcugrad.webadmit.org/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">VCU Grad</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.liaisonedu.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="184" xml:lang="en">https://www.liaisonedu.com/wp-content/uploads/2017/09/cropped-liaison-logo-no-intl-1-1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11121653171584833297, expires on Fri Jun 13 20:54:13 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vcugrad.webadmit.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://vcugrad.webadmit.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vcugrad.webadmit.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://vcugrad.webadmit.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Liaison Holdings LLC d/b/a Liaison International LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Liaison Holdings LLC d/b/a Liaison International LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.liaisonedu.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Margitich</GivenName>
+ <EmailAddress>mmargitich@liaison-intl.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Pierre Fortin Carrier</GivenName>
+ <EmailAddress>pfortincarrier@liaisonedu.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Richard Weir</GivenName>
+ <EmailAddress>rweir@liaisonedu.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Zoom Video Communications, Inc. -->
+<EntityDescriptor entityID="https://telcit.zoom.us">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Zoom - Cork Institute of Technology</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://zoom.us</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://zoom.us/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="220" xml:lang="en">https://d24cgw3uvb9a9h.cloudfront.net/static/90077/image/new/ZoomLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16604085818565283532, expires on Fri Jun 12 18:02:21 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13261686284835467783, expires on Thu Mar 25 19:38:42 2021 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://telcit.zoom.us/saml/SingleLogout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://telcit.zoom.us/saml/SSO" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Zoom - Cork Institute of Technology</ServiceName>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Zoom Video Communications, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Zoom Video Communications, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.zoom.us</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Zoom Technical Support</GivenName>
+ <EmailAddress>support@zoom.us</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Zoom Technical Support</GivenName>
+ <EmailAddress>support@zoom.us</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Zoom Technical Support</GivenName>
+ <EmailAddress>support@zoom.us</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Zoom Technical Support</GivenName>
+ <EmailAddress>support@zoom.us</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Novelution Corporation -->
+<EntityDescriptor entityID="https://erac.ndsu.edu/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Novelution</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.novelution.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://static.novelution.com/privacy-policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="435" xml:lang="en">https://static.novelution.com/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1561041156, expires on Tue Jun 19 14:32:36 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://erac.ndsu.edu/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://erac.ndsu.edu/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Novelution</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Novelution Corporation</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Novelution Corporation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.novelution.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Evan Sable</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Evan Sable</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Evan Sable</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://stage-fau.novelution.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Novelution Corporation</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.novelution.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://static.novelution.com/privacy-policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="435" xml:lang="en">https://static.novelution.com/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1561041156, expires on Tue Jun 19 14:32:36 2029 GMT -->
+ <ds:X509Certificate>
+MIIC7jCCAdagAwIBAgIEXQuZBDANBgkqhkiG9w0BAQsFADA5MRMwEQYDVQQKDApO
+b3ZlbHV0aW9uMRMwEQYDVQQLDApOb3ZlbHV0aW9uMQ0wCwYDVQQDDARucm1zMB4X
+DTE5MDYxOTE0MzIzNloXDTI5MDYxOTE0MzIzNlowOTETMBEGA1UECgwKTm92ZWx1
+dGlvbjETMBEGA1UECwwKTm92ZWx1dGlvbjENMAsGA1UEAwwEbnJtczCCASIwDQYJ
+KoZIhvcNAQEBBQADggEPADCCAQoCggEBAKhUubnrCEWPOEOpoWx8v6GJiPCvYzxP
+CypAxGdpFqe778fhdbEW1dZqCYzPa7r94BqzZ8D8T6CBle4BFta+VjirvZFVBHcZ
+7S63lBA8HhokUDT1CPzr/arehdsvkqCDLdgROQ8JlBbacwiTR4udPgj8ygm/61mM
+6AM5vUR/zhPweUzayc3u02KtnBXhM2pgkHwFt1qo7BmdHYp7GFnIQYAIZmGiDmws
++iMkeAPmtZbosiWRc2qwocaBR5H22Y36QxMbU/XWB2mfgLIspbBDi48TBVlxGrFt
+FvSxr3jEXQAOXcUuuVmZCs7rP7poTAki8oVOvpOiE1zPsZDLUmF8CK0CAwEAATAN
+BgkqhkiG9w0BAQsFAAOCAQEAbiSBzlSPU9vQgk75IX+b+0HTyd/+nIXlbfNd9as5
+OzG58i7JpudV8hNX2PY+mL2Pfwx9BJH2lRETK7msIAbj+8PlCGLRULZg8vmpFc77
+hVxvUgD1urQaqvNL4wGRAtj9ob3+9Dkz9DkaBc7fZQg8YoFCmJrpsyy5iXcvvqiB
+vSVfYDIvkapT6Jmw42LhZ6DvX4MEawBY+1YV2UV2/HXXMZyvkdkv2GXHSm6etO1r
+FPvuHelfk3Q8fgjWgZyDHfvYz+U6EaL69EINu8FAO2xBB7RPXDoYrRpa/86Qs2Sc
+a2tOnftYGWUefCdaaTh+l6PP5Ae2uGqHavB1jpkoP/x/SQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stage-fau.novelution.com/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stage-fau.novelution.com/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Novelution Corporation</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Novelution Corporation</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Novelution Corporation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.novelution.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Tech Support</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Admin</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Support</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Evan Sable</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://stage-ndsu-edu.novelution.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Novelution</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.novelution.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://static.novelution.com/privacy-policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="435" xml:lang="en">https://static.novelution.com/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1561041156, expires on Tue Jun 19 14:32:36 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stage-erac.ndsu.edu/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stage-erac.ndsu.edu/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Novelution</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Novelution Corporation</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Novelution Corporation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.novelution.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Tech support</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Admin</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Support</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Evan Sable</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://stage-penn.novelution.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Novelution</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.novelution.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://static.novelution.com/privacy-policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="435" xml:lang="en">https://static.novelution.com/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1561041156, expires on Tue Jun 19 14:32:36 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stage-penn.novelution.com/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stage-penn.novelution.com/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Novelution</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Novelution Corporation</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Novelution Corporation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.novelution.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Evan Sable</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Evan Sable</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Evan Sable</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://stage-rit.novelution.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Novelution Corporation</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.novelution.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://static.novelution.com/privacy-policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="435" xml:lang="en">https://static.novelution.com/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1561041156, expires on Tue Jun 19 14:32:36 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stage-rit.novelution.com/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stage-rit.novelution.com/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Novelution Corporation</ServiceName>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Novelution Corporation</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Novelution Corporation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.novelution.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Office of Administrative Support</GivenName>
+ <EmailAddress>admin_support@novelution.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>help_desk@novelution.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Evan Sable</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://test-penn.novelution.com/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Novelution</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://www.novelution.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://static.novelution.com/privacy-policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="90" width="435" xml:lang="en">https://static.novelution.com/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 2101693, expires on Tue Jun 11 19:51:24 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test-penn.novelution.com/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test-penn.novelution.com/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Novelution</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Novelution Corporation</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Novelution Corporation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.novelution.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Evan Sable</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Evan Sable</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Evan Sable</GivenName>
+ <EmailAddress>evan@novelution.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Citrus Community College District -->
+<EntityDescriptor entityID="https://idp.citruscollege.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">citruscollege.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Citrus Community College District</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.citruscollege.edu/admin/statements/Pages/FERPA.aspx</mdui:PrivacyStatementURL>
+ <mdui:Logo height="66" width="250" xml:lang="en">https://idp.citruscollege.edu/idp/images/citrus.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 487283887810607629744310723579187369309392675031, expires on Wed Jun 8 15:10:02 2033 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.citruscollege.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.citruscollege.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Citrus Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Citrus Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://citruscollege.edu/Pages/Default.aspx</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Tom Cheng</GivenName>
+ <EmailAddress>tcheng@citruscollege.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Leigh Buchwald</GivenName>
+ <EmailAddress>lbuchwald@citruscollege.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bob Hughes</GivenName>
+ <EmailAddress>rhughes@citruscollege.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Robert Hughes</GivenName>
+ <EmailAddress>rhughes@citruscollege.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Manhattan College -->
+<EntityDescriptor entityID="https://auth.manhattan.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">manhattan.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Manhattan College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Manhattan College</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://manhattan.edu/privacy-notice.php</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://auth.manhattan.edu/idp/images/manhattanedu_idp_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15781857902270126662, expires on Sun Mar 17 14:32:17 2024 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.manhattan.edu/idp/profile/Logout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.manhattan.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.manhattan.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.manhattan.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Manhattan College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Manhattan College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://manhattan.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jake Holmquist</GivenName>
+ <EmailAddress>jake.holmquist@manhattan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Melvin Lasky</GivenName>
+ <EmailAddress>melvin.lasky@manhattan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>John McCabe</GivenName>
+ <EmailAddress>john.mcccabe01@manhattan.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert Moran</GivenName>
+ <EmailAddress>robert.moran@manhattan.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Colgate University -->
+<EntityDescriptor entityID="https://identity.colgate.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">colgate.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Colgate University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Colgate University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.colgate.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.colgate.edu/home/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="47" width="300" xml:lang="en">https://identity.colgate.edu/idp/images/colgate_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 329099718775175176234885627430548900365892752552, expires on Fri Jun 27 17:29:59 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://identity.colgate.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://identity.colgate.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://identity.colgate.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://identity.colgate.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Colgate University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Colgate University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://colgate.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity Management</GivenName>
+ <EmailAddress>itss-identity-management@colgate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity Managament</GivenName>
+ <EmailAddress>itss-identity-management@colgate.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Identity Management</GivenName>
+ <EmailAddress>itss-identity-management@colgate.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Questica, Inc. -->
+<EntityDescriptor entityID="https://csusp.questica.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Questica - California State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Questica is a leader in budgeting software, performance management, and transparency and data visualization solutions for government, healthcare, education and non-profits.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.questica.com/who-we-are/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.questica.com/wp-content/uploads/20170405-Privacy-Policy-US-CURRENT-POLICY.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="133" xml:lang="en">https://www.questica.com/wp-content/uploads/2017/07/questica-corp-black-horizontal-no-tag.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17436396836199601548, expires on Thu Feb 25 18:21:06 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csubtest.questica.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csuntest.questica.com/Shibboleth.sso/SAML2/POST" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calpolytest.questica.com/Shibboleth.sso/SAML2/POST" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csub.questica.com/Shibboleth.sso/SAML2/POST" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csun.questica.com/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calpoly.questica.com/Shibboleth.sso/SAML2/POST" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csussotest.questica.com/Shibboleth.sso/SAML2/POST" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://CSUChico.questica.com/Shibboleth.sso/SAML2/POST" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://CSUSonoma.questica.com/Shibboleth.sso/SAML2/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calpolytraining.questica.com/Shibboleth.sso/SAML2/POST" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://CSUSanBernardinoTest.questica.com/Shibboleth.sso/SAML2/POST" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://CSUSanBernardino.questica.com/Shibboleth.sso/SAML2/POST" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://FresnoState.questica.com/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://FresnoStateTest.questica.com/Shibboleth.sso/SAML2/POST" index="14"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Questica - California State University</ServiceName>
+ <ServiceDescription xml:lang="en">Questica is a leader in budgeting software, performance management, and transparency and data visualization solutions for government, healthcare, education and non-profits.</ServiceDescription>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Questica, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Questica, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.questica.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Questica Support</GivenName>
+ <EmailAddress>support@questica.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Taki Stewart</GivenName>
+ <EmailAddress>tstewart@questica.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Allan Booth</GivenName>
+ <EmailAddress>abooth@questica.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>RJ Ahuja</GivenName>
+ <EmailAddress>rahuja@questica.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Claremont Graduate University -->
+<EntityDescriptor entityID="https://webauth.cgu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://mycampus.cgu.edu/web/it/ehelp" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cgu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Claremont Graduate University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The Identity Provider for Claremont Graduate University.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.cgu.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.cgu.edu/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="300" width="300" xml:lang="en">https://www.cgu.edu/wp-content/themes/cgu/assets/images/emblem.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 752938575269591849887992569576283770945727789648, expires on Fri May 15 16:11:02 2037 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.cgu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.cgu.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Claremont Graduate University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Claremont Graduate University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.cgu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Bob Ford</GivenName>
+ <EmailAddress>Bob.Ford@cgu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nasir Hakeem</GivenName>
+ <EmailAddress>Nasir.Hakeem@cgu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>CGU Helpdesk</GivenName>
+ <EmailAddress>Help.Desk@cgu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jason Jones</GivenName>
+ <EmailAddress>Jason.Jones@cgu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Keck Graduate Institute of Applied Life Sciences -->
+<EntityDescriptor entityID="https://webauth.kgi.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.kgi.edu/it-department-services" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">kgi.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Keck Graduate Institute of Applied Life Sciences</mdui:DisplayName>
+ <mdui:Description xml:lang="en">IT Services</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.kgi.edu/it-department-services/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.kgi.edu/it-department-services/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="256" xml:lang="en">https://www.kgi.edu/</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 203626230078785417557173617747603415270745816865, expires on Mon May 12 14:10:56 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.kgi.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.kgi.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Keck Graduate Institute of Applied Life Sciences</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Keck Graduate Institute of Applied Life Sciences</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.kgi.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>William Roberts</GivenName>
+ <EmailAddress>william_roberts@kgi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jeremy Whaley</GivenName>
+ <EmailAddress>jeremyw@cuc.claremont.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>William Roberts</GivenName>
+ <EmailAddress>william_roberts@kgi.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>William Roberts</GivenName>
+ <EmailAddress>william_roberts@kgi.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Hirezon d/b/a Interview Exchange -->
+<EntityDescriptor entityID="https://sso.interviewexchange.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sso.interviewexchange.com/incommon/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Hirezon d/b/a Interview Exchange</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.hirezon.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="83" width="300" xml:lang="en">https://s7540.pcdn.co/wp-content/themes/hirezoncorporation/images/logo1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12049307292771639648, expires on Thu Apr 27 17:21:33 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.interviewexchange.com/incommon/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.interviewexchange.com/incommon/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.interviewexchange.com/incommon/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.interviewexchange.com/incommon/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.interviewexchange.com/incommon/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.interviewexchange.com/incommon/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sso.interviewexchange.com/incommon/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sso.interviewexchange.com/incommon/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sso.interviewexchange.com/incommon/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Hirezon d/b/a Interview Exchange</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Hirezon d/b/a Interview Exchange</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Hirezon d/b/a Interview Exchange</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hirezon.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>InCommon Support</GivenName>
+ <EmailAddress>incommon@interviewexchange.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Support</GivenName>
+ <EmailAddress>incommon@interviewexchange.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>incommon@interviewexchange.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Support</GivenName>
+ <EmailAddress>incommon@interviewexchange.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Lamar State College - Orange -->
+<EntityDescriptor entityID="https://idp.lsco.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lsco.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Lamar State College - Orange</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Identity Provider for LSC-O</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.lsco.edu/privacypolicy/privacypolicy.asp</mdui:PrivacyStatementURL>
+ <mdui:Logo height="225" width="225" xml:lang="en">https://www.lsco.edu/images/lsco-small.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10875720698902032273, expires on Sun Apr 23 21:12:19 2028 GMT -->
+ <ds:X509Certificate>
+MIIFnjCCA4YCCQCW7lJahmsvkTANBgkqhkiG9w0BAQsFADCBkDELMAkGA1UEBhMC
+VVMxEzARBgNVBAgMCkNhbGlmb3JuaWExEDAOBgNVBAcMB09ha2xhbmQxGDAWBgNV
+BAoMD0NpcnJ1cyBJZGVudGl0eTEVMBMGA1UEAwwMaWRwLmxzY28uZWR1MSkwJwYJ
+KoZIhvcNAQkBFhpzdXBwb3J0QGNpcnJ1c2lkZW50aXR5LmNvbTAeFw0xODA0MjQy
+MTEyMTlaFw0yODA0MjMyMTEyMTlaMIGQMQswCQYDVQQGEwJVUzETMBEGA1UECAwK
+Q2FsaWZvcm5pYTEQMA4GA1UEBwwHT2FrbGFuZDEYMBYGA1UECgwPQ2lycnVzIElk
+ZW50aXR5MRUwEwYDVQQDDAxpZHAubHNjby5lZHUxKTAnBgkqhkiG9w0BCQEWGnN1
+cHBvcnRAY2lycnVzaWRlbnRpdHkuY29tMIICIjANBgkqhkiG9w0BAQEFAAOCAg8A
+MIICCgKCAgEAx69hzpTnpjOXSg7XSjqMCa0FXNUM+EiH4l01U3XjTpoALrEfchzV
+soeh3fMpDM5UJEcfN559SUmt87LJ9id5CzwuUgoET16m4UrXiRfUuSqfa3Rz2Lnr
+huz5gyzWzFlJnw06ijcUjIO5EvfG4UqZnp//0HfP+bIJKqPrSxrip8/WpHFiWqTI
+rb5r1Zs9i9JT/+5hLVVdhP6iV/La9UNSYhkGvfdY2xBpJ0R0jFFEv64fsColhNTA
+Q7OyN5ZonDoT1KfBE2txehqg60ik0TEeXkV0YeHNEFTBvyIa0q4d3FC/dTN8o2a/
+zghO9TPyXhrnfMetTmU85oLrR9hlnyn4SY3u4chu5UQpZtL335FGoCQmpFaF3kav
+DaI0MzGOVPv9P0N00PjNJqLLSZ5NT9wzHcVcKu3W84AcqoQ4wg3TzMcA8z9yXoYF
+sVZ2CFW13frd5tg61M2YeUc3G0/6pQJNYIUxvk3h/Fmvf2F2lpWS3CpCPztnnUNx
+RRwuZxFz8SQmBy9tgni8GXduLi5wpyUqflrXa75M7xnE/aIF43qIPIRM17X8opDS
+InQ21pLXVQIKoqhsC6NUnKUzFZ8UdJdqh7R1p71RRNEbuA21GF43r3vnwKw/rWDs
+x5+wdFdcl5IkHItggtjUSFbpm2FrTgE/Am+thstPw8W7jt7CO3ur66kCAwEAATAN
+BgkqhkiG9w0BAQsFAAOCAgEAPotvVeQtI+HlebFvHGb3kJvG1Z7d6moPDyt2Prce
+EnCooP8j5YagARMC1kztLiEoAhFgzhVsErK9VvvhRZ1ALocl+M7rh0TAoq0pB5Xe
+Sa6M1Klz/TEUiT23yQk0l//Y6Ax7JSO/aSShLIJcUHGrGwvWdE7Xo/c8yk/3xRhN
+WrxcneXO6ggVxezpAd3Vcxw2rbHdoPfOH+yBWa2PWQaG0vEOxujZ8zLKSfcD8go8
+S08HvTMWfFTe+Z0WvZ8tpWxzF9MFPMXNKr+gGNftvoy5HxwZnMPxApCrA/0R8zNk
+QtDEo7fY0KsGSWHHdpCxCsOtOp00F8UwYcrtwLalcvJuw0YtYK2ffzvIKrRIoOIE
+zhhuzPwtTsoEdK4FDrtX/b77RRT36EopYljNBPPBiuoMFDY7MHrKnJfUTPf3o+m6
+aIaO/tcL6u/wgYxexfnjuL7Cj80DlegS5laUNdxrypPVJAZYvK0pCl6/ln6ztUSJ
+lCDs0bPPyyngYX/EHVja/VX0vl6LZXKVHUaFegZ4bC1op4lgQvgzbE/AnBRqvGQy
+P/bKgsez+TkhaAGBnbCi/rJYwQsAZJVLhyKyhvXvOJz48huVhRFnAN4/5eUbmruM
+9AGo6Wbd/deJUSpo9KVrhAkp4alj85qiH/1IcQxiOjl2zCW6dMWSy5LQxQ035Fy0
++cM=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lsco-bridge.proxy.cirrusidentity.com/saml2/idp/SSOService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lsco-bridge.proxy.cirrusidentity.com/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lamar State College - Orange</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lamar State College - Orange</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://lsco.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Linda Burnett</GivenName>
+ <EmailAddress>linda.burnett@lsco.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Dave Johnson</GivenName>
+ <EmailAddress>djohnson@lsco.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Dave Johnson</GivenName>
+ <EmailAddress>djohnson@lsco.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Pitzer College -->
+<EntityDescriptor entityID="https://webauth.pitzer.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/hide-from-discovery</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">pitzer.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Pitzer College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.pitzer.edu/about/website-privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="60" xml:lang="en">https://www.pitzer.edu/wp-content/uploads/2018/08/pitzer_logo_60x80.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1388781588924365168903157856735590350461200392431, expires on Tue Aug 29 01:33:50 2034 GMT -->
+ <ds:X509Certificate>
+MIIDNDCCAhygAwIBAgIVAPNDHsjEN/cftvOp9yqax1nw8mDvMA0GCSqGSIb3DQEB
+BQUAMB0xGzAZBgNVBAMTEndlYmF1dGgucGl0emVyLmVkdTAeFw0xNDA4MjkwMTMz
+NTBaFw0zNDA4MjkwMTMzNTBaMB0xGzAZBgNVBAMTEndlYmF1dGgucGl0emVyLmVk
+dTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKAta18nxz6sZdaivfV5
+yeoVnszfx/gmx4AHu7QfnjWnMji9Vg5io6zx+nSsWvUPI2scNS9t+nlyQ+4VWtgr
+SrKxsyy5zNN4IYwJsMBm+q1rsML8J5yaX952I3dIYjOacH719K9AUslz1qi4gt5K
+ddBuzdDh53BDqTy7vd8ZlY6+T7kEe9DZfYuMJQsJKOOaQcXKWEqG9GRNgnqguDLk
+vBqSOGpZQ7Fj7wdi55Z3oa6KhmK0lU5N7rAZFBUDBiGr3+HclLk1UNvviB1UdFDD
+kZt103iiz0yG9nb+yVqwXwocKk1Dsn8FONH2bR9LeSbtjPvxLcRVzkWV/bvc0TOU
+MN0CAwEAAaNrMGkwSAYDVR0RBEEwP4ISd2ViYXV0aC5waXR6ZXIuZWR1hilodHRw
+czovL3dlYmF1dGgucGl0emVyLmVkdS9pZHAvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU
+b2YNe9q8GvK6Sy46mIPJ4S5zVBYwDQYJKoZIhvcNAQEFBQADggEBABx6+G8qhuBa
+9m8MD5KoNh1n8J9SrPkEYPC061BeiDz7iUKmxF9nRMrAhgKnPB5U7MhjR9aV37ak
+PG0KWqfIFKTO0Bte94wqaxTvMA26VguMqPWLCdi4wGbXHycplvhq6oH9Z8+GPXKw
+mdTLhKcKGESesWFnYtmd8kIOUAFgVC6heaolO3EsvjW6XFunsI5z0lLDCtjEE/Ah
+gpa7aPEShFPSctta+TidUXBxhwplPsDbvrc21DNpAlIaqSM99g6HoYjDrN15Ed5U
+bSL0SekAPXoLevvxiAnB4J/b2jOwLo8gP8izyiVebQH9SlKtt+f6wjsbXOUp1gxE
+WpGqq2Xth14=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.pitzer.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.pitzer.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Pitzer College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Pitzer College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://pitweb.pitzer.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Pitzer College Help Desk</GivenName>
+ <EmailAddress>help@pitzer.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kyle Butts</GivenName>
+ <EmailAddress>kyle_butts@pitzer.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Robert Goldstein</GivenName>
+ <EmailAddress>robert_goldstein@pitzer.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kyle Butts</GivenName>
+ <EmailAddress>kyle_butts@pitzer.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Biomedical Research Alliance of New York (BRANY) d/b/a Protocol Builder -->
+<EntityDescriptor entityID="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/metadata.php/incommon-augusta-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Protocol Builder - Augusta University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.protocolbuilderpro.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="254" xml:lang="en">https://www.protocolbuilderpro.com/wp-content/uploads/2014/08/PBlogo-H4.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18338107583201792904, expires on Wed Dec 18 13:06:01 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-logout.php/incommon-augusta-sp"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-logout.php/incommon-augusta-sp"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-acs.php/incommon-augusta-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml1-acs.php/incommon-augusta-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-acs.php/incommon-augusta-sp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml1-acs.php/incommon-augusta-sp/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Protocol Builder - Augusta University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Biomedical Research Alliance of New York (BRANY) d/b/a Protocol Builder</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Biomedical Research Alliance of New York (BRANY) d/b/a Protocol Builder</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.protocolbuilderpro.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/metadata.php/incommon-georgetown-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Protocol Builder - Georgetown University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.protocolbuilderpro.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="254" xml:lang="en">https://www.protocolbuilderpro.com/wp-content/uploads/2014/08/PBlogo-H4.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18338107583201792904, expires on Wed Dec 18 13:06:01 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-logout.php/incommon-georgetown-sp"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-logout.php/incommon-georgetown-sp"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-acs.php/incommon-georgetown-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml1-acs.php/incommon-georgetown-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-acs.php/incommon-georgetown-sp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml1-acs.php/incommon-georgetown-sp/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Protocol Builder - Georgetown University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Biomedical Research Alliance of New York (BRANY) d/b/a Protocol Builder</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Biomedical Research Alliance of New York (BRANY) d/b/a Protocol Builder</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.protocolbuilderpro.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/metadata.php/incommon-lsuhsc-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Protocol Builder - LSU Health Science Center</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://app.protocolbuilderpro.com/sites/default/files/newlogo.png</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="254" xml:lang="en">https://app.protocolbuilderpro.com/sites/default/files/newlogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18338107583201792904, expires on Wed Dec 18 13:06:01 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-logout.php/incommon-lsuhsc-sp"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-logout.php/incommon-lsuhsc-sp"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-acs.php/incommon-lsuhsc-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml1-acs.php/incommon-lsuhsc-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-acs.php/incommon-lsuhsc-sp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml1-acs.php/incommon-lsuhsc-sp/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Protocol Builder - LSU Health Science Center</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Biomedical Research Alliance of New York (BRANY) d/b/a Protocol Builder</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Biomedical Research Alliance of New York (BRANY) d/b/a Protocol Builder</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.protocolbuilderpro.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/metadata.php/incommon-stonybrook-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Protocol Builder - Stony Brook University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.protocolbuilderpro.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="254" xml:lang="en">https://www.protocolbuilderpro.com/wp-content/uploads/2014/08/PBlogo-H4.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18338107583201792904, expires on Wed Dec 18 13:06:01 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-logout.php/incommon-stonybrook-sp"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-logout.php/incommon-stonybrook-sp"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-acs.php/incommon-stonybrook-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml1-acs.php/incommon-stonybrook-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-acs.php/incommon-stonybrook-sp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml1-acs.php/incommon-stonybrook-sp/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Protocol Builder - Stony Brook University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Biomedical Research Alliance of New York (BRANY) d/b/a Protocol Builder</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Biomedical Research Alliance of New York (BRANY) d/b/a Protocol Builder</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.protocolbuilderpro.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/metadata.php/incommon-ua-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Protocol Builder - University of Alabama</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.protocolbuilderpro.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="254" xml:lang="en">https://www.protocolbuilderpro.com/wp-content/uploads/2014/08/PBlogo-H4.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18338107583201792904, expires on Wed Dec 18 13:06:01 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-logout.php/incommon-ua-sp"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-logout.php/incommon-ua-sp"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-acs.php/incommon-ua-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml1-acs.php/incommon-ua-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-acs.php/incommon-ua-sp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml1-acs.php/incommon-ua-sp/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Protocol Builder - University of Alabama</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Biomedical Research Alliance of New York (BRANY) d/b/a Protocol Builder</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Biomedical Research Alliance of New York (BRANY) d/b/a Protocol Builder</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.protocolbuilderpro.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/metadata.php/incommon-yale-sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Protocol Builder - Yale University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://protocolbuilderpro.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="35" width="254" xml:lang="en">https://www.protocolbuilderpro.com/wp-content/uploads/2014/08/PBlogo-H4.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18338107583201792904, expires on Wed Dec 18 13:06:01 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-logout.php/incommon-yale-sp"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-logout.php/incommon-yale-sp"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-acs.php/incommon-yale-sp" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml1-acs.php/incommon-yale-sp" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml2-acs.php/incommon-yale-sp" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://app.protocolbuilderpro.com/simplesaml/module.php/saml/sp/saml1-acs.php/incommon-yale-sp/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Protocol Builder - Yale University</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Biomedical Research Alliance of New York (BRANY) d/b/a Protocol Builder</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Biomedical Research Alliance of New York (BRANY) d/b/a Protocol Builder</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.protocolbuilderpro.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Abu Zakaria</GivenName>
+ <EmailAddress>abu.zakaria@sourcetop.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Santa Clara University -->
+<EntityDescriptor entityID="https://login.scu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://login.scu.edu" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">scu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Santa Clara University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://login.scu.edu/idp/shibboleth</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.scu.edu/contact/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="815" width="614" xml:lang="en">https://www.scu.edu/media/offices/umc/scu-brand-guidelines/visual-identity-amp-photography/visual-identity-toolkit/logos-amp-seals/Seal-50WhiteOnDuotone.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 845514336159611457449116851723048171754391055622, expires on Tue Apr 7 05:51:19 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.scu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.scu.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Santa Clara University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Santa Clara University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://scu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>SCU NetAdmin</GivenName>
+ <EmailAddress>net-admin@scu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Geoffrey Battad</GivenName>
+ <EmailAddress>gbattad@scu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Bryan McClenahan</GivenName>
+ <EmailAddress>iso@scu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- SUNY College of Technology at Farmingdale -->
+<EntityDescriptor entityID="http://auth.farmingdale.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">farmingdale.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">SUNY College of Technology at Farmingdale</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.farmingdale.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.farmingdale.edu/information-technology/privacy-policy.shtml</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="460" xml:lang="en">https://www.farmingdale.edu/_resources/images/fsc-header-logo-460x60.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 220121299530027098455419179339133676105, expires on Sat Oct 3 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
+MIIG4TCCBcmgAwIBAgIRAKWZ0fmw4ExTRtYtrB066kkwDQYJKoZIhvcNAQELBQAw
+gZAxCzAJBgNVBAYTAkdCMRswGQYDVQQIExJHcmVhdGVyIE1hbmNoZXN0ZXIxEDAO
+BgNVBAcTB1NhbGZvcmQxGjAYBgNVBAoTEUNPTU9ETyBDQSBMaW1pdGVkMTYwNAYD
+VQQDEy1DT01PRE8gUlNBIERvbWFpbiBWYWxpZGF0aW9uIFNlY3VyZSBTZXJ2ZXIg
+Q0EwHhcNMTgxMDA0MDAwMDAwWhcNMjAxMDAzMjM1OTU5WjBXMSEwHwYDVQQLExhE
+b21haW4gQ29udHJvbCBWYWxpZGF0ZWQxEzARBgNVBAsTCkNPTU9ETyBTU0wxHTAb
+BgNVBAMTFGF1dGguZmFybWluZ2RhbGUuZWR1MIIBIjANBgkqhkiG9w0BAQEFAAOC
+AQ8AMIIBCgKCAQEAu8rkKpYLK5KEIidZsF4q4WhiRu92kUnaRxqs7CaJwmls3nta
+8roMHUWWKiOQhbeIFGrcv27pPsRjSXZ/y2vqoqbDZwbnfNti1h+AcmQyU7KeYxOc
+oqtfd0ne6EESO0oVH6Ch/kQ6PT2T6ZEh92we8Y9eQjDeCvEMf6rEZLrGjNIwXPZG
+YjHmthaLm6wrGHgIDuGHkWa3MLSFXND6eGm/KpM7Kk6Ullc5Van+ipDt/o22ybVV
+y9zabeaMcd34MCfYDD13uVW+EdhtMTqY8KE9ggEpB8bt+Tf7AeA83yxTGJQJPnGO
+FP9kVZIZLs8wnynrvWDpPgV8ouR3TX0qcwno8QIDAQABo4IDbDCCA2gwHwYDVR0j
+BBgwFoAUkK9qOpRaC9iQ6hJWc99DtDoo2ucwHQYDVR0OBBYEFJCPf3Wx5dLGiMrR
+szTepQgwPuEPMA4GA1UdDwEB/wQEAwIFoDAMBgNVHRMBAf8EAjAAMB0GA1UdJQQW
+MBQGCCsGAQUFBwMBBggrBgEFBQcDAjBPBgNVHSAESDBGMDoGCysGAQQBsjEBAgIH
+MCswKQYIKwYBBQUHAgEWHWh0dHBzOi8vc2VjdXJlLmNvbW9kby5jb20vQ1BTMAgG
+BmeBDAECATBUBgNVHR8ETTBLMEmgR6BFhkNodHRwOi8vY3JsLmNvbW9kb2NhLmNv
+bS9DT01PRE9SU0FEb21haW5WYWxpZGF0aW9uU2VjdXJlU2VydmVyQ0EuY3JsMIGF
+BggrBgEFBQcBAQR5MHcwTwYIKwYBBQUHMAKGQ2h0dHA6Ly9jcnQuY29tb2RvY2Eu
+Y29tL0NPTU9ET1JTQURvbWFpblZhbGlkYXRpb25TZWN1cmVTZXJ2ZXJDQS5jcnQw
+JAYIKwYBBQUHMAGGGGh0dHA6Ly9vY3NwLmNvbW9kb2NhLmNvbTA5BgNVHREEMjAw
+ghRhdXRoLmZhcm1pbmdkYWxlLmVkdYIYd3d3LmF1dGguZmFybWluZ2RhbGUuZWR1
+MIIBfQYKKwYBBAHWeQIEAgSCAW0EggFpAWcAdgDuS723dc5guuFCaR+r4Z5mow9+
+X7By2IMAxHuJeqj9ywAAAWZAviG8AAAEAwBHMEUCIQDXHHG9lAVAZ6Y4GdA11PDD
+ouEKM10XtvGUVljgywtqiAIgaDTeGs/xp8QvSq4EabX7wXL8oM3YaX6PYXx4MDiG
+YLAAdgBep3P531bA57U2SH3QSeAyepGaDIShEhKEGHWWgXFFWAAAAWZAviGYAAAE
+AwBHMEUCIEqHbfo4zKyy0c4dPVs1A2pl3FNU7xvBSvNR+ZDwQ8Q7AiEAl64rGWde
+6LiBHE5Fsh2NJzwc9iAokv7cAs/oZLq8PhAAdQBVgdTCFpA2AUrqC5tXPFPwwOQ4
+eHAlCBcvo6odBxPTDAAAAWZAviGLAAAEAwBGMEQCIHmFZeGPXdNeRBeZhia6njm1
+0AmoSJ5aD9mbrkYEHKcbAiBFK8iaV8/q4CtrImN4/sRjkWOK/STVOd4w21X6/SCz
+UTANBgkqhkiG9w0BAQsFAAOCAQEAOjq2FnZgS1hG0AqnKj+T3bVQfjsgpuK/CqC6
+mbVk2zVd35gENoocxCHh3BVL+X8GyYX5yv3qQKwC6TgTqfUJMMLqqVjmGNdzOvOn
+VHQKu2SltEqtGsXHgipy4KkBB4LMM2binNa/fAGcwYhULLoEKbVaP+mutcIVcojF
+UBsrpgeco7PtIjw5u3YDKZdKjIFSb3R2lBMKHHnq67UAlwvGkwLZsQ7yauHUxz0j
+803iy4heJYv3KtjQeq+EMzdiHKLfLloUAA3yDAyznpgSFbghp9NZIcihv85u9vzD
+4sga3C5eY/2zHfbwwdIMF7eCuMkwsgKGk9xbnAtL3/+FncS22A==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.farmingdale.edu/adfs/ls/?wa=wsignout1.0"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.farmingdale.edu/adfs/ls"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.farmingdale.edu/adfs/ls"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">SUNY College of Technology at Farmingdale</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SUNY College of Technology at Farmingdale</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.farmingdale.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Farmingdale State College</GivenName>
+ <EmailAddress>Helpdesk@farmingdale.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Farmingdale State College</GivenName>
+ <EmailAddress>Helpdesk@farmingdale.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Farmingdale State College</GivenName>
+ <EmailAddress>Helpdesk@farmingdale.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Van Andel Research Institute -->
+<EntityDescriptor entityID="https://sso.vai.org/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">vai.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Van Andel Research Institute</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.vai.org/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="475" xml:lang="en">https://sso.vai.org/idp/images/vai-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16871059544446095482, expires on Mon May 1 18:29:19 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.vai.org/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.vai.org/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Van Andel Research Institute</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Van Andel Research Institute</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.vai.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>System Administrators</GivenName>
+ <EmailAddress>sysadmins@vai.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>System Administrators</GivenName>
+ <EmailAddress>sysadmins@vai.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>System Administrators</GivenName>
+ <EmailAddress>sysadmins@vai.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>System Administrators</GivenName>
+ <EmailAddress>sysadmins@vai.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Duquesne University -->
+<EntityDescriptor entityID="https://idp.duq.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">duq.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Duquesne University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Login Service for Duquesne University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.duq.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.duq.edu/about/campus/computing-and-technology/policies/administrative-taps/tap-26</mdui:PrivacyStatementURL>
+ <mdui:Logo height="47" width="196" xml:lang="en">https://www.duq.edu/images/cts/web-services/educause/logo_school.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 26842969921380917029610856324475806572968340849, expires on Sat Nov 22 20:18:05 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.duq.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.duq.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Duquesne University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Duquesne University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://duq.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Help Desk</GivenName>
+ <EmailAddress>help@duq.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>CTS-Systems</GivenName>
+ <EmailAddress>cts-systems@duq.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>DU Admin</GivenName>
+ <EmailAddress>duq-admin@duq.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security Director</GivenName>
+ <EmailAddress>dugast@duq.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- BadgePass Inc. -->
+<EntityDescriptor entityID="https://shibboleth.badgepass.com/ccis">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth.badgepass.com/ccis/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CCIS</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://totalcard.net</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://totalcard.net:2025/sds/tc05i/web/Privacy%20Policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="559" width="1920" xml:lang="en">https://totalcard.net:2025/sds/tc05i/Images/CompanyLogo/cc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10557368000041217023, expires on Thu May 13 15:14:00 2027 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.badgepass.com/ccis/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.badgepass.com/ccis/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.badgepass.com/ccis/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth.badgepass.com/ccis/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CCIS</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">BadgePass Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">BadgePass Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://badgepass.com/index.php</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nathan Hughes</GivenName>
+ <EmailAddress>nathan.hughes@badgepass.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tech Support</GivenName>
+ <EmailAddress>tech.support@badgepass.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Tech Security</GivenName>
+ <EmailAddress>tech.support@badgepass.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://shibboleth.badgepass.com/uic">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth.badgepass.com/uic/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UIC</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://totalcard.net</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://totalcard.net:2025/sds/tc05i/web/Privacy%20Policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="648" width="648" xml:lang="en">https://totalcard.net:2025/sds/tc05i/Images/CompanyLogo/uic.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10557368000041217023, expires on Thu May 13 15:14:00 2027 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.badgepass.com/uic/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.badgepass.com/uic/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.badgepass.com/uic/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth.badgepass.com/uic/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UIC</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">BadgePass Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">BadgePass Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://badgepass.com/index.php</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nathan Hughes</GivenName>
+ <EmailAddress>nathan.hughes@badgepass.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tech Support</GivenName>
+ <EmailAddress>tech.support@badgepass.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Tech Security</GivenName>
+ <EmailAddress>tech.support@badgepass.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://totalcard.net/portal/ccis">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth.badgepass.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">CC Student Portal</mdui:DisplayName>
+ <mdui:Description xml:lang="en">CC Student Portal</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://totalcard.net</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://totalcard.net:2025/sds/tc05i/web/Privacy%20Policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1535" width="5271" xml:lang="en">https://totalcard.net:2025/sds/tc05i/Images/CompanyLogo/cc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10557368000041217023, expires on Thu May 13 15:14:00 2027 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.badgepass.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.badgepass.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.badgepass.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth.badgepass.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">CC Student Portal</ServiceName>
+ <ServiceDescription xml:lang="en">CC Student Portal</ServiceDescription>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">BadgePass Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">BadgePass Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://badgepass.com/index.php</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nathan Hughes</GivenName>
+ <EmailAddress>nathan.hughes@badgepass.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tech Support</GivenName>
+ <EmailAddress>tech.support@badgepass.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Tech Security</GivenName>
+ <EmailAddress>tech.support@badgepass.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>BadgePass</GivenName>
+ <EmailAddress>tech.support@badgepass.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="http://totalcard.net/portal/uic">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://shibboleth.badgepass.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">UIC Student Portal</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UIC Student Portal</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://totalcard.net</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://totalcard.net:2025/sds/tc05i/web/Privacy%20Policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="648" width="648" xml:lang="en">https://totalcard.net:2025/sds/tc05i/Images/CompanyLogo/uic.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10557368000041217023, expires on Thu May 13 15:14:00 2027 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.badgepass.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.badgepass.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.badgepass.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth.badgepass.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">UIC Student Portal</ServiceName>
+ <ServiceDescription xml:lang="en">UIC Student Portal</ServiceDescription>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">BadgePass Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">BadgePass Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://badgepass.com/index.php</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>BadgePass</GivenName>
+ <EmailAddress>support@badgepass.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nathan Hughes</GivenName>
+ <EmailAddress>nathan.hughes@badgepass.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Tech Support</GivenName>
+ <EmailAddress>tech.support@badgepass.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Tech Security</GivenName>
+ <EmailAddress>tech.support@badgepass.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- PhotoShelter, Inc. -->
+<EntityDescriptor entityID="https://fortlewis.photoshelter.com/sso/SAML2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PhotoShelter - Fort Lewis College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PhotoShelter Fort Lewis College SSO Portal
+</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.photoshelter.com/support/privacy-2018</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://www.photoshelter.com/img/pub2014/logo-full.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10861597414177889888, expires on Mon Feb 16 18:01:21 2026 GMT -->
+ <ds:X509Certificate>
+MIIE6DCCA9CgAwIBAgIJAJa8JU0NX95gMA0GCSqGSIb3DQEBBQUAMIGoMQswCQYDVQQGEwJVUzERMA8GA1UECBMITmV3IFlvcmsxETAPBgNVBAcTCE5ldyBZb3JrMRswGQYDVQQKExJQaG90b1NoZWx0ZXIsIEluYy4xEzARBgNVBAsTCk9wZXJhdGlvbnMxHDAaBgNVBAMTE3NwLnBob3Rvc2hlbHRlci5jb20xIzAhBgkqhkiG9w0BCQEWFG9wc0BwaG90b3NoZWx0ZXIuY29tMB4XDTE2MDIxOTE4MDEyMVoXDTI2MDIxNjE4MDEyMVowgagxCzAJBgNVBAYTAlVTMREwDwYDVQQIEwhOZXcgWW9yazERMA8GA1UEBxMITmV3IFlvcmsxGzAZBgNVBAoTElBob3RvU2hlbHRlciwgSW5jLjETMBEGA1UECxMKT3BlcmF0aW9uczEcMBoGA1UEAxMTc3AucGhvdG9zaGVsdGVyLmNvbTEjMCEGCSqGSIb3DQEJARYUb3BzQHBob3Rvc2hlbHRlci5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDNnykKvm+bp5ZvR9ZkaG21fFyzYbpbLyAiVO4ppz9lAeZBWJwl8apd9NH/TNC55UJZDt5xtCZCMRZht2Fmdp1buNuCFxQT3Z62acomJEZU0svHsIAni6wfhtZDiSTYH5WyAbbt2CroUxDDl1f0sMwABvy4+hmcaUIb026R2TOVp6h97Gl2SrxBTvIxt7Bu3shWZtO5xa5WKABrQaTRMQFGS17+ckRizeUCQluYikCYbw5JnpDsh3cRky29Zo/dffny1ZBN29owRVbMiCNvq/bUa/0w0Wph3hgOapndJUpvonYcfYC1Jg+mdTfoxXcRWJiYG+5LV4KtfMxUYqwd3x3bAgMBAAGjggERMIIBDTAdBgNVHQ4EFgQUMAKAtX3tO/eKSM5sTDbDXn6WzREwgd0GA1UdIwSB1TCB0oAUMAKAtX3tO/eKSM5sTDbDXn6WzRGhga6kgaswgagxCzAJBgNVBAYTAlVTMREwDwYDVQQIEwhOZXcgWW9yazERMA8GA1UEBxMITmV3IFlvcmsxGzAZBgNVBAoTElBob3RvU2hlbHRlciwgSW5jLjETMBEGA1UECxMKT3BlcmF0aW9uczEcMBoGA1UEAxMTc3AucGhvdG9zaGVsdGVyLmNvbTEjMCEGCSqGSIb3DQEJARYUb3BzQHBob3Rvc2hlbHRlci5jb22CCQCWvCVNDV/eYDAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQB3C5rrWL2fXzEUwuBmVAFQD9r2pJnS86myq/660UUD4g8/3lnklzq4tAgl6BwzAaqOLvOgdpty0JvSboYKoBHurqKCd5T7VoFohQKDtrkyPJpCPOV31O1qBVG/+QvNq1ENIP8l4tc9uCzi75gzA5pAQdEeP4lHXmzNQTOwmCRLfU5qZcVB7xII8ZOGxa/vDsuqSEmp2HIilI3zwH3l8CWJQISsGlFORRUgYlg9oscZ77/wC/oquLUKnfQ/2lBvg8TGq0YI/NtEJZgv3+DLVlUUKgXm/xraDzPh1ehfY6r/c/1f8fqDqjdhC1bQ8aUT/oKO+xmG88VqLwMeoOC7UDCo
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fortlewis.photoshelter.com/sso/SAML2/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fortlewis.photoshelter.com/sso/SAML2/ACS/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PhotoShelter - Fort Lewis College</ServiceName>
+ <ServiceDescription xml:lang="en">PhotoShelter Fort Lewis College SSO Portal
+</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">PhotoShelter, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">PhotoShelter, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.photoshelter.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Libris CS</GivenName>
+ <EmailAddress>librissupport@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://georgetown.photoshelter.com/sso/SAML2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PhotoShelter - Georgetown University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PhotoShelter Georgetown University SSO Portal </mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.photoshelter.com/support/privacy-2018</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://www.photoshelter.com/img/pub2014/logo-full.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10861597414177889888, expires on Mon Feb 16 18:01:21 2026 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://georgetown.photoshelter.com/sso/SAML2/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://georgetown.photoshelter.com/sso/SAML2/ACS/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PhotoShelter - Georgetown University</ServiceName>
+ <ServiceDescription xml:lang="en">PhotoShelter Georgetown University SSO Portal </ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">PhotoShelter, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">PhotoShelter, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.photoshelter.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Photoshelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Libris CS</GivenName>
+ <EmailAddress>libris-cs@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Photoshelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ohiouniversity.photoshelter.com/sso/SAML2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PhotoShelter - Ohio University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PhotoShelter Ohio University SSO Portal</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.photoshelter.com/support/privacy-2018</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://www.photoshelter.com/img/pub2014/logo-full.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10861597414177889888, expires on Mon Feb 16 18:01:21 2026 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ohiouniversity.photoshelter.com/sso/SAML2/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ohiouniversity.photoshelter.com/sso/SAML2/ACS/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PhotoShelter - Ohio University</ServiceName>
+ <ServiceDescription xml:lang="en">PhotoShelter Ohio University SSO Portal</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">PhotoShelter, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">PhotoShelter, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.photoshelter.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Libris CS</GivenName>
+ <EmailAddress>libris-cs@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://steinhardtnyu.photoshelter.com/sso/SAML2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PhotoShelter - NYU Steinhardt</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PhotoShelter NYU Steinhardt SSO Portal</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.photoshelter.com/support/privacy-2018</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://www.photoshelter.com/img/pub2014/logo-full.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10861597414177889888, expires on Mon Feb 16 18:01:21 2026 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://steinhardtnyu.photoshelter.com/sso/SAML2/ACS/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://steinhardtnyu.photoshelter.com/sso/SAML2/SLO/Redirect" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PhotoShelter - NYU Steinhardt</ServiceName>
+ <ServiceDescription xml:lang="en">PhotoShelter NYU Steinhardt SSO Portal</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">PhotoShelter, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">PhotoShelter, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.photoshelter.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Libris CS</GivenName>
+ <EmailAddress>libris-cs@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://stonybrook.photoshelter.com/sso/SAML2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PhotoShelter - Stony Brook University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PhotoShelter Stony Brook University SSO Portal</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.photoshelter.com/support/privacy-2018</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://www.photoshelter.com/img/pub2014/logo-full.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10861597414177889888, expires on Mon Feb 16 18:01:21 2026 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://stonybrook.photoshelter.com/sso/SAML2/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stonybrook.photoshelter.com/sso/SAML2/ACS/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PhotoShelter - Stony Brook University</ServiceName>
+ <ServiceDescription xml:lang="en">PhotoShelter Stony Brook University SSO Portal</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">PhotoShelter, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">PhotoShelter, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.photoshelter.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Libris CS</GivenName>
+ <EmailAddress>libris-cs@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://tamucoe.photoshelter.com/sso/SAML2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PhotoShelter - Texas A&amp;M College of Engineering</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PhotoShelter - Texas A&amp;M College of Engineering SSO Portal </mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.photoshelter.com/support/privacy-2018</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://www.photoshelter.com/img/pub2014/logo-full.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10861597414177889888, expires on Mon Feb 16 18:01:21 2026 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tamucoe.photoshelter.com/sso/SAML2/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tamucoe.photoshelter.com/sso/SAML2/ACS/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PhotoShelter - Texas A&amp;M College of Engineering</ServiceName>
+ <ServiceDescription xml:lang="en">PhotoShelter - Texas A&amp;M College of Engineering SSO Portal </ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">PhotoShelter, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">PhotoShelter, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.photoshelter.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Libris CS</GivenName>
+ <EmailAddress>libris-cs@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Photoshelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Photoshelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ufphotography.photoshelter.com/sso/SAML2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PhotoShelter University of Florida - University Relations</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PhotoShelter University of Florida - University Relations SSO Portal </mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.photoshelter.com/support/privacy-2018</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://www.photoshelter.com/img/pub2014/logo-full.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10861597414177889888, expires on Mon Feb 16 18:01:21 2026 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ufphotography.photoshelter.com/sso/SAML2/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ufphotography.photoshelter.com/sso/SAML2/ACS/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PhotoShelter University of Florida - University Relations</ServiceName>
+ <ServiceDescription xml:lang="en">PhotoShelter University of Florida - University Relations SSO Portal </ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">PhotoShelter, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">PhotoShelter, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.photoshelter.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Libris Client Services</GivenName>
+ <EmailAddress>librissupport@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uiccds.photoshelter.com/sso/SAML2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PhotoShelter - UIC Creative and Digital Services</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PhotoShelter UIC Creative and Digital Services SSO portal</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.photoshelter.com/support/privacy-2018</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://www.photoshelter.com/img/pub2014/logo-full.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10861597414177889888, expires on Mon Feb 16 18:01:21 2026 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uiccds.photoshelter.com/sso/SAML2/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uic.photoshelter.com/sso/SAML2/ACS/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PhotoShelter - UIC Creative and Digital Services</ServiceName>
+ <ServiceDescription xml:lang="en">PhotoShelter UIC Creative and Digital Services SSO portal</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">PhotoShelter, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">PhotoShelter, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.photoshelter.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Libris Client Services</GivenName>
+ <EmailAddress>librissupport@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uiclas.photoshelter.com/sso/SAML2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PhotoShelter - UIC College of Liberal Arts and Sciences</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PhotoShelter - UIC College of Liberal Arts and Sciences SSO Portal</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.photoshelter.com/support/privacy-2018</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://www.photoshelter.com/img/pub2014/logo-full.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10861597414177889888, expires on Mon Feb 16 18:01:21 2026 GMT -->
+ <ds:X509Certificate>
+MIIE6DCCA9CgAwIBAgIJAJa8JU0NX95gMA0GCSqGSIb3DQEBBQUAMIGoMQswCQYDVQQGEwJVUzERMA8GA1UECBMITmV3IFlvcmsxETAPBgNVBAcTCE5ldyBZb3JrMRswGQYDVQQKExJQaG90b1NoZWx0ZXIsIEluYy4xEzARBgNVBAsTCk9wZXJhdGlvbnMxHDAaBgNVBAMTE3NwLnBob3Rvc2hlbHRlci5jb20xIzAhBgkqhkiG9w0BCQEWFG9wc0BwaG90b3NoZWx0ZXIuY29tMB4XDTE2MDIxOTE4MDEyMVoXDTI2MDIxNjE4MDEyMVowgagxCzAJBgNVBAYTAlVTMREwDwYDVQQIEwhOZXcgWW9yazERMA8GA1UEBxMITmV3IFlvcmsxGzAZBgNVBAoTElBob3RvU2hlbHRlciwgSW5jLjETMBEGA1UECxMKT3BlcmF0aW9uczEcMBoGA1UEAxMTc3AucGhvdG9zaGVsdGVyLmNvbTEjMCEGCSqGSIb3DQEJARYUb3BzQHBob3Rvc2hlbHRlci5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDNnykKvm+bp5ZvR9ZkaG21fFyzYbpbLyAiVO4ppz9lAeZBWJwl8apd9NH/TNC55UJZDt5xtCZCMRZht2Fmdp1buNuCFxQT3Z62acomJEZU0svHsIAni6wfhtZDiSTYH5WyAbbt2CroUxDDl1f0sMwABvy4+hmcaUIb026R2TOVp6h97Gl2SrxBTvIxt7Bu3shWZtO5xa5WKABrQaTRMQFGS17+ckRizeUCQluYikCYbw5JnpDsh3cRky29Zo/dffny1ZBN29owRVbMiCNvq/bUa/0w0Wph3hgOapndJUpvonYcfYC1Jg+mdTfoxXcRWJiYG+5LV4KtfMxUYqwd3x3bAgMBAAGjggERMIIBDTAdBgNVHQ4EFgQUMAKAtX3tO/eKSM5sTDbDXn6WzREwgd0GA1UdIwSB1TCB0oAUMAKAtX3tO/eKSM5sTDbDXn6WzRGhga6kgaswgagxCzAJBgNVBAYTAlVTMREwDwYDVQQIEwhOZXcgWW9yazERMA8GA1UEBxMITmV3IFlvcmsxGzAZBgNVBAoTElBob3RvU2hlbHRlciwgSW5jLjETMBEGA1UECxMKT3BlcmF0aW9uczEcMBoGA1UEAxMTc3AucGhvdG9zaGVsdGVyLmNvbTEjMCEGCSqGSIb3DQEJARYUb3BzQHBob3Rvc2hlbHRlci5jb22CCQCWvCVNDV/eYDAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQB3C5rrWL2fXzEUwuBmVAFQD9r2pJnS86myq/660UUD4g8/3lnklzq4tAgl6BwzAaqOLvOgdpty0JvSboYKoBHurqKCd5T7VoFohQKDtrkyPJpCPOV31O1qBVG/+QvNq1ENIP8l4tc9uCzi75gzA5pAQdEeP4lHXmzNQTOwmCRLfU5qZcVB7xII8ZOGxa/vDsuqSEmp2HIilI3zwH3l8CWJQISsGlFORRUgYlg9oscZ77/wC/oquLUKnfQ/2lBvg8TGq0YI/NtEJZgv3+DLVlUUKgXm/xraDzPh1ehfY6r/c/1f8fqDqjdhC1bQ8aUT/oKO+xmG88VqLwMeoOC7UDCo
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uiclas.photoshelter.com/sso/SAML2/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uiclas.photoshelter.com/sso/SAML2/ACS/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PhotoShelter - UIC College of Liberal Arts and Sciences</ServiceName>
+ <ServiceDescription xml:lang="en">PhotoShelter - UIC College of Liberal Arts and Sciences SSO Portal</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">PhotoShelter, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">PhotoShelter, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.photoshelter.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Libris CS</GivenName>
+ <EmailAddress>libris-cs@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uic.photoshelter.com/sso/SAML2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PhotoShelter - UIC Visual Assets</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PhotoShelter UIC Visual Assets SSO Portal</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.photoshelter.com/support/privacy-2018</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://www.photoshelter.com/img/pub2014/logo-full.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10861597414177889888, expires on Mon Feb 16 18:01:21 2026 GMT -->
+ <ds:X509Certificate>
+MIIE6DCCA9CgAwIBAgIJAJa8JU0NX95gMA0GCSqGSIb3DQEBBQUAMIGoMQswCQYDVQQGEwJVUzERMA8GA1UECBMITmV3IFlvcmsxETAPBgNVBAcTCE5ldyBZb3JrMRswGQYDVQQKExJQaG90b1NoZWx0ZXIsIEluYy4xEzARBgNVBAsTCk9wZXJhdGlvbnMxHDAaBgNVBAMTE3NwLnBob3Rvc2hlbHRlci5jb20xIzAhBgkqhkiG9w0BCQEWFG9wc0BwaG90b3NoZWx0ZXIuY29tMB4XDTE2MDIxOTE4MDEyMVoXDTI2MDIxNjE4MDEyMVowgagxCzAJBgNVBAYTAlVTMREwDwYDVQQIEwhOZXcgWW9yazERMA8GA1UEBxMITmV3IFlvcmsxGzAZBgNVBAoTElBob3RvU2hlbHRlciwgSW5jLjETMBEGA1UECxMKT3BlcmF0aW9uczEcMBoGA1UEAxMTc3AucGhvdG9zaGVsdGVyLmNvbTEjMCEGCSqGSIb3DQEJARYUb3BzQHBob3Rvc2hlbHRlci5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDNnykKvm+bp5ZvR9ZkaG21fFyzYbpbLyAiVO4ppz9lAeZBWJwl8apd9NH/TNC55UJZDt5xtCZCMRZht2Fmdp1buNuCFxQT3Z62acomJEZU0svHsIAni6wfhtZDiSTYH5WyAbbt2CroUxDDl1f0sMwABvy4+hmcaUIb026R2TOVp6h97Gl2SrxBTvIxt7Bu3shWZtO5xa5WKABrQaTRMQFGS17+ckRizeUCQluYikCYbw5JnpDsh3cRky29Zo/dffny1ZBN29owRVbMiCNvq/bUa/0w0Wph3hgOapndJUpvonYcfYC1Jg+mdTfoxXcRWJiYG+5LV4KtfMxUYqwd3x3bAgMBAAGjggERMIIBDTAdBgNVHQ4EFgQUMAKAtX3tO/eKSM5sTDbDXn6WzREwgd0GA1UdIwSB1TCB0oAUMAKAtX3tO/eKSM5sTDbDXn6WzRGhga6kgaswgagxCzAJBgNVBAYTAlVTMREwDwYDVQQIEwhOZXcgWW9yazERMA8GA1UEBxMITmV3IFlvcmsxGzAZBgNVBAoTElBob3RvU2hlbHRlciwgSW5jLjETMBEGA1UECxMKT3BlcmF0aW9uczEcMBoGA1UEAxMTc3AucGhvdG9zaGVsdGVyLmNvbTEjMCEGCSqGSIb3DQEJARYUb3BzQHBob3Rvc2hlbHRlci5jb22CCQCWvCVNDV/eYDAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQB3C5rrWL2fXzEUwuBmVAFQD9r2pJnS86myq/660UUD4g8/3lnklzq4tAgl6BwzAaqOLvOgdpty0JvSboYKoBHurqKCd5T7VoFohQKDtrkyPJpCPOV31O1qBVG/+QvNq1ENIP8l4tc9uCzi75gzA5pAQdEeP4lHXmzNQTOwmCRLfU5qZcVB7xII8ZOGxa/vDsuqSEmp2HIilI3zwH3l8CWJQISsGlFORRUgYlg9oscZ77/wC/oquLUKnfQ/2lBvg8TGq0YI/NtEJZgv3+DLVlUUKgXm/xraDzPh1ehfY6r/c/1f8fqDqjdhC1bQ8aUT/oKO+xmG88VqLwMeoOC7UDCo
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uic.photoshelter.com/sso/SAML2/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uic.photoshelter.com/sso/SAML2/ACS/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PhotoShelter - UIC Visual Assets</ServiceName>
+ <ServiceDescription xml:lang="en">PhotoShelter UIC Visual Assets SSO Portal</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">PhotoShelter, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">PhotoShelter, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.photoshelter.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Libris CS</GivenName>
+ <EmailAddress>libris-cs@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Photoshelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Photoshelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umn.photoshelter.com/sso/SAML2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PhotoShelter - University of Minnesota</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PhotoShelter University of Minnesota SSO Portal</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.photoshelter.com/support/privacy-2018</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://www.photoshelter.com/img/pub2014/logo-full.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10861597414177889888, expires on Mon Feb 16 18:01:21 2026 GMT -->
+ <ds:X509Certificate>
+MIIE6DCCA9CgAwIBAgIJAJa8JU0NX95gMA0GCSqGSIb3DQEBBQUAMIGoMQswCQYDVQQGEwJVUzERMA8GA1UECBMITmV3IFlvcmsxETAPBgNVBAcTCE5ldyBZb3JrMRswGQYDVQQKExJQaG90b1NoZWx0ZXIsIEluYy4xEzARBgNVBAsTCk9wZXJhdGlvbnMxHDAaBgNVBAMTE3NwLnBob3Rvc2hlbHRlci5jb20xIzAhBgkqhkiG9w0BCQEWFG9wc0BwaG90b3NoZWx0ZXIuY29tMB4XDTE2MDIxOTE4MDEyMVoXDTI2MDIxNjE4MDEyMVowgagxCzAJBgNVBAYTAlVTMREwDwYDVQQIEwhOZXcgWW9yazERMA8GA1UEBxMITmV3IFlvcmsxGzAZBgNVBAoTElBob3RvU2hlbHRlciwgSW5jLjETMBEGA1UECxMKT3BlcmF0aW9uczEcMBoGA1UEAxMTc3AucGhvdG9zaGVsdGVyLmNvbTEjMCEGCSqGSIb3DQEJARYUb3BzQHBob3Rvc2hlbHRlci5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDNnykKvm+bp5ZvR9ZkaG21fFyzYbpbLyAiVO4ppz9lAeZBWJwl8apd9NH/TNC55UJZDt5xtCZCMRZht2Fmdp1buNuCFxQT3Z62acomJEZU0svHsIAni6wfhtZDiSTYH5WyAbbt2CroUxDDl1f0sMwABvy4+hmcaUIb026R2TOVp6h97Gl2SrxBTvIxt7Bu3shWZtO5xa5WKABrQaTRMQFGS17+ckRizeUCQluYikCYbw5JnpDsh3cRky29Zo/dffny1ZBN29owRVbMiCNvq/bUa/0w0Wph3hgOapndJUpvonYcfYC1Jg+mdTfoxXcRWJiYG+5LV4KtfMxUYqwd3x3bAgMBAAGjggERMIIBDTAdBgNVHQ4EFgQUMAKAtX3tO/eKSM5sTDbDXn6WzREwgd0GA1UdIwSB1TCB0oAUMAKAtX3tO/eKSM5sTDbDXn6WzRGhga6kgaswgagxCzAJBgNVBAYTAlVTMREwDwYDVQQIEwhOZXcgWW9yazERMA8GA1UEBxMITmV3IFlvcmsxGzAZBgNVBAoTElBob3RvU2hlbHRlciwgSW5jLjETMBEGA1UECxMKT3BlcmF0aW9uczEcMBoGA1UEAxMTc3AucGhvdG9zaGVsdGVyLmNvbTEjMCEGCSqGSIb3DQEJARYUb3BzQHBob3Rvc2hlbHRlci5jb22CCQCWvCVNDV/eYDAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBBQUAA4IBAQB3C5rrWL2fXzEUwuBmVAFQD9r2pJnS86myq/660UUD4g8/3lnklzq4tAgl6BwzAaqOLvOgdpty0JvSboYKoBHurqKCd5T7VoFohQKDtrkyPJpCPOV31O1qBVG/+QvNq1ENIP8l4tc9uCzi75gzA5pAQdEeP4lHXmzNQTOwmCRLfU5qZcVB7xII8ZOGxa/vDsuqSEmp2HIilI3zwH3l8CWJQISsGlFORRUgYlg9oscZ77/wC/oquLUKnfQ/2lBvg8TGq0YI/NtEJZgv3+DLVlUUKgXm/xraDzPh1ehfY6r/c/1f8fqDqjdhC1bQ8aUT/oKO+xmG88VqLwMeoOC7UDCo
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umn.photoshelter.com/sso/SAML2/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://umn.photoshelter.com/sso/SAML2/ACS/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PhotoShelter - University of Minnesota</ServiceName>
+ <ServiceDescription xml:lang="en">PhotoShelter University of Minnesota SSO Portal</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">PhotoShelter, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">PhotoShelter, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.photoshelter.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Libris CS</GivenName>
+ <EmailAddress>libris-cs@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Photoshelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Photoshelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://unlv.photoshelter.com/sso/SAML2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PhotoShelter - University of Nevada Las Vegas</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PhotoShelter University of Nevada Las Vegas SSO Portal</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.photoshelter.com/support/privacy-2018</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://www.photoshelter.com/img/pub2014/logo-full.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10861597414177889888, expires on Mon Feb 16 18:01:21 2026 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unlv.photoshelter.com/sso/SAML2/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unlv.photoshelter.com/sso/SAML2/ACS/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PhotoShelter - University of Nevada Las Vegas</ServiceName>
+ <ServiceDescription xml:lang="en">PhotoShelter University of Nevada Las Vegas SSO Portal</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">PhotoShelter, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">PhotoShelter, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.photoshelter.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Libris CS</GivenName>
+ <EmailAddress>libris-cs@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wm1693.photoshelter.com/sso/SAML2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">PhotoShelter - College of William and Mary</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PhotoShelter College of William and Mary SSO Portal</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.photoshelter.com/support/privacy-2018</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://www.photoshelter.com/img/pub2014/logo-full.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10861597414177889888, expires on Mon Feb 16 18:01:21 2026 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wm1693.photoshelter.com/sso/SAML2/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wm1693.photoshelter.com/sso/SAML2/ACS/POST" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">PhotoShelter - College of William and Mary</ServiceName>
+ <ServiceDescription xml:lang="en">PhotoShelter College of William and Mary SSO Portal</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">PhotoShelter, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">PhotoShelter, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.photoshelter.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Libris CS</GivenName>
+ <EmailAddress>librissupport@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>PhotoShelter Engineering</GivenName>
+ <EmailAddress>sso@photoshelter.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Mt. San Jacinto Community College District -->
+<EntityDescriptor entityID="https://login.msjc.edu/sso/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">msjc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Mt. San Jacinto Community College District</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://go.boarddocs.com/ca/msjc/Board.nsf/goto?open&amp;id=APDQ5Z647D17</mdui:PrivacyStatementURL>
+ <mdui:Logo height="132" width="489" xml:lang="en">https://login.msjc.edu/_layouts/images/PG/images/eagle-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12625272019665431207, expires on Sat Feb 7 16:13:24 2026 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.msjc.edu/sso/go.ashx"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.msjc.edu/sso/go.ashx"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Mt. San Jacinto Community College District</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Mt. San Jacinto Community College District</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.msjc.edu/Pages/default.aspx</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brian Orlauski</GivenName>
+ <EmailAddress>borlausk@msjc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Aaron Stafford</GivenName>
+ <EmailAddress>astafford@msjc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Aaron Stafford</GivenName>
+ <EmailAddress>astafford@msjc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- The J. Paul Getty Trust -->
+<EntityDescriptor entityID="https://idp.getty.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.getty.edu/staff/incommon/help.html" protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">getty.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">J. Paul Getty Trust</mdui:DisplayName>
+ <mdui:Description xml:lang="en"> J. Paul Getty Trust OneID Simple Sign On Service</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.getty.edu/legal/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="690" width="821" xml:lang="en">https://idp.getty.edu/idp/images/Getty_black.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 432284507294868529011082605679285552222758622498, expires on Sat Sep 12 17:19:39 2037 GMT -->
+ <ds:X509Certificate>
+MIIDHzCCAgegAwIBAgIUS7hOxq7K+tD3pLdlJLgg7ba11SIwDQYJKoZIhvcNAQEL
+BQAwGDEWMBQGA1UEAwwNaWRwLmdldHR5LmVkdTAeFw0xNzA5MTIxNzE5MzlaFw0z
+NzA5MTIxNzE5MzlaMBgxFjAUBgNVBAMMDWlkcC5nZXR0eS5lZHUwggEiMA0GCSqG
+SIb3DQEBAQUAA4IBDwAwggEKAoIBAQCCfF1sHiSinRX8wlm5a0Tbiy875mgpRMuN
+6fi5df4AbBlQh5mUC/iXqahbhX1u0trYPgelRdTmPyBFqs6D1Nb4N/zcFbi/hjDf
+31ozi4weMO7WsAGaND5sMUhfg/XTIqIexeXnIb4bJBMRzS10HHqnTfzTBvBETmPs
+yo+K0VxUlPGBEwCUW0a4vrKsUhcjznotnnFyMQstRFNr8bMs2cA2O7mIIyHLi1YI
+2cuCO2nxHUCConxMK6EwXDup0iXGTxk20v+o7O4yawMig6jMCpb9N6R2RewXKZQD
+TIkhtS3rqspDJlMyIQHZvmWlah1drdLTfrzQKfyUa5SrxstLqXZ/AgMBAAGjYTBf
+MB0GA1UdDgQWBBQNLf58f1h61xARviX9azh1uoDyHjA+BgNVHREENzA1gg1pZHAu
+Z2V0dHkuZWR1hiRodHRwczovL2lkcC5nZXR0eS5lZHUvaWRwL3NoaWJib2xldGgw
+DQYJKoZIhvcNAQELBQADggEBAHNGRgzDZOYp147oriHyXT96SumeStEGtnww53rk
+GMqKSLKNs0AeOhnxXKoZDs48x8HTm+7X7l5hO+JqAixTbFNcljstxnttjXYuDQzK
+AhCrv+K2bsMW2yu+73Wte4cgTjBIbTLOmb+JgvMtVMjUon3tFGxaCHKRN/waADu+
+D6P1Bw0IyKVuzdgZD1ge2vAASTUVC2C1JGgcwHaOFLOejnYPWb/Q0XpW7tFPTOSg
+tuCPWvmftvHvzpkzOUV9r//9HYwPlXfOIy1gyI61npRrkSe3iXbuob5o0tjBJEjc
+GJ+jeTLNeTCWr7sn3CiJenTkiV7tGAcVJ2/OJOVp/4lYEqc=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.getty.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.getty.edu/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.getty.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.getty.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">The J. Paul Getty Trust</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">The J. Paul Getty Trust</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://getty.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Armando A. Perez</GivenName>
+ <EmailAddress>aperez@getty.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Petrus Williams</GivenName>
+ <EmailAddress>pwilliams@getty.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Armando A. Perez</GivenName>
+ <EmailAddress>aperez@getty.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Getty Digital Help Desk</GivenName>
+ <EmailAddress>gettydigitalhelp@getty.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Oakland University -->
+<EntityDescriptor entityID="https://sso.oakland.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">oakland.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Oakland University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://kb.oakland.edu/uts/InCommon_POP</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.oakland.edu/uts/common-good-core-resources/policies/#privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="172" width="411" xml:lang="en">https://www.oakland.edu/Assets/upload/images/History/OUStackedSail_4cP_LG_20140731144016_99883.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 535185604738869838241160378847836974376895428425, expires on Mon Jan 28 15:25:12 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.oakland.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.oakland.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.oakland.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.oakland.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.oakland.edu/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.oakland.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.oakland.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.oakland.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">oakland.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 535185604738869838241160378847836974376895428425, expires on Mon Jan 28 15:25:12 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.oakland.edu/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.oakland.edu/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Oakland University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Oakland University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.oakland.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Lee Foltz</GivenName>
+ <EmailAddress>foltz2@oakland.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mario Nowak</GivenName>
+ <EmailAddress>nowak@oakland.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UTS</GivenName>
+ <EmailAddress>uts@oakland.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Lee Foltz</GivenName>
+ <EmailAddress>foltz2@oakland.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mario Nowak</GivenName>
+ <EmailAddress>nowak@oakland.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Dennis Bolton</GivenName>
+ <EmailAddress>bolton@oakland.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- GreyWall Software d/b/a Veoci -->
+<EntityDescriptor entityID="https://veoci.com/saml/sp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Veoci</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Veoci SAML 2.0 SP</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.veoci.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://veoci.com/legal/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="172" width="171" xml:lang="en">https://static.wixstatic.com/media/a416db_e4c763a0cf8d4af481234356533faabf~mv2.png/v1/fill/w_171,h_172,al_c,usm_0.66_1.00_0.01/a416db_e4c763a0cf8d4af481234356533faabf~mv2.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1527101162, expires on Sat Jan 23 21:26:05 2027 GMT -->
+ <ds:X509Certificate>
+MIIDyTCCArGgAwIBAgIEWwW26jANBgkqhkiG9w0BAQsFADCBlDELMAkGA1UEBhMCVVMxFDASBgNV
+BAgTC0Nvbm5lY3RpY3V0MRIwEAYDVQQHEwlOZXcgSGF2ZW4xHzAdBgNVBAoTFkdyZXkgV2FsbCBT
+b2Z0d2FyZSBMTEMxFjAUBgNVBAsTDVZlb2NpIFNBTUwgU1AxIjAgBgNVBAMTGWh0dHBzOi8vdmVv
+Y2kuY29tL3NhbWwvc3AwHhcNMTcwMTI1MjEyNjA1WhcNMjcwMTIzMjEyNjA1WjCBlDELMAkGA1UE
+BhMCVVMxFDASBgNVBAgTC0Nvbm5lY3RpY3V0MRIwEAYDVQQHEwlOZXcgSGF2ZW4xHzAdBgNVBAoT
+FkdyZXkgV2FsbCBTb2Z0d2FyZSBMTEMxFjAUBgNVBAsTDVZlb2NpIFNBTUwgU1AxIjAgBgNVBAMT
+GWh0dHBzOi8vdmVvY2kuY29tL3NhbWwvc3AwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
+AQCqmR9q2Jc2d3vBb/P0cAJYLw+vzrflR1OIqeoBuxwKAalxIE+HeAZa6o6w9L58boUsrmMfXMBf
+sD71crXIVlwE6wwTbOZ5wpJGpY2oe7FF4qrVBXdENq9/E37X2yMpBuklLKIVvnNT0H6t7MCGv6Vt
+BTxcobWSEbZMWbuuYM+8TWE7l2b5WRFhINh7TuI+xXhEltcTGpElAO7Z+xdov8Z+yIZvgemEdf+G
+1c4bwI41UcEizcS23uttxr91pO9/DSdXAyA6/TPfmZCGahbqzym2FZ5H4N+EBRaqLr+dqHsECLGQ
+TGXwd3ObKNKff8BVjis4hKXf/x8nkZ0p3tQOd9TBAgMBAAGjITAfMB0GA1UdDgQWBBR7xGw/XBRM
+L1ABGKg76/81aU2H/DANBgkqhkiG9w0BAQsFAAOCAQEACLqJDWc14RUZxaJNhq1+XVr7d1q954u8
+o4dvoZpaIIYWIW4ZKUWFAJSn1bIs9T8VMhIamISNrX0PHE7SAtlPrIocX8FI4rUixxYzCqn6aeri
+ujxjmMl5BfnUGCKrRUDSxkgTYQ/i0qHpqf/v0r4Vx1e36kZYFky8020qxzwUx5rHrZ1gfk/EuX14
+lAyWIY9tKWGRSMeaY0E30xedYFtjpDmJX5LGo+wmSlgXrwlDKMAduAQabcwSyHyB/YlR9AruLkuR
+MZKbrmHGK0bK1Gw245mlpK9GAGVGwtduxwAQb1AVF0Psd7rCtQ1hUxrnAC+6lrBfHKhi1+ENWdCQ
+5neOeQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://veoci.com:443/veoci/saml/SingleLogout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://veoci.com:443/veoci/saml/SingleLogout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://veoci.com:443/veoci/saml/SSO" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://veoci.com:443/veoci/saml/SSO" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Veoci</ServiceName>
+ <ServiceDescription xml:lang="en">Veoci SAML 2.0 SP</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">GreyWall Software d/b/a Veoci</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">GreyWall Software d/b/a Veoci</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.veoci.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Drew Mazurek</GivenName>
+ <EmailAddress>drew@veoci.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Tamas Simon</GivenName>
+ <EmailAddress>simon@veoci.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Nathaniel Ellis</GivenName>
+ <EmailAddress>nathaniel@veoci.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Grinnell College -->
+<EntityDescriptor entityID="https://idp.grinnell.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://idp.grinnell.edu/error" protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">grinnell.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Grinnell College</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.grinnell.edu/privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="70" width="333" xml:lang="en">https://www.grinnell.edu/sites/all/themes/grinnell_bootstrap/images/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12353736206820230561, expires on Thu Feb 3 17:27:13 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.grinnell.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.grinnell.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.grinnell.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.grinnell.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.grinnell.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">grinnell.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12353736206820230561, expires on Thu Feb 3 17:27:13 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.grinnell.edu:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Grinnell College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Grinnell College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.grinnell.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="support">
+ <GivenName>Technology Services Desk</GivenName>
+ <EmailAddress>technologyservicesdesk@grinnell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Matt Hainley</GivenName>
+ <EmailAddress>hainley@grinnell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>NOC</GivenName>
+ <EmailAddress>noc@grinnell.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Matt Hainley</GivenName>
+ <EmailAddress>hainley@grinnell.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Academic Analytics -->
+<EntityDescriptor entityID="https://aaidp.academicanalytics.com/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://aaidp.academicanalytics.com/error.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">academicanalytics.com</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Academic Analytics</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AA AD</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://academicanalytics.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="117" width="90" xml:lang="en">https://academicanalytics.com/wp-content/uploads/2018/06/AAlogowhite-for-website-117.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1215755030131106995953034512237956933211873612650, expires on Mon May 3 14:32:12 2038 GMT -->
+ <ds:X509Certificate>
+MIIDWDCCAkCgAwIBAgIVANT0V0zB2oO6CDog+HVcu9SpFBNqMA0GCSqGSIb3DQEB
+CwUAMCYxJDAiBgNVBAMMG2FhaWRwLmFjYWRlbWljYW5hbHl0aWNzLmNvbTAeFw0x
+ODA1MDMxNDMyMTJaFw0zODA1MDMxNDMyMTJaMCYxJDAiBgNVBAMMG2FhaWRwLmFj
+YWRlbWljYW5hbHl0aWNzLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC
+ggEBANTrP3lmVy9uJ+pnufEaMFcEeWJnNu1DUVep6YN1nug/wWrnXdL9WDVqofVR
+oaHa+yAkmlhlPDyuNY0ZLHJf4Mv7MVQxm/j534nFUaoj6NCE1UVedCrnQdMOWvcH
+fbBwCkvcP8lLP0+1MHuHJeLxJyxeFiGYp1lfh+c18B/6/xq/qDUxtxYC+X3b/E4a
+R3s3XoKQkct5yGE7bIqDYE26+xutlBrLs1746TC1lcZXTfghEGjvSysTnocabKxx
+jp2TswI83yqtfz7q4EnzqZRX5AcOEPxz54aQ1pNzVTLJvz6hPVUFXCTqErv+20F8
+VW6KPbOPbwAaYKs9czz1kcm0iXcCAwEAAaN9MHswHQYDVR0OBBYEFH5LZXSF5Z15
+K1JVM0u1bSi6zy2fMFoGA1UdEQRTMFGCG2FhaWRwLmFjYWRlbWljYW5hbHl0aWNz
+LmNvbYYyaHR0cHM6Ly9hYWlkcC5hY2FkZW1pY2FuYWx5dGljcy5jb20vaWRwL3No
+aWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBAJcN6eX03p2HDRg45G5gk9MI2/St
+haKIh+6rOwsczxWxf8VChpsuuN50XHspLmE64AlY+TwoWJlonx7ku1DCluvkHgi1
+MmZPq9Q/Qrgjpuw9tfIa0SIKJEAVT6mr7+X6ksZ2mkUceQ5vyzEElvRuA69MoUwL
+NpqrZ5iT9okoofvdga10asi+/VAZfGBOgGLiJLRMDNrTo92Mx2HuhQjPNo3L++vA
+2czuOFOj0RuQ82wbXjL2EYGjwGTQVnENrHUzRdYiSSv6UHBFgmTFKkTad2pweGcv
+wt91y6IHJhn2xct4gMOssybHA0bhjBB4PAJAW0TTsX+HZSqki7L4iTmcGlc=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aaidp.academicanalytics.com/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aaidp.academicanalytics.com/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Academic Analytics</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Academic Analytics</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://academicanalytics.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Victor Rueda</GivenName>
+ <EmailAddress>vrueda@academicanalytics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Eric Thrasher</GivenName>
+ <EmailAddress>eric.thrasher@academicanalytics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Victor Rueda</GivenName>
+ <EmailAddress>vrueda@academicanalytics.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://insight.discovery.academicanalytics.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://insight.discovery.academicanalytics.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Insight Discovery</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Insight Discovery by Academic Analytics</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://insight.discovery.academicanalytics.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://academicanalytics.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="117" width="90" xml:lang="en">https://academicanalytics.com/wp-content/uploads/2018/06/AAlogowhite-for-website-117.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17472395286570945770, expires on Fri Dec 17 20:31:06 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://insight.discovery.academicanalytics.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://insight.discovery.academicanalytics.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://insight.discovery.academicanalytics.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://insight.discovery.academicanalytics.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Academic Analytics</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Academic Analytics</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://academicanalytics.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Victor Rueda</GivenName>
+ <EmailAddress>vrueda@academicanalytics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Eric Thrasher</GivenName>
+ <EmailAddress>eric.thrasher@academicanalytics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Tom Silo</GivenName>
+ <EmailAddress>tsilo@academicanalytics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Victor Rueda</GivenName>
+ <EmailAddress>vrueda@academicanalytics.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://portal2.academicanalytics.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portal2.academicanalytics.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">AA-Portal2</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Academic Analytics Portal2 dashboard</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://academicanalytics.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="117" width="90" xml:lang="en">https://academicanalytics.com/wp-content/uploads/2018/06/AAlogowhite-for-website-117.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17472395286570945770, expires on Fri Dec 17 20:31:06 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal2.academicanalytics.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portal2.academicanalytics.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portal2.academicanalytics.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portal2.academicanalytics.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">AA-Portal2</ServiceName>
+ <ServiceDescription xml:lang="en">Academic Analytics Portal2 dashboard</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Academic Analytics</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Academic Analytics</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://academicanalytics.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Victor Rueda</GivenName>
+ <EmailAddress>vrueda@academicanaltyics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Eric Thrasher</GivenName>
+ <EmailAddress>eric.thrasher@academicanalytics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Victor Rueda</GivenName>
+ <EmailAddress>vrueda@academicanalytics.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://portal2.beta.academicanalytics.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://portal2.beta.academicanalytics.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Portal2 Beta</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Portal2 Client Testing</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://portal2.beta.academicanalytics.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://academicanalytics.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="117" width="90" xml:lang="en">https://academicanalytics.com/wp-content/uploads/2018/06/AAlogowhite-for-website-117.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16993423971191400886, expires on Mon Sep 18 14:08:00 2028 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portal2.beta.academicanalytics.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portal2.beta.academicanalytics.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portal2.beta.academicanalytics.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portal2.beta.academicanalytics.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Portal2 Beta</ServiceName>
+ <ServiceDescription xml:lang="en">Portal2 Client Testing</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Academic Analytics</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Academic Analytics</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://academicanalytics.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Eric Thrasher</GivenName>
+ <EmailAddress>eric.thrasher@academicanalytics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Eric Thrasher</GivenName>
+ <EmailAddress>eric.thrasher@academicanalytics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Victor Rueda</GivenName>
+ <EmailAddress>vrueda@academicanalytics.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://spdev.academicanalytics.com/shibboleth/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://spdev.academicanalytics.com/shibboleth/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Dev Service Provider</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Development Service Provider</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://academicanalytics.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="117" width="90" xml:lang="en">https://academicanalytics.com/wp-content/uploads/2018/06/AAlogowhite-for-website-117.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17477036377817687906, expires on Sat Mar 4 18:55:32 2028 GMT -->
+ <ds:X509Certificate>
+MIIEFTCCAn2gAwIBAgIJAPKK5/0CZydiMA0GCSqGSIb3DQEBCwUAMCUxIzAhBgNV
+BAMTGmRldjMuYWNhZGVtaWNhbmFseXRpY3MuY29tMB4XDTE4MDMwNzE4NTUzMloX
+DTI4MDMwNDE4NTUzMlowJTEjMCEGA1UEAxMaZGV2My5hY2FkZW1pY2FuYWx5dGlj
+cy5jb20wggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDk66uvF8C3GU8C
+SW4+meY9Q5BUVVDZ/u91aMC39R8VcSHlcuRa1JWA2ZYJ9YQdCwS11IzP4pNUqAog
+SBUmvptliha61Qf4fv0YDgOTWbiS/EUbYpyKnFa2/73ZmKLhb6R/lRmrdiW+k4Xd
+IYY1Nloo0JMDTJnpWTxVk/WkY5L1Jq49C8KsGIvNwM+sK6pFUVFUptAupEYgz8nn
+YdPqbPqkZIhq/L5E+podcgq0dCy17yLQr3eSZJvVynakSfxm3GW2UyJIoSWEJek2
+AVAVdq0DOZ+YBPjNjBUuh918seqWQWTGAKN5bvF0a3tXDJ0dsMhbAZm+Sz3lcNj5
+jnODE640kbyT+Jn5Ns82x8IDTx9EZ9gHJabJv6oHMcTP6nSJZWzEes2NP0fV5yH6
+0Jc+/XEVPuCLbAkhQEIJ9flGq2XwsAwiwA/fI+b+sQm0lE5j0gUUGUSyVHnfTj5N
+KPzbZuuJiTsd7eIvQX8IOB5WcuWMqM4+FrHunMAAr6CPi3bZV78CAwEAAaNIMEYw
+JQYDVR0RBB4wHIIaZGV2My5hY2FkZW1pY2FuYWx5dGljcy5jb20wHQYDVR0OBBYE
+FHa+LIsRcyPbNjQzGWrdFY5IRgWJMA0GCSqGSIb3DQEBCwUAA4IBgQCt0PWKbaPG
+eVXifxzNYevZ60+r4tKgNkCHPwKTzzTf4R5mJ7ULOAW72RPQAJpimU6kGP5kuTjb
+U8VohKWvTgtTt0zOAAwEiJWAW4OXD9hTWdocHJMQhFgqRiHela7o7PiQNPvsmxEk
+TtYokKTimEIsJzIhn0yG/38K3zGLSfWNBm31yQ40AbX7BdUhu5+JXJJ9mZD421d+
+TMFaEzzpwjsjT1TMhSrs4ZqcFWqxEBFv1CGjRnnd5iRWM+lmKBrGcbHNPSQRMG8z
+aZRD1Vmzb0ufVOz1YyinmrtLdpmdB97VFUWLgtXfHleSVs7JLFznSCI7qJyz3j6c
+o2XpCX87/19m1HDFfmO4fZNLgc/m/CTf+QvNorFzq+QxrN6UYUjcGt8Al/wPuDKK
+A7fT7rXlv+3UrnveLGfup59xHcgeh0a4rI0hBMvO5YXEqET52mYtjkHtZ6smYekq
+PLpO0WYraVdptucsCIVhEMbJIughmD4jztQ+feSV549D36zcjzaB17s=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://spdev.academicanalytics.com/shibboleth/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://spdev.academicanalytics.com/shibboleth/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://spdev.academicanalytics.com/shibboleth/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://spdev.academicanalytics.com/shibboleth/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Dev Service Provider</ServiceName>
+ <ServiceDescription xml:lang="en">Development Service Provider</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Academic Analytics</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Academic Analytics</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://academicanalytics.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Eric Thrasher</GivenName>
+ <EmailAddress>eric.thrasher@academicanalytics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Victor Rueda</GivenName>
+ <EmailAddress>vrueda@academicanalytics.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Victor Rueda</GivenName>
+ <EmailAddress>vrueda@academicanalytics.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Stellic Inc -->
+<EntityDescriptor entityID="https://csun.stellic.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stellic</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://stellic.com</mdui:PrivacyStatementURL>
+ <mdui:Logo height="138" width="325" xml:lang="en">https://s3-us-west-2.amazonaws.com/metis-edu/images/stellic-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15309018015510806659, expires on Fri Nov 23 13:15:36 2029 GMT -->
+ <ds:X509Certificate>
+MIIC9zCCAd+gAwIBAgIJANR0jsZCk8CDMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV
+BAMTEGNzdW4uc3RlbGxpYy5jb20wHhcNMTkxMTI2MTMxNTM2WhcNMjkxMTIzMTMx
+NTM2WjAbMRkwFwYDVQQDExBjc3VuLnN0ZWxsaWMuY29tMIIBIjANBgkqhkiG9w0B
+AQEFAAOCAQ8AMIIBCgKCAQEA/nVtYLn7T7NWXiO2/Qi5dwF5rF9kokjz+XrRgPBZ
+2LDs6ehqIIrCLKbmG/5XzmIfz+75IKPGKJm2ivLCQgkA36qO47u6sILFI9JBjJdJ
+CD1mvalC+0l1kjdpWP0428PTBqEC+zq9PVYRa+YvSDVpZjsZdzf7iYWZ6huoogg3
+dwfAO/sU+bnzJltVaT2oL8OjVbKbX50QrrO2YUvW0/FWBINURucTSZZoY6Qxz1qX
+e+QnJmAZ+ooxOxGWpvTe2dDTkxLDO3Xw1nDg18vOeXcioPb0OdixMsUgLKwnpV/k
+CvxSUKxIxY2EopgSoryUqxfUuAJf5lMbsxE7Nqd75mHxLQIDAQABoz4wPDAbBgNV
+HREEFDASghBjc3VuLnN0ZWxsaWMuY29tMB0GA1UdDgQWBBT3hOxTRnFpCsQh3Uca
+w3nYIuqNKDANBgkqhkiG9w0BAQUFAAOCAQEA9BYvXv05cksSbLPCjXBqLknvQV0r
+XZGnjH/8Hd81sXFfIpDZZKUPSw6V9MjBe9n91ViTLiqd6ijdBXcCvAr5gFrp8cdM
+9epn3vUeyQ82vZUBkIDkc9a6JArbUsN1J/3X4LsK3heyx7RfDJ64PQM/xFjyQkl6
+sMzii+XcFeUQbtDt8JQ2CS47HOAFSLGJ+QCEkouMKKbgvrB4RimEMkkc+fsMZsR5
+B0dN7sTCiw9BkgXOUy8me7G4uPU/3LmXcWccyORc49R133M1rjWnpKJXjgHdGoLF
+T6qGePRq3v6BZRwKINd1UCUlwRhwVPmItUbQ1qbl32+aos/pv4XCAXI7Aw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csun.stellic.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://csun.stellic.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://csun.stellic.com/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://csun.stellic.com/Shibboleth.sso/SAML/POST" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Stellic</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stellic Inc</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stellic Inc</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.stellic.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Musab Popatia</GivenName>
+ <EmailAddress>musab@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Musab Popatia</GivenName>
+ <EmailAddress>musab@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Musab Popatia</GivenName>
+ <EmailAddress>musab@stellic.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://elon.stellic.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stellic</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stellic.com</mdui:PrivacyStatementURL>
+ <mdui:Logo height="138" width="325" xml:lang="en">https://s3-us-west-2.amazonaws.com/metis-edu/images/stellic-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16356812951718382487, expires on Mon Jan 24 18:38:27 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://elon.stellic.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://elon.stellic.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://elon.stellic.com/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://elon.stellic.com/Shibboleth.sso/SAML/POST" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Stellic</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stellic Inc</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stellic Inc</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.stellic.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jiyda Moussa</GivenName>
+ <EmailAddress>jiyda@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Sabih Bin Wasi</GivenName>
+ <EmailAddress>sabih@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Musab Popatia</GivenName>
+ <EmailAddress>musab@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Musab Popatia</GivenName>
+ <EmailAddress>musab@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Musab Popatia</GivenName>
+ <EmailAddress>musab@stellic.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://jhu.stellic.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stellic</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stellic.com</mdui:PrivacyStatementURL>
+ <mdui:Logo height="138" width="325" xml:lang="en">https://s3-us-west-2.amazonaws.com/metis-edu/images/stellic-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13232697847282349002, expires on Sat Dec 30 12:21:22 2028 GMT -->
+ <ds:X509Certificate>
+MIIC9DCCAdygAwIBAgIJALej/JUPVzPKMA0GCSqGSIb3DQEBBQUAMBoxGDAWBgNV
+BAMTD2podS5zdGVsbGljLmNvbTAeFw0xOTAxMDIxMjIxMjJaFw0yODEyMzAxMjIx
+MjJaMBoxGDAWBgNVBAMTD2podS5zdGVsbGljLmNvbTCCASIwDQYJKoZIhvcNAQEB
+BQADggEPADCCAQoCggEBAM/iWF6MqEB8C4TN667prhzVSaVwmABxW1rRcnAz8CMW
+KvAF52RZEUr4LHIPtltW9auWFBTUJU6Y2D/uzuepT7S4+4iqDt8k5T1PvfkFe8Ey
+lE/+OM6kRtksIKX5E+3yKax7v6n+Y5hhnP9tGHmLzYnGEGd9JlacW1KjmElTdK5g
+YwqA51MOa7EtC28NELzpT9ofzYxqdsSgY86YYfUmeGY5u4mWVV7rbTVNGja1d5X6
+p/O6DHQWCVpccUd+e2TIiYwJQlTqIr3INg/PhcZMcGYDnmNwQIaRWsI+E9dWQbfw
+s4z5eHy7WPG4gyMDT7re0cDsjPehzRmr4qWEh2+TbIcCAwEAAaM9MDswGgYDVR0R
+BBMwEYIPamh1LnN0ZWxsaWMuY29tMB0GA1UdDgQWBBTriw/FiLU7q0+p6oJe7Hp1
+/rzW5DANBgkqhkiG9w0BAQUFAAOCAQEAaNftXswM8u6e3tMvWIiU68MZOPzJtjAK
+m6RvvoWpfu5ejE3w2ahIXj40ovkzepHP1eOr4PwKSPvdQRPezbMRCeEqpgdrQGFK
+UN95REygi1LSteG8YZtp4GObfo1KrYpOy4uld7xNaPp1DIwv0jusMr2XuMJN9w59
+TpYXnCe1GPac0avKH2rtkgQLA3UbxgBcf3Y1PJb0NfH8Hh7BBEpB0os628nJxf7q
++LXUAkQz90cwTYx9V75hzNvEru//VD3+j1eFBG3jSOHfLBPbsX2oB1FIF3mheXXJ
+VqRk+wo9fd/byIK9oFAQF3Zr2O9XnXcxtjZ9y/t5bYCUlMEIY0VHiA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stellic.jhu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stellic.jhu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stellic.jhu.edu/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://stellic.jhu.edu/Shibboleth.sso/SAML/POST" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Stellic</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stellic Inc</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stellic Inc</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.stellic.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jiyda Moussa</GivenName>
+ <EmailAddress>jiyda@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jiyda Moussa</GivenName>
+ <EmailAddress>jiyda@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jiyda Moussa</GivenName>
+ <EmailAddress>jiyda@stellic.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://nuq.stellic.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stellic</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stellic.com</mdui:PrivacyStatementURL>
+ <mdui:Logo height="138" width="325" xml:lang="en">https://s3-us-west-2.amazonaws.com/metis-edu/images/stellic-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12861424721758162914, expires on Fri Aug 11 04:44:37 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stellic.qatar.northwestern.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stellic.qatar.northwestern.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stellic.qatar.northwestern.edu/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://stellic.qatar.northwestern.edu/Shibboleth.sso/SAML/POST" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Stellic</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stellic Inc</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stellic Inc</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.stellic.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jiyda Moussa</GivenName>
+ <EmailAddress>jiyda@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Musab Popatia</GivenName>
+ <EmailAddress>musab@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Musab Popatia</GivenName>
+ <EmailAddress>musab@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Sabih Bin Wasi</GivenName>
+ <EmailAddress>sabih@stellic.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://tufts.stellic.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stellic</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stellic.com</mdui:PrivacyStatementURL>
+ <mdui:Logo height="138" width="325" xml:lang="en">https://s3-us-west-2.amazonaws.com/metis-edu/images/stellic-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14721533378181785996, expires on Fri Aug 6 15:18:09 2027 GMT -->
+ <ds:X509Certificate>
+MIIC6zCCAdOgAwIBAgIJAMxNZJwDlOmMMA0GCSqGSIb3DQEBBQUAMBcxFTATBgNV
+BAMTDGQ4MWU4NDI1NGUwODAeFw0xNzA4MDgxNTE4MDlaFw0yNzA4MDYxNTE4MDla
+MBcxFTATBgNVBAMTDGQ4MWU4NDI1NGUwODCCASIwDQYJKoZIhvcNAQEBBQADggEP
+ADCCAQoCggEBAMN9EZTVg8gAzycdAaY8P9j3tTMa132xWoj0Sa0duiRL2qV/PDl/
+XQA8SJnwsi6vGMmdLqssLKf9N5UhoxIqGWWs+5mIW9KT2u1wmU22kA8YjwwnOtP0
+XkTSTUxD+r3GpoIUqyzBqtiuQFJdOGrYr3oI2JHhj7jx9Us4Q95ova8Go/sUzW+f
+TgigM3uZyv2OsKBNUKK5gx5dOr6lhdKAefwMFF2cN24vjsZz6xJsvN6JaJbLxrVu
+4gR9rs5HXRpxh2rMvi9g/d76oE881NMH30Cbo+4d4Lh+kD/aXWX1ZPZrJYBMA4HQ
+FhddQvVAsnzA8g3+zVmhHRkxKoeTNYWdFPkCAwEAAaM6MDgwFwYDVR0RBBAwDoIM
+ZDgxZTg0MjU0ZTA4MB0GA1UdDgQWBBTq6QJfYZOrK2gBJm+x5XCh7cSSXzANBgkq
+hkiG9w0BAQUFAAOCAQEAsp3jyFCcQxbjqxY32f6HgcnyEbo7PSF9o1i9H2Tn+svp
+PN79Hby2LXxh1TNrV+v8BwfRvCRYQlq0M8PGqW9T2usKrNwBC1lxBG0uskMkr72j
+oZ8ymZeOP9bWhTD5ksc7HbNc1TqT9dLzxMHuz/WBATlSrT63pWPKgIR8qxJI6nYB
+opV77ubkaPiP4TrRdYJW9hnd5PVTaeYR7vcCS/e/6d/HaBK1/FQmiMUojQaV/iIf
+yhgSIM1bCzWtozbSXePVTKzJgshfjaMLWM8JNlpmh/CX4+xwzowQZAB4PR1vlQdw
+uNcThwIXYAafCAeGAS365dP2VqmWXTXUW3pLlMHE4Q==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tufts.stellic.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tufts.stellic.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tufts.stellic.com/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tufts.stellic.com/Shibboleth.sso/SAML/POST" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Stellic</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stellic Inc</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stellic Inc</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.stellic.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Sabih Bin Wasi</GivenName>
+ <EmailAddress>sabih@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Musab Popatia</GivenName>
+ <EmailAddress>musab@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jiyda Moussa</GivenName>
+ <EmailAddress>jiyda@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Musab Popatia</GivenName>
+ <EmailAddress>musab@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Musab Popatia</GivenName>
+ <EmailAddress>musab@stellic.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uchicago.stellic.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stellic</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stellic.com</mdui:PrivacyStatementURL>
+ <mdui:Logo height="138" width="325" xml:lang="en">https://s3-us-west-2.amazonaws.com/metis-edu/images/stellic-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15531923126846991015, expires on Sat Jan 27 15:31:37 2029 GMT -->
+ <ds:X509Certificate>
+MIIDAzCCAeugAwIBAgIJANeMecrOY6qnMA0GCSqGSIb3DQEBBQUAMB8xHTAbBgNV
+BAMTFHVjaGljYWdvLnN0ZWxsaWMuY29tMB4XDTE5MDEzMDE1MzEzN1oXDTI5MDEy
+NzE1MzEzN1owHzEdMBsGA1UEAxMUdWNoaWNhZ28uc3RlbGxpYy5jb20wggEiMA0G
+CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDeZgv9TtwT4F/Y3qZMX2u5TsLfIlPj
+8L3NHAdBovXuJauzYHU++SWdxQves75XPu0gDnCsuxbTnXz8kVDumjS0MRBF5w3W
+HOeex03ceLUOa1uyLbw6fgHnvfOeCnnXFHiHIypROcJRq1l1w69Qk0Cl0UsiZgiV
+8NgjqOCirlaS/AIAIOD1eYRwMHZC1ObcuGO7AUY4r5TyaNYUCefIxjhNIrhicWa1
+4N/adooKXHe8rmz2lzSB3q2k2c1ZMY4gFk/uv46EKycc2Me2HaTai9T9NPa+w6ji
+v6HqWW09QiyY0/Vt8JyAPy6SLZX+eW9NrnoxpUdhqeiPVCk7Czas9FGBAgMBAAGj
+QjBAMB8GA1UdEQQYMBaCFHVjaGljYWdvLnN0ZWxsaWMuY29tMB0GA1UdDgQWBBTE
+hmruIvjWZKq7vjMP2OH8wbkz3jANBgkqhkiG9w0BAQUFAAOCAQEAF9jJGwUQxImf
+CAerMWY7mt/jSWuXT+OJ7vQYuQz/86uBePhLd031A+ppyTgMNAAJ9rNlBeGfzTRD
+vuVK0HbOuUuSX1vzbxYGdz/0ZW/61IZcs7C2Hq6N0Wl1VZEG0pN5BVfB4cxlvc7M
+5gyp02dAppDFyA1lOvwx41DrHvhnhRWdjulyhrc1ZsgtmzqL1TNl3bXRjBbVgo4M
+Ed5lk+dqjyQAs2Khjf8/sTVT2MHsJB/4f0f98gorlyWVYzcq8lCI50tBOlRWwtkm
+kykmrBj+mqem/f/XH0Et9AokGEL31ZMq/BzRZ6IPwXYv0YjSDbfAz6oxXfesaAJY
+09rVq5fG6g==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uchicago.stellic.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uchicago.stellic.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uchicago.stellic.com/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uchicago.stellic.com/Shibboleth.sso/SAML/POST" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Stellic</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stellic Inc</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stellic Inc</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.stellic.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jiyda Moussa</GivenName>
+ <EmailAddress>jiyda@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jiyda Moussa</GivenName>
+ <EmailAddress>jiyda@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jiyda Moussa</GivenName>
+ <EmailAddress>jiyda@stellic.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://umn.stellic.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Stellic</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.stellic.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.stellic.com</mdui:PrivacyStatementURL>
+ <mdui:Logo height="138" width="325" xml:lang="en">https://s3-us-west-2.amazonaws.com/metis-edu/images/stellic-logo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12148991875813036848, expires on Sat Jul 14 15:20:26 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stellic.umn.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://stellic.umn.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stellic.umn.edu/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://stellic.umn.edu/Shibboleth.sso/SAML/POST" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Stellic</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Stellic Inc</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stellic Inc</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.stellic.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Musab Popatia</GivenName>
+ <EmailAddress>musab@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Musab Popatia</GivenName>
+ <EmailAddress>musab@stellic.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Musab Popatia</GivenName>
+ <EmailAddress>musab@stellic.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Ink Labs Inc. -->
+<EntityDescriptor entityID="https://auth.inkcloud.me/sso">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://auth.inkcloud.me/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ink Authentication Service</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Authentication service for Ink Smart Print Stations and Ink Smart Print Driver</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.iubenda.com/privacy-policy/13433083</mdui:PrivacyStatementURL>
+ <mdui:Logo height="51" width="110" xml:lang="en">https://ink.me/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15798068513390351736, expires on Mon Apr 12 08:38:18 2021 GMT -->
+ <ds:X509Certificate>
+MIIDFTCCAf2gAwIBAgIJANs+A5x16lV4MA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV
+BAMTEGF1dGguaW5rY2xvdWQubWUwHhcNMTYwNDEzMDgzODE4WhcNMjEwNDEyMDgz
+ODE4WjAbMRkwFwYDVQQDExBhdXRoLmlua2Nsb3VkLm1lMIIBIjANBgkqhkiG9w0B
+AQEFAAOCAQ8AMIIBCgKCAQEAwv0z4c4W5g2zCb2W3wl5/VOviSvxPTDRAg4OZDFg
+MzyEshfKXGgzIk4WLM7N7Ph7Pf4rV3/bIkqO27+hT7EUEcU5adMyegaxdd3WJjEP
+ndQg7oytBfjhnrH59F36Dnq0e4OPahI+w+LzYgqQFD6Qn/0QFfs3g2PWcpdMmWN+
+VNYfWIMhsLEgQU/yvtQWj53NsA1ANO0TuKK9L/XDAm63MlcA2rFdqq+lpTJcFkLb
+TN3TnbdjD3qi8bpfIpFPQI4YO/oKeKobT+SwShrU8CpYgFADMyuvdoe08JjScv17
+O00BfSXRFZ6RZ/d1rsRzsY0G8zsWY734EjL128GDMYeMiQIDAQABo1wwWjA5BgNV
+HREEMjAwghBhdXRoLmlua2Nsb3VkLm1lhhxodHRwczovL2F1dGguaW5rY2xvdWQu
+bWUvc3NvMB0GA1UdDgQWBBQWt5AlDLoDGOZq/X4sJQks8lOMYTANBgkqhkiG9w0B
+AQUFAAOCAQEAoy0tShQUKPwiBt5l+UerlUKb+Y3dK2P0BOn0DZl+eSJp0fJbxkPj
+q/sKyo3t2U4MBpRsGEC+zlFbp0d8Ojsh5y2pl4knkTddHR8UFESz+4leVEi5tkod
+Vkm99XsqfXMOn22gMXwKWZbWC1qMSqkuvv+lhOg/1pDUrqWTZKecRRNV0WWFr0cF
+g3EClTUrSk+OR0IsPI9zJbW5K7JMqBxhotrq2dp6FBZCz8I+fXFw5zNxPckRPG2I
+LloJV+2bHlFziEBy4ywPq1/xpKpPBv3CXfpeIe+1+QrijBsfXSBrw0gSMwlg1hfV
+WoFxqCXl9jnXBkmsM/lf/8SwVpYdHFd8Ew==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.inkcloud.me/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://auth.inkcloud.me/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.inkcloud.me/Shibboleth.sso/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.inkcloud.me/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://auth.inkcloud.me/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://auth.inkcloud.me/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://auth.inkcloud.me/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://auth.inkcloud.me/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://auth.inkcloud.me/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Ink Authentication Service</ServiceName>
+ <ServiceDescription xml:lang="en">Authentication service for Ink Smart Print Stations and Ink Smart Print Driver</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ink Labs Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ink Labs Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://inkcloud.me/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Admin</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Admin</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://csusb.inkcloud.me/sso">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://csusb.inkcloud.me/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ink Portal for California State University, San Bernardino</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Ink Portal for California State University, San Bernardino</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://web.inkcloud.me/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="110" width="51" xml:lang="en">https://ink.me/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10715845504796423907, expires on Mon Jun 19 08:18:08 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csusb.inkcloud.me/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://csusb.inkcloud.me/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://csusb.inkcloud.me/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://csusb.inkcloud.me/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://csusb.inkcloud.me/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://csusb.inkcloud.me/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://csusb.inkcloud.me/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://csusb.inkcloud.me/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://csusb.inkcloud.me/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Ink Portal for California State University, San Bernardino</ServiceName>
+ <ServiceDescription xml:lang="en">Ink Portal for California State University, San Bernardino</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ink Labs Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ink Labs Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://inkcloud.me/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://maui.inkcloud.me/sso">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://maui.inkcloud.me/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ink Portal for University of Hawaii in MAUI</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Ink Portal for University of Hawaii in MAUI</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.iubenda.com/privacy-policy/13433083</mdui:PrivacyStatementURL>
+ <mdui:Logo height="51" width="110" xml:lang="en">https://ink.me/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12165410304700040078, expires on Mon Jul 18 14:01:14 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://maui.inkcloud.me/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://maui.inkcloud.me/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://maui.inkcloud.me/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://maui.inkcloud.me/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://maui.inkcloud.me/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://maui.inkcloud.me/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://maui.inkcloud.me/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://maui.inkcloud.me/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://maui.inkcloud.me/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Ink Portal for University of Hawaii in MAUI</ServiceName>
+ <ServiceDescription xml:lang="en">Ink Portal for University of Hawaii in MAUI</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ink Labs Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ink Labs Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://inkcloud.me/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Admin</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Admin</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://memphis.inkcloud.me/sso">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://memphis.inkcloud.me/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ink Portal for University of Memphis</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Ink Portal for University of Memphis</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://web.inkcloud.me/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="51" width="110" xml:lang="en">https://ink.me/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9327596643145885743, expires on Tue Sep 27 20:06:24 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://memphis.inkcloud.me/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://memphis.inkcloud.me/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://memphis.inkcloud.me/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://memphis.inkcloud.me/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://memphis.inkcloud.me/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://memphis.inkcloud.me/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://memphis.inkcloud.me/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://memphis.inkcloud.me/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://memphis.inkcloud.me/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Ink Portal for University of Memphis</ServiceName>
+ <ServiceDescription xml:lang="en">Ink Portal for University of Memphis</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ink Labs Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ink Labs Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://inkcloud.me/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Admin</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Admin</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ucla.inkcloud.me/sso">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ucla.inkcloud.me/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ink Portal for University of California, Los Angeles</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Ink Portal for University of California, Los Angeles</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://web.inkcloud.me/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="51" width="110" xml:lang="en">https://ink.me/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17204046002735479749, expires on Sat Sep 10 19:22:02 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucla.inkcloud.me/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ucla.inkcloud.me/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ucla.inkcloud.me/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ucla.inkcloud.me/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ucla.inkcloud.me/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ucla.inkcloud.me/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ucla.inkcloud.me/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ucla.inkcloud.me/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ucla.inkcloud.me/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Ink Portal for University of California, Los Angeles</ServiceName>
+ <ServiceDescription xml:lang="en">Ink Portal for University of California, Los Angeles</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ink Labs Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ink Labs Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://inkcloud.me/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Admin</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Admin</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://uic.inkcloud.me/sso">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://uic.inkcloud.me/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Ink Portal for University of Illinois at Chicago</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Ink Portal for University of Illinois at Chicago</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://web.inkcloud.me/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="51" width="110" xml:lang="en">https://ink.me/images/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10126035378523921951, expires on Wed Jul 20 12:01:15 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uic.inkcloud.me/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uic.inkcloud.me/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uic.inkcloud.me/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uic.inkcloud.me/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://uic.inkcloud.me/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://uic.inkcloud.me/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://uic.inkcloud.me/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://uic.inkcloud.me/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://uic.inkcloud.me/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Ink Portal for University of Illinois at Chicago</ServiceName>
+ <ServiceDescription xml:lang="en">Ink Portal for University of Illinois at Chicago</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ink Labs Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ink Labs Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://inkcloud.me/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Support</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Admin</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Admin</GivenName>
+ <EmailAddress>admin@inkcloud.me</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- North Idaho College -->
+<EntityDescriptor entityID="http://adfs.nic.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">nic.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">North Idaho College</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://adfs.nic.edu/FederationMetadata/2007-06/FederationMetadata.xml</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nic.edu/policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="267" width="297" xml:lang="en">https://www.nic.edu/branding/logosAcademic/wordmarkStackedLReverseMaroon.gif</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 195141352427421345326854768100518220885, expires on Thu Sep 2 23:59:59 2021 GMT -->
+ <ds:X509Certificate>
+MIIG3jCCBcagAwIBAgIRAJLO237ATKR1No3vqfCxVFUwDQYJKoZIhvcNAQELBQAwdjELMAkGA1UE
+BhMCVVMxCzAJBgNVBAgTAk1JMRIwEAYDVQQHEwlBbm4gQXJib3IxEjAQBgNVBAoTCUludGVybmV0
+MjERMA8GA1UECxMISW5Db21tb24xHzAdBgNVBAMTFkluQ29tbW9uIFJTQSBTZXJ2ZXIgQ0EwHhcN
+MTkwOTAzMDAwMDAwWhcNMjEwOTAyMjM1OTU5WjCBmTELMAkGA1UEBhMCVVMxDjAMBgNVBBETBTgz
+ODE0MQ4wDAYDVQQIEwVJZGFobzEWMBQGA1UEBxMNQ29ldXIgZCdBbGVuZTEeMBwGA1UECRMVMTAw
+MCBXLiBHYXJkZW4gQXZlbnVlMRwwGgYDVQQKExNOb3J0aCBJZGFobyBDb2xsZWdlMRQwEgYDVQQD
+Ewtzc28ubmljLmVkdTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANRcNuCvoOEH+3Pu
+sa17qrIK1nuMYlplveEbkIKIjVBFXqdvzfGpdiuLyBc7Lj8y9OqTUebuB84h7fdIwy4n1BwLmFkc
+Lq3cV0ioM8olC5mB21Q09KeBkexgRka83NWCi+G4lKqJjJ5IjDp7n+zNTuQxlyBioSSyynTF+j2O
+wvKjHWX+liNiXhrZTQ6vByVHIkUMYTCVFKieJ26dUpEsX7CHLHj5C0RUL85Fi2rcCRCTEryK4Jce
+A3oGEz7FIk9cuvz2TjjILgMFmAYqbP0HVhcXXLrLNBiMlTkoBqORDDM5BLSFksSbqL/q7r7blHiy
+v8O1sqkN0T0YLmxqBw47GucCAwEAAaOCA0EwggM9MB8GA1UdIwQYMBaAFB4Fo3ePbJbiW4dLprSG
+rHEADOc4MB0GA1UdDgQWBBT71qogTseNjGcVZJxtO2mzrwUuWzAOBgNVHQ8BAf8EBAMCBaAwDAYD
+VR0TAQH/BAIwADAdBgNVHSUEFjAUBggrBgEFBQcDAQYIKwYBBQUHAwIwZwYDVR0gBGAwXjBSBgwr
+BgEEAa4jAQQDAQEwQjBABggrBgEFBQcCARY0aHR0cHM6Ly93d3cuaW5jb21tb24ub3JnL2NlcnQv
+cmVwb3NpdG9yeS9jcHNfc3NsLnBkZjAIBgZngQwBAgIwRAYDVR0fBD0wOzA5oDegNYYzaHR0cDov
+L2NybC5pbmNvbW1vbi1yc2Eub3JnL0luQ29tbW9uUlNBU2VydmVyQ0EuY3JsMHUGCCsGAQUFBwEB
+BGkwZzA+BggrBgEFBQcwAoYyaHR0cDovL2NydC51c2VydHJ1c3QuY29tL0luQ29tbW9uUlNBU2Vy
+dmVyQ0FfMi5jcnQwJQYIKwYBBQUHMAGGGWh0dHA6Ly9vY3NwLnVzZXJ0cnVzdC5jb20wFgYDVR0R
+BA8wDYILc3NvLm5pYy5lZHUwggF+BgorBgEEAdZ5AgQCBIIBbgSCAWoBaAB2APZclC/RdzAiFFQY
+CDCUVo7jTRMZM7/fDC8gC8xO8WTjAAABbPfoSccAAAQDAEcwRQIhAJc3p7X2qeU9LvQdyND+HiUX
+sXNh+fuRXXYNVO00qAArAiB63DYzb+1tkLk/Bk7pCAvxnxBbpBQ3Pg61bbRe0K88+wB1AESUZS6w
+7s6vxEAH2Kj+KMDa5oK+2MsxtT/TM5a1toGoAAABbPfoSecAAAQDAEYwRAIgMV/4dBw5vB7yKKIU
+tZfFFtUAuKQqeVdlKfUMHydnmVICIBD6YdhEtMYAHL1oHil8opSUSRq5kgP/6Qcl9JYGzhFAAHcA
+VYHUwhaQNgFK6gubVzxT8MDkOHhwJQgXL6OqHQcT0wwAAAFs9+hKFQAABAMASDBGAiEAx35Qicph
+J7IXRqCcX63wd6tbEa29LEqMFKAV6YhHYNQCIQChNqImCWN6FbXWL+W7xGHWziV+KJzQJF52Iryu
++1E0zzANBgkqhkiG9w0BAQsFAAOCAQEAfFnMtSkN+6jbXeluuPfukhdow5NOyluiAZMsaOeX5qxW
+GFVbU8bPif4wdZepWUBNRWHdVAOguwi6TGyRWbe9njQZeC5SQuU7GqIZTdyd7vW7l2agFfBymgee
+KjR4YN9S8X6twrspu+Fc4Zkwl8nwd04sDoykuDamz3gxL7R+6UHKtpQM9qKAFSvhipWsainza9yM
+I7Uf3woEraa4DEa+zJtso/zOq6uBYBRquv/Dal5MRc/ZP1EKNtKAM+n7ajVtToHqNIKso3V5yYHm
+omUCd9eX4CZdqqyQW2CsTUmK8hKOo/kH7z6XSrNzrQQFsj4SDpQT1TXuANzmMRYuMKG62g==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://adfs.nic.edu/adfs/services/trust/artifactresolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adfs.nic.edu/adfs/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://adfs.nic.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adfs.nic.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://adfs.nic.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">North Idaho College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">North Idaho College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://nic.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>NIC Engineers</GivenName>
+ <EmailAddress>engineers@nic.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>NIC Engineers</GivenName>
+ <EmailAddress>engineers@nic.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>NIC Engineers</GivenName>
+ <EmailAddress>engineers@nic.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>NIC Engineers</GivenName>
+ <EmailAddress>engineers@nic.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- CU Solutions Group -->
+<EntityDescriptor entityID="https://saml.hrperformancesolutions.net/simplesaml/module.php/saml/sp/metadata.php/The-Ohio-State-University">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">hrperformancesolutions</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.hrperformancesolutions.net/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="48" width="270" xml:lang="en">https://mcul.perfpro-hrnonline.com/images/logo/hrn_logo_small.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18380096701744012693, expires on Sun Jun 29 20:32:45 2025 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saml.hrperformancesolutions.net/simplesaml/module.php/saml/sp/saml2-logout.php/The-Ohio-State-University"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://saml.hrperformancesolutions.net/simplesaml/module.php/saml/sp/saml2-acs.php/The-Ohio-State-University" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://saml.hrperformancesolutions.net/simplesaml/module.php/saml/sp/saml2-acs.php/The-Ohio-State-University" index="2"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">hrperformancesolutions</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">CU Solutions Group</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">CU Solutions Group</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cusolutionsgroup.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ahmad Khan</GivenName>
+ <EmailAddress>Ahmad.Khan@cusolutionsgroup.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Ahmad khan</GivenName>
+ <EmailAddress>Ahmad.Khan@cusolutionsgroup.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Richard J. Perry</GivenName>
+ <EmailAddress>Rich.Perry@hrperformancesolutions.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Richard J. Perry</GivenName>
+ <EmailAddress>Rich.Perry@hrperformancesolutions.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- New York University -->
+<EntityDescriptor entityID="https://login.nyumc.org/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">nyumc.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">NYU Langone Health</mdui:DisplayName>
+ <mdui:Description xml:lang="en">NYU Langone Health academic medical centers</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://nyulangone.org/policies-disclaimers</mdui:PrivacyStatementURL>
+ <mdui:Logo height="60" width="80" xml:lang="en">https://login-chooser.nyumc.org/NYUL-Health_logo_Purple_RGB_EDS.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1088000454835673190308006354756875167834347008585, expires on Sat Nov 14 17:37:26 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.nyumc.org/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.nyumc.org/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">New York University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NYU Langone Health</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nyu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Theokli Hotzoglou</GivenName>
+ <EmailAddress>Theokli.Hotzoglou@nyumc.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>MCIT Security</GivenName>
+ <EmailAddress>MCITSecurity@nyumc.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>MCIT Identity Management Operations</GivenName>
+ <EmailAddress>MCITIdentityManagementOperations@nyumc.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Infrastructure Team</GivenName>
+ <EmailAddress>MCITPortalInfrastructure@nyulangone.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Governmentjobs.com Inc. d/b/a Neogov -->
+<EntityDescriptor entityID="https://login.neogov.com/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Neogov Production Environment</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.governmentjobs.com/home/legalprivacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="133" width="838" xml:lang="en">https://login.neogov.com/Content/images/neogov-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 165357045047988373244886712668929542377, expires on Tue Dec 17 23:59:59 2019 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.neogov.com/authentication/Saml/consumer" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Neogov Production Environment</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Governmentjobs.com Inc. d/b/a Neogov</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Governmentjobs.com Inc. d/b/a Neogov</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.neogov.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://login.qa.neogov.net/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Neogov QA Environment</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.governmentjobs.com/home/legalprivacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="133" width="838" xml:lang="en">https://login.qa.neogov.net/Content/images/neogov-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 145548868385667285805471347722266603943, expires on Wed Mar 25 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.qa.neogov.net/authentication/Saml/consumer" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Neogov QA Environment</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Governmentjobs.com Inc. d/b/a Neogov</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Governmentjobs.com Inc. d/b/a Neogov</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.neogov.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://login.staging.neogov.net/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Neogov Staging Environment</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.governmentjobs.com/home/legalprivacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="133" width="838" xml:lang="en">https://login.staging.neogov.net/Content/images/neogov-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 145548868385667285805471347722266603943, expires on Wed Mar 25 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.staging.neogov.net/authentication/Saml/consumer" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Neogov Staging Environment</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Governmentjobs.com Inc. d/b/a Neogov</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Governmentjobs.com Inc. d/b/a Neogov</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.neogov.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://login.uat.neogov.net/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Neogov UAT Environment</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.governmentjobs.com/home/legalprivacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="133" width="838" xml:lang="en">https://login.uat.neogov.net/Content/images/neogov-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 145548868385667285805471347722266603943, expires on Wed Mar 25 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.uat.neogov.net/authentication/Saml/consumer" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Neogov UAT Environment</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Governmentjobs.com Inc. d/b/a Neogov</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Governmentjobs.com Inc. d/b/a Neogov</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.neogov.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chris Rosenberger</GivenName>
+ <EmailAddress>crosenberger@neogov.net</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- AssetWorks -->
+<EntityDescriptor entityID="https://colostatesp.assetworkssso.io/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ASSETWORKS ColostateSP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SP for Assetworks LLC</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.assetworks.com/wp-content/uploads/2015/10/Privacy_Policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="75" width="75" xml:lang="en">https://pbs.twimg.com/profile_images/468768164822523904/w60m0UCT_400x400.jpeg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12137475435231950570, expires on Fri Jan 5 19:22:31 2029 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://colostatesp.assetworkssso.io/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://colostatesp.assetworkssso.io/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://colostatesp.assetworkssso.io/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://colostatesp.assetworkssso.io:8443/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://colostatesp.assetworkssso.io:8443/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://colostatesp.assetworkssso.io:8443/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://colostatesp.assetworkssso.io/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://colostatesp.assetworkssso.io/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://colostatesp.assetworkssso.io/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://colostatesp.assetworkssso.io/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://colostatesp.assetworkssso.io/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://colostatesp.assetworkssso.io/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://colostatesp.assetworkssso.io:8443/Shibboleth.sso/SAML2/POST" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://colostatesp.assetworkssso.io:8443/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://colostatesp.assetworkssso.io:8443/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://colostatesp.assetworkssso.io:8443/Shibboleth.sso/SAML2/ECP" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://colostatesp.assetworkssso.io:8443/Shibboleth.sso/SAML/POST" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://colostatesp.assetworkssso.io:8443/Shibboleth.sso/SAML/Artifact" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="http://colostatesp.assetworkssso.io:8080/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="http://colostatesp.assetworkssso.io:8080/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="http://colostatesp.assetworkssso.io:8080/Shibboleth.sso/SAML2/Artifact" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="http://colostatesp.assetworkssso.io:8080/Shibboleth.sso/SAML2/ECP" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="http://colostatesp.assetworkssso.io:8080/Shibboleth.sso/SAML/POST" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="http://colostatesp.assetworkssso.io:8080/Shibboleth.sso/SAML/Artifact" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://colostateprod.assetworks.hosting/Shibboleth.sso/SAML2/POST" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://colostateprod.assetworks.hosting/Shibboleth.sso/SAML2/POST-SimpleSign" index="20"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://colostateprod.assetworks.hosting/Shibboleth.sso/SAML2/Artifact" index="21"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://colostateprod.assetworks.hosting/Shibboleth.sso/SAML2/ECP" index="22"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://colostateprod.assetworks.hosting/Shibboleth.sso/SAML/POST" index="23"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://colostateprod.assetworks.hosting/Shibboleth.sso/SAML/Artifact" index="24"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://colostatetest.assetworks.hosting/Shibboleth.sso/SAML2/POST" index="25"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://colostatetest.assetworks.hosting/Shibboleth.sso/SAML2/POST-SimpleSign" index="26"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://colostatetest.assetworks.hosting/Shibboleth.sso/SAML2/Artifact" index="27"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://colostatetest.assetworks.hosting/Shibboleth.sso/SAML2/ECP" index="28"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://colostatetest.assetworks.hosting/Shibboleth.sso/SAML/POST" index="29"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://colostatetest.assetworks.hosting/Shibboleth.sso/SAML/Artifact" index="30"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="http://colostatesp.assetworkssso.io:8081/Shibboleth.sso/SAML2/POST" index="31"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="http://colostatesp.assetworkssso.io:8081/Shibboleth.sso/SAML2/POST-SimpleSign" index="32"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="http://colostatesp.assetworkssso.io:8081/Shibboleth.sso/SAML2/Artifact" index="33"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="http://colostatesp.assetworkssso.io:8081/Shibboleth.sso/SAML2/ECP" index="34"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="http://colostatesp.assetworkssso.io:8081/Shibboleth.sso/SAML/POST" index="35"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="http://colostatesp.assetworkssso.io:8081/Shibboleth.sso/SAML/Artifact" index="36"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ASSETWORKS ColostateSP</ServiceName>
+ <ServiceDescription xml:lang="en">SP for Assetworks LLC</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">AssetWorks</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">AssetWorks</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.assetworks.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Steven Denning-Garrison</GivenName>
+ <EmailAddress>steven.denning-garrison@assetworks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Combs</GivenName>
+ <EmailAddress>michael.combs@assetworks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Heath Kyker</GivenName>
+ <EmailAddress>heath.kyker@assetworks.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://ewusso.assetworkssso.io/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ASSETWORKS EWUSP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SP for Assetworks LLC</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.assetworks.com/wp-content/uploads/2015/10/Privacy_Policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="100" xml:lang="en">https://pbs.twimg.com/profile_images/468768164822523904/w60m0UCT_400x400.jpeg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10400837901061714401, expires on Wed Apr 18 11:29:03 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ewusso.assetworkssso.io/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ewusso.assetworkssso.io/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ewusso.assetworkssso.io/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ewusso.assetworkssso.io:8443/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ewusso.assetworkssso.io:8443/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ewusso.assetworkssso.io:8443/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ewusso.assetworkssso.io/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ewusso.assetworkssso.io/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ewusso.assetworkssso.io/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ewusso.assetworkssso.io/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ewusso.assetworkssso.io:8443/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ewusso.assetworkssso.io:8443/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ewusso.assetworkssso.io:8443/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ewusso.assetworkssso.io:8443/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ASSETWORKS EWUSP</ServiceName>
+ <ServiceDescription xml:lang="en">SP for Assetworks LLC</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">AssetWorks</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">AssetWorks</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.assetworks.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Steven Denning-Garrison</GivenName>
+ <EmailAddress>steven.denning-garrison@assetworks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Heath Kyker</GivenName>
+ <EmailAddress>heath.kyker@assetworks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Combs</GivenName>
+ <EmailAddress>michael.combs@assetworks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Steve Sanchez</GivenName>
+ <EmailAddress>steve.sanchez@assetworks.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://wiscsp.assetworkssso.io/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">ASSETWORKS UWiscSP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SP for Assetworks LLC</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.assetworks.com/wp-content/uploads/2015/10/Privacy_Policy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="100" xml:lang="en">https://pbs.twimg.com/profile_images/468768164822523904/w60m0UCT_400x400.jpeg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10719502964828147434, expires on Thu Nov 30 14:14:53 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiscsp.assetworkssso.io/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wiscsp.assetworkssso.io/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://wiscsp.assetworkssso.io/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiscsp.assetworkssso.io/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wiscsp.assetworkssso.io/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wiscsp.assetworkssso.io/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wiscsp.assetworkssso.io/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiscsp.assetworkssso.io:8443/Shibboleth.sso/SAML2/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wiscsp.assetworkssso.io:8443/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wiscsp.assetworkssso.io:8443/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wiscsp.assetworkssso.io:8443/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiscsp.assetworkssso.io:7443/Shibboleth.sso/SAML2/POST" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wiscsp.assetworkssso.io:7443/Shibboleth.sso/SAML2/POST-SimpleSign" index="10"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wiscsp.assetworkssso.io:7443/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wiscsp.assetworkssso.io:7443/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiscready.assetworks.cloud/Shibboleth.sso/SAML2/POST" index="13"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wiscready.assetworks.cloud/Shibboleth.sso/SAML2/POST-SimpleSign" index="14"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wiscready.assetworks.cloud/Shibboleth.sso/SAML2/Artifact" index="15"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wiscready.assetworks.cloud/Shibboleth.sso/SAML2/ECP" index="16"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wiscreadytest.assetworks.cloud/Shibboleth.sso/SAML2/POST" index="17"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wiscreadytest.assetworks.cloud/Shibboleth.sso/SAML2/POST-SimpleSign" index="18"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wiscreadytest.assetworks.cloud/Shibboleth.sso/SAML2/Artifact" index="19"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wiscreadytest.assetworks.cloud/Shibboleth.sso/SAML2/ECP" index="20"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">ASSETWORKS UWiscSP</ServiceName>
+ <ServiceDescription xml:lang="en">SP for Assetworks LLC</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">AssetWorks</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">AssetWorks</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.assetworks.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Steven Denning-Garrison</GivenName>
+ <EmailAddress>steven.denning-garrison@assetworks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Combs</GivenName>
+ <EmailAddress>michael.combs@assetworks.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Combs</GivenName>
+ <EmailAddress>michael.combs@assetworks.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Northern State University -->
+<EntityDescriptor entityID="https://webauth.northern.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">northern.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Northern State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This is the Identity Provider for Northern State University</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.northern.edu/sites/default/files/files/migratepictures/privacy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="919" width="1680" xml:lang="en">https://webauth.northern.edu/NSU-RGB.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 146065666415821117330472481096406529400836730021, expires on Sat Mar 22 15:08:50 2036 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://webauth.northern.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webauth.northern.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Northern State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Northern State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://northern.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>NSU NET Services Support</GivenName>
+ <EmailAddress>help@northern.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Aimee Niederbaumer</GivenName>
+ <EmailAddress>niederba@northern.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jodi Casanova</GivenName>
+ <EmailAddress>casanova@northern.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Guam -->
+<EntityDescriptor entityID="https://shibboleth.uog.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uog.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Guam</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uog.edu/it/online-privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="80" width="80" xml:lang="en">https://shibboleth.uog.edu/idp/images/dummylogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 148043581554778531864518233993640148477, expires on Thu Dec 3 23:59:59 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.uog.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.uog.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://shibboleth.uog.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://shibboleth.uog.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Guam</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Guam</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://uog.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rommel Hidalgo</GivenName>
+ <EmailAddress>rhidalgo@uog.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Eugene Adanzo</GivenName>
+ <EmailAddress>adanzoe@uog.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>UOG ISO</GivenName>
+ <EmailAddress>iso@uog.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>UOG ISO</GivenName>
+ <EmailAddress>iso@uog.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Plymouth State University -->
+<EntityDescriptor entityID="https://secureauth.plymouth.edu/idp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://support.plymouth.edu/index.php?/Knowledgebase/List" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">plymouth.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Plymouth State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Plymouth State University Identity Provider</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.usnh.edu/about/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="200" xml:lang="en">https://www.plymouth.edu/wp-content/themes/psu/images/logo-g.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1293443282182775721976576265492010493343182244, expires on Fri May 16 19:27:19 2025 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://secureauth.plymouth.edu/SecureAuth43" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://secureauth.plymouth.edu/SecureAuth43/logout.aspx"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secureauth.plymouth.edu/SecureAuth43/logout.aspx"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://secureauth.plymouth.edu/SecureAuth43"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://secureauth.plymouth.edu/SecureAuth43"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://secureauth.plymouth.edu/SecureAuth43"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Plymouth State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Plymouth State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.plymouth.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Richard Grossman</GivenName>
+ <EmailAddress>rggrossman@plymouth.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Kevin Orlowski</GivenName>
+ <EmailAddress>k_orlows@plymouth.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Theodore Wisniewski</GivenName>
+ <EmailAddress>ted@plymouth.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Ad Astra Information Systems -->
+<EntityDescriptor entityID="https://test.aaiscloud.com/UChicago_APR19">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Astra Schedule - U Chicago (test.aaiscloud.com)</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.aais.com</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="158" xml:lang="en">https://cdn2.hubspot.net/hubfs/4523134/Ad%20Astra%202019%20Logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 54410102823546927417441127900060285085, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.aaiscloud.com/UChicago_APR19/SAML/AssertionConsumerService.aspx" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Astra Schedule - U Chicago (test.aaiscloud.com)</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ad Astra Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ad Astra Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.aais.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ryan Townsend</GivenName>
+ <EmailAddress>rtownsend@aais.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Andrew Regier</GivenName>
+ <EmailAddress>aregier@aais.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chad Perkins</GivenName>
+ <EmailAddress>cperkins@aais.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://www.aaiscloud.com/PortlandStateU">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Astra Schedule - Portland State U</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.aais.com</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="158" xml:lang="en">https://cdn2.hubspot.net/hubfs/4523134/Ad%20Astra%202019%20Logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1569488348741953796367126318753623813, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.aaiscloud.com/PortlandStateU/SAML/AssertionConsumerService.aspx" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Astra Schedule - Portland State U</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ad Astra Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ad Astra Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.aais.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ryan Townsend</GivenName>
+ <EmailAddress>rtownsend@aais.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Andrew Regier</GivenName>
+ <EmailAddress>aregier@aais.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chad Perkins</GivenName>
+ <EmailAddress>cperkins@aais.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://www.aaiscloud.com/UCA_SantaBarbara">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Astra Schedule - UCA Santa Barbara</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.aais.com</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="148" xml:lang="en">https://cdn2.hubspot.net/hubfs/4523134/Ad%20Astra%202019%20Logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -19538715345145972368457631158695826549, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.aaiscloud.com/UCA_SantaBarbara/SAML/AssertionConsumerService.aspx" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Astra Schedule - UCA Santa Barbara</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ad Astra Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ad Astra Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.aais.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ryan Townsend</GivenName>
+ <EmailAddress>rtownsend@aais.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Andrew Regier</GivenName>
+ <EmailAddress>aregier@aais.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chad Perkins</GivenName>
+ <EmailAddress>cperkins@aais.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://www.aaiscloud.com/UMS">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Astra Schedule - UMS (www.aaiscloud.com)</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.aais.com</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="158" xml:lang="en">https://cdn2.hubspot.net/hubfs/4523134/Ad%20Astra%202019%20Logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -119956791164796243642135945278095297735, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.aaiscloud.com/UMS/SAML/AssertionConsumerService.aspx" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Astra Schedule - UMS (www.aaiscloud.com)</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ad Astra Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ad Astra Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.aais.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ryan Townsend</GivenName>
+ <EmailAddress>rtownsend@aais.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Andrew Regier</GivenName>
+ <EmailAddress>aregier@aais.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chad Perkins</GivenName>
+ <EmailAddress>cperkins@aais.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://www.aaiscloud.com/UNVReno">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Astra Schedule – University of Nevada, Reno</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.aais.com</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="158" xml:lang="en">https://cdn2.hubspot.net/hubfs/4523134/Ad%20Astra%202019%20Logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. -14418042037418792512791422881948553675, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIC9TCCAd2gAwIBAgIQ9ScvpOjYnrtBz8MsjVcuNTANBgkqhkiG9w0BAQsFADASMRAwDgYDVQQDEwdVTlZSZW5vMB4XDTE5MDYwNzEzMzkwN1oXDTM5MTIzMTIzNTk1OVowEjEQMA4GA1UEAxMHVU5WUmVubzCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKhir1kWFhBEPyz0PJzfLqtEzSQaeUcnHaM3Sf1wx79VZgszzR557Z3bgNHepJg4rckhFr0cPQYuQ/fXLk/mOXWhy3/WZv5dWUrbUluh/pjBqwqI2fOUN1oe2QFhnmVyKdDB+VkLH+Wlifs27IfghECtMcHtIqWEUv0JX0q13G1YxNXZsSu3y4Iti/k0jvrRjpNPG92AIJNChSEHnWkctJQa2rT8MuGL9y0xedDEZO6HtTbyKbCHAmBLKN6fKE6Wb4cKFWuV2ZUjGBENeBurWPKU6geJt7DuYUewUIb0pwfujCchrcRyuoL85C/aybmpMlvcHqiy4hwapV+DWRQPYkkCAwEAAaNHMEUwQwYDVR0BBDwwOoAQniA9pVy0HSAO4m5nc4QEK6EUMBIxEDAOBgNVBAMTB1VOVlJlbm+CEPUnL6To2J67Qc/DLI1XLjUwDQYJKoZIhvcNAQELBQADggEBACmL+I3SEA/SgwSmNIOfk9txsaLmMqV+YYbLpQV5AK4Ax68/1LKAbszI0zNsvS6haRdBaa1JglNTCw6S+QhldjsCFmSm1brx+ER4tQOShCRFzaMLsaxjeOZKxl6+7lTfHd7q3bHV3fLs4xFnFWMpBKuvSjqNNucOk/hp0u1T613U4IIGK9zraRGaWQ8GlXaknFPcS81i0JwjjW4jvZOvyEjiWAxlecLWHD29eAuNZpRAV/m9KDvNICGKC/lZKTrumorVySysVaY5hgKYZ8Brmdi8WNloW4/HZgiQzDBRHEwLl4jNzUVIMSOA4wDOOk9Cy51qm+916g2b+8/Fzpr+uxA=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.aaiscloud.com/UNVReno/SAML/AssertionConsumerService.aspx" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Astra Schedule – University of Nevada, Reno</ServiceName>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Ad Astra Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ad Astra Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.aais.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ryan Townsend</GivenName>
+ <EmailAddress>rtownsend@aais.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Andrew Regier</GivenName>
+ <EmailAddress>aregier@aais.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chad Perkins</GivenName>
+ <EmailAddress>cperkins@aais.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Silverchair Information Systems -->
+<EntityDescriptor entityID="https://sp.silverchair.com/allen/development/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Silverchair Development: Allen Press</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.silverchair.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="31" width="200" xml:lang="en">https://11eahk451t3g2es8u53czolt39w-wpengine.netdna-ssl.com/wp-content/uploads/2017/09/platform-tools-1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9682161017751658024, expires on Sat Jul 28 15:18:20 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://allendev.silverchair.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://allendev.silverchair.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://allendev.silverchair.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://allendev.silverchair.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://allendev.silverchair.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://allendev.silverchair.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://allendev.silverchair.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://allendev.silverchair.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://allendev.silverchair.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Silverchair Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Silverchair Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.silverchair.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.silverchair.com/allen/production/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Silverchair Production: Allen Press</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.allenpress.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="52" width="120" xml:lang="en">https://allen.silverchair-cdn.com/ImageLibrary/allenpress-logo_Meridian.png?versionId=5259</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13582246304937218569, expires on Sat Jul 28 18:52:07 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://meridian.allenpress.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://meridian.allenpress.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://meridian.allenpress.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://meridian.allenpress.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://meridian.allenpress.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://meridian.allenpress.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://meridian.allenpress.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://meridian.allenpress.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://meridian.allenpress.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Silverchair Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Silverchair Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.silverchair.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.silverchair.com/allen/staging/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Silverchair Staging: Allen Press</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.silverchair.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="31" width="200" xml:lang="en">https://11eahk451t3g2es8u53czolt39w-wpengine.netdna-ssl.com/wp-content/uploads/2017/09/platform-tools-1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14360608106849915570, expires on Sat Jul 28 18:48:28 2029 GMT -->
+ <ds:X509Certificate>
+MIIDBjCCAe6gAwIBAgIJAMdLIPzHYlKyMA0GCSqGSIb3DQEBBQUAMCAxHjAcBgNV
+BAMTFXNjbS1zdGFnd2ViMDEuc2lzLmxhbjAeFw0xOTA3MzExODQ4MjhaFw0yOTA3
+MjgxODQ4MjhaMCAxHjAcBgNVBAMTFXNjbS1zdGFnd2ViMDEuc2lzLmxhbjCCASIw
+DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAM8RzhVrRZhOQ0nyPr8tQCu4KaJH
+dRVNT2TH6BmecJq7VdlvXdP8Y00be/U/L0LdWlSJde9dVd9zYnVQqqHh1jmkPrTf
+EsMDBgzQfcnqqV2wUp3SeMbMVd59tVTc+07O2XIYREXhAZOrd3Q8xtkyKqFHEIRK
+cqyZEJjUe+feHZazUJNtv+0pVUK/8Wt8KWyPg8aYploDN5CIss3V+Oji/n672Gaz
+kPU1Ds+5Ajy1Y5Oa/gtUQdxs4uqBUShVcIG45tfcLXlRF4QwqFWmxMdDA8My5Jp8
+cs3VLAX9C+f4ySkoKGxc/mhwCyL4Xu9pb1OPgPof7M+WAKpWwPSKIVDDzRcCAwEA
+AaNDMEEwIAYDVR0RBBkwF4IVc2NtLXN0YWd3ZWIwMS5zaXMubGFuMB0GA1UdDgQW
+BBQSIwMzvnPS4MwvbsJAmj6iL1VE+DANBgkqhkiG9w0BAQUFAAOCAQEAkayVY991
+4BpwfNBC/Pnuu1hN5xPW9SM0mD1Y7YqT+xrw8YAk+qGUpOE68iP9C89m4pSyRjmF
+41NWRtDUQmaxgL0Xwnp1FMpGIre+tNFCq+hjN57pr3aFejWGSw+TerRbAM81ffGI
+cr0Tij5qktIcYCrM4q7PuR+nGC5ddfEyfzSmHhWNOOpNupC84MUYRBXMG9bT2SPV
+1NMMUO347LlQxVuMqCkZx9Yj/zb7PbVxTVd8lvnZWfaTXYV68DLwPBDWreX5bZjx
+3J6W5ilJp2J4GT/LS4W1zqC4UWkeynFdklwRrsteQQcX04WHorJ2nzaqDm/P9ffN
++qCd56s4vb5tjw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://allenrc.silverchair.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://allenrc.silverchair.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://allenrc.silverchair.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://allenrc.silverchair.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://allenrc.silverchair.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://allenrc.silverchair.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://allenrc.silverchair.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://allenrc.silverchair.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://allenrc.silverchair.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Silverchair Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Silverchair Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.silverchair.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.silverchair.com/ash/development/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">American Society of Hematology - Silverchair</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.silverchair.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="54" width="175" xml:lang="en">https://ashdev.silverchair.com/UI/app/svg/umbrella/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14407566701597294060, expires on Mon Jun 11 21:00:58 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ashdev.silverchair.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ashdev.silverchair.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ashdev.silverchair.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ashdev.silverchair.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ashdev.silverchair.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ashdev.silverchair.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ashdev.silverchair.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ashdev.silverchair.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ashdev.silverchair.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Silverchair Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Silverchair Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.silverchair.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.silverchair.com/ash/production/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">American Society of Hematology - Silverchair</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.silverchair.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="54" width="175" xml:lang="en">https://ashpublications.org/UI/app/svg/umbrella/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11041811740546128226, expires on Thu Jun 14 14:27:53 2029 GMT -->
+ <ds:X509Certificate>
+MIIDBjCCAe6gAwIBAgIJAJk8ZUan/VliMA0GCSqGSIb3DQEBBQUAMCAxHjAcBgNV
+BAMTFXNjbS1wcm9kd2ViMDEuc2lzLmxhbjAeFw0xOTA2MTcxNDI3NTNaFw0yOTA2
+MTQxNDI3NTNaMCAxHjAcBgNVBAMTFXNjbS1wcm9kd2ViMDEuc2lzLmxhbjCCASIw
+DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMh8z6Q4XE+GKiXHjtbYwLRZbRFr
+qLEZwbMxT/F86y1LMY+envn+25LveX67rZA9Au29bMRHsj3lAuSGQQ+NM51z7sdB
++0wDZgpZTfanHTw8/U/iHQwjK6kRkM7qfzdOZnSwFPqsOIfAe6gjTf0dsW6MsP7R
+jJNyvd8HAN6dDeNgUv1p+zW0DMqCjYvVX97XrcT8hNJC/PW9RDkBkkgSR7SUUHap
+FoSpcVO2ZY3ignlJvrNPb8k4QPfDU5quC6EX2FWbVI5laH+GlYxFOqJKVTddvjwp
+YZtAYu6JQWC+Z+bIQb11W9qQ42LbHNVHBed4H8AZpn73sudr55PUANhrodcCAwEA
+AaNDMEEwIAYDVR0RBBkwF4IVc2NtLXByb2R3ZWIwMS5zaXMubGFuMB0GA1UdDgQW
+BBQkCNVYQUDat6aDTAT+eOpE8P99HDANBgkqhkiG9w0BAQUFAAOCAQEAxagjKkZF
+hWJ3DPoz19dk+C/BFlci4hKhtSZc6BL8wHKvkamKdIu+SSPmwlxylkYJveSEXcTE
+u+5vaWRIZWM69Ocw74oAepr8mVi+BdLboATGNGAhhkpcCl9rfZCOb21Q8NAMzEWw
+fW8XkNdiYkftJD2MR0Uvs2yP4qnoREqfEoT7Lcr7evvO3NW7bFai9bV5UfAS1bOD
+7N5GsbfRKm2g63xSA75OYfRENEC08tdVr86igL5lKU8I7yYT2Vh0WjN/mRITvSJM
+Rl9cnDP4ZhrYhVudIPfuWGI6uQRqpJ09Vzwx/C/P0qEew9hXWDMPBOxa90UXeGjQ
+NmgQ8ZliDPOnyg==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ashpublications.org/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ashpublications.org/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ashpublications.org/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ashpublications.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ashpublications.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ashpublications.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ashpublications.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ashpublications.org/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ashpublications.org/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Silverchair Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Silverchair Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.silverchair.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.silverchair.com/ash/staging/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">American Society of Hematology - Silverchair</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.silverchair.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="54" width="175" xml:lang="en">https://ashrc.silverchair.com/UI/app/svg/umbrella/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14235637607142906521, expires on Thu Jun 14 14:18:32 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ashrc.silverchair.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ashrc.silverchair.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ashrc.silverchair.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ashrc.silverchair.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ashrc.silverchair.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ashrc.silverchair.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ashrc.silverchair.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ashrc.silverchair.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ashrc.silverchair.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Silverchair Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Silverchair Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.silverchair.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.silverchair.com/mgh/production/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://mhmedical.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Silverchair Production: McGraw-Hill Medical</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.mheducation.com/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="51" width="304" xml:lang="en">https://accessmedicine.mhmedical.com/Images/logos/logo_umbrella.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16417146660963795405, expires on Fri Jan 2 15:36:43 2026 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mhmedical.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mhmedical.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://mhmedical.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mhmedical.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://mhmedical.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mhmedical.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://mhmedical.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://mhmedical.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://mhmedical.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Silverchair Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Silverchair Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.silverchair.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Wes Royer</GivenName>
+ <EmailAddress>wroyer@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.silverchair.com/port/development/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Portland Press Dev - Silverchair</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.silverchair.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="54" width="175" xml:lang="en">https://portdev.silverchair.com/UI/app/svg/umbrella/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10693140812542186265, expires on Mon Jun 11 20:56:06 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portdev.silverchair.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portdev.silverchair.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portdev.silverchair.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portdev.silverchair.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portdev.silverchair.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portdev.silverchair.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portdev.silverchair.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://portdev.silverchair.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://portdev.silverchair.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Silverchair Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Silverchair Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.silverchair.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.silverchair.com/port/production/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Portland Press Production - Silverchair</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.silverchair.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="54" width="175" xml:lang="en">https://port.silverchair.com/UI/app/svg/umbrella/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13021978028161699385, expires on Thu Jun 14 14:29:16 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portlandpress.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portlandpress.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portlandpress.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portlandpress.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portlandpress.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portlandpress.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portlandpress.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://portlandpress.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://portlandpress.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Silverchair Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Silverchair Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.silverchair.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.silverchair.com/port/staging/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Portland Press Staging - Silverchair</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.silverchair.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="54" width="175" xml:lang="en">https://port.silverchair.com/UI/app/svg/umbrella/logo.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 18398296205436679230, expires on Thu Jun 14 14:20:22 2029 GMT -->
+ <ds:X509Certificate>
+MIIDBjCCAe6gAwIBAgIJAP9T4OuleHQ+MA0GCSqGSIb3DQEBBQUAMCAxHjAcBgNV
+BAMTFXNjbS1zdGFnd2ViMDEuc2lzLmxhbjAeFw0xOTA2MTcxNDIwMjJaFw0yOTA2
+MTQxNDIwMjJaMCAxHjAcBgNVBAMTFXNjbS1zdGFnd2ViMDEuc2lzLmxhbjCCASIw
+DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANuKhodyoPuUoFEEdMMlar/aoKK7
+yD79LLVTpTnRQVFERvnKuO9RwcpnMxpDzrbxqU4whUUVL1G/lo3iQxcYOLETSRZI
+Gz0sQcWwX1NI4MywhYkHR2/EF5EFgwcTCppcaApdvMyVXsUboLe6bPQ0luy9yjD4
+AbrQsW7o9Rgo/JSwtDAEBDbUENFL0VMiu2DmdisfQvMsSZ8qxwHYR+v+Fro0hrs0
+k09yW2hQRmJCNc/Z+uy/ZR7phI9ABvMugsTp5cphBnxot9o+kDAxdlsC+0c6IhXZ
+65YKRJEXwPLFWY8+/0qJx2k6NxomaPQlekF/v3vuJMA4U9isPfGlR+9CXGUCAwEA
+AaNDMEEwIAYDVR0RBBkwF4IVc2NtLXN0YWd3ZWIwMS5zaXMubGFuMB0GA1UdDgQW
+BBT+9V2mrUAoTLB93BzuHpOA91c4UTANBgkqhkiG9w0BAQUFAAOCAQEA1XvvqCfB
+Y0N52hpKCPiqHYzzSOTRaJ0s7pQdk02mOcOvfE0hgtiKsGtKpRVz6NE4s6CivlIY
+m2g/3o5aSvROv7DDBBqwS9eB6ppdZ05MDRx8jiIEr5xu6Pz0i9EY2GaOZgsHkgDz
+O83xoBi1LVmEc3ysg36FlNd6HaX7YVRqfHIJrdiLbBJp5ShjxVufqD2usz+qHbx3
+XGpuS/JMzplvkmm9+fOSxHACdmWSnxJNfD+CCmFeQUJ7Ms2vzcRAewbIka/QKc8v
+e5/myhR7EKXcK21u4bcrXxuARwofVjsi8yo6EbIlVV4/oRdT9dNyoWaGl0uu56db
+/6XotIIWeqJTfQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portrc.silverchair.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://portrc.silverchair.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://portrc.silverchair.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portrc.silverchair.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://portrc.silverchair.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portrc.silverchair.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portrc.silverchair.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://portrc.silverchair.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://portrc.silverchair.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Silverchair Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Silverchair Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.silverchair.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.silverchair.com/rup/development/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://rupdev.silverchair.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Silverchair Development: Rockefeller University Press</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.silverchair.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="31" width="200" xml:lang="en">https://11eahk451t3g2es8u53czolt39w-wpengine.netdna-ssl.com/wp-content/uploads/2017/09/platform-tools-1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17350199318279000739, expires on Sat Jul 28 15:19:49 2029 GMT -->
+ <ds:X509Certificate>
+MIIDAzCCAeugAwIBAgIJAPDISlrMPpKjMA0GCSqGSIb3DQEBBQUAMB8xHTAbBgNV
+BAMTFHNjbS1kZXZ3ZWIwMS5zc2MuaW50MB4XDTE5MDczMTE1MTk0OVoXDTI5MDcy
+ODE1MTk0OVowHzEdMBsGA1UEAxMUc2NtLWRldndlYjAxLnNzYy5pbnQwggEiMA0G
+CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDEmli0yvyATvzZMkP+xcILZJ7TH/gX
+Q/5vPLxk+a+Vf8tT1Q811IClPzYlKYbTjIpOQyzpOelKwWJJcHYbNM0GCaFGIlHq
+9kctJLY8xDuqTtuwMtEs/KQcPBW6FupdSt9+wgEtymsLpZ6NWiyOgf2rbwCGnwd8
+JgFJ9610UrnPes6IxjNRAyIbeq7yXHwMQolvRyQF5yXgKxcIgDESFmBhh3SMYMLV
+7NjMVvCne8mT65MnusrW07RbhNiUAMMqzsjBHMNcHS7VBdMGiOXHZYhhsLGtSYJH
+e9Cq/LJ4l6Ct09PVjQGM76cxt9kW8nv7LDecRGKntQ96feZJ4rbC8ohJAgMBAAGj
+QjBAMB8GA1UdEQQYMBaCFHNjbS1kZXZ3ZWIwMS5zc2MuaW50MB0GA1UdDgQWBBQD
+Vr6lApVKmfHDskmJxa33SzHuizANBgkqhkiG9w0BAQUFAAOCAQEAkbSdwDqFi3Mp
+XAh4+cW83aySva96+dxezXfeRdj+3kG2Nn6qpF6TCG9sf0scXFp5WCA+XCEzQubI
+H3EuaS2veCZSfOBfwkry+kshpUvqJQdA8QARs7rmMa+tWhcNy6+j0zzFCMPR1Hof
+BUtInjf3B3nXMzgLnmaVs7lvNDCvBnvv/tBM7kvDYiTsybq4ktbODHsUK3TcmiPu
+QU1E/zmsx/ILlywnXuo9dgjd5Xj/dN/ILLT3vvFENhS/lGr8WLf2Xi1SlQiIyEyU
+KaXFS1gdmlcrlwuvnafqUAPYe9L3gJdCK7SbPB9iRx+X1/seNBkTu7iSKywMNW67
+sB1opW9PfA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rupdev.silverchair.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://rupdev.silverchair.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rupdev.silverchair.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rupdev.silverchair.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rupdev.silverchair.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rupdev.silverchair.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rupdev.silverchair.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rupdev.silverchair.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rupdev.silverchair.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Silverchair Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Silverchair Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.silverchair.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.silverchair.com/rup/production/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Silverchair Production: Rockefeller University Press</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.silverchair.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="235" width="235" xml:lang="en">https://rup.silverchair-cdn.com/UI/app/svg/umbrella/logo-alternate.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9697088424107009308, expires on Sat Jul 28 18:52:38 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rupress.org/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://rupress.org/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://rupress.org/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rupress.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://rupress.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rupress.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rupress.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://rupress.org/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://rupress.org/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Silverchair Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Silverchair Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.silverchair.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://sp.silverchair.com/rup/staging/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://ruprc.silverchair.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Silverchair Staging: Rockefeller University Press</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.silverchair.com/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="31" width="200" xml:lang="en">https://11eahk451t3g2es8u53czolt39w-wpengine.netdna-ssl.com/wp-content/uploads/2017/09/platform-tools-1.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15843246740942182440, expires on Sat Jul 28 18:49:11 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ruprc.silverchair.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ruprc.silverchair.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ruprc.silverchair.com/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ruprc.silverchair.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ruprc.silverchair.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ruprc.silverchair.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ruprc.silverchair.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ruprc.silverchair.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ruprc.silverchair.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Silverchair Information Systems</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Silverchair Information Systems</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.silverchair.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shibboleth Admin</GivenName>
+ <EmailAddress>ShibbolethAdmin@silverchair.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Taskstream, LLC dba Taskstream-Tk20 -->
+<EntityDescriptor entityID="https://baylor.tk20.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://baylor.tk20.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">TSK-TK20</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.watermarkinsights.com/about-us/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.watermarkinsights.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1000" width="2000" xml:lang="en">https://www.watermarkinsights.com/wp-content/themes/taskstream/parts/svgs/watermark.php</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14134087267979640904, expires on Sun Feb 20 07:19:37 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://baylor.tk20.com/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://baylor.tk20.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://baylor.tk20.com/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://baylor.tk20.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://baylor.tk20.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://baylor.tk20.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://baylor.tk20.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://baylor.tk20.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://baylor.tk20.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">TSK-TK20</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Taskstream, LLC dba Taskstream-Tk20</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Taskstream, LLC dba Taskstream-Tk20</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://tk20.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Charanjeev Shelly</GivenName>
+ <EmailAddress>cshelly@watermarkinsights.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Projects</GivenName>
+ <EmailAddress>projects@watermarkinsights.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Projects</GivenName>
+ <EmailAddress>projects@watermarkinsights.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Cj</GivenName>
+ <EmailAddress>Projects@tk20.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://jmu.tk20.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://jmu.tk20.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">TSK-TK20</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.watermarkinsights.com/about-us/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.watermarkinsights.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="2000" width="1000" xml:lang="en">https://www.watermarkinsights.com/wp-content/themes/taskstream/parts/svgs/watermark.php</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9851357996822828218, expires on Sat Jun 10 12:11:33 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://jmu.tk20.com/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://jmu.tk20.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jmu.tk20.com/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jmu.tk20.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://jmu.tk20.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://jmu.tk20.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://jmu.tk20.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://jmu.tk20.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://jmu.tk20.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">TSK-TK20</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Taskstream, LLC dba Taskstream-Tk20</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Taskstream, LLC dba Taskstream-Tk20</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://tk20.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Projects</GivenName>
+ <EmailAddress>projects@tk20.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Cj</GivenName>
+ <EmailAddress>projects@tk20.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Projects</GivenName>
+ <EmailAddress>projects@tk20.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Cj</GivenName>
+ <EmailAddress>projects@tk20.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://osu.tk20.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://osu.tk20.com/Shibboleth.sso/Login" index="1"/>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://tk20.ehe.osu.edu/Shibboleth.sso/Login" index="2"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">TK20 SSO</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Single Sign-On provides users with access to multiple environments with a single, secure password. Most universities maintain their web portals; on-campus users would use single authentication information to log in. Once logged in, they can access various websites or services, such as Tk20. Typically, in this scenario, once the user is authenticated via the portal, a request forwards to Tk20. When the software receives the request, a secure handshake with the web portal ensures the request is legitimate. After the request is validated, information pertaining to the user attempting access to Tk20 is exchanged. The software ensures that the user trying to access Tk20 is a valid Tk20 user. After passing the checks, the user is immediately directed to the Tk20 account home page in the application. In this case, the user does not see the Tk20 login page because the authentication only happens once when the user logs in to the web portal on campus. Tk20 merely integrates with the web portal, ensures the proper authorization and allows the user into the Tk20 system. The Tk20 system is designed to allow access to users who do not have access to the campus portal, but do need access to Tk20. In such cases, the authentication information of such users is maintained locally in the Tk20 database
+</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www1.taskstream.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.watermarkinsights.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="1000" width="2000" xml:lang="en">https://www.watermarkinsights.com/wp-content/themes/taskstream/parts/svgs/watermark.php</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 13055599478814939800, expires on Sun Sep 5 11:26:37 2027 GMT -->
+ <ds:X509Certificate>
+MIID0DCCAjigAwIBAgIJALUuzo3wihqYMA0GCSqGSIb3DQEBCwUAMA4xDDAKBgNV
+BAMTA29zdTAeFw0xNzA5MDcxMTI2MzdaFw0yNzA5MDUxMTI2MzdaMA4xDDAKBgNV
+BAMTA29zdTCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBANVpqu8A+Ipd
+ESHxIz7nQthxZP5qOW1H/dMOx6Mq2Mh/ybW867MRnZl6FSqHvMDsGaVJ7AEa9UeN
+Ml06iGlVHjPRNgkAK0OfPU3QMdI5J8ZDcGqAWewsDcDApsCE0CAPiZjYyrINdxCy
+sChNtlU61EAKSUGi6xCZABHRxKbOfsMNhrbshHkK4p8v1nZASp/hKLE5NYLnjiMO
+tQYX2WhypTCQnM/DFwyGiaVWiigV8DomfCNjoi6eRPhRIRn2zKFsrPkLzW2RCdKR
+XQNwDtQRJDI5Oc6A5MBVxwT683nTOIfOjtC01cdckG+K0XiOWnshWVhrOPDQbm8P
+zDtn7Xjnhy/7Kd3WxxIztXgVeYt67rsBnP6Zmci/+gxAabexcDfMkTau9KcXUr8X
+5wjlYXcoO5K4XXaWLPOpHxBomudMFMEMbqRFGr8vTHYEPJA7A7tStIVlr2E6KdO2
+DE1lemU5qMPQqiElP9wBus+7toEIo6wEaxIkbTFdWUZ1bSkxBtSEHQIDAQABozEw
+LzAOBgNVHREEBzAFggNvc3UwHQYDVR0OBBYEFN/wn8jHVfee6GSdTACgg7tdaCl8
+MA0GCSqGSIb3DQEBCwUAA4IBgQA1iNEjhhW9vJmBU7pyel1fTcpDK5ndgZBW/OZf
+KmJ7tWYEFFlRDI9r87xAg4qDj8iDqwe71KeEhoN1W63Z4Zvmu5ZsiD6oIa/Ggpck
+z+JEdQBG4FFS9Pl5WlaveyqPn5Z/5h9ODzA3Wo2yH3nrYt3z6YwNxzUIM1KsWf5y
+fx1Or75Pm2JzBUutPdQ/M+HgpmOW+XMuNeEK39Wjs3UBR1Xp7Rqhn4fK11fO9HtA
+CzdHxKCg2CPLn9q5MwRa7PRg2IbBA3xKK88cKws3O+MzeHia9uzx0iyxhatjPPCa
+xiolahejpA3MTuBdkw9UGDiRyZm2WIAbhnjjKo32IMa0PFKTkbatAUF6yitdH5h/
+D9qc6M3RVnvPcH30N5rreESrWYqqDlXmwmHP0dFvrYMktVlZ6vXY5OjEODeS9YBE
+WneDyzA+P+xswLzwWQLw8ejyiRyZ6QX/T47KOdXp8v0q9DQEANkoAOvwTxpuL5of
+mG4+G+h1ap9g8hfWZBq6tA/TmK4=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tk20.ehe.osu.edu/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tk20.ehe.osu.edu/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://osu.tk20.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://osu.tk20.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://osu.tk20.com/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://tk20.ehe.osu.edu/Shibboleth.sso/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tk20.ehe.osu.edu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tk20.ehe.osu.edu/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tk20.ehe.osu.edu/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tk20.ehe.osu.edu/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tk20.ehe.osu.edu/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://osu.tk20.com/Shibboleth.sso/SAML2/POST" index="6"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://osu.tk20.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="7"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://osu.tk20.com/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://osu.tk20.com/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://osu.tk20.com/Shibboleth.sso/SAML2/POST" index="10"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">TK20 SSO</ServiceName>
+ <ServiceDescription xml:lang="en">Single Sign-On provides users with access to multiple environments with a single, secure password. Most universities maintain their web portals; on-campus users would use single authentication information to log in. Once logged in, they can access various websites or services, such as Tk20. Typically, in this scenario, once the user is authenticated via the portal, a request forwards to Tk20. When the software receives the request, a secure handshake with the web portal ensures the request is legitimate. After the request is validated, information pertaining to the user attempting access to Tk20 is exchanged. The software ensures that the user trying to access Tk20 is a valid Tk20 user. After passing the checks, the user is immediately directed to the Tk20 account home page in the application. In this case, the user does not see the Tk20 login page because the authentication only happens once when the user logs in to the web portal on campus. Tk20 merely integrates with the web portal, ensures the proper authorization and allows the user into the Tk20 system. The Tk20 system is designed to allow access to users who do not have access to the campus portal, but do need access to Tk20. In such cases, the authentication information of such users is maintained locally in the Tk20 database
+</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Taskstream, LLC dba Taskstream-Tk20</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Taskstream, LLC dba Taskstream-Tk20</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://tk20.com</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Projects team</GivenName>
+ <EmailAddress>projects@tk20.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Charanjeev Shelly</GivenName>
+ <EmailAddress>cshelly@tk20.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Team alias</GivenName>
+ <EmailAddress>projects@tk20.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Maryland Institute College of Art -->
+<EntityDescriptor entityID="https://idp.mica.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">mica.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Maryland Institute College of Art</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The identity provider at the Maryland Institute College of Art</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.mica.edu/mica-dna/policies-and-institutional-learning/policies/grades-student-responsibilities/privacy-statement/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="87" width="350" xml:lang="en">https://idp.mica.edu/images/MICA_Logo_SmallScale_Black.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 272171240725905706660458218375865363087104266300, expires on Sun Apr 5 19:02:33 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.mica.edu/idp/profile/Logout"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.mica.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.mica.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Maryland Institute College of Art</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Maryland Institute College of Art</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.mica.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cathy Burrier</GivenName>
+ <EmailAddress>cburrier@mica.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Evan Suggs</GivenName>
+ <EmailAddress>esuggs@mica.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Evan Suggs</GivenName>
+ <EmailAddress>esuggs@mica.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Amie Pfeifer</GivenName>
+ <EmailAddress>apfeifer@mica.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Wisconsin-Parkside -->
+<EntityDescriptor entityID="http://fs.uwp.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwp.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Wisconsin-Parkside</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.uwp.edu/explore/offices/campustechnologyservices/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uwp.edu/explore/offices/governance/adminpolicy.cfm</mdui:PrivacyStatementURL>
+ <mdui:Logo height="444" width="2617" xml:lang="en">https://www.uwp.edu/explore/offices/marketingcommunications/styleguide/upload/Horizontal_Wordmark_Web-Reverse.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 80510090531916136789966465206802531006, expires on Thu Jan 30 14:07:45 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fs.uwp.edu/adfs/services/trust/artifactresolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fs.uwp.edu/adfs/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fs.uwp.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fs.uwp.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fs.uwp.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin-Parkside</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin-Parkside</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.uwp.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Tricia Randelzhofer</GivenName>
+ <EmailAddress>randelzh@uwp.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Cody Schultz</GivenName>
+ <EmailAddress>networking@uwp.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jim Treu</GivenName>
+ <EmailAddress>treu@uwp.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Kent State University - Main Campus -->
+<EntityDescriptor entityID="http://msauth.kent.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://support.kent.edu" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">kent.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Kent State University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Kent State University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.kent.edu/it</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.kent.edu/it/policies-and-procedures</mdui:PrivacyStatementURL>
+ <mdui:Logo height="172" width="180" xml:lang="en">https://s3.amazonaws.com/undeniable.kent.edu/files/kent_state_university_stacked_2-color.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 112813638727945287132953444945943937870, expires on Thu Jun 18 00:30:02 2020 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://msauth.kent.edu/adfs/ls/?wa=wsignout1.0"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://msauth.kent.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://msauth.kent.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Kent State University - Main Campus</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Kent State University - Main Campus</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.kent.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Identity Management</GivenName>
+ <EmailAddress>it-idm@kent.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Identity Management</GivenName>
+ <EmailAddress>it-idm@kent.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <EmailAddress>security@kent.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@kent.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Lehman College of the City University of New York -->
+<EntityDescriptor entityID="https://oneaccess.lehman.edu/CloudAccessManager/RPSTS">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://oneaccess.lehman.edu/CloudAccessManager/RPSTS/Saml2/Default.aspx" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lehman.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Lehman College of the City University of New York</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Lehman One Access for Medicat</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.lehman.edu/about/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www2.cuny.edu/website/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="126" width="457" xml:lang="en">https://oneaccess.lehman.edu/CloudAccessManager/Customization/resources/img/leh/lehman-cuny-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 810422263965774637493762298689469221, expires on Tue Mar 19 00:00:00 2058 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oneaccess.lehman.edu/CloudAccessManager/RPSTS/Saml2/Logout.aspx"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://oneaccess.lehman.edu/CloudAccessManager/RPSTS/Saml2/Logout.aspx"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://oneaccess.lehman.edu/CloudAccessManager/RPSTS/Saml2/Default.aspx"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oneaccess.lehman.edu/CloudAccessManager/RPSTS/Saml2/Default.aspx"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lehman.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 810422263965774637493762298689469221, expires on Tue Mar 19 00:00:00 2058 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://oneaccess.lehman.edu/CloudAccessManager/RPSTS/Saml2/Default.aspx"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Lehman College of the City University of New York</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Lehman College of the City University of New York</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://lehman.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Renan Ovalles</GivenName>
+ <EmailAddress>renan.ovalles@lehman.cuny.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Renan Ovalles</GivenName>
+ <EmailAddress>renan.ovalles@lehman.cuny.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Renan Ovalles</GivenName>
+ <EmailAddress>renan.ovalles@lehman.cuny.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Seattle Technology Group, Inc. -->
+<EntityDescriptor entityID="https://irislogin.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Iris Services</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://seattletech.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://seattletech.com/downloads/IrisServicesPrivacyPolicy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="474" xml:lang="en">https://irislogin.com/Public/seattletechnology.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 90175445674352395295069103885583777911, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>
+MIIDJDCCAgygAwIBAgIQQ9cou0EJFYdKZ0mx/e4AdzANBgkqhkiG9w0BAQsFADAm
+MSQwIgYDVQQDExtTZWF0dGxlIFRlY2ggUm9vdCBBdXRob3JpdHkwHhcNMTYxMDEw
+MTI1NzAwWhcNMzkxMjMxMjM1OTU5WjAZMRcwFQYDVQQDEw5JcmlzU2hpYmJvbGV0
+aDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAIdzdD3Sv7v78emUKeZV
+gx1phQ0349yBzefan7sFAbvnXzLz+tjD1s9lSRuqeJiOBeHIVyoQ8J5XuX7wXZms
+bgvst9EByD+dTFEg5osgh5R5iuqv3suLNSlkQbH8LtTaNDTbBNSh9Wp/MCoKNsFp
+JAG2Cm+/E4YEOHsTRDsKV6fep6AVxTj1KxN1mvMUGWnodjUYHqMLOTis2c1X23+7
+B5/ErR0Tf15kQ5oHsm/Cfp8NjDio7AFb5/czz7m0YNsl0ilXUwRg09jNRFw1EBJu
+eUl8OiWLQmHWD2TaDGwzoQ+DKlRwh9caWhwD5Xane3hFQ5vp77vnDED//NAD83aC
+OusCAwEAAaNbMFkwVwYDVR0BBFAwToAQtcMPTXp3rGpsgwko+QVCPaEoMCYxJDAi
+BgNVBAMTG1NlYXR0bGUgVGVjaCBSb290IEF1dGhvcml0eYIQEPkS0jAMhblNOXgL
+GwpqVjANBgkqhkiG9w0BAQsFAAOCAQEAS6Qv4lDHAQORMYnkcMLNvO2VefksiYto
+u0+f0sGbk0g0m8qhMEINz1p8bpZSwd59HaNhk7dQrl/vKLsl9qyddT+Y6G4k4mrr
+yQ01M3i8WnQPPAJIUPM0MYEMA/UkCPqOGwlolgglAtu1ly5ZPtEQR/hrG2IULI7c
+pUx8+b37kNDjjzTUUOGekBzkVI/wfdbKXoLV0+ZCT8X+t7M83djycvNmNpKjaQsx
+/CYhgJze2/R7xEZ5rfass98e00ciXsN4Z4GresKY3Xv66cJwQPh97AoCPxTBo3gF
+mHg24g2+LTCkZPM6RVlRX3geF4TRU2TGBAkI/PPe3EV6fW0NExT/ew==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://irislogin.com/identity/shibboleth/AssertionConsumerService" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Iris Services</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Seattle Technology Group, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Seattle Technology Group, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.seattletech.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Seattle Tech Support</GivenName>
+ <EmailAddress>support@seattletech.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Seattle Tech Support</GivenName>
+ <EmailAddress>support@seattletech.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Seattle Tech Support</GivenName>
+ <EmailAddress>support@seattletech.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://localirislogin.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Iris Dev Services</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">http://seattletech.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://seattletech.com/downloads/IrisServicesPrivacyPolicy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="150" width="474" xml:lang="en">https://irislogin.com/Public/seattletechnology.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 90175445674352395295069103885583777911, expires on Sat Dec 31 23:59:59 2039 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://localirislogin.com/identity/shibboleth/AssertionConsumerService" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Iris Dev Services</ServiceName>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Seattle Technology Group, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Seattle Technology Group, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.seattletech.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Seattle Tech Support</GivenName>
+ <EmailAddress>support@seattletech.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Seattle Tech Support</GivenName>
+ <EmailAddress>support@seattletech.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Seattle Tech Support</GivenName>
+ <EmailAddress>support@seattletech.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- New York Genome Center -->
+<EntityDescriptor entityID="https://sso.nygenome.org/auth/">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://sso.nygenome.org/auth/error" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">nygenome.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">New York Genome Center</mdui:DisplayName>
+ <mdui:Description xml:lang="en">New York Genome Center</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://nygenome.org</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.nygenome.org/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="170" width="246" xml:lang="en">https://www.nygenome.org/wp-content/uploads/2018/06/nygenomelogo-color-246x170.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1531409060923, expires on Wed Jul 12 15:24:20 2028 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.nygenome.org/auth/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.nygenome.org/auth/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.nygenome.org/auth/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.nygenome.org/auth/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.nygenome.org/auth/realms/NYGENOME"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">New York Genome Center</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">New York Genome Center</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.nygenome.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Charles Gagnon</GivenName>
+ <EmailAddress>cgagnon@nygenome.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Thomas Scott Collins</GivenName>
+ <EmailAddress>tscollins@nygenome.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Chris Black</GivenName>
+ <EmailAddress>cblack@nygenome.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Stephen Brock</GivenName>
+ <EmailAddress>sbrock@nygenome.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University System of Maryland -->
+<EntityDescriptor entityID="https://www.usmd.edu/simplesaml/module.php/saml/sp/metadata.php/give">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University System of Maryland - Payroll Deduction</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University System of Maryland's Payroll Deduction site for Advancement. </mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.usmd.edu/give/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.usmd.edu/privacy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="72" width="356" xml:lang="en">https://www.usmd.edu/images/logo/USMLogo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11552025309489840336, expires on Sat Jun 24 21:46:09 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://www.usmd.edu/simplesaml/module.php/saml/sp/saml2-logout.php/give"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.usmd.edu/simplesaml/module.php/saml/sp/saml2-acs.php/give" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.usmd.edu/simplesaml/module.php/saml/sp/saml1-acs.php/give" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.usmd.edu/simplesaml/module.php/saml/sp/saml2-acs.php/give" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.usmd.edu/simplesaml/module.php/saml/sp/saml1-acs.php/give/artifact" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">University System of Maryland - Payroll Deduction</ServiceName>
+ <ServiceDescription xml:lang="en">University System of Maryland's Payroll Deduction site for Advancement. </ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="o" Name="urn:oid:2.5.4.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University System of Maryland</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University System of Maryland</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.usmd.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Fred Hayes</GivenName>
+ <EmailAddress>fph@usmd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Marcus Harrington</GivenName>
+ <EmailAddress>mharrington@usmd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Fred Hayes</GivenName>
+ <EmailAddress>fph@usmd.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of Wisconsin - La Crosse -->
+<EntityDescriptor entityID="http://fs.uwlax.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uwlax.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of Wisconsin - La Crosse</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.uwlax.edu/its/incommon/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uwlax.edu/its/incommon/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="112" width="534" xml:lang="en">https://www.uwlax.edu/images/logo2.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 109308292673358018820345070799533581020, expires on Mon Sep 28 22:52:30 2020 GMT -->
+ <ds:X509Certificate>
+MIIC1DCCAbygAwIBAgIQUjwC602x6b1ESLTkPh8i3DANBgkqhkiG9w0BAQsFADAm
+MSQwIgYDVQQDExtBREZTIFNpZ25pbmcgLSBmcy51d2xheC5lZHUwHhcNMTcwOTI5
+MjI1MjMwWhcNMjAwOTI4MjI1MjMwWjAmMSQwIgYDVQQDExtBREZTIFNpZ25pbmcg
+LSBmcy51d2xheC5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCs
+hkACiiTZ9SnxUuaIdVKOGsofR6rISIL3iiPdQUMI/7ENTFWlqnZFbdxpacV4eH1N
+fBPq2f2BMG7begAhdLm+GtBCnJxuI7b0Mwgu4xHf/+c7Mjdd2vk/BIInuDQjT3G+
+2hsglNzXtpQCnHDqThf6pbfVT3Y0E73HIznfK1g7cOY9D1TWdnCfKGGzkPK8atbB
+DT0WI5/rv7fKb9qTjBill7fOMD5VvTc4iv/fmwsjsi7FnEOrQHSltGY4XIleGFiP
++lCQ/DLPrw74n3PJczK6OHP4s5bEWdO2g8bLOWoCd1ShtL1NdMXWlQVxNuy//4SK
+0cVPgeUHP2KMDTwAKiz1AgMBAAEwDQYJKoZIhvcNAQELBQADggEBAE3X5qwIsZ9x
+CSMhKCYjCTtUeBmqrCILIriBhQevrduo85Z/p/qEZ8BDAtC+jaDspnmWfc5xK5cv
+6+se5ArMtEddMRs3n6pO5MCOXAay1ug2M1aPbDAymzQr0NGGWAdYpPW2addNQn/V
+3PMd9k7xNs1mKvzNh2on91a1Q8jjghyihYQ/6FdN7XAEB4c2m0CGtq23/7QLd5dn
+5V0iPvEdSA8hbOWueFqeo6S7Gj7+JKVELUcCLwyzfmyiNTN4gwqjpWNPZt/AmcE1
+KMnDA7yek/8iWE057eBManYtpkUUd4dxuguHtkwG9aiz8eq9Wg/zTuIpUryOF0Yq
+XqORiN+n6Q4=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 49484126797620008781873898444046974507, expires on Mon Sep 28 22:52:23 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fs.uwlax.edu/adfs/services/trust/artifactresolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fs.uwlax.edu/adfs/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fs.uwlax.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fs.uwlax.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fs.uwlax.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of Wisconsin - La Crosse</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Wisconsin - La Crosse</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.uwlax.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Cynthia Carlson</GivenName>
+ <EmailAddress>ccarlson@uwlax.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nathan Weissenberger</GivenName>
+ <EmailAddress>nweissenberger@uwlax.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jim Treu</GivenName>
+ <EmailAddress>jtreu@uwlax.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Katie Herman</GivenName>
+ <EmailAddress>kherman@uwlax.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Facilities Survey, Inc. -->
+<EntityDescriptor entityID="https://sso.facsur.com/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://sso.facsur.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">FSI-SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Facilities Survey Inc. Service Provider</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://portalvhdsc1clt6c22szhn.blob.core.windows.net/videos/FSIPrivacyPolicy.pdf</mdui:PrivacyStatementURL>
+ <mdui:Logo height="98" width="200" xml:lang="en">https://cms.facsur.com/images/Logos/cms/logo6.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 98625432350997249499510614171025348239384454359580437406587970688381529708556, expires on Tue May 23 21:57:41 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.facsur.com/Shibboleth.sso/SLO/SOAP"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.facsur.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.facsur.com/Shibboleth.sso/SLO/POST"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.facsur.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.facsur.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sso.facsur.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sso.facsur.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sso.facsur.com/Shibboleth.sso/SAML/POST" index="5"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sso.facsur.com/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">FSI-SP</ServiceName>
+ <ServiceDescription xml:lang="en">Facilities Survey Inc. Service Provider</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Facilities Survey, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Facilities Survey, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://facilitiessurvey.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="technical">
+ <GivenName>Mike Hetcko</GivenName>
+ <EmailAddress>mhetcko@fsiservices.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Megan Chipps</GivenName>
+ <EmailAddress>mday@fsiservices.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Megan Chipps</GivenName>
+ <EmailAddress>mchipps@fsiservices.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Texas A&M University - San Antonio -->
+<EntityDescriptor entityID="https://idp.tamusa.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">tamusa.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Texas A&amp;M University - San Antonio</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Texas A&amp;M University - San Antonio Shibboleth IDP</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.tamusa.edu/sitepolicies/sitepolicies.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="148" width="570" xml:lang="en">https://idp.tamusa.edu/tamusa-logo_2x.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1192373265706290459593391959804840993644903128952, expires on Tue Nov 9 17:29:52 2038 GMT -->
+ <ds:X509Certificate>
+MIIEJDCCAoygAwIBAgIVANDb3c7F7kdFN9lwwDWUvLVlP994MA0GCSqGSIb3DQEB CwUAMBkxFzAVBgNVBAMMDmlkcC50YW11c2EuZWR1MB4XDTE4MTEwOTE3Mjk1MloX DTM4MTEwOTE3Mjk1MlowGTEXMBUGA1UEAwwOaWRwLnRhbXVzYS5lZHUwggGiMA0G CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQCCxIkgCRBt0vnvC5vztnyQSybTyeXs UmrwUEoFsq6vua+l7pQ99qSc8Z3rWmuSNaGKFu/+xref8SZPh4YDmwO7Ubs0Hu7J Q4WGhvbiIvlhmYYohdoOyqIvZvjQJmwATNlJpzopbbQfg/QcuO666f79iVCj191s 5FjcAD4yQr/+TSc3YLbzZNonwBhGNHqmlyv6qQ3Gy1aYX0O/unkA6lNsYakVaJKA OVeXGKONQ3I3USAYrL07aHpgXcFQmKNzcMa+5b+vO71sxSS+lYeE0bYHPgm1MSjV Wce+af4SA1JMIAkBo1/lU7xrK7G9zkncRXAADtZHc46BYcvfWCeE+a+NDdNvoaYI B0MIxs0yCu/DOZYRiK/ZskBjC8rUcJnTiPoLlwrLxCpJOl32g7UKeGcYI3qN3iZ+ jBwIy/YSF1bWYkEz73jIwTY+eNNnbvbXreQ/Bkd59spkcco6bJ2Bumae1+nBOeDN 8nySfsqXz2vDfboXAprhCsBcDMOfbFfskMECAwEAAaNjMGEwHQYDVR0OBBYEFCew ELvJ/Hecl2vpJ7Jgqk0ybVX2MEAGA1UdEQQ5MDeCDmlkcC50YW11c2EuZWR1hiVo dHRwczovL2lkcC50YW11c2EuZWR1L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEB CwUAA4IBgQBMtG6CFIwDxTZF5hlmUT1HMZWhEjO+pYBCSH+7UyUb8TchSdsx3csD rAtdrAjkbEEu/5lp7rNFn6N9sryo7gjAwQK6pQ+5gCjQtFijgZvlSkvqoPuSNWvc GqopQAE+TDsZvh5s9Ml5SEAN55C8TSqZRGSbrPQrSJlmjuSrVB8Vbjg+Vmkp9PR8 T9yYbXM23WRUQsmcZG345Ca55564kYZhWPRt5E9u9/oVhmVvdt4WTik0HeTdGQMh cIT9L6dZD0UHVpMCmOPvZur8WJt6G38vxmQZDxJzSmqIzLEk37V04hK1mdRJs8+c UEY38JI7vSb19Pmbxpz7yWRo34A2WkQBngSNGkQOOoG/a3T19L1s1zSzTQMJ9eTM UjsB7HwMy/BfWz2J7eh7EP7h2OakWSQu14y3z2alJ0OwHj/O6+zi0v/Y+SX2Jst/ EOaR9Ih+B4hBXV2m4XVsiF77OeAIfqbRCDHFTzaMbObtrLgoTxjWsWmxwmkJRMWP 7L9QWGZLXIg=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.tamusa.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.tamusa.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Texas A&amp;M University - San Antonio</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Texas A&amp;M University - San Antonio</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.tamusa.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Lionel Cassin</GivenName>
+ <EmailAddress>lionel.cassin@tamusa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Matt Broughton</GivenName>
+ <EmailAddress>matt.broughton@tamusa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Lionel Cassin</GivenName>
+ <EmailAddress>lionel.cassin@tamusa.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- NAVEX Global -->
+<EntityDescriptor entityID="https://doorman.navexglobal.com/Shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://doorman.navexglobal.com/Shibboleth.sso/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Navex Global</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Navex Global</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.navexglobal.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.navexglobal.com/en-us/privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="200" xml:lang="en">https://www.navexglobal.com/sites/all/themes/navex_theme/images/navex-logo-notag.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 260754539550266108945111696970057544556, expires on Mon Feb 3 23:59:59 2020 GMT -->
+ <ds:X509Certificate>
+MIIFgDCCBGigAwIBAgIRAMQrf2HDA80txnWeILxoc2wwDQYJKoZIhvcNAQELBQAw gZAxCzAJBgNVBAYTAkdCMRswGQYDVQQIExJHcmVhdGVyIE1hbmNoZXN0ZXIxEDAO BgNVBAcTB1NhbGZvcmQxGjAYBgNVBAoTEUNPTU9ETyBDQSBMaW1pdGVkMTYwNAYD VQQDEy1DT01PRE8gUlNBIERvbWFpbiBWYWxpZGF0aW9uIFNlY3VyZSBTZXJ2ZXIg Q0EwHhcNMTUwMjA0MDAwMDAwWhcNMjAwMjAzMjM1OTU5WjCBgjEhMB8GA1UECxMY RG9tYWluIENvbnRyb2wgVmFsaWRhdGVkMSMwIQYDVQQLExpIb3N0ZWQgYnkgTmF2 ZXggR2xvYmFsIEluYzEcMBoGA1UECxMTQ09NT0RPIFNTTCBXaWxkY2FyZDEaMBgG A1UEAxQRKi5uYXZleGdsb2JhbC5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAw ggEKAoIBAQC54EiEikmqi2Cn04KHw/O/L80/ATL0p/ye+c2fsNHnIaVhAGJg/GqP xB5Dl9/rWqtdkyCulRni/cuygtBHLdprQ2eoi9IcvHJUVDnqRWECuTyliaLTZUEV P/6xnJL6ISFcK5JYZ8h+AxUfcK1/eE8Oy4FStXksKHdtqxOGzA+D+U6x3ttj0fSi TnPBHT73qrubRAc9gV6uxMFK32Sb9m96Cg5z/InLnut9Nk4zBZeFkjHiHTJIr95b ACz9qTLXQO76ZirVr8oQU8w8CfQZ0mRDJhouIR68ossbuO8jX2noLVbvQ++64t1w 9a84jUPhD8Tcbn9y67Gf/GWLF3D7DwFDAgMBAAGjggHfMIIB2zAfBgNVHSMEGDAW gBSQr2o6lFoL2JDqElZz30O0Oija5zAdBgNVHQ4EFgQUYi105mx0jgVw9kZ+Sw7/ 6R6MtxgwDgYDVR0PAQH/BAQDAgWgMAwGA1UdEwEB/wQCMAAwHQYDVR0lBBYwFAYI KwYBBQUHAwEGCCsGAQUFBwMCME8GA1UdIARIMEYwOgYLKwYBBAGyMQECAgcwKzAp BggrBgEFBQcCARYdaHR0cHM6Ly9zZWN1cmUuY29tb2RvLmNvbS9DUFMwCAYGZ4EM AQIBMFQGA1UdHwRNMEswSaBHoEWGQ2h0dHA6Ly9jcmwuY29tb2RvY2EuY29tL0NP TU9ET1JTQURvbWFpblZhbGlkYXRpb25TZWN1cmVTZXJ2ZXJDQS5jcmwwgYUGCCsG AQUFBwEBBHkwdzBPBggrBgEFBQcwAoZDaHR0cDovL2NydC5jb21vZG9jYS5jb20v Q09NT0RPUlNBRG9tYWluVmFsaWRhdGlvblNlY3VyZVNlcnZlckNBLmNydDAkBggr BgEFBQcwAYYYaHR0cDovL29jc3AuY29tb2RvY2EuY29tMC0GA1UdEQQmMCSCESou bmF2ZXhnbG9iYWwuY29tgg9uYXZleGdsb2JhbC5jb20wDQYJKoZIhvcNAQELBQAD ggEBACFB3Tqvgj/oC2/IPRr4IFTY+M0c88474cRKu/9/wIbogc50vu4yBX1Bvl8h HU/Y094BBOepZPcnQkNClrHjfLr4Gs8TesQXnxD2UivTf6ZYNXcUPTE3+g7lorDL FUixGfW0WvqP8oJIYCu7K6yrNWUrkSCjFKdggF+XlznYe60P/5ZgstAE/RB6dqTS rxkoO9d5IKx723z4mRwfF5EWOGcViX18DnH7MyvnQh/3dm06xia6sW0LHVtK+CD3 qiUviGiDBbTz9wIjlIgrMYlPefvjynSnEN46ATKeTArmVkUpxE0Zu6+XaXTK6x8V NPqqW33Eqk21A9/FX0wbHWIRTvY=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://doorman.navexglobal.com/Shibboleth.sso/SLO/Redirect"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://doorman.navexglobal.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://doorman.navexglobal.com/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://doorman.navexglobal.com/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://doorman.navexglobal.com/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Navex Global</ServiceName>
+ <ServiceDescription xml:lang="en">Navex Global</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">NAVEX Global</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">NAVEX Global</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.navexglobal.com/en-us</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Andrew Burke</GivenName>
+ <EmailAddress>aburke@navexglobal.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Geddy Tarbell</GivenName>
+ <EmailAddress>gtarbell@navexglobal.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shannon Whitley</GivenName>
+ <EmailAddress>swhitley@navexglobal.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Trinity University -->
+<EntityDescriptor entityID="https://sso.trinity.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">trinity.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Trinity University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Trinity University</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://inside.trinity.edu/information-technology-services/it-policies</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://policies.trinity.edu/a8376318-ebd6-421f-be63-acf8c88376a1_4a404b66-1e20-431b-9514-c7c6bfeaed85.html?v=50113</mdui:PrivacyStatementURL>
+ <mdui:Logo height="128" width="128" xml:lang="en">https://dag.trinity.edu/dag/module.php/duosecurity/resources/images/logo/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 70298941890932633439546361658962226008748369865, expires on Mon Sep 6 19:59:31 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sso.trinity.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://sso.trinity.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="2"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sso.trinity.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.trinity.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.trinity.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://sso.trinity.edu/idp/profile/Shibboleth/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Trinity University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Trinity University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.trinity.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Technical Services</GivenName>
+ <EmailAddress>Technical.Services@Trinity.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Technical Services</GivenName>
+ <EmailAddress>Technical.Services@Trinity.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Technical Services</GivenName>
+ <EmailAddress>Technical.Services@Trinity.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Technical Services</GivenName>
+ <EmailAddress>Technical.Services@Trinity.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Eckerd College -->
+<EntityDescriptor entityID="https://shibboleth.aws.eckerd.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">eckerd.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Eckerd College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Eckerd is a liberal arts college in St. Petersburg, Florida, and is one of 40 schools featured in Colleges That Change Lives and a member of Phi Beta Kappa.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.eckerd.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://docs.google.com/document/d/12dMViRE5e2lRsiHuTQpfFMBCDdTwFdGxUTEKRqfv4PY/edit</mdui:PrivacyStatementURL>
+ <mdui:Logo height="53" width="314" xml:lang="en">https://www.eckerd.edu/wp-content/themes/salient-child-ecc/img/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 9308319444618513682, expires on Sat Sep 16 14:18:13 2023 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.aws.eckerd.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.aws.eckerd.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Eckerd College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Eckerd College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.eckerd.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Walter R. Moore</GivenName>
+ <EmailAddress>moorewr@eckerd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ashley Burt</GivenName>
+ <EmailAddress>burtaf@eckerd.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Walter R. Moroe</GivenName>
+ <EmailAddress>moorewr@eckerd.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Connect2concepts -->
+<EntityDescriptor entityID="https://www.connect2mycloud.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Connect2MyCloud</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SP for connect2mycloud application</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.connect2mycloud.com/Home/PrivacyPolicy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="120" width="780" xml:lang="en">https://www.connect2mycloud.com/Content/Images/logo-6.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15412331565196910745, expires on Fri Aug 18 10:58:34 2028 GMT -->
+ <ds:X509Certificate>
+MIIEKDCCAxCgAwIBAgIJANXjmeaIGiCZMA0GCSqGSIb3DQEBCwUAMIGoMQswCQYD
+VQQGEwJVUzEXMBUGA1UECAwOTm9ydGggQ2Fyb2xpbmExEDAOBgNVBAcMB1JhbGVp
+Z2gxGTAXBgNVBAoMEENvbm5lY3QyQ29uY2VwdHMxCzAJBgNVBAsMAklUMRwwGgYD
+VQQDDBNjb25uZWN0Mm15Y2xvdWQuY29tMSgwJgYJKoZIhvcNAQkBFhlpbmZvQGNv
+bm5lY3QyY29uY2VwdHMuY29tMB4XDTE4MDgyMTEwNTgzNFoXDTI4MDgxODEwNTgz
+NFowgagxCzAJBgNVBAYTAlVTMRcwFQYDVQQIDA5Ob3J0aCBDYXJvbGluYTEQMA4G
+A1UEBwwHUmFsZWlnaDEZMBcGA1UECgwQQ29ubmVjdDJDb25jZXB0czELMAkGA1UE
+CwwCSVQxHDAaBgNVBAMME2Nvbm5lY3QybXljbG91ZC5jb20xKDAmBgkqhkiG9w0B
+CQEWGWluZm9AY29ubmVjdDJjb25jZXB0cy5jb20wggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQClkx/IGUNT9Whv7qu3gKTAaD3HEJKsU+yuQsPOC64oVair
+Mku9QC65OID/KmLTKr6rn8WvN5mOsBtmPEefeFz5w2QBkbQgL1B1SIn4x6LVGYAT
+m1++SaZG0mICQZwsQbqR95yB6TqnoZfl3ckrgpQaIM1O/0JfT0/CQdoMMvPHhxBP
+mLTE+Yf575GyqrpB4ZZutc4tMt+PP6Wc782ZEJsX8Wrc9nOeO4qfbAmBBRwYrCug
+sWOD+EMmxWMwp5Yx4dK4x1uI/0a++2fx/8mDEynhAx7Nm/VxFlAzsCA6iU9Au4SR
+TXTSxf3juDuKmF8bk8RyEnooXJd1ObHTXJBsRxbjAgMBAAGjUzBRMB0GA1UdDgQW
+BBQms4gljNZg6LoIX7W/4QALp0K1/DAfBgNVHSMEGDAWgBQms4gljNZg6LoIX7W/
+4QALp0K1/DAPBgNVHRMBAf8EBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAj39zW
+oP8VitoAxaleDNexjSsg390PBHu7FILhM57bOmTmtvvrve8wr5UXlm2SBpXwVaJV
+5JMZ7M7dUheRnU/39hN2B6I0xnf7Gady9ecb9PMW4LdZQ64lPLONUWOY8abIfMCw
++cSCxQwHOyxDxRCKL1m6b6j3vUi1xT+BBLI432GzK8H9G0B53+zwyAB4Yvx8jIDD
+2LFUti+cQgh68GyBLKfEytQk7xjU/28ul3M2eQJgAf2qIM5WaFDy0chnD3KZXxCS
+tm6JLYnIwYsKJG2ZR4gXbZpQ3aUTMZkzXUiJQJnNPMDwHOMJ1sZjTMxVRzNSgSwv
+3/vnWzrHvE3gWwS9
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.connect2mycloud.com/User/LogOff"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.connect2mycloud.com/User/SingleSignOnLogin?binding=post" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Connect2MyCloud</ServiceName>
+ <ServiceDescription xml:lang="en">SP for connect2mycloud application</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Connect2concepts</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Connect2concepts</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.connect2concepts.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jennifer Jacobs</GivenName>
+ <EmailAddress>jjacobs@connect2concepts.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jennifer Jacobs</GivenName>
+ <EmailAddress>jjacobs@connect2concepts.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jennifer Jacobs</GivenName>
+ <EmailAddress>jjacobs@connect2concepts.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Clackamas Community College -->
+<EntityDescriptor entityID="http://sts.clackamas.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://webportal1.clackamas.edu/InCommonError/error.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">clackamas.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Clackamas Community College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Clackamas Community College Federated Identity Manager</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.clackamas.edu/about-us/accreditation-policies/internet-privacy-commitment</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.clackamas.edu/about-us/accreditation-policies/internet-privacy-commitment</mdui:PrivacyStatementURL>
+ <mdui:Logo height="85" width="350" xml:lang="en">https://sts.clackamas.edu/adfs/portal/logo/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 49452214190248058444839252526392857371, expires on Mon May 4 00:41:52 2020 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sts.clackamas.edu/adfs/ls/" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sts.clackamas.edu/adfs/ls/?wa=wsignout1.0"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sts.clackamas.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sts.clackamas.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Clackamas Community College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Clackamas Community College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.clackamas.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Seth Allums</GivenName>
+ <EmailAddress>seth.allums@clackamas.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Seth Allums</GivenName>
+ <EmailAddress>seth.allums@clackamas.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Seth Allums</GivenName>
+ <EmailAddress>seth.allums@clackamas.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Shawn Swanner</GivenName>
+ <EmailAddress>shawns@clackamas.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Okta, Inc -->
+<EntityDescriptor entityID="https://sso.oktaedu.com/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">oktaedu.com</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Okta, Inc</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Okta InCommon integration demo/test IDP</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.okta.com/privacy-policy/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="82" xml:lang="en">https://sso.oktaedu.com/logo/Okta_Logo_BrightBlue_Medium.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1453665254874274099761605895011683895248806175029, expires on Sun Oct 17 19:12:43 2038 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.oktaedu.com/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.oktaedu.com/Shibboleth.sso/SLO/Redirect"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.oktaedu.com/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.oktaedu.com/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Okta, Inc</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Okta, Inc</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.okta.com/100</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jim Faut</GivenName>
+ <EmailAddress>jim.faut@okta.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Jim Faut</GivenName>
+ <EmailAddress>jim.faut@okta.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jim Faut</GivenName>
+ <EmailAddress>jim.faut@okta.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Exxat, LLC -->
+<EntityDescriptor entityID="https://apps.exxat.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Exxat LLC</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Our Student Training, Education and Placement System tracks and manages all aspects of clinical education from data management to communication to slot requests, placements and more.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.exxat.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://exxatcontent.blob.core.windows.net/exxat-public/Privacy_Policy.txt</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="300" xml:lang="en">https://exxatcontent.blob.core.windows.net/exxat-public/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11986957847136881651, expires on Thu Mar 2 16:00:06 2028 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://apps.exxat.com/Fusion/SSO/Api/Response/AssertionConsumerService" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Exxat LLC</ServiceName>
+ <ServiceDescription xml:lang="en">Our Student Training, Education and Placement System tracks and manages all aspects of clinical education from data management to communication to slot requests, placements and more.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Exxat, LLC</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Exxat, LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.exxat.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Sameer Bhaise</GivenName>
+ <EmailAddress>sameer.bhaise@exxatsystems.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Raghuvir Khuman</GivenName>
+ <EmailAddress>raghuvir.khuman@exxatsystems.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Team SSO</GivenName>
+ <EmailAddress>teamsso@exxatsystems.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Saurabh Lal</GivenName>
+ <EmailAddress>saurabh.lal@exxatsystems.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Fairleigh Dickinson University -->
+<EntityDescriptor entityID="https://idp.fdu.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fdu.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Fairleigh Dickinson University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://view2.fdu.edu/university-offices/office-of-the-general-counsel/legal-issues/index.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="300" xml:lang="en">https://www.fdu.edu/images/printable/color/fdulogo.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1130109129593949830667456476596087673731993359384, expires on Sun Apr 15 18:13:36 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.fdu.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.fdu.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.fdu.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.fdu.edu:8443/idp/profile/SAML2/SOAP/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.fdu.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.fdu.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.fdu.edu/idp/profile/SAML2/Unsolicited/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp.fdu.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">fdu.edu</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1130109129593949830667456476596087673731993359384, expires on Sun Apr 15 18:13:36 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.fdu.edu:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Fairleigh Dickinson University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Fairleigh Dickinson University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.fdu.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Neal Sturm</GivenName>
+ <EmailAddress>sturm@fdu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Christopher Bland</GivenName>
+ <EmailAddress>chris@fdu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>University Systems &amp; Security</GivenName>
+ <EmailAddress>help@fdu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Christopher Robley</GivenName>
+ <EmailAddress>crobley@fdu.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Redivis Inc. -->
+<EntityDescriptor entityID="https://redivis.com/saml">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Redivis</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Redivis is a web-based data hosting and querying platform.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://redivis.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://redivis.com/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="236" width="934" xml:lang="en">https://storage.googleapis.com/redivis-public/logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 10825953189701945951, expires on Sun Sep 2 16:28:19 2046 GMT -->
+ <ds:X509Certificate>
+MIIFkDCCA3gCCQCWPYMRUzEKXzANBgkqhkiG9w0BAQsFADCBiTELMAkGA1UEBhMC
+VVMxEzARBgNVBAgMCkNhbGlmb3JuaWExFjAUBgNVBAcMDU1vdW50YWluIFZpZXcx
+FTATBgNVBAoMDFJlZGl2aXMgSW5jLjEUMBIGA1UEAwwLcmVkaXZpcy5jb20xIDAe
+BgkqhkiG9w0BCQEWEWFkbWluQHJlZGl2aXMuY29tMB4XDTE5MDQxODE2MjgxOVoX
+DTQ2MDkwMjE2MjgxOVowgYkxCzAJBgNVBAYTAlVTMRMwEQYDVQQIDApDYWxpZm9y
+bmlhMRYwFAYDVQQHDA1Nb3VudGFpbiBWaWV3MRUwEwYDVQQKDAxSZWRpdmlzIElu
+Yy4xFDASBgNVBAMMC3JlZGl2aXMuY29tMSAwHgYJKoZIhvcNAQkBFhFhZG1pbkBy
+ZWRpdmlzLmNvbTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBAOX5iMGM
+KyqMo778T7e0OW+hS52xI9w7oztsOIrCX8Sjmd16efuOSx+yeBRMnAi2vTn5Xdyz
+XQ77ZMIPYU6AbDuXZfQ57fbBDw/w3CLuZffetAHQQasQ2Mf7XXtiw4OIh7oWDFRH
+v+We1iL47AsiSh7lAwpHDFOtOQoZ+nDX9sQOevp/rmtNk8NrjXOd5cjccb4H8T1V
+445JA8YFODjx20iiFeZQiDp8Ms8rdT5PUTHAYTa5u+ytDrV9t1SwyLNPh9oxGaZw
+8TR8b8xGCYs0g2khgodHO7WjHkYWdlFSe9DSXvjksjtW/Cv6sZ2EygrARpeqPeGL
+3lAxnyg9Xa8MDYH6iX+U1tyWRaP5fDzzUnFGSqjxUWeW3pHFP5BF1gsX2Lho6Kip
+Wlj6xxSZX1WvM6aEhI2gCrjkr/wooZAQTtS7kxqx8/jR5zhFDUsB8jn4Wqe56JZL
+kn5+OFEeHXx5c08U4Cfz6N7dJE/O+CCZeeo92RshiEbwD24Ap/RAHPU21hS71SI2
+vSw4Ir0O5NkwILSWJXbvApU2Yrr8QxrCxDgsgy3cdcIeEz8J0WU93C8nyuSXAZ9k
+yUg57cVYGn1iGyZXpdjg7mDV3GRH1IZc8sjcANrZWPa+JgGDu6jtwet7L9+Gdfff
+pxWTTSwstm+INrlptUA/F1Xvu1FsZ4orNMENAgMBAAEwDQYJKoZIhvcNAQELBQAD
+ggIBAGV1SYjD/HoTts2d9rMUBoT5mvRxGLcYEXali4It6tqZwt+2o43Vzk54wMBk
+82Z7uBVuQn9B8LeYpot1W9t8g6khCHPmQvaulavHdkX/pv7s4vY347apBVDpCLXa
+GCvE4IRqeEUMiC+T7qomOroqKQq0teYExahkHzRJyLMndjEuoG+kP94C8zXohbfn
+TncWahlTYbG3WdCfRkZ/AabFuL/qzvwgfPEcm3LeqNZ5Ci1aaOTeKcugaz7nndPs
+1ZUujMZLMqImvgJcpNvbmpxskqH6iiUU8DdU0YMrGbu9qF0ePbrb+5yyuPYkvawF
+K0QuJWZN8Sez/ZoLpi2CcPaRcl4GQ3/7o/jXD3pYQxAWceBtXA9iUtQMneNkdLC3
+kUSQoe1D5D4hux3QzyXIDYa8W39SZtECUZ9jYqUxJzF1Gt6BKgMH04a21Ia2SeXY
+gWaqIzpeBhSf3XVKqgPpcG9mCcd0+uGeHMT0dJr1Rc8/M9ue1c6Q29cJ/Fbq5anz
+o774GFYuW60yYcGzuOt952zKHrLpVRuofVl/B3Y63nNeBumItmnuBgnRwjskv6oR
+5uMLAMsB7nVQxJEue83P9Rfy5AY2bGA7KZ5vqXNF0SzIwTRj6ezHFEiQD5DqTJZy
+DDWtKrJv5EXHeidlEwIld72PbT07Fb/zlMPn7LGfHVxfZIaf
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://redivis.com/auth/saml/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://redivis.com/auth/saml/login" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Redivis</ServiceName>
+ <ServiceDescription xml:lang="en">Redivis is a web-based data hosting and querying platform.</ServiceDescription>
+ <RequestedAttribute FriendlyName="cn" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Redivis Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Redivis Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://redivis.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Ian Mathews</GivenName>
+ <EmailAddress>ian@redivis.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Ian Mathews</GivenName>
+ <EmailAddress>ian@redivis.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Sean McIntyre</GivenName>
+ <EmailAddress>sean@redivis.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Thomas Jefferson University -->
+<EntityDescriptor entityID="https://idp.jefferson.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">jefferson.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Thomas Jefferson University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://idp.jefferson.edu/idp/shibboleth</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.eastfalls.jefferson.edu/about/privacypolicy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="93" width="297" xml:lang="en">https://creative.jefferson.edu/wp-content/themes/Jefftastic/images/sitemap-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 997680573503880773392555754792717032313880928954, expires on Mon Apr 6 13:57:44 2037 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 12977180664360963734, expires on Mon Nov 13 18:42:49 2028 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.jefferson.edu/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.jefferson.edu/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.jefferson.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.jefferson.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.jefferson.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.jefferson.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Thomas Jefferson University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Thomas Jefferson University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.jefferson.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shelby Wyatt</GivenName>
+ <EmailAddress>Shelby.Wyatt@jefferson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Andrew Zebrowski</GivenName>
+ <EmailAddress>Andrew.Zebrowski@jefferson.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Krishna Tangirala</GivenName>
+ <EmailAddress>Krishna.Tangirala@jefferson.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Le Moyne College -->
+<EntityDescriptor entityID="https://lmc-pgsso-p01.lemoyne.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://lmc-pgsso-p01.lemoyne.edu.lemoyne.edu/sso/error.aspx" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">lemoyne.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Le Moyne College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Le Moyne College, founded in 1946, is a diverse learning community that strives for academic excellence in the Catholic and Jesuit tradition.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.lemoyne.edu/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.lemoyne.edu/privacy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="176" width="600" xml:lang="en">https://www.lemoyne.edu/Portals/0/toolbox/logos/LMCgmg_flush_2c_web.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 16296278027027382931, expires on Mon Sep 21 18:46:44 2026 GMT -->
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lmc-pgsso-p01.lemoyne.edu/_layouts/pg/signout.aspx"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lmc-pgsso-p01.lemoyne.edu/sso/go.ashx"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://lmc-pgsso-p01.lemoyne.edu/sso/go.ashx"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Le Moyne College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Le Moyne College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.lemoyne.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Shelli Walters</GivenName>
+ <EmailAddress>waltersr@lemoyne.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Mihajlo Jerkovic</GivenName>
+ <EmailAddress>jerkovm@lemoyne.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mihajlo Jerkovic</GivenName>
+ <EmailAddress>jerkovm@lemoyne.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Western Nebraska Community College -->
+<EntityDescriptor entityID="https://scbhvidp1.wncc.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">wncc.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Western Nebraska Community College</mdui:DisplayName>
+ <mdui:Description xml:lang="en">WNCC Identity Service</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.wncc.edu/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="52" width="324" xml:lang="en">https://scbhvidp1.wncc.edu/idp/images/wncc.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 848059094430695259553772462946247093186336099426, expires on Tue Jun 20 16:04:28 2034 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://scbhvidp1.wncc.edu:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://scbhvidp1.wncc.edu:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://scbhvidp1.wncc.edu/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://scbhvidp1.wncc.edu/idp/profile/SAML2/POST/SLO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://scbhvidp1.wncc.edu/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://scbhvidp1.wncc.edu/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://scbhvidp1.wncc.edu/idp/profile/SAML2/Redirect/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Western Nebraska Community College</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Western Nebraska Community College</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.wncc.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Joe Deer</GivenName>
+ <EmailAddress>deerj234@wncc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Loren Moench</GivenName>
+ <EmailAddress>moenchl1@wncc.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Mark Davis</GivenName>
+ <EmailAddress>davism29@wncc.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- O'Reilly Media Inc. -->
+<EntityDescriptor entityID="https://api.oreilly.com/samlsp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://api.oreilly.com/shib/sp/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">O'Reilly Learning</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Use of this SP requires an Enterprise or Academic subscription with O'Reilly Media. Please visit https://www.oreilly.com/ for details.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.oreilly.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.oreilly.com/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="90" xml:lang="en">https://cdn.oreillystatic.com/emailsignature/oreilly_email_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 184374811675836795813650459611617998154692264858, expires on Sat Aug 10 15:39:12 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://api.oreilly.com/shib/sp/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://api.oreilly.com/shib/sp/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://api.oreilly.com/shib/sp/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://api.oreilly.com/shib/sp/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://api.oreilly.com/shib/sp/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://api.oreilly.com/shib/sp/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://api.oreilly.com/shib/sp/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">O'Reilly Learning</ServiceName>
+ <ServiceDescription xml:lang="en">Use of this SP requires an Enterprise or Academic subscription with O'Reilly Media. Please visit https://www.oreilly.com/ for details.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">O'Reilly Media Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">O'Reilly Media Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.oreilly.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jesse Banning</GivenName>
+ <EmailAddress>platform-integration@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Platform Integration Services</GivenName>
+ <EmailAddress>platform-integration@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Matt Kirk</GivenName>
+ <EmailAddress>security-feedback@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Customer Care</GivenName>
+ <EmailAddress>customercare@oreilly.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://api.oreilly.review/samlsp">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <DiscoveryResponse xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Binding="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol" Location="https://api.oreilly.review/shib/sp/Login" index="1"/>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">QA NON PRODUCTION SP for O'Reilly Media</mdui:DisplayName>
+ <mdui:Description xml:lang="en">O'Reilly Media SP for QA, testing, and other non-production activities</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.oreilly.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.oreilly.com/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="90" xml:lang="en">https://cdn.oreillystatic.com/emailsignature/oreilly_email_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 161343542497322260778187930818749819590513215556, expires on Sat Aug 10 15:39:03 2024 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://api.oreilly.review/shib/sp/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://api.oreilly.review/shib/sp/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://api.oreilly.review/shib/sp/SLO/SOAP"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://api.oreilly.review/shib/sp/SAML2/POST" index="1"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://api.oreilly.review/shib/sp/SAML2/POST-SimpleSign" index="2"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://api.oreilly.review/shib/sp/SAML2/Artifact" index="3"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://api.oreilly.review/shib/sp/SAML2/ECP" index="4"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">QA NON PRODUCTION SP for O'Reilly Media</ServiceName>
+ <ServiceDescription xml:lang="en">O'Reilly Media SP for QA, testing, and other non-production activities</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">O'Reilly Media Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">O'Reilly Media Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.oreilly.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jesse Banning</GivenName>
+ <EmailAddress>platform-integration@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Platform Integration Sercices</GivenName>
+ <EmailAddress>platform-integration@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Matt Kirk</GivenName>
+ <EmailAddress>security-feedback@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>O'Reilly Customer Care</GivenName>
+ <EmailAddress>customercare@oreilly.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://auth0.oreilly.com/cern-switzerland">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">O'Reilly Online Learning</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Use of this SP requires an Enterprise or Academic subscription to O'Reilly Online Learning. Please visit https://www.oreilly.com/ for details.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.oreilly.com/online-learning/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.oreilly.com/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="90" xml:lang="en">https://cdn.oreillystatic.com/emailsignature/oreilly_email_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1690942378109942522077, expires on Fri Jan 11 20:48:32 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth0.oreilly.com/logout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth0.oreilly.com/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth0.oreilly.com/login/callback?connection=cern-switzerland" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">O'Reilly Online Learning</ServiceName>
+ <ServiceDescription xml:lang="en">Use of this SP requires an Enterprise or Academic subscription to O'Reilly Online Learning. Please visit https://www.oreilly.com/ for details.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">O'Reilly Media Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">O'Reilly Media Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.oreilly.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jesse Banning</GivenName>
+ <EmailAddress>jbanning+saml@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Platform Integration Team</GivenName>
+ <EmailAddress>platformintegration@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Matt Kirk</GivenName>
+ <EmailAddress>security-feedback@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>O'Reilly Customer Care</GivenName>
+ <EmailAddress>customercare@oreilly.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://auth0.oreilly.com/hes-so">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">O'Reilly Online Learning</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Use of this SP requires an Enterprise or Academic subscription to O'Reilly Online Learning. Please visit https://www.oreilly.com/ for details.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.oreilly.com/online-learning/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.oreilly.com/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="90" xml:lang="en">https://cdn.oreillystatic.com/emailsignature/oreilly_email_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1690942378109942522077, expires on Fri Jan 11 20:48:32 2030 GMT -->
+ <ds:X509Certificate>
+MIIC7DCCAdSgAwIBAgIJW6qKHeTxYmDdMA0GCSqGSIb3DQEBBQUAMB0xGzAZBgNV
+BAMTEnNhZmFyaWp2LmF1dGgwLmNvbTAeFw0xNjA1MDQxOTQ4MzJaFw0zMDAxMTEy
+MDQ4MzJaMB0xGzAZBgNVBAMTEnNhZmFyaWp2LmF1dGgwLmNvbTCCASIwDQYJKoZI
+hvcNAQEBBQADggEPADCCAQoCggEBANSGTNjIF2OaIuJujnAj/NL1sCcNdU60zLA1
+W9vm1anixEuOprDBOwH3KAiW3i6XecmnVhLVBF5oGs8S0bAz7QM19qsCrs87la+F
+ztJIG8LgZpDnWw/4m90iwTwt4Rk7fm1vmrbbdFLxTJnV8aMF0uRtxAJs/8762ue6
+S9BkI29/mYujF3n4AvTOEOyXGo4S/POeS+8L/7G3PUkY6bmL6j/7EUHX0MX4D3oK
+KEDjBkhe2UkPUTIe5610RxrbyztsclTNmXFDmBJDfJv2cVnoy/sCuAr3RRvsmQ3N
+IjZhNSWBZehYG+jU4cfHAe46IAZq5DKZqTP2O2DmkPFNuXXqSo8CAwEAAaMvMC0w
+DAYDVR0TBAUwAwEB/zAdBgNVHQ4EFgQUWP6TlXdOJAHt1NTXZi4t+yrpIlwwDQYJ
+KoZIhvcNAQEFBQADggEBABEfFZcmARwTa9Rn+DZpnXlv3xdKxzGzuyeiQ0w6FVdz
+Imu0b2l3s2xsDjPQBGDRL3htvbdnxO0eEtNJuJEj5nMEv2KugBxBBS2qQdWAcmOo
+vOMNNh+BWXByKJEC+KeqXWRknzE7dABvK5QiZxCQFzDc8reJcTkGCTezpUqwfPPu
+RcvL6e/wQxtN2Ac6JWkeJ0NN9en33U2gnyL4DgwMCFSsqszOMAK9JWji3u11yjg7
+kcFn0hmiS14imo9u//BrNcyE+YngLKEgixiGuLGV5xrMBdHUucElzifWCLYKCgUt
+xuvjUFEYjJuhY/HwYbmCghKebqIusOEkfaLO0HZmwpI=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth0.oreilly.com/logout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth0.oreilly.com/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth0.oreilly.com/login/callback?connection=hes-so" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">O'Reilly Online Learning</ServiceName>
+ <ServiceDescription xml:lang="en">Use of this SP requires an Enterprise or Academic subscription to O'Reilly Online Learning. Please visit https://www.oreilly.com/ for details.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">O'Reilly Media Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">O'Reilly Media Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.oreilly.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jesse Banning</GivenName>
+ <EmailAddress>jbanning+saml@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Platform Integration Team</GivenName>
+ <EmailAddress>platformintegration@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Matt Kirk</GivenName>
+ <EmailAddress>security-feedback@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>O'Reilly Customer Care</GivenName>
+ <EmailAddress>customercare@oreilly.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://auth0.oreilly.com/SWITCH">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">O'Reilly Online Learning</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Use of this SP requires an Enterprise or Academic subscription to O'Reilly Online Learning. Please visit https://www.oreilly.com/ for details.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.oreilly.com/online-learning/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.oreilly.com/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="90" xml:lang="en">https://cdn.oreillystatic.com/emailsignature/oreilly_email_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1690942378109942522077, expires on Fri Jan 11 20:48:32 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth0.oreilly.com/logout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth0.oreilly.com/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth0.oreilly.com/login/callback?connection=SWITCH" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">O'Reilly Online Learning</ServiceName>
+ <ServiceDescription xml:lang="en">Use of this SP requires an Enterprise or Academic subscription to O'Reilly Online Learning. Please visit https://www.oreilly.com/ for details.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">O'Reilly Media Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">O'Reilly Media Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.oreilly.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jesse Banning</GivenName>
+ <EmailAddress>jbanning+saml@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Platform Integration Services</GivenName>
+ <EmailAddress>platformintegration@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Matt Kirk</GivenName>
+ <EmailAddress>security-feedback@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>O'Reilly Customer Care</GivenName>
+ <EmailAddress>customercare@oreilly.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://auth0.oreilly.com/technische-universitat-munchen">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">O'Reilly Online Learning</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Use of this SP requires an Enterprise or Academic subscription to O'Reilly Online Learning. Please visit https://www.oreilly.com/ for details.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.oreilly.com/online-learning/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.oreilly.com/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="90" xml:lang="en">https://cdn.oreillystatic.com/emailsignature/oreilly_email_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1690942378109942522077, expires on Fri Jan 11 20:48:32 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth0.oreilly.com/logout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth0.oreilly.com/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth0.oreilly.com/login/callback?connection=technische-universitat-munchen" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">O'Reilly Online Learning</ServiceName>
+ <ServiceDescription xml:lang="en">Use of this SP requires an Enterprise or Academic subscription to O'Reilly Online Learning. Please visit https://www.oreilly.com/ for details.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">O'Reilly Media Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">O'Reilly Media Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.oreilly.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jesse Banning</GivenName>
+ <EmailAddress>jbanning+saml@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Platform Integration Team</GivenName>
+ <EmailAddress>platformintegration@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Matt Kirk</GivenName>
+ <EmailAddress>security-feedback@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>O'Reilly Customer Care</GivenName>
+ <EmailAddress>customercare@oreilly.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://auth0.oreilly.com/technische-universitat-wien">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">O'Reilly Online Learning</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Use of this SP requires an Enterprise or Academic subscription to O'Reilly Online Learning. Please visit https://www.oreilly.com/ for details.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.oreilly.com/online-learning/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.oreilly.com/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="40" width="90" xml:lang="en">https://cdn.oreillystatic.com/emailsignature/oreilly_email_logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1690942378109942522077, expires on Fri Jan 11 20:48:32 2030 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth0.oreilly.com/logout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth0.oreilly.com/logout"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth0.oreilly.com/login/callback?connection=technische-universitat-wien" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">O'Reilly Online Learning</ServiceName>
+ <ServiceDescription xml:lang="en">Use of this SP requires an Enterprise or Academic subscription to O'Reilly Online Learning. Please visit https://www.oreilly.com/ for details.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">O'Reilly Media Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">O'Reilly Media Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.oreilly.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Jesse Banning</GivenName>
+ <EmailAddress>jbanning+saml@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Platform Integration Team</GivenName>
+ <EmailAddress>platformintegration@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Matt Kirk</GivenName>
+ <EmailAddress>security-feedback@oreilly.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>O'Reilly Customer Care</GivenName>
+ <EmailAddress>customercare@oreilly.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Carilion Clinic -->
+<EntityDescriptor entityID="http://fs.carilionclinic.org/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:mace:shibboleth:1.0 urn:oasis:names:tc:SAML:1.1:protocol urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">carilionclinic.org</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Carilion Clinic</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Carilion Clinic</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.carilionclinic.org</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.carilionclinic.org/privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="235" width="700" xml:lang="en">https://www.carilionclinic.org/carilion_logo_incommon.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 26785167220322603627982550910940808954, expires on Fri Nov 11 20:13:48 2022 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://fs.carilionclinic.org/adfs/ls" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fs.carilionclinic.org/adfs/ls"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fs.carilionclinic.org/adfs/ls"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fs.carilionclinic.org/adfs/ls"/>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://fs.carilionclinic.org/adfs/ls"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Carilion Clinic</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Carilion Clinic</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://carilionclinic.org/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Rob Perry</GivenName>
+ <EmailAddress>rmperry@carilionclinic.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Technology Services</GivenName>
+ <EmailAddress>servicecenterstg@carilionclinic.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Rob Perry</GivenName>
+ <EmailAddress>rmperry@carilionclinic.org</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="administrative">
+ <GivenName>Mattie Tenzer</GivenName>
+ <EmailAddress>mmtenzer@carilionclinic.org</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- IdeaScale, a California corporation -->
+<EntityDescriptor entityID="https://ecampusontario.ideascale.com">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">eCampusOntario Shared Services Idea Portal</mdui:DisplayName>
+ <mdui:Description xml:lang="en">eCampusOntario offers our membership opportunities to share and pilot educational technology tools and services.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://ecampusontario.ideascale.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://support.ideascale.com/en/articles/682918-ideascale-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="32" width="32" xml:lang="en">https://ideascale.com/images/favicon.ico</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1343858246, expires on Fri Oct 9 14:12:19 2026 GMT -->
+ <ds:X509Certificate>
+MIIDeTCCAmGgAwIBAgIEUBmmRjANBgkqhkiG9w0BAQsFADBtMQswCQYDVQQGEwJVUzELMAkGA1UE
+CBMCQ0ExETAPBgNVBAcTCEJlcmtlbGV5MRIwEAYDVQQKEwlJZGVhU2NhbGUxEjAQBgNVBAsTCUlk
+ZWFTY2FsZTEWMBQGA1UEAxMNaWRlYXNjYWxlLmNvbTAeFw0xNjEwMTExNDEyMTlaFw0yNjEwMDkx
+NDEyMTlaMG0xCzAJBgNVBAYTAlVTMQswCQYDVQQIEwJDQTERMA8GA1UEBxMIQmVya2VsZXkxEjAQ
+BgNVBAoTCUlkZWFTY2FsZTESMBAGA1UECxMJSWRlYVNjYWxlMRYwFAYDVQQDEw1pZGVhc2NhbGUu
+Y29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAgHvMJWzUZm7ZpNR8wooDWiqnVWEI
+MCk0fSMalUa1bKEwSzUrKPMOaG7az2WuHTrpZcGKw+3GHBdOQXvGE8c/VLXDvNDFXXWFRzU/8TsB
+8lQt0v04lzBi6ZrMrqs2beFUxx6hIoNCHJ2Fee7MbaeOK7dQOtnR5nV8qLYSd4mCIV1QIIFOkQmr
+Dc6OxoTNH5SfXEBQZ2CmbDxk0+IZ6nyzSHc7oGgEZiLfoQv8qDORzUx8gnGXPKUDULghwZNAZzqc
+9plAgiUrzaxDCn+9xrVJ4wUHPJLBk97WbqqL16qNCBlIL1XaVxXTHJjA2daw0giAA/WV+wpQJpCA
+g3RswTnJBQIDAQABoyEwHzAdBgNVHQ4EFgQUzelOSobff7U1pbgxdTDUgFTGgukwDQYJKoZIhvcN
+AQELBQADggEBAEn7aRJMQyeOpAwMKU5/2R9psKizV8i5g25Hw1ViEOZdtfPINEDYeSwBcqQVoRBF
+1bGZ0HcvdsBPzNZlNK3YdTsC0o47WLPDWtCxv9WDxm49iD2qErVFlJ5PZSRMsqAKdmvBUsfM7bQ1
+gQfiXDyYIFOlEW0VCsMUJWtRDYlf2zl8h6MVN8jpl76P1oh06GdyfNZ0Et3wjdRFDPy+HXzstCHD
+OWxsfkSfdjXAG1I5bcUdU38fh1HuGLp0PBPHLTiEnoVLF79/9A1yquAqdoOcVodxsJlV6cUQ2NWD
+x6mmhN2W57PqYgbktFsJswWAPa6D02A/s8JZTkQTSIZ+P3x8Kic=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ecampusontario.ideascale.com/a/saml/slo/alias/default"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ecampusontario.ideascale.com/a/saml/sso/alias/default" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">eCampusOntario Shared Services Idea Portal</ServiceName>
+ <ServiceDescription xml:lang="en">eCampusOntario offers our membership opportunities to share and pilot educational technology tools and services.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">IdeaScale, a California corporation</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">IdeaScale, a California corporation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://ideascale.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Erik Siebert</GivenName>
+ <EmailAddress>erik.siebert@ideascale.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Christoph Schebel</GivenName>
+ <EmailAddress>christoph.schebel@ideascale.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Eric Mills</GivenName>
+ <EmailAddress>eric.mills@ideascale.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>System Admin</GivenName>
+ <EmailAddress>sysadmin@ideascale.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://oxford.ideascaleapp.eu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Oxford Ideas platform</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Oxford ideas platform for ideas and funding calls including IT Innovation Challenges. For the University of Oxford.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://oxford.ideascaleapp.eu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://support.ideascale.com/en/articles/682918-ideascale-privacy-policy</mdui:PrivacyStatementURL>
+ <mdui:Logo height="32" width="32" xml:lang="en">https://ideascaleapp.eu/images/favicon.ico</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1343858246, expires on Fri Oct 9 14:12:19 2026 GMT -->
+ <ds:X509Certificate>
+MIIDeTCCAmGgAwIBAgIEUBmmRjANBgkqhkiG9w0BAQsFADBtMQswCQYDVQQGEwJVUzELMAkGA1UE CBMCQ0ExETAPBgNVBAcTCEJlcmtlbGV5MRIwEAYDVQQKEwlJZGVhU2NhbGUxEjAQBgNVBAsTCUlk ZWFTY2FsZTEWMBQGA1UEAxMNaWRlYXNjYWxlLmNvbTAeFw0xNjEwMTExNDEyMTlaFw0yNjEwMDkx NDEyMTlaMG0xCzAJBgNVBAYTAlVTMQswCQYDVQQIEwJDQTERMA8GA1UEBxMIQmVya2VsZXkxEjAQ BgNVBAoTCUlkZWFTY2FsZTESMBAGA1UECxMJSWRlYVNjYWxlMRYwFAYDVQQDEw1pZGVhc2NhbGUu Y29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAgHvMJWzUZm7ZpNR8wooDWiqnVWEI MCk0fSMalUa1bKEwSzUrKPMOaG7az2WuHTrpZcGKw+3GHBdOQXvGE8c/VLXDvNDFXXWFRzU/8TsB 8lQt0v04lzBi6ZrMrqs2beFUxx6hIoNCHJ2Fee7MbaeOK7dQOtnR5nV8qLYSd4mCIV1QIIFOkQmr Dc6OxoTNH5SfXEBQZ2CmbDxk0+IZ6nyzSHc7oGgEZiLfoQv8qDORzUx8gnGXPKUDULghwZNAZzqc 9plAgiUrzaxDCn+9xrVJ4wUHPJLBk97WbqqL16qNCBlIL1XaVxXTHJjA2daw0giAA/WV+wpQJpCA g3RswTnJBQIDAQABoyEwHzAdBgNVHQ4EFgQUzelOSobff7U1pbgxdTDUgFTGgukwDQYJKoZIhvcN AQELBQADggEBAEn7aRJMQyeOpAwMKU5/2R9psKizV8i5g25Hw1ViEOZdtfPINEDYeSwBcqQVoRBF 1bGZ0HcvdsBPzNZlNK3YdTsC0o47WLPDWtCxv9WDxm49iD2qErVFlJ5PZSRMsqAKdmvBUsfM7bQ1 gQfiXDyYIFOlEW0VCsMUJWtRDYlf2zl8h6MVN8jpl76P1oh06GdyfNZ0Et3wjdRFDPy+HXzstCHD OWxsfkSfdjXAG1I5bcUdU38fh1HuGLp0PBPHLTiEnoVLF79/9A1yquAqdoOcVodxsJlV6cUQ2NWD x6mmhN2W57PqYgbktFsJswWAPa6D02A/s8JZTkQTSIZ+P3x8Kic=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oxford.ideascaleapp.eu/a/saml/slo/alias/default"/>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://oxford.ideascaleapp.eu/a/saml/sso/alias/default" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">Oxford Ideas platform</ServiceName>
+ <ServiceDescription xml:lang="en">Oxford ideas platform for ideas and funding calls including IT Innovation Challenges. For the University of Oxford.</ServiceDescription>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">IdeaScale, a California corporation</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">IdeaScale, a California corporation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://ideascale.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Erik Siebert</GivenName>
+ <EmailAddress>erik.siebert@ideascale.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Christoph Schebel</GivenName>
+ <EmailAddress>sysadmin@ideascale.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Eric Mills</GivenName>
+ <EmailAddress>eric.mills@ideascale.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Colorado Mesa University -->
+<EntityDescriptor entityID="https://incommon.coloradomesa.edu">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">coloradomesa.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Colorado Mesa University</mdui:DisplayName>
+ <mdui:InformationURL xml:lang="en">https://www.coloradomesa.edu</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.coloradomesa.edu/information-technology/policies.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="46" width="158" xml:lang="en">https://www.coloradomesa.edu/_files/images/mavzone/form-brand.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17932378526372999727, expires on Sun Sep 2 21:06:11 2029 GMT -->
+ <ds:X509Certificate>
+MIIEGTCCAwGgAwIBAgIJAPjcm0KKTjIvMA0GCSqGSIb3DQEBCwUAMIGiMQswCQYDVQQGEwJVUzELMAkGA1UECAwCQ08xFzAVBgNVBAcMDkdyYW5kIEp1bmN0aW9uMQwwCgYDVQQKDANDTVUxETAPBgNVBAsMCEluQ29tbW9uMSIwIAYDVQQDDBlpbmNvbW1vbi5jb2xvcmFkb21lc2EuZWR1MSgwJgYJKoZIhvcNAQkBFhloZWxwZGVza0Bjb2xvcmFkb21lc2EuZWR1MB4XDTE5MDkwMzIxMDYxMVoXDTI5MDkwMjIxMDYxMVowgaIxCzAJBgNVBAYTAlVTMQswCQYDVQQIDAJDTzEXMBUGA1UEBwwOR3JhbmQgSnVuY3Rpb24xDDAKBgNVBAoMA0NNVTERMA8GA1UECwwISW5Db21tb24xIjAgBgNVBAMMGWluY29tbW9uLmNvbG9yYWRvbWVzYS5lZHUxKDAmBgkqhkiG9w0BCQEWGWhlbHBkZXNrQGNvbG9yYWRvbWVzYS5lZHUwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCtfm8sKrtaFaj1CMDkJ+isuIzii4p2huW84GUBsmrm31e/f0zs8MORQ4NjEwtO7b6zv3dzNXmF+UdQA4okpCwQWDV8du2NsdNHMgiLzg6YPCW4tRaHnM/xu0i8mRdfYWIzBEai+tr81mjv6nKh/ZatInQ2v9NXgWooFuv/jesk8SGnc4NRcLE/hPhTBdgqHsvo9imWmFy1l7Jx84VA/4vmZBGQj+7imSHBUswbzldJmCM1o26zQ1WvoQwfATtOU9S+/NCfzLn3LOklhvTUNK2Ad5EgJqCZVOzUT5zFqQZQ4NzNKVZt4EpJYIvkRujf1EFz5Q8t87ay6mC/Lb3zDdFJAgMBAAGjUDBOMB0GA1UdDgQWBBTqsTuDLIntrGU4Izpq08BM8BRX/DAfBgNVHSMEGDAWgBTqsTuDLIntrGU4Izpq08BM8BRX/DAMBgNVHRMEBTADAQH/MA0GCSqGSIb3DQEBCwUAA4IBAQAqFJneZ9Fl2BKurt3sLzXRLOAB3Q1YjXuHC/PZR//Ogk07+TfSlQ7tyJSGx1uaj9QFR427L+LLl3q1GwQ53fcQcE9HQo7TFEYMjy0+0cnrmDfJK3Mh2EEWU80fwyROhX1S0T0YCFuIRGghjYI5l5+1cM8PxrJVA3DRxqf+se7R/vV4BClAbMTFbKcyAUxCAyxVAypM+BPa6NtB1twQFtwjJ+T2RwlPvM8bbiYTHQi7429D1TiYOZraGfVZ0pHcFDfx8Ji/oczUuugMaFG57NjswVnz2p25fzsoHGsKUy5BHVMARNerygHneCoFT+vBq1Uc2GxDzNkBHOPHH4dhPjp5
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://incommon.coloradomesa.edu/simplesaml/saml2/idp/SSOService.php"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://incommon.coloradomesa.edu/simplesaml/saml2/idp/SSOService.php"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Colorado Mesa University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Colorado Mesa University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.coloradomesa.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Michael Kansgen</GivenName>
+ <EmailAddress>mkansgen@coloradomesa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Michael Meens</GivenName>
+ <EmailAddress>mmeens@colorardomesa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Michael Kansgen</GivenName>
+ <EmailAddress>mkansgen@coloradomesa.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>SSO Support</GivenName>
+ <EmailAddress>sso-support@coloradomesa.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Rush University Medical Center -->
+<EntityDescriptor entityID="https://shibboleth.rush.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">rush.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Rush University Medical Center</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.rush.edu/website-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="45" width="194" xml:lang="en">https://www.rush.edu/sites/all/themes/rush/assets/images/rush-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 122838612532028001446773324138639522761, expires on Wed Sep 16 19:45:46 2020 GMT -->
+ <ds:X509Certificate>
+MIIDGzCCAgOgAwIBAgIQXGnbMT/u8bFAbt3lLq/7yTANBgkqhkiG9w0BAQsFADAV MRMwEQYDVQQDDApTaGlBcHBQcm9kMB4XDTE5MDkxNjE5MjU0NloXDTIwMDkxNjE5 NDU0NlowFTETMBEGA1UEAwwKU2hpQXBwUHJvZDCCASIwDQYJKoZIhvcNAQEBBQAD ggEPADCCAQoCggEBAJ7+xoYgwJScQcL+q/hfZoeFRMhmKLcR2WyFJtB+Op4+EH15 udTJ1Zr6TygOlfweXczqBq0rcCTD1NCQJgZDKWkulen9o9RxMR8GM0YdoU3fnaGN tqleJsnrew0At7jYBN8WVJyI20SzvqnTBgUQ6KumD+o0ew8OYXMw1Nw7+ivU9jiO GoSyzh/9fqZGtdKlKVzCUwfewl8VeYSELH03+LNJeBLE+hertN5bBpXImdh1vpMV Tr2J8XJEUxRmSn3oV2EyS+smWUOncMlpBxydohBVJkZn0/nCLMYP0uZNfBD2yfZV ihIVwZP0oDlxtxb8Rsa3NTGa1c2KlA1/IepKQK8CAwEAAaNnMGUwDgYDVR0PAQH/ BAQDAgWgMB0GA1UdJQQWMBQGCCsGAQUFBwMCBggrBgEFBQcDATAVBgNVHREEDjAM ggpTaGlBcHBQcm9kMB0GA1UdDgQWBBTjf+BUxZczgrK5zHckZocJK1Tz/jANBgkq hkiG9w0BAQsFAAOCAQEAcnpeLQHcO31cNr60bhhQQ+ZDmT2Cx1VzNS6t4/+HodH7 tSGDcaHA7mUl69kglBDKdg570laWJRFyBoC1ZFYuLhcivLBqmqjQYT0sr6bv39pv yFMg3P95sBW+64jQ4IfOnhudy/2wruUIMG2eGkvCpNpr7nsRnCdz8fnabBzRb9t2 6xcGDGyF7YGvmhZwYtLLKl5Uu0Fw9fVs2Cha2Zwn2SGa6gbFR0ra7+lU97L5XX2p 82mSQMhqhOH0t/MRbqIZFnnQlyZztR+Tk/eTdPf9WiwHf1/6ARehyPf0pEz4qn3p /qjQhI3pLNM0jm/mj5NTuGmQXG+vT2dh0xGg3CMxog==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://shibboleth.rush.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.rush.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Rush University Medical Center</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Rush University Medical Center</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.rush.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Karl Oder</GivenName>
+ <EmailAddress>help@rush.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Frank Magana</GivenName>
+ <EmailAddress>help@rush.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>RIchard Rodriquez</GivenName>
+ <EmailAddress>help@rush.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- DiversityEdu -->
+<EntityDescriptor entityID="https://api.diversityedu.com/users/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DiversityEdu</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://diversityedu.com</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="550" xml:lang="en">https://lms2.diversityedu.com/images/logo_big.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 17840601545603067568, expires on Sun Aug 12 17:07:06 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://api.diversityedu.com/users/saml/auth" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DiversityEdu</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DiversityEdu</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DiversityEdu</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://diversityedu.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kate Chovanetz</GivenName>
+ <EmailAddress>kate@diversityedu.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@diversityedu.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kate Chovanetz</GivenName>
+ <EmailAddress>kate@diversityedu.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+<EntityDescriptor entityID="https://api.diversityedu.me/users/saml/metadata">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">DiversityEdu Staging</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://diversityedu.com</mdui:PrivacyStatementURL>
+ <mdui:Logo height="100" width="550" xml:lang="en">https://lms2.diversityedu.com/images/logo_big.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 11083155835872122105, expires on Sun Aug 12 15:49:40 2029 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://api.diversityedu.me/users/saml/auth" index="1"/>
+ <AttributeConsumingService xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" index="1">
+ <ServiceName xml:lang="en">DiversityEdu Staging</ServiceName>
+ <RequestedAttribute FriendlyName="mail" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="sn" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">DiversityEdu</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DiversityEdu</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://diversityedu.com/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Kate Chovanetz</GivenName>
+ <EmailAddress>kate@diversityedu.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Support</GivenName>
+ <EmailAddress>support@diversityedu.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Kate Chovanetz</GivenName>
+ <EmailAddress>kate@diversityedu.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Tarleton State University -->
+<EntityDescriptor entityID="https://sso.tarleton.edu/idp/shibboleth">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">tarleton.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Tarleton State University</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.tarleton.edu/site/privacy.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="50" xml:lang="en">https://sso.tarleton.edu/images/Tarleton-Logo-100x100.jpg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 15018343807329715945, expires on Thu Jan 21 18:56:24 2027 GMT -->
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sso.tarleton.edu/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sso.tarleton.edu/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Tarleton State University</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Tarleton State University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.tarleton.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Joseph Warner</GivenName>
+ <EmailAddress>warner@tarleton.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Nathan Lee</GivenName>
+ <EmailAddress>leenathan24@tamu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Nathan Lee</GivenName>
+ <EmailAddress>leenathan24@tamu.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="support">
+ <GivenName>Dustin Pittman</GivenName>
+ <EmailAddress>dpittman@tarleton.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Albany Molecular Research, Inc. -->
+<EntityDescriptor entityID="http://fs.albmolecular.com/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">albmolecular.com</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Albany Molecular Research, Inc.</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AMRI IDP Prod</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.amriglobal.com/about-us/contact-us/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.amriglobal.com/about-us/contact-us/</mdui:PrivacyStatementURL>
+ <mdui:Logo height="50" width="50" xml:lang="en">https://www.amriglobal.com/wp-content/themes/amri-2017/img/amri-logo-with-white.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 111837119430955246836873, expires on Thu Sep 30 18:43:27 2021 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fs.albmolecular.com/adfs/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fs.albmolecular.com/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://fs.albmolecular.com/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fs.albmolecular.com/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Albany Molecular Research, Inc.</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Albany Molecular Research, Inc.</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.amriglobal.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Melissa Allard</GivenName>
+ <EmailAddress>melissa.allard@amriglobal.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Joshua Burt</GivenName>
+ <EmailAddress>joshua.burt@amriglobal.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Shaun Robens</GivenName>
+ <EmailAddress>shaun.Robens@amriglobal.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>James Edwards</GivenName>
+ <EmailAddress>james.edwards@amriglobal.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- University of the Incarnate Word -->
+<EntityDescriptor entityID="http://apps.uiw.edu/exk1ke05y2ygUpEeo357">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uiw.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">University of the Incarnate Word</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UIW-SOMA</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.uiw.edu/privacy-policy-and-disclaimer.html</mdui:PrivacyStatementURL>
+ <mdui:Logo height="202" width="544" xml:lang="en">https://www.uiw.edu/assets/images/uiw-logo.png</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 1556299397005, expires on Thu Apr 26 17:23:16 2029 GMT -->
+ <ds:X509Certificate>
+MIIDnjCCAoagAwIBAgIGAWparDeNMA0GCSqGSIb3DQEBCwUAMIGPMQswCQYDVQQGEwJVUzETMBEG A1UECAwKQ2FsaWZvcm5pYTEWMBQGA1UEBwwNU2FuIEZyYW5jaXNjbzENMAsGA1UECgwET2t0YTEU MBIGA1UECwwLU1NPUHJvdmlkZXIxEDAOBgNVBAMMB3Vpdy1lZHUxHDAaBgkqhkiG9w0BCQEWDWlu Zm9Ab2t0YS5jb20wHhcNMTkwNDI2MTcyMjE3WhcNMjkwNDI2MTcyMzE2WjCBjzELMAkGA1UEBhMC VVMxEzARBgNVBAgMCkNhbGlmb3JuaWExFjAUBgNVBAcMDVNhbiBGcmFuY2lzY28xDTALBgNVBAoM BE9rdGExFDASBgNVBAsMC1NTT1Byb3ZpZGVyMRAwDgYDVQQDDAd1aXctZWR1MRwwGgYJKoZIhvcN AQkBFg1pbmZvQG9rdGEuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAhdKafZkE Snvgxomq5VEHeOYeLkvLRZzIWr/TKowfkuEdYngczIQm9HehmanlqJex8tcm5FA1T62qKpZL0EH0 R4lrezbOqL+dB/Pjla7wz+elJ9o6f913whBm5uai/Wr0zL9cI8WtLo3i2C0M4IR+FTBrsycjXm8t eN/NOCT1uEItk4+MwrPxqRJtQcp6jFFXTcl7jmjuz3CCIzg/yCPu79KkoLT5ayjKioJMWZybKd2X R7eNPQ+rnjaskFMIwtv5M4yAaKhoZwOXz6z1rFxS9tYNrEi1xJtKFOnNjtSKVEe9ziyyQ9yUT97w I2VwuwRzDZPpDXOcCzIK9QJwzdeZYQIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQALsUiOV3s4T7LB qhBVW6JntTaNxk6wNKaZwCrSYK9MXjiVqRSEum/nj4Hy55tUbQk/5B4fky26ob1eFbiq5fnQj/G1 /bCVjii85LMSz7SPCBqSc0SGXCv9hYrPAxKiIBl9XD9bu2gC7APxz5L6k0fzbdOXdwVMLZE29dzy JOcTdkDzI8hzMK8ZhTD1l8brOAkc9CluHVoUKARHEM7y6i06J9ePh0qjnwJx5tvlyJhHwT9ut7fx DBZQDC00b7jrTxMkm1voUU5IxrW2iE0w29ugEMdPV/IDQBWWqsyoABkOFUX+fL0ZEYK74m38mxP5 7GdK9vKdevDeP50/dwQ0hesQ
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://apps.uiw.edu/app/uiw_sonabackend_1/exk1ke05y2ygUpEeo357/sso/saml"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://apps.uiw.edu/app/uiw_sonabackend_1/exk1ke05y2ygUpEeo357/sso/saml"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">University of the Incarnate Word</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of the Incarnate Word</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.uiw.edu</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Brian Anderson</GivenName>
+ <EmailAddress>bjanders@uiwtx.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Brian Anderson</GivenName>
+ <EmailAddress>bjanders@uiwtx.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Brian Anderson</GivenName>
+ <EmailAddress>bjanders@uiwtx.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- Concur Technologies, Inc -->
+<EntityDescriptor entityID="https://us.api.concursolutions.com/saml2">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">Concur Travel and Expense</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.concur.com/en-us/processor-privacy-statement</mdui:PrivacyStatementURL>
+ <mdui:Logo height="49" width="165" xml:lang="en">https://www.concur.com/sites/all/modules/custom_concur/concur_responsive_menu/images/sap-concur.svg</mdui:Logo>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 14224650421696529874, expires on Thu Jun 25 20:21:23 2020 GMT -->
+ <ds:X509Certificate>
+MIIGfTCCBGWgAwIBAgIJAMVoHDFvVQXSMA0GCSqGSIb3DQEBCwUAMIGFMQswCQYDVQQGEwJVUzET MBEGA1UECBMKV2FzaGluZ3RvbjERMA8GA1UEBxMIQmVsbGV2dWUxEjAQBgNVBAoTCVNBUCBDb251 cjEWMBQGA1UECxMNQ29yZSBTZXJ2aWNlczEiMCAGA1UEAxMZY29yZS1zYW1sLXByb2QuY29uY3Vy LmNvbTAeFw0xODA2MjYyMDIxMjNaFw0yMDA2MjUyMDIxMjNaMIGFMQswCQYDVQQGEwJVUzETMBEG A1UECBMKV2FzaGluZ3RvbjERMA8GA1UEBxMIQmVsbGV2dWUxEjAQBgNVBAoTCVNBUCBDb251cjEW MBQGA1UECxMNQ29yZSBTZXJ2aWNlczEiMCAGA1UEAxMZY29yZS1zYW1sLXByb2QuY29uY3VyLmNv bTCCAiIwDQYJKoZIhvcNAQEBBQADggIPADCCAgoCggIBALvWJvcbuskNPDLQOk8Df0pGmKAWT2sI 0Ug9HxyWmSoXR5ltHvHZ8nZOeQvMzgXJO2dT70+7SuIg6or3IZG2jCi30tjlolIPB6pdbQtHe+em wjbjTpyJDSlH57NaeebiYpUas9H/3PAdo3K8Jdt4zbwjzbg7vvL0SIDpW428sUsnJgTc75asjreA hZikW0tohnKfRRp6O6CXJgissx3KdNpGD7bu1NKtfmb2NGve7Igt/qZt63ZEEjLn01TgQAM1cZaL jp61fC87k6T8a3qaa2ndSIKeoa7lb5g2WVWZFl2nkLd+e/m5Lr0SCeJ4X0bGeNDnH+MyAT8xKZL2 jSGraNko46ibL36lO0AP8/LfDprmP+0SczIw42sxHSGf8E0qrOHyu/oSodWqMuiLdrFhNlxYRT8W 6BroD56AgmbhQ0Dev159+myxbWm0QM7eyskmpeS25/OccURhbu2sTIGousTXwvjNHPA6hJ+8iTJ6 JWqTOg1BPYk6iHLjYj5/8x8gTVRo1qiFnUl0Wl2BXjmzbWclonjwQ66XaN+0I7OpbZEUjtGRgQCr i/51ekdWaxbib9OpVnvv9Ht9oHk6tMqUHasZv6WLeZJKAB9LngPdfUjwBB5p4eLsbqP27oi6gpp1 2YyW3F0tkf/FOnTjZ4UZFWj2vt4JnDdTQ1nyR1DOxJJdAgMBAAGjge0wgeowHQYDVR0OBBYEFNB9 GvAfl2g8B7bW2piKwaCLZ+8OMIG6BgNVHSMEgbIwga+AFNB9GvAfl2g8B7bW2piKwaCLZ+8OoYGL pIGIMIGFMQswCQYDVQQGEwJVUzETMBEGA1UECBMKV2FzaGluZ3RvbjERMA8GA1UEBxMIQmVsbGV2 dWUxEjAQBgNVBAoTCVNBUCBDb251cjEWMBQGA1UECxMNQ29yZSBTZXJ2aWNlczEiMCAGA1UEAxMZ Y29yZS1zYW1sLXByb2QuY29uY3VyLmNvbYIJAMVoHDFvVQXSMAwGA1UdEwQFMAMBAf8wDQYJKoZI hvcNAQELBQADggIBAEf+NDdxUs18FUbvZ6+3cGXR1OrhnQAAe64tkhY8oWM0JtLf4E1Sl4EI45M1 nz6a8RgsEO8FzDjHjFmhFGIkAXYyg40lpQnE8pE3ICzikI3pos9JU6Vw9o62O6m7Zqb32FnnFTy8 z6oqVcgoyC3CZk0wYmTGiviz8d0VvRtH3XvR57o22bhX2ztyhm4bHMb2ezF0RH9kpiO3PoLu39Ul GlD+9Vkkb3qEQcuVshSn48nR2OO66cYQlT+czN2N2C+u4FIRj+t3PLwe5tUDYm8u4mC7bPTZDP2C AwU7P4lJYsrpzxzvNj1K1i/iICJa3kASKQ93wKBBi64D7CUITpjzQ+k3eVUw4T4QZJajp8DdaHGI of+jPQDedqrrWb3DrtX/7zYyuy+kJHog60AtetT37l8pXocITn0NcH4fWOhivfcyeMPtXqXCbJVW puVzrBpzLp1bkb538hKeMq3ytXkg0gTMg8SDsqkf67dmRoQM9yF8tKmWHZs7fRrCKZxv9KY7AwuV MzqBsJhYVVg0cDspmbZkUoCNrA/V5FgO6osEf1X8IyWN9/7uLI7zKAB2VQMaqIKA8avSUfx0ItOb bpDc7lfXQz305bvWH/Om4utDLJNbyRlffLNSjOA4luvJNmMd/Bg5ughX7DHGbOuF5hOarcRzlhRa GNLnMSb1djwxIN8X
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www-us.api.concursolutions.com/sso/saml2/V1/acs/" index="1"/>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">Concur Technologies, Inc</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Concur Technologies, Inc</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.concur.com</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Concur Core Services</GivenName>
+ <EmailAddress>core-services@groups.sap.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>Concur Core Services</GivenName>
+ <EmailAddress>core-services@groups.sap.com</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Concur Core Services</GivenName>
+ <EmailAddress>core-services@groups.sap.com</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+
+<!-- College of Eastern Idaho -->
+<EntityDescriptor entityID="http://ssologin.cei.edu/adfs/services/trust">
+ <Extensions xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi">
+ <mdrpi:RegistrationInfo registrationAuthority="https://incommon.org"/>
+ <mdattr:EntityAttributes xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
+ <saml:Attribute Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://id.incommon.org/category/registered-by-incommon</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cei.edu</shibmd:Scope>
+ <mdui:UIInfo xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui">
+ <mdui:DisplayName xml:lang="en">College of Eastern Idaho</mdui:DisplayName>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.google.com/url?sa=t&amp;rct=j&amp;q=&amp;esrc=s&amp;source=web&amp;cd=1&amp;cad=rja&amp;uact=8&amp;ved=2ahUKEwjmqfnu8ozlAhUKpJ4KHYOdA3IQFjAAegQIAhAB&amp;url=http%3A%2F%2Fwww.eitc.edu%2Fabout-us&amp;usg=AOvVaw3GAf-3zBjtvJgzyMmmo0i2</mdui:PrivacyStatementURL>
+ <mdui:Logo height="200" width="200" xml:lang="en">https://www.google.com/url?sa=i&amp;rct=j&amp;q=&amp;esrc=s&amp;source=images&amp;cd=&amp;ved=2ahUKEwjS98yE84zlAhWMCjQIHcRZAvEQjRx6BAgBEAQ&amp;url=https%3A%2F%2Fwww.schooljobs.com%2Fcareers%2Fcei&amp;psig=AOvVaw0GD1R2odJdvaCZoe1jWroK&amp;ust=1570632197789870</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <!-- Serial No. 66371591183979341293207023175143584627, expires on Fri Sep 25 21:11:10 2020 GMT -->
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://ssologin.cei.edu/adfs/services/trust/artifactresolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ssologin.cei.edu/adfs/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ssologin.cei.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ssologin.cei.edu/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ssologin.cei.edu/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">College of Eastern Idaho</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">College of Eastern Idaho</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://cei.edu/</OrganizationURL>
+ </Organization>
+ <ContactPerson contactType="administrative">
+ <GivenName>Andrew Melton</GivenName>
+ <EmailAddress>andrew.melton@cei.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson contactType="technical">
+ <GivenName>CEI Help Desk</GivenName>
+ <EmailAddress>help.desk@cei.edu</EmailAddress>
+ </ContactPerson>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Jeremy Fregoso</GivenName>
+ <EmailAddress>jeremy.fregoso@cei.edu</EmailAddress>
+ </ContactPerson>
+</EntityDescriptor>
+</EntitiesDescriptor> \ No newline at end of file
diff --git a/tests/remote_data/metadata.aaitest.xml b/tests/remote_data/metadata.aaitest.xml
new file mode 100644
index 00000000..fdf72637
--- /dev/null
+++ b/tests/remote_data/metadata.aaitest.xml
@@ -0,0 +1,28743 @@
+<?xml version="1.0" encoding="UTF-8" standalone="no"?><EntitiesDescriptor xmlns="urn:oasis:names:tc:SAML:2.0:metadata" xmlns:ds="http://www.w3.org/2000/09/xmldsig#" xmlns:mdrpi="urn:oasis:names:tc:SAML:metadata:rpi" xmlns:mdui="urn:oasis:names:tc:SAML:metadata:ui" xmlns:shibmd="urn:mace:shibboleth:metadata:1.0" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" ID="AAITest-20191127170144" Name="urn:mace:switch.ch:aaitest" validUntil="2019-12-02T16:01:44Z" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd"><ds:Signature>
+<ds:SignedInfo>
+<ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
+<ds:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
+<ds:Reference URI="#AAITest-20191127170144">
+<ds:Transforms>
+<ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
+<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
+</ds:Transforms>
+<ds:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
+<ds:DigestValue>MJ57JDN1u/xN/jeAbeAkNPjXrvekwF41xFFKT0TJGqk=</ds:DigestValue>
+</ds:Reference>
+</ds:SignedInfo>
+<ds:SignatureValue>
+I9WT1niRyobI2qBuG9yMQ4rOdknbCEP7x3TG25jlBKhKFK73j3ftyfNeAfxxhLx5wT9I6Ag4vduK
+wfy7BCKoPakQTmZDqstvOUJT52sneVQLZi1v1ehPiY3FglbSIaltM05Nu+NJ9kgkfw8bbZ2kvkoD
+Vyw2OchUzexyXsSQ76mziMteRzw5LNOgVww1FIrVN8Yge1z8vAGuGo+p4Mrn8kv90YdO+m3CVwFb
+jAvQ30kXdQBisXyGweJo6M/2LUf4WjJlwuCFTJ5fjOsf1xfkYpfPHwAYlLPJsiHK8+wnAI9mBiFC
+bLAq8kInWLvr10vPi9HHBDL4wXmYhehpwxhC1A==
+</ds:SignatureValue>
+<ds:KeyInfo>
+<ds:KeyValue>
+<ds:RSAKeyValue>
+<ds:Modulus>
+tLrTOviM+73OFe+Z7A5B2b7CM3sHCZIXFSthiSxMrXG5ENgXwDGCfqQTM1lIIk86QgJ4YvEB40AO
+p3+HhHTOJC+VoFUMGwTw8V4Zln+krQBmfTuNUZnTuzptXjrjaCs3cu7YOujnPfYC2iJKsIneN2sD
+UrqlH6wh/BFOTWVlRe1bgnXA+FtQJsLvMjmZ2xBFI6cFHPc0l67Tm9wu9js3Hpw3ZRXGK8XHvFHC
+/kGqSGZ+qxRoUFQLMFbjng+hvjubFb1wRMM/3YLiqm/cJlwwm3L9JrtTT39g/1e+rPhZT1hJO/sj
+8ZIdYYsA1ReO4G7R1b2NF8WqjCq+l01PfloxfQ==
+</ds:Modulus>
+<ds:Exponent>AQAB</ds:Exponent>
+</ds:RSAKeyValue>
+</ds:KeyValue>
+<ds:X509Data>
+<ds:X509Certificate>
+MIIEJjCCAw6gAwIBAgISSWITCHaaiMetadataSig2018MA0GCSqGSIb3DQEBCwUAMEYxCzAJBgNV
+BAYTAkNIMQ8wDQYDVQQKEwZTV0lUQ0gxJjAkBgNVBAMTHVNXSVRDSGFhaSBNZXRhZGF0YSBTaWdu
+aW5nIENBMB4XDTE4MDYwMTA3MDAwMFoXDTIwMDcxNTA2NTk1OVowQjELMAkGA1UEBhMCQ0gxDzAN
+BgNVBAoTBlNXSVRDSDEiMCAGA1UEAxMZU1dJVENIYWFpIE1ldGFkYXRhIFNpZ25lcjCCASIwDQYJ
+KoZIhvcNAQEBBQADggEPADCCAQoCggEBALS60zr4jPu9zhXvmewOQdm+wjN7BwmSFxUrYYksTK1x
+uRDYF8Axgn6kEzNZSCJPOkICeGLxAeNADqd/h4R0ziQvlaBVDBsE8PFeGZZ/pK0AZn07jVGZ07s6
+bV4642grN3Lu2Dro5z32AtoiSrCJ3jdrA1K6pR+sIfwRTk1lZUXtW4J1wPhbUCbC7zI5mdsQRSOn
+BRz3NJeu05vcLvY7Nx6cN2UVxivFx7xRwv5BqkhmfqsUaFBUCzBW454Pob47mxW9cETDP92C4qpv
+3CZcMJty/Sa7U09/YP9Xvqz4WU9YSTv7I/GSHWGLANUXjuBu0dW9jRfFqowqvpdNT35aMX0CAwEA
+AaOCARAwggEMMA4GA1UdDwEB/wQEAwIHgDAdBgNVHQ4EFgQU36lyRNM+aRWZwj1ZXKQ3cmLKikYw
+HwYDVR0jBBgwFoAUkAqRwu5oLhVuFP7yzr0RUYoeNd8wTAYDVR0fBEUwQzBBoD+gPYY7aHR0cDov
+L2NybC5hYWkuc3dpdGNoLmNoL1NXSVRDSGFhaU1ldGFkYXRhU2lnbmluZ0NBMjAxNS5jcmwwVgYI
+KwYBBQUHAQEESjBIMEYGCCsGAQUFBzAChjpodHRwOi8vY2EuYWFpLnN3aXRjaC5jaC9TV0lUQ0hh
+YWlNZXRhZGF0YVNpZ25pbmdDQTIwMTUuY3J0MBQGA1UdIAQNMAswCQYHYIV0AQIGBzANBgkqhkiG
+9w0BAQsFAAOCAQEANOvsxf54rvakxb8Q/dVlw/hs3BxcYh84BgzUIGxs1q8EjpIFgI62ODM9QSHy
+Ia+PXYwKcZRFw6imzNGMaDm+v34XAJEn5sn5OYx3kkDAEoLh1ZlTZCFm1NnP1lb/CbEKn2PV4cdw
+pLlvu0MipHRR17Ho5a7gGV9C9ULGIreFH8OjpX3oaE6LonvGdGZk66utOrQgD2nbRGHQRWD9+dVY
+KT3q9Vwen6AUoOVC9Ue1C7gKZ8xYWCbQu000a4csqEmWDD6LS/ZkvTgmYeFcFhZ7DztFTVOZGYbk
+5sADshjZZBSQAJhaglMaI/r/BXSng+/JcVzHq04A5oH9yggFEzjr2g==
+</ds:X509Certificate>
+<ds:X509Certificate>
+MIIESjCCAzKgAwIBAgISSWITCHaaiMetadataSignCA2MA0GCSqGSIb3DQEBCwUAMGsxCzAJBgNV
+BAYTAkNIMUAwPgYDVQQKEzdTd2l0Y2ggLSBUZWxlaW5mb3JtYXRpa2RpZW5zdGUgZnVlciBMZWhy
+ZSB1bmQgRm9yc2NodW5nMRowGAYDVQQDExFTV0lUQ0hhYWkgUm9vdCBDQTAeFw0xNTA3MTUwNzAw
+MDBaFw0yMDA3MTUwNjU5NTlaMEYxCzAJBgNVBAYTAkNIMQ8wDQYDVQQKEwZTV0lUQ0gxJjAkBgNV
+BAMTHVNXSVRDSGFhaSBNZXRhZGF0YSBTaWduaW5nIENBMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8A
+MIIBCgKCAQEApYAlCv+zsEXlLR2aeX83+SaGmAInwLVa9ihgMm99xlIp/rjqzawPj6qI9OIqJSth
+P6/9FrWzc20AsL4lwUhJfm2cQEBFfzQ7bFVXqSY9+3bKdpTXz962RcPMdM1GRHfVDS/C7uJySZcU
+CfoK9IWPkdJ9KIe3gqjUWGCg9+Ghu/7K/HnduGTc2/wMrIRI2S8QuflThCvFVM2PeXDTxItQSoAJ
+4MM9v3Up1fbp5bqc5qPKqpn0D0AB46e++gZjAlNBm0vQm2Qw0/Ru3/X8xf1TKK5Za/MxHRaS4KR6
+0V2UdiTX17HApNNtvnd/cc8eQ3l/lvQkWPUe5aEgMDd/9BRn0wIDAQABo4IBCzCCAQcwDwYDVR0T
+AQH/BAUwAwEB/zAOBgNVHQ8BAf8EBAMCAQYwHwYDVR0jBBgwFoAU6ZriBljrD9eBA11cl7mxtZN9
+O4QwHQYDVR0OBBYEFJAKkcLuaC4VbhT+8s69EVGKHjXfMD0GA1UdHwQ2MDQwMqAwoC6GLGh0dHA6
+Ly9jcmwuYWFpLnN3aXRjaC5jaC9TV0lUQ0hhYWlSb290Q0EuY3JsMEcGCCsGAQUFBwEBBDswOTA3
+BggrBgEFBQcwAoYraHR0cDovL2NhLmFhaS5zd2l0Y2guY2gvU1dJVENIYWFpUm9vdENBLmNydDAc
+BgNVHSAEFTATMAYGBFUdIAAwCQYHYIV0AQIGBzANBgkqhkiG9w0BAQsFAAOCAQEAXaxkC++VrBse
+smh7TteSsvD2S8s5m7ydMw5GviGQjXLhzHQQifiJcOOsIpFO7y5/1RJZUzgf3D+O6PLY2DJhFY/F
+A2y/SRT3qNUb1EAVq+AtNXKEvmxZXcpNhdzJCONRXkNm25MvPtcfpBTfKVhW8PkSM0H5p9v5U/N2
+lU/TS7Bkwzc5deaKIoqvh+l/bjzsB3QdR6UXQ0lUcB1ve4iW4e+4SVJGCXhoMsX3QNfyKPWYsELU
+GsQCaifc7nCXtL8TuO5CwzQG5uNfQ5PRugv63S4FS788OA8ZGSIl74KMC10C84GhJsSe1C6UZgCl
+z3067iyasJWjISXYDKk3pwpZIg==
+</ds:X509Certificate>
+<ds:X509Certificate>
+MIIDnzCCAoegAwIBAgINSWITCHaai+Root+CAzANBgkqhkiG9w0BAQUFADBrMQswCQYDVQQGEwJD
+SDFAMD4GA1UEChM3U3dpdGNoIC0gVGVsZWluZm9ybWF0aWtkaWVuc3RlIGZ1ZXIgTGVocmUgdW5k
+IEZvcnNjaHVuZzEaMBgGA1UEAxMRU1dJVENIYWFpIFJvb3QgQ0EwHhcNMDgwNTE1MDYzMDAwWhcN
+MjgwNTE1MDYyOTU5WjBrMQswCQYDVQQGEwJDSDFAMD4GA1UEChM3U3dpdGNoIC0gVGVsZWluZm9y
+bWF0aWtkaWVuc3RlIGZ1ZXIgTGVocmUgdW5kIEZvcnNjaHVuZzEaMBgGA1UEAxMRU1dJVENIYWFp
+IFJvb3QgQ0EwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQDUSWbn/rhWew/sLJRyciyR
+KDGyFXSgiDO/EohYuZLw6EAKLLlhZorNtEHQbbn0Oo13S33MclHMvGWTKJM0u1hG+6gLy78EPmJb
+qAE1Uv23wVEH4SX0VJfl3JVqIebiAH/CjuLubgMUspDIjOdQHNLS7pthTbm7Tgh7zMsiLPyMTZJe
+p5CGbqv8NoK6bMaF0Z+Bt7e1JRlhHFCViJJaR/+hfpzLsJ8NWVivvrpRGaGJ1XR+9FGsTkjNdMCi
+rNJJZ6XvUOe5w7pHSd9McppFP0eyLs02AMzMXI4iz6PK/w3EdzXGXpK+gSgvLxWYct4xHpv1e2NX
+hNgdJOSN9ra/wJLVAgMBAAGjQjBAMA8GA1UdEwEB/wQFMAMBAf8wDgYDVR0PAQH/BAQDAgEGMB0G
+A1UdDgQWBBTpmuIGWOsP14EDXVyXubG1k307hDANBgkqhkiG9w0BAQUFAAOCAQEAMV/eIW6pFB+m
+bk7rD7hUPTWDRaoca3kHqmFGFnHfuY8+c0/Mqjh8Y/jyX1ybf58crTSWrbyGbUZ3oxDGQ34tuZSk
+meR32NqryiX3sP5qlNSozVguQKt8o4vhS1QeWPsXALs3em2pdKuIGSOpbuDnopPcmU2g5Zi2R5P7
+qpKDKAKtNUEwV+LW7GBMEksONj7BFXk4AFBFBijaYJGgHmoKSImVgeNIvsV+BSv5HJ4q6vcxfnwu
+vvGHM0AGphYO6f5qtHMUgvAblI8M/2QsBgethaGrirtKJ3aCRLdaR2R1QfaGRpck/Ron5/MpMxiJ
+wLT8YlW/zjx2yNABhPSAjfzeMw==
+</ds:X509Certificate>
+<ds:X509CRL>
+MIIB9jCB3wIBATANBgkqhkiG9w0BAQsFADBGMQswCQYDVQQGEwJDSDEPMA0GA1UEChMGU1dJVENI
+MSYwJAYDVQQDEx1TV0lUQ0hhYWkgTWV0YWRhdGEgU2lnbmluZyBDQRcNMTkxMTI3MDY0MzAyWhcN
+MTkxMjAyMDY0MzAyWjAzMDECEkliEwh2mojHrWnWrWkooNtNeRcNMTgwNzE2MDcwMDAwWjAMMAoG
+A1UdFQQDCgEEoDAwLjAfBgNVHSMEGDAWgBSQCpHC7mguFW4U/vLOvRFRih413zALBgNVHRQEBAIC
+BjkwDQYJKoZIhvcNAQELBQADggEBAC9jmyONf7Y7kM3L8fmD1XU2uMO/VF2Om/7cOIeE01CW6CQc
+En7nFUrM6N3H5JrTIGATLji2p5aYJ+yxUQ0uYDHW3HKNo6Byx7Hr2nNXnVEdTZ5DVVWEM7KMrLqb
+voAm86gdbveaEKM5Y/bu4tTy8Y17ydK0alfZz0KNdtCHTcbmPTaLIWfkNlJ6JdHoGBL/OYd/RZn0
+yvW1HkgzLijt/4baadaQbMgwfw5vXTdO0/0CTNaKBdeRwTILftYlutARhO9yXKWPL+jlSGIpQy9+
+IKSf8R3XrkEVcJBuI+V0esNYg0A4tKK5EfGJTEWUGfTa5wtrWJpvTxI8EwulkCQlx0g=
+</ds:X509CRL>
+<ds:X509CRL>
+MIIChTCCAW0CAQEwDQYJKoZIhvcNAQELBQAwazELMAkGA1UEBhMCQ0gxQDA+BgNVBAoTN1N3aXRj
+aCAtIFRlbGVpbmZvcm1hdGlrZGllbnN0ZSBmdWVyIExlaHJlIHVuZCBGb3JzY2h1bmcxGjAYBgNV
+BAMTEVNXSVRDSGFhaSBSb290IENBFw0xOTAzMzAxMzI0MTVaFw0yMDA5MjgxMzI0MTVaMIGcMDEC
+EkliEwh2moiJ7RXnTA0ooJwgNBcNMTUwOTAxMDcwMDAwWjAMMAoGA1UdFQQDCgEFMDECEkliEwh2
+mojHrWnWrWkooJwgNRcNMTUwOTAxMDcwMDAwWjAMMAoGA1UdFQQDCgEFMDQCFUliEwh2mojHrWnW
+rWkooJ4p4AgNcBcNMTUwOTAxMDcwMDAwWjAMMAoGA1UdFQQDCgEFoC8wLTAfBgNVHSMEGDAWgBTp
+muIGWOsP14EDXVyXubG1k307hDAKBgNVHRQEAwIBDDANBgkqhkiG9w0BAQsFAAOCAQEAWf7o16Z2
+q4O6qmJdbg+3HHJD3M4byGGgv9t4cp9fVPcDRKOxYd5BnvIp6daZV14W7GKJ7BX4K5gt9629nme0
+IVLqm+Fq8qCy38HA30Sr5tjFVGFAOzcLzzMJHuTNp+d5riK4vlMBY3VEfQeFDqZGw4CfqjIYDUPY
+49AXLwkH8Npgjjc9YDicZIh6osk2RJxHOfBaD7/5ETJPZ/0irgb3VWBjzpD6HI9DtXQnTi6DFLhs
+SUZR93T4O8wD8XuP2e6pEevpQnIaijFOSSA1c+oXO4o04zESj617VFCA1J4f2NqDV7LGZm1dT/Ro
+kTrorHQ4/wGoDIpifcLse8Rj3PZdMQ==
+</ds:X509CRL>
+</ds:X509Data>
+</ds:KeyInfo>
+</ds:Signature>
+<!--
+ This metadata file is generated for the AAI Test federation,
+ which is for development and testing purposes only!
+ Use at your own risk. SWITCH won't take responsibility
+ for the data included in this file.
+-->
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2019-11-27T16:01:44Z" publisher="http://metadata.aai.switch.ch/metadata.aaitest.xml">
+ </mdrpi:PublicationInfo>
+ </Extensions>
+
+ <!-- Identity Provider Metadata -->
+
+ <!-- AAI Demo Home Organisation -->
+ <EntityDescriptor entityID="https://aai-demo-idp.switch.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <Extensions>
+ <shibmd:Scope regexp="false">aai-demo-idp.switch.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">AAI Demo Home Organisation</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">AAI Demo Home Organisation</mdui:DisplayName>
+ <mdui:Description xml:lang="de">AAI Demo Home Organisation</mdui:Description>
+ <mdui:Description xml:lang="en">AAI Demo Home Organisation</mdui:Description>
+ <mdui:Keywords xml:lang="en">demo</mdui:Keywords>
+ <mdui:Logo height="16" width="16">data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABAAAAAQCAIAAACQkWg2AAAAAXNSR0IArs4c6QAAAJ9JREFUeJxi+E8iYKCjhl27djGgAl5eXi0trZaWlq9fvxKlAQ5SUlLwafDw8JgFBsXFxZycnEARRkbG9+/f49RQUVEBFwwKCoIInj17ligNQMdABHfu3EkbDbGxsRDBPXv2EKVBW1sbInjx4kWcGiwtLavAAMiAiLCwsLx7946EeIiOjsYXD3DAysqqrq5eWFiIPaaJBCRrAAAAAP//AwAAtBdgPg/CYgAAAABJRU5ErkJggg==</mdui:Logo>
+ <mdui:Logo height="60" width="80">data:image/png;base64,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</mdui:Logo>
+ <mdui:InformationURL xml:lang="en">https://www.switch.ch/aai/demo/</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="de">https://www.switch.ch/aai/demo/</mdui:InformationURL>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>aai-demo-idp.switch.ch</mdui:DomainHint>
+ <mdui:DomainHint>example.org</mdui:DomainHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aai-demo-idp.switch.ch:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-demo-idp.switch.ch:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://aai-demo-idp.switch.ch/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aai-demo-idp.switch.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-demo-idp.switch.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">aai-demo-idp.switch.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDODCCAiCgAwIBAgIJAK1/mY3/13x1MA0GCSqGSIb3DQEBBQUAMCExHzAdBgNV
+BAMTFmFhaS1kZW1vLWlkcC5zd2l0Y2guY2gwHhcNMTkwMzE1MDcyMzI0WhcNMjIw
+MzE0MDcyMzI0WjAhMR8wHQYDVQQDExZhYWktZGVtby1pZHAuc3dpdGNoLmNoMIIB
+IjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAr7tKI/3W0h5EO9/o7aB2A1HH
+yIo6zQjakCVCq/aQnzBzITpvC/SkJQQk6GvIul6t4J4J4vE2YRud6EGcQB1Qn2Oi
+hatWfIFT9DO4Zr9imVLA4V/q5CzCk9VX1lVhX9WEtnnrbdhU/iUpQw9B+N+iIDt9
+zjHMW5PS7QQ0Pl5aSJy8S5rH4mr2RILMPWq9UpUXuyCFv4WQ6CvngzhgfJSzH7VO
+2XV22jTlox5tAjguoaBOuFefMOjy1JCmMYSWWUG3qHDCfvAzIoFRvwI4N8IX22rh
+MN9TfKyyOaL+v1t4A+39rnjv8VcvWL0pJdOWFT34+YxII6Rodg0WuyiLfut62wID
+AQABo3MwcTBQBgNVHREESTBHghZhYWktZGVtby1pZHAuc3dpdGNoLmNohi1odHRw
+czovL2FhaS1kZW1vLWlkcC5zd2l0Y2guY2gvaWRwL3NoaWJib2xldGgwHQYDVR0O
+BBYEFNhlyhfnqzkYtuVcMrRAYtm2SJuTMA0GCSqGSIb3DQEBBQUAA4IBAQBsgcpL
+xRBBvFox/O23j32e1rHmYzYHXlDdFllbhQiwOxw3I5DvUAFmmC8TUvLRUBTSObwZ
+EjnztX2J0hcokkM+Tmvo4s5FTIgq0KQqQXmbmDhDg/5zx1lpp8c7u8zigc/YV2TT
+ekuCZ6Gb7GkjuZivrLMUMhMrdD9ki2yxOC98DMxk6WZN9GLFOguCjBB/gr3Fzp7+
+VRvQTfYxIV/kZ7OGPrbOX2Sm+QZD/F7uDmSEuaWD2RRwiN9LFlc6ABM+dNLRtjmK
+JLuwKIc2AqbiZQxOuWf/+la8SBstg/xzsU0cLX43tD6b5AZajCylvU1RaxEkFBRb
+9kxQtMi9IpYS4RhL
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aai-demo-idp.switch.ch:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-demo-idp.switch.ch:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- HES-SO Test IdP -->
+ <EntityDescriptor entityID="https://aai-logon-test.hes-so.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <Extensions>
+ <shibmd:Scope regexp="false">aai-logon-test.hes-so.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">HES-SO Test IdP</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="fr">HES-SO Test IdP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">HES-SO Test IdP</mdui:Description>
+ <mdui:Description xml:lang="fr">HES-SO Test IdP</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>aai-logon-test.hes-so.ch</mdui:DomainHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aai-logon-test.hes-so.ch/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-logon-test.hes-so.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://aai-logon-test.hes-so.ch/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aai-logon-test.hes-so.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-logon-test.hes-so.ch/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aai-logon-test.hes-so.ch/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">aai-logon-test.hes-so.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aai-logon-test.hes-so.ch/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-logon-test.hes-so.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-test.hes-so.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">HES-SO Test IdP</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">HES-SO Test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-test.hes-so.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.aai-logon-test.hes-so.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- HUG Idp TEST -->
+ <EntityDescriptor entityID="https://aai-test.hcuge.ch/idp">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">aai-test.hcuge.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">HUG Test IdP</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="fr">HUG Idp TEST</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test IdP of Hôpitaux universitaires de Genève</mdui:Description>
+ <mdui:Description xml:lang="fr">Service d'authentification AAI des Hôpitaux universtaires de Genève</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:IPHint>129.195.0.0/16</mdui:IPHint>
+ <mdui:DomainHint>hcuge.ch</mdui:DomainHint>
+ <mdui:GeolocationHint>geo:46.19383,6.14882</mdui:GeolocationHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aai-test.hcuge.ch/saml/idp/profile/redirect/sls"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-test.hcuge.ch/saml/idp/profile/post/sls"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aai-test.hcuge.ch/saml/idp/profile/redirectorpost/sso"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-test.hcuge.ch/saml/idp/profile/redirectorpost/sso"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-test.hcuge.ch/saml/idp/profile/ecp/sso"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-test.hcuge.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">HUG Test IdP</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">HUG Idp TEST</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.aai-test.hcuge.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.aai-test.hcuge.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- FHNW-DEV - Fachhochschule Nordwestschweiz -->
+ <EntityDescriptor entityID="https://aai-logon.dev.fhnw.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <Extensions>
+ <shibmd:Scope regexp="false">dev.fhnw.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">FHNW-DEV - Fachhochschule Nordwestschweiz</mdui:DisplayName>
+ <mdui:Description xml:lang="en">FHNW-DEV IdP of: dev.fhnw.ch</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aai-logon.dev.fhnw.ch/shibboleth-idp/Artifact" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-logon.dev.fhnw.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://aai-logon.dev.fhnw.ch/shibboleth-idp/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aai-logon.dev.fhnw.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-logon.dev.fhnw.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">dev.fhnw.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aai-logon.dev.fhnw.ch/shibboleth-idp/AA"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-logon.dev.fhnw.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">dev.fhnw.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">FHNW-DEV - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.dev.fhnw.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Educa FIDES Test -->
+ <EntityDescriptor entityID="https://discovery-federation.educa.ch/saml/metadata">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">educa.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">Educa FIDES Test</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Educa FIDES Test</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Educa FIDES Test</mdui:Description>
+ <mdui:Description xml:lang="en">Educa FIDES Test</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,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</mdui:Logo>
+ <mdui:Logo height="64" width="64">data:image/png;base64,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</mdui:Logo>
+ <mdui:InformationURL xml:lang="de">https://fides.educa.ch/</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="en">https://fides.educa.ch/</mdui:InformationURL>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>educa.ch</mdui:DomainHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://discovery-federation.educa.ch/saml/logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://discovery-federation.educa.ch/saml/acs"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://discovery-federation.educa.ch/saml/acs"/>
+ </IDPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">educa.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">Educa FIDES Test</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">Educa FIDES Test</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.educa.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.educa.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETH Zurich (BI test) -->
+ <EntityDescriptor entityID="https://aai-logon-bi-test.ethz.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.id.ethz.ch/servicedesk" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <Extensions>
+ <shibmd:Scope regexp="false">ethz.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">ETH Zürich (BI test)</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">ETH Zurich (BI test)</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Eidgenössische Technische Hochschule Zürich - test IDP für BI</mdui:Description>
+ <mdui:Description xml:lang="en">Swiss Federal Institute of Technology Zurich - test IDP for BI</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,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</mdui:Logo>
+ <mdui:Logo height="64" width="64">data:image/png;base64,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</mdui:Logo>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>aai-logon-bi-test.ethz.ch</mdui:DomainHint>
+ <mdui:GeolocationHint>geo:47.37646,8.54792</mdui:GeolocationHint>
+ <mdui:GeolocationHint>geo:47.41039,8.50902</mdui:GeolocationHint>
+ <mdui:GeolocationHint>geo:47.566087,7.602298</mdui:GeolocationHint>
+ <mdui:GeolocationHint>geo:46.022244,8.916146</mdui:GeolocationHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIGlDCCBXygAwIBAgIUOH+INAl5nqX8PsQXGIlJS/2pcl4wDQYJKoZIhvcNAQEL
+BQAwTTELMAkGA1UEBhMCQk0xGTAXBgNVBAoTEFF1b1ZhZGlzIExpbWl0ZWQxIzAh
+BgNVBAMTGlF1b1ZhZGlzIEdsb2JhbCBTU0wgSUNBIEcyMB4XDTE5MDYxMTA3NTYz
+MloXDTIxMDYxMTA4MDYwMFowazELMAkGA1UEBhMCQ0gxEDAOBgNVBAgMB1p1ZXJp
+Y2gxEDAOBgNVBAcMB1p1ZXJpY2gxFDASBgNVBAoMC0VUSCBadWVyaWNoMSIwIAYD
+VQQDDBlhYWktbG9nb24tYmktdGVzdC5ldGh6LmNoMIIBIjANBgkqhkiG9w0BAQEF
+AAOCAQ8AMIIBCgKCAQEApKF1HlMqJJYOIXVjXBvm6z64dn6Ypbk2RSSDc/OhX37S
+0D9b3RwuDi2w88tbZXpf8H1Nu+q3UqIjIOSSYqZhY+jbPLtsSwPKS4WfzRo6mvJj
+9kZT9GSnlHwto018TibzzM0z85uNQg0kcJ6hsADttNBxz+9iGNtJ0z6h9nnw1F2X
+5Ejavilgrved0Ej2ESnLudDwHO/E+sZNT3XExnGPb+13muTosMCMCRW9PaGjCokA
+5X2jjDcl+Uwk1doh88mKP1LoT9v9Fmw2hgguDVoy89X/TiBx7rDOzZ/1DsLr0Sjy
+WL+k8EycFOHvW9AlvcUvmb5h4Fo9Fdjj2iMps9KIRQIDAQABo4IDTDCCA0gwCQYD
+VR0TBAIwADAfBgNVHSMEGDAWgBSRGWKtWxenMPvw3jklsb2MubhRJzBzBggrBgEF
+BQcBAQRnMGUwNwYIKwYBBQUHMAKGK2h0dHA6Ly90cnVzdC5xdW92YWRpc2dsb2Jh
+bC5jb20vcXZzc2xnMi5jcnQwKgYIKwYBBQUHMAGGHmh0dHA6Ly9vY3NwLnF1b3Zh
+ZGlzZ2xvYmFsLmNvbTBGBgNVHREEPzA9ghlhYWktbG9nb24tYmktdGVzdC5ldGh6
+LmNogg92a3VuZ2Z1LmV0aHouY2iCD3ZraWt1eXUuZXRoei5jaDBRBgNVHSAESjBI
+MEYGDCsGAQQBvlgAAmQBATA2MDQGCCsGAQUFBwIBFihodHRwOi8vd3d3LnF1b3Zh
+ZGlzZ2xvYmFsLmNvbS9yZXBvc2l0b3J5MB0GA1UdJQQWMBQGCCsGAQUFBwMCBggr
+BgEFBQcDATA6BgNVHR8EMzAxMC+gLaArhilodHRwOi8vY3JsLnF1b3ZhZGlzZ2xv
+YmFsLmNvbS9xdnNzbGcyLmNybDAdBgNVHQ4EFgQUmYJkDE86PD0nqkNjvkWbHTg9
+G+EwDgYDVR0PAQH/BAQDAgWgMIIBfgYKKwYBBAHWeQIEAgSCAW4EggFqAWgAdwCk
+uQmQtBhYFIe7E6LMZ3AKPDWYBPkb37jjd80OyA3cEAAAAWtFkwtwAAAEAwBIMEYC
+IQCooPyiyL2Dg73PUIYfrOCjZzfW/+wtAxPwW6CGDf3a9gIhAPMN2iVhad7NmykE
+UVDik3dBU6wV1/L7pDi2fCLBMXMSAHYAVhQGmi/XwuzT9eG9RLI+x0Z2ubyZEVzA
+75SYVdaJ0N0AAAFrRZMLoAAABAMARzBFAiB289POYDwLJoZQ+MUCW00TWdpN389/
+H/IOWzYFAi5R4wIhAOi/xvq4i0w2Tm4GyT32Je9a+W+LqEjtZiSo1lq7GIP4AHUA
+b1N2rDHwMRnYmQCkURX/dxUcEdkCwQApBo2yCJo32RMAAAFrRZMMdgAABAMARjBE
+AiB6InNr7MgzmeRvaZ22T+NylP6731iFB2mgR6VQ4tDZKAIgfFo1FPvnw+E/3Qg8
+hI6w46Pw+o1hNmy+qFVN/YIs25wwDQYJKoZIhvcNAQELBQADggEBAEaBiKWWYZyh
+W4pg1saIj+FvhYRW/i/lWhxCW/B99UwvglshdY3I3cuDnuU9tTXyXeyL8OYsbfQP
+S6n91NP5lmFPuW4njbbtJr5lV1C3KJI4h9wj20w16QiSO/H9u5hv/Rq8QzL4SK7H
+cR6mjZ/YQcLPZmB1u3saUtdm3Tqau5NHCSgQjFY3B5/HQarmjPUPKu577CYMBM8v
+1vh5it0mDCyxVIIhiwdMDesV3EMP3S1rhuhshmh4SwWCZJerghckzmvljAM6cOJA
+S82amplIMn8jK6xATjRGWBGHpOFAaLjYQKckM30xPMpAcuatnardU2dpNlBeD+F4
+Nc+ngn1OAVc=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aai-logon-bi-test.ethz.ch/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-logon-bi-test.ethz.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://aai-logon-bi-test.ethz.ch/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aai-logon-bi-test.ethz.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-logon-bi-test.ethz.ch/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aai-logon-bi-test.ethz.ch/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">ethz.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIGlDCCBXygAwIBAgIUOH+INAl5nqX8PsQXGIlJS/2pcl4wDQYJKoZIhvcNAQEL
+BQAwTTELMAkGA1UEBhMCQk0xGTAXBgNVBAoTEFF1b1ZhZGlzIExpbWl0ZWQxIzAh
+BgNVBAMTGlF1b1ZhZGlzIEdsb2JhbCBTU0wgSUNBIEcyMB4XDTE5MDYxMTA3NTYz
+MloXDTIxMDYxMTA4MDYwMFowazELMAkGA1UEBhMCQ0gxEDAOBgNVBAgMB1p1ZXJp
+Y2gxEDAOBgNVBAcMB1p1ZXJpY2gxFDASBgNVBAoMC0VUSCBadWVyaWNoMSIwIAYD
+VQQDDBlhYWktbG9nb24tYmktdGVzdC5ldGh6LmNoMIIBIjANBgkqhkiG9w0BAQEF
+AAOCAQ8AMIIBCgKCAQEApKF1HlMqJJYOIXVjXBvm6z64dn6Ypbk2RSSDc/OhX37S
+0D9b3RwuDi2w88tbZXpf8H1Nu+q3UqIjIOSSYqZhY+jbPLtsSwPKS4WfzRo6mvJj
+9kZT9GSnlHwto018TibzzM0z85uNQg0kcJ6hsADttNBxz+9iGNtJ0z6h9nnw1F2X
+5Ejavilgrved0Ej2ESnLudDwHO/E+sZNT3XExnGPb+13muTosMCMCRW9PaGjCokA
+5X2jjDcl+Uwk1doh88mKP1LoT9v9Fmw2hgguDVoy89X/TiBx7rDOzZ/1DsLr0Sjy
+WL+k8EycFOHvW9AlvcUvmb5h4Fo9Fdjj2iMps9KIRQIDAQABo4IDTDCCA0gwCQYD
+VR0TBAIwADAfBgNVHSMEGDAWgBSRGWKtWxenMPvw3jklsb2MubhRJzBzBggrBgEF
+BQcBAQRnMGUwNwYIKwYBBQUHMAKGK2h0dHA6Ly90cnVzdC5xdW92YWRpc2dsb2Jh
+bC5jb20vcXZzc2xnMi5jcnQwKgYIKwYBBQUHMAGGHmh0dHA6Ly9vY3NwLnF1b3Zh
+ZGlzZ2xvYmFsLmNvbTBGBgNVHREEPzA9ghlhYWktbG9nb24tYmktdGVzdC5ldGh6
+LmNogg92a3VuZ2Z1LmV0aHouY2iCD3ZraWt1eXUuZXRoei5jaDBRBgNVHSAESjBI
+MEYGDCsGAQQBvlgAAmQBATA2MDQGCCsGAQUFBwIBFihodHRwOi8vd3d3LnF1b3Zh
+ZGlzZ2xvYmFsLmNvbS9yZXBvc2l0b3J5MB0GA1UdJQQWMBQGCCsGAQUFBwMCBggr
+BgEFBQcDATA6BgNVHR8EMzAxMC+gLaArhilodHRwOi8vY3JsLnF1b3ZhZGlzZ2xv
+YmFsLmNvbS9xdnNzbGcyLmNybDAdBgNVHQ4EFgQUmYJkDE86PD0nqkNjvkWbHTg9
+G+EwDgYDVR0PAQH/BAQDAgWgMIIBfgYKKwYBBAHWeQIEAgSCAW4EggFqAWgAdwCk
+uQmQtBhYFIe7E6LMZ3AKPDWYBPkb37jjd80OyA3cEAAAAWtFkwtwAAAEAwBIMEYC
+IQCooPyiyL2Dg73PUIYfrOCjZzfW/+wtAxPwW6CGDf3a9gIhAPMN2iVhad7NmykE
+UVDik3dBU6wV1/L7pDi2fCLBMXMSAHYAVhQGmi/XwuzT9eG9RLI+x0Z2ubyZEVzA
+75SYVdaJ0N0AAAFrRZMLoAAABAMARzBFAiB289POYDwLJoZQ+MUCW00TWdpN389/
+H/IOWzYFAi5R4wIhAOi/xvq4i0w2Tm4GyT32Je9a+W+LqEjtZiSo1lq7GIP4AHUA
+b1N2rDHwMRnYmQCkURX/dxUcEdkCwQApBo2yCJo32RMAAAFrRZMMdgAABAMARjBE
+AiB6InNr7MgzmeRvaZ22T+NylP6731iFB2mgR6VQ4tDZKAIgfFo1FPvnw+E/3Qg8
+hI6w46Pw+o1hNmy+qFVN/YIs25wwDQYJKoZIhvcNAQELBQADggEBAEaBiKWWYZyh
+W4pg1saIj+FvhYRW/i/lWhxCW/B99UwvglshdY3I3cuDnuU9tTXyXeyL8OYsbfQP
+S6n91NP5lmFPuW4njbbtJr5lV1C3KJI4h9wj20w16QiSO/H9u5hv/Rq8QzL4SK7H
+cR6mjZ/YQcLPZmB1u3saUtdm3Tqau5NHCSgQjFY3B5/HQarmjPUPKu577CYMBM8v
+1vh5it0mDCyxVIIhiwdMDesV3EMP3S1rhuhshmh4SwWCZJerghckzmvljAM6cOJA
+S82amplIMn8jK6xATjRGWBGHpOFAaLjYQKckM30xPMpAcuatnardU2dpNlBeD+F4
+Nc+ngn1OAVc=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aai-logon-bi-test.ethz.ch/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-logon-bi-test.ethz.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Graduate Institute - Test IdP -->
+ <EntityDescriptor entityID="https://idp-dev.graduateinstitute.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">graduateinstitute.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Graduate Institute - Test IdP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test IdP of the Graduate Institute of International and Development Studies</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:GeolocationHint>geo:46.22097,6.14375</mdui:GeolocationHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDXDCCAkSgAwIBAgIVANreykP/e/4Da1JE46x4qdTlxNVuMA0GCSqGSIb3DQEB
+CwUAMCcxJTAjBgNVBAMMHGlkcC1kZXYuZ3JhZHVhdGVpbnN0aXR1dGUuY2gwHhcN
+MTgwMzEzMTYyMjMzWhcNMjEwMzEzMTYyMjMzWjAnMSUwIwYDVQQDDBxpZHAtZGV2
+LmdyYWR1YXRlaW5zdGl0dXRlLmNoMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIB
+CgKCAQEAqXoKQDS+eCpGgNRrBEeqto7tHYNswCJkUtE7MMlVmhyJeaS7ziJQLm/q
+3ToGKvx3ljWpgT3+hqmYYzHQw17e1b9a5zsO95hGntvkEGsJfghGOhc+VRv8y7ME
+OdMgKhgCMKZ58xIuOGlOP1fbSJYKrlvYcdzSJJF98iHfzS6geklpkzqxLSEGl8jX
+trlaLnAr0nCkNYfqkgGaEq+8r7VM49ihb0/c9IIC/8Z6tQ8NCvG7OjUyPucKFzo1
+g2LOwDY1qjwVJzIFeiny5+pZsZmBICakvXQKt2Qog19WxbaeY9moug6ZeRBaVE2S
+xwqQVqeOuae8Y1IsisQA0shzBx9mFQIDAQABo38wfTAdBgNVHQ4EFgQUeLd8Dxow
+k2tlGeVz5paTfInqkvUwXAYDVR0RBFUwU4IcaWRwLWRldi5ncmFkdWF0ZWluc3Rp
+dHV0ZS5jaIYzaHR0cHM6Ly9pZHAtZGV2LmdyYWR1YXRlaW5zdGl0dXRlLmNoL2lk
+cC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQCmkolHwzkTI8s6l7WTYpwE
+zOQ/8smWjN/ShepPtcpPIzAX3ZRKX4kdUP7yGkUEvxuvL/1O5d8qrF4ee7Jp0tng
+4o5+5tCygpk7bsvdhYEDddx/Ep1TJNIz2xfCipEWd+SB+aTu15rbzwBdvvF7/jKW
+3h12dpgtZqwJ8rtsscuEcqrAa599sGbjwhSIPO+Bydj3cCtPfy/c5GBVlFvV6uzW
+pa1lQomsWHiCP19hC2za2mWHu/WdtcLLphdA3t2K6+dmR9WX6O8YzcSyk6gLtZF9
+74o5L2zKETULoRmGqZ3OrRbkhHzEvPDP1vd4gYQL4ZLZtOXW/VbaS/6uWjoxBOdy
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-dev.graduateinstitute.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp-dev.graduateinstitute.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp-dev.graduateinstitute.ch/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp-dev.graduateinstitute.ch/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">graduateinstitute.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDXDCCAkSgAwIBAgIVANreykP/e/4Da1JE46x4qdTlxNVuMA0GCSqGSIb3DQEB
+CwUAMCcxJTAjBgNVBAMMHGlkcC1kZXYuZ3JhZHVhdGVpbnN0aXR1dGUuY2gwHhcN
+MTgwMzEzMTYyMjMzWhcNMjEwMzEzMTYyMjMzWjAnMSUwIwYDVQQDDBxpZHAtZGV2
+LmdyYWR1YXRlaW5zdGl0dXRlLmNoMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIB
+CgKCAQEAqXoKQDS+eCpGgNRrBEeqto7tHYNswCJkUtE7MMlVmhyJeaS7ziJQLm/q
+3ToGKvx3ljWpgT3+hqmYYzHQw17e1b9a5zsO95hGntvkEGsJfghGOhc+VRv8y7ME
+OdMgKhgCMKZ58xIuOGlOP1fbSJYKrlvYcdzSJJF98iHfzS6geklpkzqxLSEGl8jX
+trlaLnAr0nCkNYfqkgGaEq+8r7VM49ihb0/c9IIC/8Z6tQ8NCvG7OjUyPucKFzo1
+g2LOwDY1qjwVJzIFeiny5+pZsZmBICakvXQKt2Qog19WxbaeY9moug6ZeRBaVE2S
+xwqQVqeOuae8Y1IsisQA0shzBx9mFQIDAQABo38wfTAdBgNVHQ4EFgQUeLd8Dxow
+k2tlGeVz5paTfInqkvUwXAYDVR0RBFUwU4IcaWRwLWRldi5ncmFkdWF0ZWluc3Rp
+dHV0ZS5jaIYzaHR0cHM6Ly9pZHAtZGV2LmdyYWR1YXRlaW5zdGl0dXRlLmNoL2lk
+cC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQCmkolHwzkTI8s6l7WTYpwE
+zOQ/8smWjN/ShepPtcpPIzAX3ZRKX4kdUP7yGkUEvxuvL/1O5d8qrF4ee7Jp0tng
+4o5+5tCygpk7bsvdhYEDddx/Ep1TJNIz2xfCipEWd+SB+aTu15rbzwBdvvF7/jKW
+3h12dpgtZqwJ8rtsscuEcqrAa599sGbjwhSIPO+Bydj3cCtPfy/c5GBVlFvV6uzW
+pa1lQomsWHiCP19hC2za2mWHu/WdtcLLphdA3t2K6+dmR9WX6O8YzcSyk6gLtZF9
+74o5L2zKETULoRmGqZ3OrRbkhHzEvPDP1vd4gYQL4ZLZtOXW/VbaS/6uWjoxBOdy
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-dev.graduateinstitute.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">graduateinstitute.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Graduate Institute - Test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.graduateinstitute.ch/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Wilfred</GivenName>
+ <SurName>Gander</SurName>
+ <EmailAddress>mailto:wilfred.gander@graduateinstitute.ch</EmailAddress>
+
+ </ContactPerson>
+ </EntityDescriptor>
+
+ <!-- HEP Vaud - TEST - Haute école pédagogique du canton de Vaud -->
+ <EntityDescriptor entityID="https://aai-login-int.hepl.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">hepl.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">HEP Vaud - TEST - Haute école pédagogique du canton de Vaud</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="fr">HEP Vaud - TEST - Haute école pédagogique du canton de Vaud</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Haute école pédagogique du canton de Vaud</mdui:Description>
+ <mdui:Description xml:lang="fr">Haute école pédagogique du canton de Vaud</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABAAAAAQCAYAAAAf8/9hAAAA+0lEQVR4nGJgWPz4PyEsu/bZ/7oLH/8Xnfnw32zbS1R5Ygxou/zpPwj8+PPvfw3QIJIM4Fz25P/n3//ABmx58v2/1qYXpBmQevzdfxiw2vESUw0hAy6//wXWfPPjb+xq8Gm22fkKbjvIJSQbsObhN7DmT7/+/ecAhgVJBkiseQa3fcqNz7i9iUuiFRp1IKC0/jlpBjAC8cvvf8Gatz/9jj+dYBMMPfQGbrv73tekG3Dm7U+w5rufcUQdPgN0Nr+A2w5K+yQZILLq6f+Fd7/C073AyqekGZBz6v3/r9B0Pxlf1OEywGjri//l5z6Ao1ARX9QhYQAAAAD//wMADdzAkcAvUzkAAAAASUVORK5CYII=</mdui:Logo>
+ <mdui:Logo height="60" width="80">data:image/png;base64,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</mdui:Logo>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>hepl.ch</mdui:DomainHint>
+ <mdui:GeolocationHint>geo:46.5128606,6.621523</mdui:GeolocationHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aai-login-int.hepl.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-login-int.hepl.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">hepl.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIHDTCCBfWgAwIBAgIUOxZRvReUMcNZz4X/srT5oXI1YJMwDQYJKoZIhvcNAQEL
+BQAwTTELMAkGA1UEBhMCQk0xGTAXBgNVBAoTEFF1b1ZhZGlzIExpbWl0ZWQxIzAh
+BgNVBAMTGlF1b1ZhZGlzIEdsb2JhbCBTU0wgSUNBIEcyMB4XDTE4MDcyMzA2MzYw
+NVoXDTIwMDcyMzA2NDUwMFowgZAxCzAJBgNVBAYTAkNIMQ0wCwYDVQQIDARWYXVk
+MREwDwYDVQQHDAhMYXVzYW5uZTEyMDAGA1UECgwpSGF1dGUgZWNvbGUgcGVkYWdv
+Z2lxdWUgZHUgY2FudG9uIGRlIFZhdWQxCzAJBgNVBAsMAlVJMR4wHAYDVQQDDBVh
+YWktbG9naW4taW50LmhlcGwuY2gwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEK
+AoIBAQDkEaCvQRG1InFbRNwvWLw/zC8QWvQP6JkjYcrcIzqjBmuBRT+7g9mFWnUz
+rZpRHtc2uKfKzqoAzkmTxY8CMAK3tTWZ/C2+HcHLh+BHfNn5VqmKf3SZunGOEEMl
+WjJnIakZ0DQ6C2kKGWnH6bimwfqRlzEPXBSjDcfJmDlK141GVjKm3eQNyqa9tJ+K
+rpH+krqpzMOT78MUeRxCTLgOV44FdxiyYlWWLACdwAzdhzL2BcQ3puHP2cdS2NvO
+5hHTvwuWkM83qUBsNRIOYszZjxrhD5/+S13UYDIMGuzC/DJDJmqKrvmcZq/MA/aK
+J7ynhn4Zv2ltXqNdTBJ0ZA5R77HxAgMBAAGjggOfMIIDmzAJBgNVHRMEAjAAMB8G
+A1UdIwQYMBaAFJEZYq1bF6cw+/DeOSWxvYy5uFEnMHMGCCsGAQUFBwEBBGcwZTA3
+BggrBgEFBQcwAoYraHR0cDovL3RydXN0LnF1b3ZhZGlzZ2xvYmFsLmNvbS9xdnNz
+bGcyLmNydDAqBggrBgEFBQcwAYYeaHR0cDovL29jc3AucXVvdmFkaXNnbG9iYWwu
+Y29tMCAGA1UdEQQZMBeCFWFhaS1sb2dpbi1pbnQuaGVwbC5jaDBRBgNVHSAESjBI
+MEYGDCsGAQQBvlgAAmQBATA2MDQGCCsGAQUFBwIBFihodHRwOi8vd3d3LnF1b3Zh
+ZGlzZ2xvYmFsLmNvbS9yZXBvc2l0b3J5MB0GA1UdJQQWMBQGCCsGAQUFBwMCBggr
+BgEFBQcDATA6BgNVHR8EMzAxMC+gLaArhilodHRwOi8vY3JsLnF1b3ZhZGlzZ2xv
+YmFsLmNvbS9xdnNzbGcyLmNybDAdBgNVHQ4EFgQU1Pn/sheXLouvqFfaFgyd7vbM
+bYcwDgYDVR0PAQH/BAQDAgWgMIIB9wYKKwYBBAHWeQIEAgSCAecEggHjAeEAdwCk
+uQmQtBhYFIe7E6LMZ3AKPDWYBPkb37jjd80OyA3cEAAAAWTF4n8QAAAEAwBIMEYC
+IQCV1PFFXoEehdjnFfG+TZfDqHOSAXxDGrvehqwS2xU6vAIhAPJLjHv/K0JYdHXT
+CKCsd/ydirxGdszqz1umlorM/QwrAHYAu9nfvB+KcbWTlCOXqpJ7RzhXlQqrUuga
+kJZkNo4e0YUAAAFkxeJ+5wAABAMARzBFAiEAnFk2o81APutnK7aGOCxNHhFajdVm
+uZ3rQP5mJdevnXwCIFBeHHfBkR/A6vcki/JJqXoT9mw4rKJYPaE2iN6RI2q7AHcA
+VhQGmi/XwuzT9eG9RLI+x0Z2ubyZEVzA75SYVdaJ0N0AAAFkxeKAvgAABAMASDBG
+AiEAy91p1RBwrM8LeifXSF14+8H1n/cTOYpO/9BtiFA+Y3QCIQDYmUAG8b1Emh1v
+xEXiG99lkJQVuAzQP7x9F09Drn4ttgB1AG9Tdqwx8DEZ2JkApFEV/3cVHBHZAsEA
+KQaNsgiaN9kTAAABZMXigXMAAAQDAEYwRAIgbTw3md0jQB4OsNPBIhATQE7g8x5o
+5jyb0ePpbixCh5gCIEwFZL4LFGXgE2qY4MvHIyv8PGMHPaCFw8pH3srrczn7MA0G
+CSqGSIb3DQEBCwUAA4IBAQDfyGJCOa8tIzW042ycjpBs/DDCpiLNMTIjvwO3kuMA
++aIZ/CjXeII9xbFdVcEpLhgEfTC7i169PFGvg/tKI91BdOI3vSlcpb7ueVseA95e
+8JA3Opg/8nCZHQcNSSb357tKPKHH7en0jqzx/2VOqjNFVly22FVjWo8KI+2+43Mr
++lLKAne/+/TD32ku3x1qW/QzXivK5kM2knZnHY/MiprOBSR6FehKRgDqYlDMyvhI
+FGy+aDkkq5ZV7C8Tror84z05WWFvDHiO3P9rVRXqRJvnVC8FLFhn2byCcHLF5ebp
+nT2DecWFfixBKpGwMp0OfspUijtXEFbEHmVjYXavlIIm
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-login-int.hepl.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">hepl.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">HEP Vaud - TEST - Haute école pédagogique du canton de Vaud</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">HEP Vaud - TEST - Haute école pédagogique du canton de Vaud</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hepl.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.hepl.ch/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>helpdesk HEP</GivenName>
+ <SurName>helpdesk HEP</SurName>
+ <EmailAddress>mailto:helpdesk@hepl.ch</EmailAddress>
+
+ </ContactPerson>
+ </EntityDescriptor>
+
+ <!-- HSLU - Hochschule Luzern (Test IdP) -->
+ <EntityDescriptor entityID="https://idp.hslu-lab.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://hotline.hslu.ch/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">hslu.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">HSLU - Hochschule Luzern (Test IdP)</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">HSLU - Lucerne University of Applied Sciences and Arts (Test IdP)</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Hochschule Luzern (Test IdP)</mdui:Description>
+ <mdui:Description xml:lang="en">Lucerne University of Applied Sciences and Arts (Test IdP)</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,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</mdui:Logo>
+ <mdui:Logo height="37" width="80">data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAFAAAAAlCAIAAABanPmIAAAAGXRFWHRTb2Z0d2FyZQBBZG9iZSBJbWFnZVJlYWR5ccllPAAAAyZpVFh0WE1MOmNvbS5hZG9iZS54bXAAAAAAADw/eHBhY2tldCBiZWdpbj0i77u/IiBpZD0iVzVNME1wQ2VoaUh6cmVTek5UY3prYzlkIj8+IDx4OnhtcG1ldGEgeG1sbnM6eD0iYWRvYmU6bnM6bWV0YS8iIHg6eG1wdGs9IkFkb2JlIFhNUCBDb3JlIDUuNi1jMDY3IDc5LjE1Nzc0NywgMjAxNS8wMy8zMC0yMzo0MDo0MiAgICAgICAgIj4gPHJkZjpSREYgeG1sbnM6cmRmPSJodHRwOi8vd3d3LnczLm9yZy8xOTk5LzAyLzIyLXJkZi1zeW50YXgtbnMjIj4gPHJkZjpEZXNjcmlwdGlvbiByZGY6YWJvdXQ9IiIgeG1sbnM6eG1wTU09Imh0dHA6Ly9ucy5hZG9iZS5jb20veGFwLzEuMC9tbS8iIHhtbG5zOnN0UmVmPSJodHRwOi8vbnMuYWRvYmUuY29tL3hhcC8xLjAvc1R5cGUvUmVzb3VyY2VSZWYjIiB4bWxuczp4bXA9Imh0dHA6Ly9ucy5hZG9iZS5jb20veGFwLzEuMC8iIHhtcE1NOkRvY3VtZW50SUQ9InhtcC5kaWQ6RDA5OEREOUYzMTI2MTFFNTgzMkRGQkY0QjdEQjdFQ0IiIHhtcE1NOkluc3RhbmNlSUQ9InhtcC5paWQ6RDA5OEREOUUzMTI2MTFFNTgzMkRGQkY0QjdEQjdFQ0IiIHhtcDpDcmVhdG9yVG9vbD0iQWRvYmUgUGhvdG9zaG9wIENDIDIwMTUgKFdpbmRvd3MpIj4gPHhtcE1NOkRlcml2ZWRGcm9tIHN0UmVmOmluc3RhbmNlSUQ9InhtcC5paWQ6OTA1RkY1MzEzMTFBMTFFNTlGNzY5QkRDRURDMkMwNEQiIHN0UmVmOmRvY3VtZW50SUQ9InhtcC5kaWQ6OTA1RkY1MzIzMTFBMTFFNTlGNzY5QkRDRURDMkMwNEQiLz4gPC9yZGY6RGVzY3JpcHRpb24+IDwvcmRmOlJERj4gPC94OnhtcG1ldGE+IDw/eHBhY2tldCBlbmQ9InIiPz4lYPygAAAOWUlEQVR42uxZCXRTVRp+WZt9aZI2bZOmpNAttMWuYKllUcBhUVFAAXWEAeGIgqIC4uC4MIqjjjPOEUU4oOLCoohgoUhZS1u6t7R0X0PbNG2Tpk2brct8L6+Ets7R0VE8x/Ge15z7/nfvffdf7vd//yttaGiI+FXb4OCg09XP8WLfnNfR8ddqbL9SUTVS2ttn6x8YwFZgDnRwOZ0ul6sfj1z95K+hvSOroBj9gtLyIfemrb19be2dHh2oYZiChoUsPdayqpprrW0QYjxlZZvdgd+M3ILzWTk3zb5M/GGj9deaI8NCahqaHE5nS1u7RCT0lojTM7JCg8cJ+PxOc1ezoS0qLIRGo53Lzl2xZKHD4czOL4qPmlhb39Df7yqrqh2nDoBiMITD5TS2d3b1WJUKmUQobDG2awL8/Hx8Dh1P02rUt8ZOqqipi4ueKBIIjqef14UEV9TWjw8KvGkKkx5msZgms6XpWkth6dWcnPy002cVcu+quvrzWbkMBmOov9/UaRp0udpaDXs+PWS2WAaHBn3k3gwm40JOXq/DKeLxWASReTk/WBN49NSZy4UlVTV1Pb29rS0GIZcjEgkv5hZ0mM1ioSBYo9a3Gg6nnlIq5IVXrrYZ269W13qLRdpA9U1TmIbosjscaecvhWiDbHZ7e6c5fIK2xWBU+fnqWwzwCZfDgZIIawGf12rswODEW6Iws7CsAgchJTHOz1dhMHZYenoiQ0NKKioxnsfldpjM/r4+XmyW3emsrK2PDg+91mrgcLxqG/UI7EcW32Pts53NzAkLDpKKRWwWSyQU3DyFbyZE5ZaUBgeqcV5+LYwcVpjCGBaTOQo/8WxwiMGgeyQUPjHo9IGBgZpGvUrpy+dx/3eUprkbYJFG0HC+fvEzjAZEwYVOdX2j2dINdEVMFpWVf/51KuC3z2ZvN5nxNCu/6Pjpc+jgrB45cRraYlhlbUNbewfGILDxCEGLsAfO1zTo++x2DACYtXV0UiCPp1gfGQAvwm1Pb9/B42nGDhP6nx1NTT17AZ2WNuPJcxnNBqOVfLPj50dptKq6hm5rb/h4LfYBQLI7nMBbpCuVnxIwg6fYKLAUcO0tJqMRZ1ssEmYVFNU1XrstMQ5Q3JBfBIX9lT5AXaA3QiZI5Z92LqOpuRWHHxquXrYIWeBcVg7WxOJNLa042GKhEMFCo9PcoFAeMSEYBz63pMxk7gJeor/snnlcjtfP7GFkwgnjAlMmxwG6hAI+cma31QrTQj1sxNRlgc6+ChksAuzluF8fHR52Kbdw50cHSLwR8AHyyFsybyniM1QbZOnuhuG8vNjQEMcECa/hWgvWAbB1dlngbThZFzK+sLTc1NUFcwCoM3IKYnQRQj7/wPGT0ybHBwb4AfAAomMIws9zhrEt6OkrlyFQEZ9PrFh25ORph9N1z5zboblSLm9uM0Kf2MiI9Izs4CB1WLD2alUNfD7/junYKJvNSpgU2aBvxjAgPIgGgBdJrrmtHUHRajQGqQLAOuKidEDv9EvZXmy2NlAFB/K5XMhh31m33YrVZFIJWErjtZbYKB3shSgABQBMKGTSXwqloR7ukDDbO03IE9gZ8ZtrtF+dS9/kRif+z9rvCv/Wm7ta6ugEiU+cFAkURUUIdgFk9FQweSVl7SYTnUZH/gAae9gYgA21IQoJ1D0J0ZFgSMi9lwtKMFHpI8eA0spqFFWAXGo8ABkITKfTpWJhfHQkOpS8rulaeU0tmJZKqYwKD4Gkq7unqKwCqI43AmKyC4q9pRJkOzzKzC8KUPqi/EIfWRrpbXJMNPrl1XXIYTGRER7FSiqqkP74fJ61txeLgz4hO6KkI0vTvQePEEIVMh5VSLC10as3vTDkbq/v3EP4hcijk/xiUwhF8NrnXqLkyBlh0+YSqnDNlNsJSeBdK9ZBCFpEV+ve23+AGjNr2arQlD9Q/f1fHmNqIsXhCQHx0wmx+qENWyg56gdJRCJvQozvLcmQb3/nfQjPZF4mpJrc4itUNS4Mi3tw/SaS5g4O8kNit73xDjV32ePPyCKnUP2Fq57QzVgwNKL96dlthFyrip/uHzcNFyFSvblrL+Sku5B+2D4yFotFojaNJpd5w7ToF1+tfHbLi6++8udNj60EMTz27dn7lq+eOzNl7ozbVmzcCvbQkH1aE+C/5/Mvzly67JnL9RomRsjGyHPuWDAvf3TDi89t3LZhLW6hfF5JKTVmydqnJsdGH93zLzj82e1v9Fh7KUrPUwzvh06jKcj98Knxcm8p7zp7FwoEoDpUH0lUKhGNDN33X/tLRW0dtnTh0EfkHkwmGo0+HNJMJoPNZFXXNfr5KEBCaEME252B4W26SBgXrQOnB6NC8EgD/O1ucgtNYqMioC36K++/Fxf5BcNmA7sG37B0g6jZsXtQC8hRXRJOJ0mwbTYUHssXzscFORkRDDqOA9ut21vbNnm268UiWZpWra5r0uOUeT4AYauM62cBHdxd7zM8/WFwotFkEomxoxNvwXs5Xl5Ct9VIhTlsLxSxa7e+5HA68W6L1SoRCakPAwwGE0F1vawZwjuoaobL4YIej83pdDoO2N8/2Pf27g9hTpvDfu+dd0COSnv1mhUff/H1zo8/R/kFF81IStz75nYelwM3fncdRJxAwF//wquon+BtGHdEOUn77/EJpB2hF5w8x1Bbv3nzk69u2jCsMGp0OOS9V1+YmhADinffoxss3T2QYys4ODDe8Kto8P0QpT/Q6LuFIQ4ZCp3HH1m+aukiu8O+ZstL+haDJ8DIuOixouo6/M2pzc+/vO7hpQgZVA4jy0+qOZ0uYMy72/8MuzToWxavfdLc1U0VkhjvQTtsyGMsbIyK2JGtxdCGauT4hzuxGgj/jbQ04P5eNzF0go/MG4QZbqVKORIzOkxUHUciYU1dp76ZsjCYMECOjFWC+Cb9/NOv/A0dgDwMhyJJqZCBP8MtuIUcbPmpl3ZcqagWub/yJCfGUivgF1sprayh1n97z0ckRpKKECDV2Cv2Ex+tQ9A5XC5qCkpVADg1vqKmDree8MaRQUSYuyzQE13ScK5+8Hy5VIItITBhboLSatcnBwlCUny1An2y/lSMf3D9Zgrrnn75dUKiEYXHSyOnECL1kjVPUvLKugb/ScnAbZ+4FIKtSF5wP4XwhDTonb2fUGOSFy4PiJuOjmtwIDRpFsH3U8Qki3WJAMzVz2yjxqAIZwXqGJqJ5Po0CV4HYXpGFsGUIRtRKE2oIhB01PgDx04ga7DGRTI1E9mBuq9OpVPyx7a+jG14R07BRbDlb+7aB+FdKx4jeEqPcMe7uyEkuTTK3VMXMpfdPVcqEcPZ+w4dwalLTiD9AEsfSj3VZuxAIPF5vCXz51AATjn8xNmLwAag5aJ5s5CNoTAQOCk+BnU1BuApysnF8+ZQSftw6rdYDaEEzy+aN8eDQxdz8qEb8jzqsLtnz4QEpT/qtkXzZiu8pdjeh4e/QrxMm5JAjT+beTm3uBTjAe9T42MoYU7RlZyiEiaDiXOHqnbO9KkxEyNQe5dV1ZIgR6OhwJ6dkgRS8Hvx8LvCv0EuXVTXfPB8wYZ7pvtIbnwcfj/1EuB65ezJJA1ubN2fnvfkwmk+EuEHJ7KyyuvlYgHghM1ihql8/nhHYr2h859HL2iVMqOlp8/usjmdAXLJ1vtn5VY17T+Tq1XKWzotzv6B/oHBxSmTknXB5EHttLx77KJaIX10bhKQf9eJTDGfu+S2W0btbtMmQq8fJfn007FytZrYsYPsNDcT+/YRZWWEREKsWUNERRFLl46a6x5JerjN3H26qKp39PfBvGp9Qc3wosYu67dFld02coC3kAdllFJhUoQW2etkPpkkfKUiYEFq3lVQlVCVj0ou9RWT1EUpFZmttvNXatDRaZRcL9b2z05V6Mn/MFltjqyKhr2nsnMrybSXX62HWce6Y/Zs4oEHyI2ioYNrZNu8mbxWrRq+hbbQGZL77iNUqlFTsAI6WI3yMJfN8vcWj6FmchEfu6f6HPcABo3MwfdOjcZFyUsbWxuM5BdWnhfrwdvjX9x/cum0uPH+8hs2VUgWTJ6YlleO6CA/ytrsy3d8DIXD1L6A03C1b5fVll5UlRCqgQXh4bEKz5hB/mZkkL/z5499GhU16hbaCoXEhAk35NSUzz4bOf0nfvU+U1z92oFvYZEtS+4YTv00GpfNPHihkMNmwoIr50xhu+0F9mi1O49mXwny8S5vauu22f3lJE/EieCwmLDdoYtF7RarhM/90dmipIT85fGI8ePJTkoKcfQosXEj6WHKUt/zXfoHPnxRl9vDjUYzVC2s1S+dHrf6ziSo5yF6yNWd3VbXwCB85cl2GODqH/gyo7jRaJKJBJsX354QoqGIamdPX5JOm1elP5JZgqrgu6T6B9prr406w0uWEAoFcfgwsXv3jej4jwoPudkcnT6Kl/fYHBI+53pVQLPaHZQO2z5KZTHp2W9vHLMQPAYUWDsveWRIk7yy145jv2v9/f/46vzpwkpEr+eRw9WPgzM3MWLXiSy8KzLI/8cpTAHYmCMwaRKxbh2RlvZ9CoNJm6193+SU4aC2d1vxOzs2LCE0EMj8cXpugEz8RWaJn0w8Tilz/8MJDuTnVTfVG0y9dqdMxJuXoIO7+geGLH12qFRn6ECIingcSt7ncAK6MXH93SnFdc0r3vr0qYUzkidqYb6ObqsJTo7QAvkxMWqc/08Jac9hPnaM9DDFrmNivi+k5SJB7AR1aUNLfnVTd689PFAJhR+amYBEkpZfDmomEXD/+vA8asJUnRZYtSs1k8mgQ0ONQjoXiqHcF3ATQzVXmwzA9l6H0yP3lQp1Gj+UXSChLyyb8/yH36TmlkFhMZ8DDfvdYYxsBG/7SoQ/JaQ9rob+VE6aOZNYsOD379LD7d8CDAD9/NQaNdOgigAAAABJRU5ErkJggg==</mdui:Logo>
+ <mdui:InformationURL xml:lang="en">http://english.hslu.ch/</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="de">http://www.hslu.ch/</mdui:InformationURL>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:IPHint>147.88.219.232/29</mdui:IPHint>
+ <mdui:IPHint>147.88.220.0/24</mdui:IPHint>
+ <mdui:IPHint>147.88.221.0/24</mdui:IPHint>
+ <mdui:IPHint>147.88.217.218/31</mdui:IPHint>
+ <mdui:IPHint>147.88.222.0/23</mdui:IPHint>
+ <mdui:IPHint>147.88.224.0/24</mdui:IPHint>
+ <mdui:IPHint>147.88.225.0/24</mdui:IPHint>
+ <mdui:IPHint>147.88.226.0/24</mdui:IPHint>
+ <mdui:IPHint>147.88.228.0/23</mdui:IPHint>
+ <mdui:IPHint>147.88.230.0/24</mdui:IPHint>
+ <mdui:IPHint>147.88.231.0/24</mdui:IPHint>
+ <mdui:IPHint>147.88.232.0/22</mdui:IPHint>
+ <mdui:IPHint>147.88.236.0/24</mdui:IPHint>
+ <mdui:IPHint>147.88.237.0/24</mdui:IPHint>
+ <mdui:IPHint>147.88.217.220/30</mdui:IPHint>
+ <mdui:IPHint>147.88.217.224/27</mdui:IPHint>
+ <mdui:IPHint>147.88.238.0/23</mdui:IPHint>
+ <mdui:IPHint>147.88.218.0/25</mdui:IPHint>
+ <mdui:IPHint>147.88.240.0/21</mdui:IPHint>
+ <mdui:IPHint>147.88.254.64/29</mdui:IPHint>
+ <mdui:IPHint>147.88.254.72/29</mdui:IPHint>
+ <mdui:IPHint>147.88.254.80/29</mdui:IPHint>
+ <mdui:IPHint>147.88.254.96/29</mdui:IPHint>
+ <mdui:IPHint>147.88.254.112/29</mdui:IPHint>
+ <mdui:IPHint>2001:620:110::/48</mdui:IPHint>
+ <mdui:IPHint>147.88.218.128/25</mdui:IPHint>
+ <mdui:IPHint>147.88.219.200/29</mdui:IPHint>
+ <mdui:IPHint>147.88.219.208/29</mdui:IPHint>
+ <mdui:IPHint>147.88.219.216/29</mdui:IPHint>
+ <mdui:IPHint>147.88.219.224/29</mdui:IPHint>
+ <mdui:IPHint>147.88.0.0/16</mdui:IPHint>
+ <mdui:IPHint>147.88.216.0/26</mdui:IPHint>
+ <mdui:IPHint>147.88.217.0/25</mdui:IPHint>
+ <mdui:DomainHint>hslu.ch</mdui:DomainHint>
+ <mdui:DomainHint>hochschuleluzern.ch</mdui:DomainHint>
+ <mdui:GeolocationHint>geo:47.046681,8.314912</mdui:GeolocationHint>
+ <mdui:GeolocationHint>geo:47.013434,8.305034</mdui:GeolocationHint>
+ <mdui:GeolocationHint>geo:47.174274,8.512537</mdui:GeolocationHint>
+ <mdui:GeolocationHint>geo:47.060845,8.322106</mdui:GeolocationHint>
+ <mdui:GeolocationHint>geo:47.048388,8.309762</mdui:GeolocationHint>
+ <mdui:GeolocationHint>geo:47.048096,8.314655</mdui:GeolocationHint>
+ <mdui:GeolocationHint>geo:47.054246,8.295853</mdui:GeolocationHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.hslu-lab.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.hslu-lab.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.hslu-lab.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">hslu.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.hslu-lab.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">hslu.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">HSLU - Hochschule Luzern (Test IdP)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">HSLU - Lucerne University of Applied Sciences and Arts (Test IdP)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.hslu.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.hslu.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- University of Geneva Lab Identity Provider -->
+ <EntityDescriptor entityID="https://idp-lab.unige.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">idp-lab.unige.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">University of Geneva Lab Identity Provider</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Geneva Lab Identity Provider</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>idp-lab.unige.ch</mdui:DomainHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDKzCCAhOgAwIBAgIUPnGNWmashu8T2D9vQ0NvCHntNZMwDQYJKoZIhvcNAQEL
+BQAwGzEZMBcGA1UEAwwQaWRwLWxhYi51bmlnZS5jaDAeFw0xOTAyMTkxMDU4NTha
+Fw0yMjAyMTkxMDU4NThaMBsxGTAXBgNVBAMMEGlkcC1sYWIudW5pZ2UuY2gwggEi
+MA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCPL4WnbRP8nnEQLz/xN1G0Ffg+
+kAI9Dad7roFHqcVg0uYb4hbmXXC2JKzW24ti8eDdznCcgNXwt159rn17coIu5We5
+aOeLEq+LFEz+md6rn1het+jQoTTD3rnOQL/W0gktuo6enOzkiiHPXVqLBVmrSzZf
+h1kmymhSHZ1CQfcupG+keIbhBa0l2XqQTLDZQiyEIhGhPbjcEhyyUejuHrVxtquC
+VFo58X5BjGwlJTwTUxyZYvAaFrnVyL0uzaboj0vwBD9T8NxUPB3HmZVHg5pzPHUn
+smi+ULTtzfBp1vurN68r0//cLvm0b3GpkYfPntO4hGWcq1hOi66olOsIEXPBAgMB
+AAGjZzBlMB0GA1UdDgQWBBQQzWIU0mUPsOODT4Td/r8l5+8rFTBEBgNVHREEPTA7
+ghBpZHAtbGFiLnVuaWdlLmNohidodHRwczovL2lkcC1sYWIudW5pZ2UuY2gvaWRw
+L3NoaWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBAE4Prfgx50CJZdBmWrGNgQI8
+cFVEqpHimBYhN0Q4jTAzc5VwjEqGCP1Env0pGpQNwBMQpd3Wz6Mzp8NHp1Rc8Nve
+swT/j23DQnl2M8TLkuNA2yffzoesNZTVRrlFlnvt48YY04Zh3bDn1Za6M+ixKz61
+17gIdDJ4vC4rzo82SuiSsoJ0r2QD3AamBpc4yb2zYzIvS2R1xQQ+eVzmWJMz8HNy
+qMLi+aI4EFIaYQqgdCKHIAyOqoLdxmsoUmRzcDO8APQ6GwTog/8MqsYWzuGx2Z22
+ifJgPU+WUNfbazu78ifV63eAtUl+nBkhi5gMinY7oXtD0vK69FnXB2oZJHp3o5k=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp-lab.unige.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp-lab.unige.ch/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-lab.unige.ch/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">idp-lab.unige.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-lab.unige.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-lab.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Lab Identity Provider</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-lab.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- University of Geneva Test Identity Provider -->
+ <EntityDescriptor entityID="https://idp-test.unige.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.unige.ch/dinf/ntic/aai/errors/error-origin.php" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <Extensions>
+ <shibmd:Scope regexp="false">idp-test.unige.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">University of Geneva Test Identity Provider</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="fr">Test IdP Université de Genève</mdui:DisplayName>
+ <mdui:Description xml:lang="en">University of Geneva Test Identity Provider</mdui:Description>
+ <mdui:Description xml:lang="fr">Serveur d'identité de test pour l'Université de Genève</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>idp-test.unige.ch</mdui:DomainHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDLzCCAhegAwIBAgIURE4/bO64QeKkZpysUpeZN5/Jw0kwDQYJKoZIhvcNAQEL
+BQAwHDEaMBgGA1UEAwwRaWRwLXRlc3QudW5pZ2UuY2gwHhcNMTkwMjE5MTA1NzE4
+WhcNMjIwMjE5MTA1NzE4WjAcMRowGAYDVQQDDBFpZHAtdGVzdC51bmlnZS5jaDCC
+ASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMhlbd1r/m1wUOrmSdEGK5Mt
+o5pAMUnRg0jCgD/4hOtHPc/ym/UThvrrUKHBEs+FWdeaz6JPEc+qFfIxW7DQ+Dog
+doGAs+NlgmW6FPhCVcOiAvCXmkr68GsUuWNB94avq3B/XhVhDApyZTgXXa88lMYi
+73uNi0lG/JRCaKkk7MKsTcb54/+iYdDEwYYpCUXtBobBtbSHoM7+1CtByP37CqBL
+rW+qOyKbnUd57k9QoFtlzEPGIDzlluuriznoOSQNe7OUIzOM8YO+6wA0V3yPnZBl
+s/W8OWsnt52lXjDht+T4//dBvh0ZljCGntu3L3LHq8uW752nCxr25clxHOJM+cUC
+AwEAAaNpMGcwHQYDVR0OBBYEFFqC3VZWZ6khzyl+zLPQ42cONLZ2MEYGA1UdEQQ/
+MD2CEWlkcC10ZXN0LnVuaWdlLmNohihodHRwczovL2lkcC10ZXN0LnVuaWdlLmNo
+L2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQBmvCliZi1zw+qfvol0
+XaMTr+hcc0Xys493+P7EZ1Ma1N3r+3xBAOzQM8QYgwcEXy8A8B85YvmJIiNtC2Et
+tymONsmqIcdmU8hupKPC/vkwqtExhkLerfaF4nQEBLmOBWgAQQkMHFNsJwgX1M4A
+IRaqM6ZRvcBGfhH+pVHT7bQ8rRLbvUFqz1D9vPcxeIBPJ7I9VKD/KaP83u/rqpJ1
+GRfWmNMY23uWHQkC+1ar4gXe8RzcsLgpGHxueLejLDo9nhKmphUkb4kdaqkjUqB7
+8SkFRe/mSc50tNrhNpmXckxJps6HLb4hG/Fn+KN4HfqFdCooEe4XMRKKSwwRDqFD
+Ofim
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp-test.unige.ch/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-test.unige.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp-test.unige.ch/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp-test.unige.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp-test.unige.ch/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idp-test.unige.ch/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-lab.unige.ch/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">idp-test.unige.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp-test.unige.ch/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp-test.unige.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- DLU Test IdPv3 -->
+ <EntityDescriptor entityID="https://idpv3.dlu.switch.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">idpv3.dlu.switch.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">DLU Test IdPv3</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test IdPv3</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/SOAP/SLO"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">idpv3.dlu.switch.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idpv3.dlu.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DLU Test IdPv3</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idpv3.dlu.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- libraries.ch Test -->
+ <EntityDescriptor entityID="https://login-idp-test.libraries.ch/idp/shibboleth">
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <Extensions>
+ <shibmd:Scope regexp="false">libraries.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">libraries.ch Test</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">libraries.ch Test</mdui:DisplayName>
+ <mdui:Description xml:lang="de">libraries.ch Test</mdui:Description>
+ <mdui:Description xml:lang="en">libraries.ch Test</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABAAAAAQCAYAAAAf8/9hAAAAAXNSR0IArs4c6QAAAVlpVFh0WE1MOmNvbS5hZG9iZS54bXAAAAAAADx4OnhtcG1ldGEgeG1sbnM6eD0iYWRvYmU6bnM6bWV0YS8iIHg6eG1wdGs9IlhNUCBDb3JlIDUuNC4wIj4KICAgPHJkZjpSREYgeG1sbnM6cmRmPSJodHRwOi8vd3d3LnczLm9yZy8xOTk5LzAyLzIyLXJkZi1zeW50YXgtbnMjIj4KICAgICAgPHJkZjpEZXNjcmlwdGlvbiByZGY6YWJvdXQ9IiIKICAgICAgICAgICAgeG1sbnM6dGlmZj0iaHR0cDovL25zLmFkb2JlLmNvbS90aWZmLzEuMC8iPgogICAgICAgICA8dGlmZjpPcmllbnRhdGlvbj4xPC90aWZmOk9yaWVudGF0aW9uPgogICAgICA8L3JkZjpEZXNjcmlwdGlvbj4KICAgPC9yZGY6UkRGPgo8L3g6eG1wbWV0YT4KTMInWQAAALpJREFUOBFj/PJly/+XL4MZ/v//yYANCAm1MQgIVGKTAosxcXF5M0hIbGZgZOTGqQifBBNIkpPTlUFSkjxDwAaADOHgcCTLELgB5BqCYgA5hmAYQKohWA1AGLKFgYkJf+ww/vv3/z9IAy7QeOE2w61Pv7BKK/FyMrBglYEKZp+4yTDn1jOcSoyFeRlweoGQZpipWA0gVjPIEAwDSNGMYQCpmlEMIEczyABgLPxnyDtxi2E+MLSZQSIkAgBvqDxf8SowAAAAAABJRU5ErkJggg==</mdui:Logo>
+ <mdui:Logo height="61" width="80">data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAFAAAAA9CAYAAAFNfN6/AAAACXBIWXMAABAmAAAQKAEdNWGbAAAKGUlEQVR42u1bCVRU1xn+3sybGYZlYNhkGfYdDgQBZRM0pyaujVbrkhht7Tm2jU3TxLaJSbStUWNNojEndrFZ1Bw1NQnYRm1MNOLGZkViEFAQHBBw2JEdhpnpvXcWNrWoeCA575/z5r2595///fe7/3/v/d9/H28wGHoBSPB/iMcI6Z4Y73pbg6EPffpa8JWtXXgtpwR/nx4FdWsnjpTX4fkYPzR29cJJLgXH8Uj9RA3eWyHXvv/4I0xqoIMNY6JEmcyU/WTyw2gMwdEw6vCMDmNelQNiVS3g12dehZOVFLP8XRCitGWVnX06WPNidk2ZEj/OBL8xOWSYFDPTw8dxRPY46nceO4HEvCU5mmbk17Virr8rsVxb7Mgvw5bkMKzPuoqNSSF46WwxPGys8Byx6KPltUjydMSOvDK8lhRqEaTVVUMi9mRuAHosDvawVFJhlKgwSltTwix1c/0nsPNAYdQOjKRmTdY+aKdQe/kOdcpI/fl7ZIeCwHumC1UKcBCxkZMJrGnvhoetFX5/pghPh6kg4oC0Eg1SVU7I0TRBTApeigtk9W+mhmPNqUJcaWrHdF9nrIkJQJyqlQkdpiFlPqauA7XK1dE++LDwBjIqG3FsQbxpsgROVjZg+7QIzErLRVtPn0XIzZ5rzJ8N5MNT7cw009fVcr12UiA7zPTW1HDL9RcL4y3X9MbvfVs5ehj+LMKLHYIdjvPxcFTn5XHfYkFBQcH7UHBMHaSnT02+RZbfMt6TfPev2/kKEj3xIhHeJkvHt6ZG4LenirBtWviIhKcezMKZJUkjVmb6p9k4sShxUJmM9yUzlQ551Q5k3hQjyr2QLVktCnKgH0DOG3u7pKWDnX93ugjTfZzRq9PjiQA3dPXp0dDZgx69HquOFyBjUQJkYhF2F1ZifoA7aSSH9GsafEmmzAOzY4yTtaYFUsIT5aIgcaUB3TodK381sxibk/uXwxwnJvNwG51U0dxdCYneOJXS9SDvbivDnEPnMcvPOHVSYcn/PIcFge6wlvBESSU6tDo8np6N5aEqwjcBT4Ua1+H0vysjvLHyy3yUNHfiwxmP4HCZBo+nZbPY1koixp7LN3C2qhEbyDo91NHO+D9rq2Ho7i+uxs5v1KZfVSYFyfwuId371cIEC+NmFssNjud4cqPMJVMsv1dFerPzRzMnsvPuGRMtdZ/9MG7QfweuC2aaQHh2op+lrJCsZg6V1jC45vi5DI7oTU6iHUtHiXC0RUR8sDAOCgqOXwVHO/wcZeoVulhQUFBQUFBQUFDwO6yg3tALrU7Tv/QnHynvNZBFOqYKijgpatq2oqljv6lEglhV/WAEwz86haIV07D27BVISPS3MTl0RMJbuntR0NSGFA+nEfEfvFqDJSEew8r9lH8hsZwN6jv+cfsuppEZpZgJChQ3tuOYup49rHwjNQxbzpehV6/DbBJLHCiuwprYAJwmAVCQgw3CnOzgKpeRKEyLjTlX8ctoP/gprPHimSIsDfVEvJsDi+RoBOdqLYWPnQ1osvDdfDVeTwklYHAWJbyVb5DIToq69l13tsGC+jYWOiZ7KDGDhJvPZVxGZnUz8p5OIbZiQKjSlsTBmXjM24XwOLKnrjQLuSG7FLumR2LFsXxMdLXHuvggS9JxCuHPeXIK6IourVSDW719eHNqGJ7PKMSORyMGKeLlsAlWvArt2v6nt1a8eLiTyEkEx3Ecu7md1Bjh/4AE3BmLk6An5XTx6GdvjVv0MbCBIzw8Ow49MYnxlpO4euVXl/D5vEkwrzSpPEqRznYD4rXhNO9IJPlPruX32skB4H9M4l+aS3QkrZYQQWvPFONi/S2cWJjIUKGUQFCd/+/z8LGVw1kuMRk4fSogwk/CPTH5wBnEuSkx29cVG3JK8MqkICw4fIGEoLFIOZgFLzs5VoT3Py2gpjE0vEyy5K2GdPGrpEsovRDjN6xy3yxjvLtlStiwOopa7AR7dn3+qVRLuTlp9qMgN3Y+e5tHI68kBA0YagxI/jgL4MbpQL0ptxRz/F1uW+ejkI+9gn9ICBZiEkFBQUFBQUFBQcGHqeB4z3aOcxr/U7HgIgKAAgkACgAKAAoACiQAKAAoAPj9I27M9+SNJekMHVA3PovGzn3gbmdLnATRHkWQiFV3EiHh6Za7662d8Le3YQkVTUcPe4jtZi2DprMHer0BAzeVj4riRKa6rQtuNjLYDHnxaDSopUeLpm4taZP1XfnEnA0CnHfD3/AeKptfQH3nXrbffwA+uOMTfbMLU8CW/ucijs6bzICylZCe4Iy5lV2XKtDVp8OfU8JG1+6JTo4yCSSc6KFY1omKBnxQUDnozYC768PDx/FdeCvfQdWtdaht3zkEyHsYA7f+9xo7m19Ty9U041cnC/CLKB8cr6xnL1xsSw1jmbYdeeVQSHkEKm2xLNQTR65r4GVnjUkTHLCnqBKXG9pwcG4c1p27QtyAw9WmdkS52OPX0X5YejQPf0oKRrijHZZ/cRFTVc6YH+SGwoZ2vJNfhj0zovFpqQanbzRgQ2IIbnZ2o6K1C89E+cKUS8O6zCvIvdnC3tkIJjocKK6Gr4McSqkUbaTj56TnYlm4J3FVDn/9Ro3lYZ6E1/cuQIrg5fA6OzSt21HduunBJ5EEN0dsSTEmjaOcFfC0keOP2aVYE+uHRuIm/yKWa8WLWArzQq0M+0gj0kpqQLwUN9q6UUVclfZlS3cf0k0ZxlumF1AoDm/nl6NLq8d5TRPprCZW7iKX4lxNM34e6Y3ihlas/rqAbap9JrofvMNltThX3YSTi5JgTuVunmLU87OSm8STRDi6oN8Cy1vaUdLcPmIrdlOsQWnrT/FY2hX0GSqG1dOc3drJgXS/LAedzoAK0lj324x1XxML+Jwom6JyJBbQjb9dUmN1lLEXbSRillOmdKhMg71FVdg7MwYKGY8NWSWoaO9mdXRA8LGXD5NNy1eGebGE+Rx/N7b9maJ6XF2HRA9HZNY0sg24vgprAnAzZqXn4JPZcci62UTqlXCWy/CbjMt4kTTEluhCXzeqJOO5mFgSZ+Duy/1pyji9tAbbL15nRnBHPvohzLy7jRW+XTEVrSarWB8fBPO9XyaK0YOCVEvGSm87GU4vNmZTaXZ/msrJAiDdZj2fAED5DAY9tk0NZ/u4qXVuSgkZ1CCFVMzy21IygZD+w7klyUSeHnVk0qKNXxzsySzN207OZDR09SLB3QF5y1JZz7vburPkO00/0zbS+i6tDnFk6Eh0VzLdzFlgM708OejuwJFjPzGAnWTcvxfoLS5MrYaSlO8fPKXi/uuh1kmB40WDZ1ARafVAPrlphpUN4aMbAuhGg8HyRGQSG26lVmIxVAPK6T2sB/yXM7n8cN0GwzCwLUNd8YPLVXi/oILJvle7HfNt52NNFLRVkV7suA/SCpHIg5FBAFCIhQUABQAFAAUSABQAFAAUABToPuh/7/58N9v/C3gAAAAASUVORK5CYII=</mdui:Logo>
+ <mdui:InformationURL xml:lang="de">http://www.library.ethz.ch/de/</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="en">http://www.library.ethz.ch/en/</mdui:InformationURL>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>libraries.ch</mdui:DomainHint>
+ <mdui:GeolocationHint>geo:47.37643,8.54772</mdui:GeolocationHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login-idp-test.libraries.ch/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login-idp-test.libraries.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://login-idp-test.libraries.ch/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login-idp-test.libraries.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login-idp-test.libraries.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">libraries.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDWDCCAkCgAwIBAgIVAP9MGKsFmdRFRYW5axHOWey/sbR0MA0GCSqGSIb3DQEB
+CwUAMCYxJDAiBgNVBAMMG2xvZ2luLWlkcC10ZXN0LmxpYnJhcmllcy5jaDAeFw0x
+ODA5MjQxMTU4MDNaFw0yMTA5MjQxMTU4MDNaMCYxJDAiBgNVBAMMG2xvZ2luLWlk
+cC10ZXN0LmxpYnJhcmllcy5jaDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC
+ggEBAI/fQY/ZH9wOGe4UmmcLZt/nPJt1ZaJfqDNWkwS6O8Ca5+HdYnGIJFZLTU/a
+hyWt+872j5tnKM/SBpsuLjm1FKOQGcH/RyovEHK/htTidsr8KElcwJJpLAf6P1qS
+jTsGzdwoodQWotOGE+2SW8Kbt71l9JZ+yjazFJzJ++17YEdn5oQnSQ2NgCA2jZxv
+8/fHzi2KsAg+adcXkR4O347OwSpUlTwYuTJ+Apsnx9fYM3bzGLsmr7hjugV2rV7S
+TF4C/lTqF4O11ImmkO+8V0vVtwJsfAgRS3AQQLn1G/ttPBadY34daygXRrGApFMl
+Go/bcSnXZfZ0B9Kp6ip44tGzmuMCAwEAAaN9MHswHQYDVR0OBBYEFJ8I8NPve7Ox
+KLwkgmUhuN9K3diwMFoGA1UdEQRTMFGCG2xvZ2luLWlkcC10ZXN0LmxpYnJhcmll
+cy5jaIYyaHR0cHM6Ly9sb2dpbi1pZHAtdGVzdC5saWJyYXJpZXMuY2gvaWRwL3No
+aWJib2xldGgwDQYJKoZIhvcNAQELBQADggEBAIFMRURnh7veEbyGAjA+nSqr9d3S
++Z2VTxd8ETwv30PusKZgwosM/zO9n/OY1r7rOEA4+MF6K8XXJFBZ1viiMl4PRbe+
+leJSIHNeabZVkGfsMwKbpgrR+49r4qTSultiVhrmoIcB1SxvM431eYyuTrV7/bjd
+quvdn2ZOi7oZOxx75VHzrm1X6Psxd4+63YU2atvPLH+n72W9wag939lRs6/IuaTq
+5XwKlOf3fgzlJdNDM1utnpnf+7Wx/jPAWOSMDRARsk2EcJYatFNKCCdgO9pTo+OX
+Pw1Zuf7Bd34xBf3BlRiN3GY0ZO0WmhPCOiyXB6g1WlyKGcoIPUsuGAg0wF0=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://login-idp-test.libraries.ch/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login-idp-test.libraries.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">libraries.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">libraries.ch Test</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">libraries.ch Test</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.libraries.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.libraries.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PHLU - Pädagogische Hochschule Luzern (Test IdP) -->
+ <EntityDescriptor entityID="https://idp.phlu-lab.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://hotline.hslu.ch" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <Extensions>
+ <shibmd:Scope regexp="false">phlu.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">PHLU - Pädagogische Hochschule Luzern (Test IdP)</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">PHLU - University of Teacher Education Lucerne (Test IdP)</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Pädagogische Hochschule Luzern (Test IdP)</mdui:Description>
+ <mdui:Description xml:lang="en">University of Teacher Education Lucerne (Test IdP)</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,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</mdui:Logo>
+ <mdui:Logo height="33" width="80">data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAFAAAAAhCAYAAABObyzJAAAAGXRFWHRTb2Z0d2FyZQBBZG9iZSBJbWFnZVJlYWR5ccllPAAAA4BpVFh0WE1MOmNvbS5hZG9iZS54bXAAAAAAADw/eHBhY2tldCBiZWdpbj0i77u/IiBpZD0iVzVNME1wQ2VoaUh6cmVTek5UY3prYzlkIj8+IDx4OnhtcG1ldGEgeG1sbnM6eD0iYWRvYmU6bnM6bWV0YS8iIHg6eG1wdGs9IkFkb2JlIFhNUCBDb3JlIDUuNi1jMDY3IDc5LjE1Nzc0NywgMjAxNS8wMy8zMC0yMzo0MDo0MiAgICAgICAgIj4gPHJkZjpSREYgeG1sbnM6cmRmPSJodHRwOi8vd3d3LnczLm9yZy8xOTk5LzAyLzIyLXJkZi1zeW50YXgtbnMjIj4gPHJkZjpEZXNjcmlwdGlvbiByZGY6YWJvdXQ9IiIgeG1sbnM6eG1wTU09Imh0dHA6Ly9ucy5hZG9iZS5jb20veGFwLzEuMC9tbS8iIHhtbG5zOnN0UmVmPSJodHRwOi8vbnMuYWRvYmUuY29tL3hhcC8xLjAvc1R5cGUvUmVzb3VyY2VSZWYjIiB4bWxuczp4bXA9Imh0dHA6Ly9ucy5hZG9iZS5jb20veGFwLzEuMC8iIHhtcE1NOk9yaWdpbmFsRG9jdW1lbnRJRD0ieG1wLmRpZDpCMTdBOUZEMDMxMUExMUU1OUY3QTkyN0RCRUJCRjc2NiIgeG1wTU06RG9jdW1lbnRJRD0ieG1wLmRpZDo5RjZBMThGNjQwMzIxMUU1ODNGNjk3Qzc4REI1NDBGOSIgeG1wTU06SW5zdGFuY2VJRD0ieG1wLmlpZDo5RjZBMThGNTQwMzIxMUU1ODNGNjk3Qzc4REI1NDBGOSIgeG1wOkNyZWF0b3JUb29sPSJBZG9iZSBQaG90b3Nob3AgQ0MgMjAxNSAoV2luZG93cykiPiA8eG1wTU06RGVyaXZlZEZyb20gc3RSZWY6aW5zdGFuY2VJRD0ieG1wLmlpZDpjMGM5NGQ0MS1hZGZlLTQzNDItYjkwMi04NzUyYjQ2ZDI0NDkiIHN0UmVmOmRvY3VtZW50SUQ9ImFkb2JlOmRvY2lkOnBob3Rvc2hvcDpmNDk3NGYxZi0zNmFjLTExZTUtYWQxYS1lOTNmODYzZWE3YTIiLz4gPC9yZGY6RGVzY3JpcHRpb24+IDwvcmRmOlJERj4gPC94OnhtcG1ldGE+IDw/eHBhY2tldCBlbmQ9InIiPz4klLOvAAATb0lEQVR42uxaaXhUVbZdNacyzwMhAwkSQgYmEQQRDQhCawsoKqDSKmqDSCsITmhr2/pQFOjXrbZKOyCKMrUDIJOihjkQICSEEEJIQgYyz1VJquq+vfetqkx+Pgd+evjqS9177jn3nH32XmvtXWgcDkdpW3ubD6gpigIN/fPw8OBL2O02dHTY4HDY4WHygFano+sOWCyt9IwZRqMRnU1BW1s79bfDbPaEjp51zdneTvdtHTDTGL7P11arFZ6entBoNeiga41G657JTu/jZ7y8vKivwz2XQ3FAr9NDp9dTf5uslefnj9lsdo/nsW1tbfD29qZ5NaitrYXBoIdeb4DJZIRWq8Nlak0oKSlRklOSlISBA5TYftFKv7hYZcofJivnzuUrllYL9Q1SoqKilK3btirclj6xRAkPD1OmT5+qdG0NDY3KuOvGKpGRfZT33lvjvl9WVqoMHTZYiewbqaxf/4ncmzX7TiUiIlxZseJVZfOWTYqvr68SFR2ppKQmKUOGpiqhoSHK2o/WKus+XqdER0fJGqJj+spz8+fPU3JycpSBiQnKoKSBsubYfjHK+AlpSvq+dJl/0aJHlT59IpSk5EEKHYBy4OABJSgoUImJiVG2Offxs9uKFYqyeHHvT26udOvptJqyT+WIB5o9TbBa2lB4/gJaWu7Du+/8B0VFRWhqbCEvdIjJKysrUVFxCWfzz3Y7Cu7Pzc1F5aVqVFVXd/OG7JxT6GhzoKamRu4VFBSgvLwCJRdLEB0Tg8bGRvJmHaqqKun9HfLM5EmT8c67b6O4uAQmDwPCw8LI0xzinU1NTTiTmyfPeXqZ0E6ef6GwCFlZWSguKkFzSwvKysrl8/QzT+LVV19DYHAg8vPOybt+URs9GhQuQGYmaOPAlCnq/fBw8UAth0dgkL/cO5pxDDt37iS3B06fPo28vDPoH99fwqC8rBT19fWw2WzybGBgYLf38DPBwcHqpig0XY3nDwkJle+uMAsICJC/PN+0qdNQTQbfunU7PM3quKVLH0dwSDAZolmuhw4dir17f0BGRgZeW/E67LQGnV4jfVlZOdi1aw8YAaoqq1FWXoaoqL7S5+3jiZUrV6G5uQmbNm6We1qt9pcbMC2t85q/88dftZnWtXm9Xoft27dh73ff0klD8M2PHrIRDnp6eeDxJYvJW/rKM07I+82NccpgMCAoKAhfbf2KsKoBPr5eeGzRYrdXcysuLsakyRNx1ciR2LJlC8IjIuRgPMwmrFv3ETZs3AByTgxI6I8I6quvb5BxvCe73YFFixchNSUVQ4akorDwPC5n07u8hBe+ZMkT7o4FCx7BkMFDUFdXJxsxmcxyehrNz5hUr+92bbfb5a/JZJK/bLSuBiopKcaqlSvl+0MPPkThGt5rznYytpbcrF0IRyNzeHqa8fxfX5B+P38fbNywWYiq2gkh49PGY/+BAwRFa7Bs2bP48MO1OHTo4GU1oNa1kZYWC6ZOuwVLKHwI2PHkE0+htbVV2NLS2obly1+hsD6DG290YsBPGLJrmPDhaJwP83wCHIRh0ud87pVXl1OfFaFhIZg/f0EXYlfdnGEk89gJlJaWYu7cufKXvZfnnTZtKkJCg2iNVuTn5zvhRB0+dep0zJs3X77fe+8cpKYOxl2z776sBiSXLmykEOWVKrt37+pGQGfPnlV8/bylb/vX2+Xen+c9JNejrh7R7dm6ugYlvn8/6Usm9ps46QYlLe16JTMzU7lm7Gi5P5gYdtbsmYrrfRs2fKYQqLN2UnR6rRLRJ4yeHaMMGzZU2bFjh7Jy1evyXDjdvz5tnDJ27Fhl9epVyuHDhxQniChHjhxRbr9jhnyPi4+VtSx4ZL5cr1q1UiEJoxiMOrlet26t8qubi427t0YtayjWbtxqa+t6eVKHkzRc7NXaapG/tg57j6NQRCNyy84+jV07d+Pbb/fCYDS4Me3k8Sx88vF6tLZYxSNmzLgdjz66UExhJjxjuNiXvp8I7zh5ew6FqJeMqyMdt/fb75Geno6du3dS+Hbqz4AAf9xz9xz5fr7gAvbs2UP3At3YyYT154fmyfXCvzxCzFx2WR1QQyHamJ19yoc3n5CQ4H45tw6CqPziS2iuLsHApMHwNRtQeOECLhJmBQUFY9CgQd1wLicnWySFVqcVcetwKEhJSRFhfuzYUZEZjF0JCQMxYsQIGUfaDWYR6Z1hz0wfFxcv0MKg78JMm81O4RqCsNBQUQk8f2pqqnt+q7WNCCac2NxM4XwOpPvkY7VYkXXqJBrICRjXQ0JCLpuQ1rAb0hefH+u1VhXCcupLBKT9BS0Fh3Hx5DdImP40fm+dBvxJUdRSU4aML/4t3xtqynEpazfJBfvvZusawpTnNtbmHfSx1BTDZm2FOSgSYUNu7PbQpRM7YPQORED/qzplRWMVas4eREdLPRz2DvhEDkRQwpheL6g8sQtakkDBiWN79ZUe3IiGCycZbBE86FqEJKWRINYK+xZ99z6aSs/CIyAM0dfeA6NPkHtcY0k2yo58DntbK7zC4tB3zEzoPbxQeeobmHyC4Rc7WJ4rP/olavIOQmf0QMSIqfB33m+5dB4X93+GjtZ6BMRfiT6jbkXduQzJxwP6q9DS1liNWtpfaOoN0FIOXZW9F20NlVBor/YOUgxDJsErJLZJ99yyZ57KfHOuqeZMOuztFhTt/QD1FzIRkjyeBhrpZQX4/rlr0ViUhdi0+92bqMndh+NvzyOPtKH1UiHObVuNlorzCBt8g2oEXmhlIfa/OBFVOd8heuxs2YiqThw4ueZhFOx4Aya/UFhry2gDRxA56jYho4zVM1F6aDNM/uGoIqOU7FuPsKGTYTD7klG+wpGVd8gcWp2RDncnfPomwis0FkdWz6I9tCI0ZTzy/rsceZ8vh4dvKBoKj8s6gxOvRf35Yzi4/GZ0WBpEizVdPI3wYTch5+MnaY8nxNAScYXHcPRfcxAzbo6Q6eHXZ6C1ugjtzbWoozkC4q4kZ+vbrlc3ZEfs+Afoc7+cxIH/uQl9rppOE0+hxX+C4KTroNjaUXF8O8KHqjrQbuuAZ2gMhs9/TwxdkbkNGf+YTRudROP+IM9UHN2KgAGj5NQqjn+NqGtmur2y9NAWjH7yCwRcMVKdj05Vq9PT/U2oPv09xr7wPXl1AnlZC75ZOgwlP3yMAVOX4symF8nQt2Lw/f/sJLB2VRkYvQPI6GEqI+98AwNvexb9JjyoEpBF1Z65m1+ieRMx+ult3RSECH2/UPcdk28weXOQiHYHZWNagweGPvhveAZH9xbSfBJ6s8ojXmHxYhCdQc0aKk/uQcItSxE08BqUZ3zZGftaiMs7bKoEYqMFxA2XA3A1Nnj85AUIS52IsozP3fdrydsC4oe7jSei2qB6Z13+EQQmXC3Gk/smLwqjibDUXiRPLSVjWdFv0rxum9AZzc416eiwVIz26ZskRmePk+yI9tdhaYSlqogi6b6eSEbv8YS1oUo8suliLuoLT4rRGF54s2yP+vOZ0tdcftbNBXoebCTcKD28BRaSK6WHN8M3Kkm8rqHopMiRkOQ0OZ1jb94PG+GO3uTpTkUUu63zNGgjtja1ANBYnC0LZo/1jUpBcfrHhCGXaJ4wwp4GaPSqNLmUtQdnNv6N8CkVyXe9KhvRm7y6G4g2wqFpqSklQ3gLzknxg0KsnbAq7saHJVrYW1zeOGTuGwQT87H/pSkISrwGQ+77XxjIQ/nANTp9LzzmdVUc24qsDxdLKmNrbSTs9pJD4cjQEY6f/XIF7ZqM6eGJEQs/Ii8NdRYTuFDaXEOgnYuIK2/GVY+tl4EVmdvpfi3ObV0loMsgyh7SowzTGQhkTJ1BrajUnNknYwu2/QPFe98X7KjJO6AaWmdwF1C9gqMQSJ7IRMWgzgZ0OGzdJTrNq9HoYPDyg6OjTcKdWxgBeSN5RF1BhtuTXOmfd3g8xizbiZGLN6KVsDhr7eMEQzboPX1+NA1tqy+nKBuD4fP+Ix+GC7u1WTyN18OElUiQMHLRp9Jv9A5yhbAihokeezeGzVuDhGlP0UIDwOWN2vzD8IroTy6bTwzdLJ5aSVLGtVg2gsHTTwXd4lNEPidkEdyq8/YTXsSgica2N1XDTNjBZCLhRYzNocDG8O6TgJR7VpBn+Umo8Ji6gmNuT5LDOHtAIoDhhb2XGZFb1DWzEDxwNHlVR9f0qZthmN3737RIoIWJx+gdTMS0t1cWZadszOjlD4/APsT8EXIA4DDlAyFB7yDj+xNjewRGMnmIg6khTA8wC7IRu7ayI1+ILLhhZTY8Q2LUQujX/0LOp8uQOONZeVlTWR5O0clyWJQf2yaUz15RV3CUCOQrjHsxHb7RKWpa9cM6HH93PgnxZ4igpiJ/60rsf3kKosfdLXKhjSKAF8rjcze+QEz5R0QRczP5tJFkirz6Ngk9JpDsdUvlUPiatemAPy6Rd1gII/0Yk8lQR/85B96Eo3oPH5zf9RZCB08kx/BH39G34/g78whCjMTc6mElz14uLM3j3R5J87fWlIgHsqpop/Vlvf+oHDC/O+7G+fCLGQzd88//9SliWBPrH0+SAm6JTUDpF50s2OJqniHRwsb8LHuj6totArYsUxJnPOfGPy86Qd6sq5kpVBXyONZtfCChqRPQXJon8kVHm0yY+gS9L8lJGhPQUn5ODMtsmHrvasFlbiEp40WX1RBTW+sq6ADuIZ14txr6RDD+ccPIe/rDWn+JYGS/aL7IkbdK+LHB/WJS4R1xBY1PR3PFOSG+4OTrWFZIZPjSnlWndAj2sgdrDWaud9Ath+yf8TiQNDF5avtPpnK/t9+Yyv3efmZBleOfAbazjumQe+hyj/WXpeaiW/f1bIwfDPBdmdPFiOo77L3yaGtdubBzz8aExe9yPc9zdR+rONen4EfX3+VdEnY9WN31jMPeTkRmlU9XOfaLSvrMYMfeuFewLmrsLDVHpWyg7NB/cSVpHS4zXfhmDQrpw/rMbm0hVnuU8s87nXlpDrI+WEQsZhG1P/DWZwU3Mt+6H0mzXnZjV+6G58X4yXe9IsY5tXYxLGRANlYEifBBd74oz+V/+RouHtgguMqab+SiDfJ+1qgpc15XU0RKGbM+eEzm4jTuyMo7EXP9nxA+/CZ1ji9WoL2lTvoLiUCY1IY//H7nL4i055xPniLVcFIEMpNF/8kLJRP7Fb+JOERLBcSP6FIoqEZj6WkRkAzkLC6TZ76EkNTxogdPvPuwJOw+fQZS3jpLSCH5ruWkpS5J0t/WUEFEcopAvVOKtFZdEFHOjZmbk/WhD7xFYF+Bjha1kFuS/gnObP67kAbnmg1ERtyay/LJ2J2FULvNKn2szeQQKXvo6smtZGxro6oqLHWlpBbO9nQ/KTIwYTDRseD3i0r+tT8qaUTLmfyC3TeNviFuoXjx4CaEJF2PuMnqbxWJtz8vCXzNmQO0AfI6YuErF66lOfzd4+vOHRXJwAzadU6HUwCzB/rFDhHvdHmoKnXWCqvGXPcnuXYxIoebybezCMqZCB+US4txpUjrTAVlUx7eMNjUd3HU8Fp6N4WibjLCSN78xl/lNGS8EKl41DnzxuaKAng4E+uO5joSu1d0G+QV1k9On0tgnFwbzH7dgdXoIfnpadJzqiin/Df/kFRDuMVPWYgTaxZIhhA7YS7pwmkq9tFhdDWoq3n4h6OCMpWsDx+juSjNIo+RFMuZr//yIh7JqqAoFO5+h0T5dwRLTbji5scFDn4diVBocbhyuYg//F1xVig0kqpperxf4/5/L1JV6PEjscb5i5pGZ5QknrFMEn0n0LOYHfX4Juljwcu4x7gkBQWN9kd8RZGSkt7kTamYr4jgXjbpMk6j+///7wsTC++Vo4Szi197GHpeHhdH+93woLvcxLW48zveVBdDi+3JlBbCrSB6IYd+e1OVMJ2my28anBZxvpp46zIR0IJ7bYvR3iXbYaLhT8m+T5Gz/mlEjrmD5gvolRGpeWqFhLOLaDhL2P/3ye4UjtM+V0VGSILYlcnOpSg0Wn3PExFMTbjlCcmKfrOM4XBk4nAvmAzKwMotNDkNFRlfoDo3XaTMxQOfob4wUwoA/qTirbTh3E1/EwZuodDnkg//jyubzNlpDD4ElwdyTtxaXSwb5ySeMwuuvfGchXveIXY8Lmqf39neVEP9Jkr1On8x5IPgMGbmV8tZHihO/4hkVCPBSgkqKK30Cu3nlEB2WUczpZ2sGPi9aulLK+zMeX5DUdaPHtzP/Z8JPgzIXU+Qv3NxksGbc9DKU3tw/O0HaVFx8kLOPV1l8+SZL5MBX1DzWVpE7IQHEEmYxpVgdDl5A9cbndfF36+VUpnRK5C0YBkG3f4CvdMTMePvQ/WZdCnMmimsmKRGLt5EIRYhBu1aMOBU0lX7S6TxnKceem26HCQXHRhnJYWkeRhbWUlwPhs44GqkkLzxjx6MajpIrrSzUftPeQQxab9YxvhQKucopVP24Vqeqw7HHskLNhC7ubCFS0ace3Ke2RNsWysvyOkafQLJi0a5w4zZj0tXQkYt9aoh6R5viD2VN8u/UzAGdW2cw7KO86dknSFABDrBBNfzXMKa+wWvndglpbbzR+UgQgaNc5fZeB/smQqFO1fedZTXctWa631cu3Q4RTo7TFcl8XNTuf8TYADVLm9s0FZGJwAAAABJRU5ErkJggg==</mdui:Logo>
+ <mdui:InformationURL xml:lang="en">http://www.phlu.ch/ph-lucerne/</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="de">http://www.phlu.ch</mdui:InformationURL>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:IPHint>147.88.204.221</mdui:IPHint>
+ <mdui:DomainHint>phlu.ch</mdui:DomainHint>
+ <mdui:GeolocationHint>geo:47.051064,8.302218</mdui:GeolocationHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://idp.phlu-lab.ch/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idp.phlu-lab.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp.phlu-lab.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">phlu.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://idp.phlu-lab.ch/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idp.phlu-lab.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">phlu.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">PHLU - Pädagogische Hochschule Luzern (Test IdP)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">PHLU - University of Teacher Education Lucerne (Test IdP)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.phlu.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.phlu.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PSI - Paul Scherrer Institut -->
+ <EntityDescriptor entityID="https://aaitest-logon.psi.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.psi.ch/computing/contact" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <Extensions>
+ <shibmd:Scope regexp="false">psi.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">PSI - Paul Scherrer Institut</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">PSI - Paul Scherrer Institut</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Das PSI ist das grösste Forschungszentrum für Natur- und Ingenieurwissenschaften in der Schweiz.</mdui:Description>
+ <mdui:Description xml:lang="en">The PSI is the largest research centre for natural and engineering sciences within Switzerland.</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABAAAAAQCAYAAAAf8/9hAAAABmJLR0QA/wD/AP+gvaeTAAAACXBIWXMAAAsTAAALEwEAmpwYAAAAB3RJTUUH3gMHBwccYJhJmwAAAOBJREFUOMvtkjFuwkAQRd9KPoBThwaqnVMgmVwAemQKyBXi2JeJRR+KgAuEkbgE5gDQEskXmBSE1RorTVJF4lfz/8z/O9IO/HsYAFXVX5mNMcGVzPM5VXVwTRHb4L4mYhnH44uo33h9SdXHLfc1vxcAlNsdAKfjkc2mZDgaulcX7wvqum6tX253DKI+gS8+djrEk7gx6IelSdYKagRU+z3Lj8Lx/C139W1wI2AQ9SnXa87nT8KHkNnzlDTJfjRdPQCBMcaoqopYVsuCbq97GXiKWiuLWNIkQ8S6b/zzHXAHX88Pfvx23KcVAAAAAElFTkSuQmCC</mdui:Logo>
+ <mdui:Logo height="28" width="80">data:image/png;base64,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</mdui:Logo>
+ <mdui:InformationURL xml:lang="en">http://www.psi.ch/</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="de">http://www.psi.ch/</mdui:InformationURL>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:IPHint>129.129.0.0/16</mdui:IPHint>
+ <mdui:DomainHint>psi.ch</mdui:DomainHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aaitest-logon.psi.ch:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aaitest-logon.psi.ch:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://aaitest-logon.psi.ch/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aaitest-logon.psi.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aaitest-logon.psi.ch/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aaitest-logon.psi.ch/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">psi.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDMDCCAhigAwIBAgIJAOx2a1HjaIFpMA0GCSqGSIb3DQEBBQUAMB8xHTAbBgNV
+BAMTFGFhaXRlc3QtbG9nb24ucHNpLmNoMB4XDTE3MDEyMDEyMjk1NVoXDTIwMDEy
+MDEyMjk1NVowHzEdMBsGA1UEAxMUYWFpdGVzdC1sb2dvbi5wc2kuY2gwggEiMA0G
+CSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCQl0ge4rPz6hsbyeeK1O25CA3aw57C
+oUw2JMLEW4WUTFHIr/CAJBIA39Xf72VDPVNamKHy+aYxm8muoQROdb/3a44eSoH9
+90qtU/vc2R9ZAOPS3vZ4Imr6hnVU9oX6YC8VZeXUOtQxctmKeG20t/gJj2JA15c5
+nNKtKkiTNeFfx8NvDSzMNrgWsBF+jSioLiESm7xubSLxP8Va1xEuIh4ddwkxbF0+
+N2UoKgtVRdloZA+fSt+6778raoI+LI9LUwgBjmCLfoVr83Zd6qDy6Z+G3Mmtpr8N
+1wMKpnPwQ4nrUuAINHVVluGUV6I4YBC+FD9wutTsKxnFsoEj9mW6sfr7AgMBAAGj
+bzBtMEwGA1UdEQRFMEOCFGFhaXRlc3QtbG9nb24ucHNpLmNohitodHRwczovL2Fh
+aXRlc3QtbG9nb24ucHNpLmNoL2lkcC9zaGliYm9sZXRoMB0GA1UdDgQWBBSTQDo8
+/e2xPytVx9KndXKGGKjkKDANBgkqhkiG9w0BAQUFAAOCAQEAgQFdOKt2lrM2ikjH
+p8Kvn7t1GPiGS540iKI8UTgTcaugZnZWmWS2rkV1aFlIW4KJK7vqCg77ktW0ns8L
+PR0BgZDTYHA/L9rCVYJJBqyuSRdPr6iIiVNYv+UiVUDHiNUh2p2J9Bz+p621lXuH
++pb2b9429x6EPSLGiXzpGB5GSlCVbUDIUi3Re6qvI5moBmi2rftflhcAY4zaTWdR
+AJuCzdRqcfy/IVvlE94E9RaR+kCBF+At2ePBQp9NIZvW2AIZAu/WO+nStU74hbx2
++zrEw1hgizzaLvlHRFn22uqvGlzx4J5AaVmZPkqnf0bqat+Ji6g0RJa6isZpZCtn
+CzdA8Q==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aaitest-logon.psi.ch:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aaitest-logon.psi.ch:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">psi.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">PSI - Paul Scherrer Institut</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">PSI - Paul Scherrer Institut</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.psi.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.psi.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Université de Neuchâtel - test IdP -->
+ <EntityDescriptor entityID="https://test-idp.unine.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <Extensions>
+ <shibmd:Scope regexp="false">test-idp.unine.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Université de Neuchâtel - test IdP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Université de Neuchâtel - test IdP - test-idp.unine.ch</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>test-idp.unine.ch</mdui:DomainHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDMDCCAhigAwIBAgIVANdsWLdgOapLbTaY8XTbsHEBqEMEMA0GCSqGSIb3DQEB
+CwUAMBwxGjAYBgNVBAMMEXRlc3QtaWRwLnVuaW5lLmNoMB4XDTE5MDIwNDA3NDcz
+M1oXDTIyMDIwNDA3NDczM1owHDEaMBgGA1UEAwwRdGVzdC1pZHAudW5pbmUuY2gw
+ggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCIqFkd93XULEGBbcT6Ay9u
+L274lRPc7E1Yj4B8hfWT2M9TnUnQ4ch9IyIUpBJNWd7Gnkje3U61WHI1u2ww5UVI
+n18roalTpMfuMfE3VZZoEgwvieTLrDZU44eBI7rOy6VbayQfP+E+pMWZ1tzCTR8s
+MAvZijVD/79m6H0SdcwiIfiOUt2mgVpYGYcA4NqdPpKmQJdPHRf4XwIVV+wd+dDs
+gUcp0Nq+fzo47xGm1MGvQx05zO3nfeuvYRbAljF4r/upwkFYmkj1bEJ50MgbZdS8
+vgTUe8pvcjOpL6P+8f9q4rBctvnzQ1DZqwOj+9IbydekHhJ7oJXZYbnolh+ZKlPB
+AgMBAAGjaTBnMB0GA1UdDgQWBBR8hkA4Jl0bRUPG8H3JATeEXl6J3DBGBgNVHREE
+PzA9ghF0ZXN0LWlkcC51bmluZS5jaIYoaHR0cHM6Ly90ZXN0LWlkcC51bmluZS5j
+aC9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAbtdMBv5hd4K+EuAz
+BNxwb++FiV9fRP7+wsCUtZAmvkdX9TkpxGru3jrVS2tN9kd45PiPT/qCGaMx3LgY
+XuhgwI49VYL7es6Soc3aQAY90zwqYhKFT+OJp7wsrKRZdSz5g2VPCJKiMpLY7g8f
+mtYCDIMG2A2gkQl2Zqekm8CH5qgEz3XBCZQ19h5wQYrJk6VCAJY78irhFUPWsxIR
+m/2zNvNzNBGi9p84KZ+Fn9S9GaFIx2wm9mWFCGQ4ClGXyXL9jnNADyYlrjuN30uA
+8lmloJmoOlIepR1/G4fPcVOndbEGUX5QbY+MMlK9KXR34evTNSYvP6XjwxWpXw2d
+1c2eAQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://test-idp.unine.ch/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://test-idp.unine.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://test-idp.unine.ch/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://test-idp.unine.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test-idp.unine.ch/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://test-idp.unine.ch/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">test-idp.unine.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://test-idp.unine.ch/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://test-idp.unine.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test-idp.unine.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Université de Neuchâtel - test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.test-idp.unine.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- CHUV Test IdP -->
+ <EntityDescriptor entityID="https://testidp.chuv.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <Extensions>
+ <shibmd:Scope regexp="false">test.chuv.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">CHUV Test IdP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test Identity Provider for CHUV</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>test.chuv.ch</mdui:DomainHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://testidp.chuv.ch:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://testidp.chuv.ch:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://testidp.chuv.ch/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://testidp.chuv.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testidp.chuv.ch/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://testidp.chuv.ch/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">test.chuv.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://testidp.chuv.ch:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://testidp.chuv.ch:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.chuv.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">CHUV Test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.test.chuv.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SWITCH edu-ID [Test] -->
+ <EntityDescriptor entityID="https://test.eduid.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">test.eduid.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">SWITCH edu-ID [Test]</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">SWITCH edu-ID [Test]</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="fr">SWITCH edu-ID [Test]</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="it">SWITCH edu-ID [Test]</mdui:DisplayName>
+ <mdui:Description xml:lang="de">SWITCH edu-ID Test Identity Provider</mdui:Description>
+ <mdui:Description xml:lang="en">SWITCH edu-ID Test Identity Provider</mdui:Description>
+ <mdui:Description xml:lang="fr">SWITCH edu-ID Test Identity Provider</mdui:Description>
+ <mdui:Description xml:lang="it">SWITCH edu-ID Test Identity Provider</mdui:Description>
+ <mdui:Keywords xml:lang="en">demo</mdui:Keywords>
+ <mdui:Logo height="16" width="16">data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABAAAAAQCAYAAAAf8/9hAAAA5UlEQVR4nGL4//8/AyWYIs1gAx4+ea8oqtvwH4STi1f9BwkqW3X8h4nBsJRR839jjwn/MyrWLr336J0KyQYgYz2Xvidfvv3iIWiApn33/8VrzqaC8KS5R8ot/abADVmy9lwKQQPMvCb9R/bvhh1X4Aa0TNjTTrIB+4/dhRtQ2LBpNkUGFNRvmkOyATsP3IQbUNy4eSbJBnRPPwA3oG3yvhaCBqhYd/xvnbS3FYSzKtctBqUFmNpl688nkZ0O1Gw633799oubJAPE9Br/6zr3/o/MWrr19v03GtTLCwNuAAAAAP//AwBc/4FSWnrPgwAAAABJRU5ErkJggg==</mdui:Logo>
+ <mdui:Logo height="60" width="80">data:image/png;base64,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</mdui:Logo>
+ <mdui:InformationURL xml:lang="en">https://projects.switch.ch/eduid/</mdui:InformationURL>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>eduid.ch</mdui:DomainHint>
+ <mdui:DomainHint>edu-id.ch</mdui:DomainHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.test.eduid.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.test.eduid.ch/idp/profile/SAML2/Redirect/SLO"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.test.eduid.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.test.eduid.ch/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.test.eduid.ch/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">test.eduid.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.test.eduid.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.eduid.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.eduid.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- FHNW-TEST - Fachhochschule Nordwestschweiz -->
+ <EntityDescriptor entityID="https://aai-logon.test.fhnw.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <Extensions>
+ <shibmd:Scope regexp="false">test.fhnw.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">FHNW-TEST - Fachhochschule Nordwestschweiz</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">FHNW-TEST - Fachhochschule Nordwestschweiz</mdui:DisplayName>
+ <mdui:Description xml:lang="de">TEST-IdP - Fachhochschule Nordwestschweiz (Shib2.1)</mdui:Description>
+ <mdui:Description xml:lang="en">TEST-IdP - Fachhochschule Nordwestschweiz (Shib2.1)</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>test.fhnw.ch</mdui:DomainHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aai-logon.test.fhnw.ch:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-logon.test.fhnw.ch:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://aai-logon.test.fhnw.ch/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aai-logon.test.fhnw.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-logon.test.fhnw.ch/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aai-logon.test.fhnw.ch/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">test.fhnw.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aai-logon.test.fhnw.ch:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-logon.test.fhnw.ch:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.fhnw.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.fhnw.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.fhnw.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SWITCH IdP Hosting Test Login -->
+ <EntityDescriptor entityID="https://test.idph.switch.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">test.idph.switch.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">SWITCH IdP Hosting Test Login</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test login for SWITCH IdP hosting</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEODCCAqCgAwIBAgIVAP43AtdifZVfQNYTobI//5crLGojMA0GCSqGSIb3DQEB
+CwUAMB4xHDAaBgNVBAMME3Rlc3QuaWRwaC5zd2l0Y2guY2gwHhcNMTkwMjEyMDkz
+NDEyWhcNMjIwMjEyMDkzNDEyWjAeMRwwGgYDVQQDDBN0ZXN0LmlkcGguc3dpdGNo
+LmNoMIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAzYISRHv4J2jd4aUC
+tdOA2Sv56tPUp6qLPsdhSw2drS8rIAwpKCh1fIp9tfJsSZgcCizhZCnNPTM+zUi6
+Dra+AtpiW+hwvz6tI3XLQstxzm6a67vzBkqTxvci0TPlooYqruIboCgUZdUyDwW8
+0nDCXNj0OTlU9b5KHGJf9Jdtj1e55nKy6Q3RvUP2sRNJGo73BXW8VgF0vzPFMYD8
+YGzu/NqMlGqZ4juTLjV+qJuDQWxKjKcTWRwDLV26Or7gIdxcXMzINdMYzc0Gas+e
+Kab/rQnnqru3HIk18tbyenWlXZrv1k2715238ASbn+GzJJ6gq1wy2pmfZ7rC98FN
+EyDp9xbXGQRRNpeVePillgo9hrHZFLHfOcmOx8sAwd6072uI58WtU2HTcqmpKPpU
+Rkx6BR37wD4m9X1XbbVuEl2c7f+eHYPoWWfmsOPEuW/1hL6n/32pVIMvBCJ0z+Al
+M5/jD0pXTschx1O3azhkPwv/1zHV7s/tZQvd0O0FW506pBUpAgMBAAGjbTBrMB0G
+A1UdDgQWBBRtL10/JunohYCyQbuxx/rSoFJSXTBKBgNVHREEQzBBghN0ZXN0Lmlk
+cGguc3dpdGNoLmNohipodHRwczovL3Rlc3QuaWRwaC5zd2l0Y2guY2gvaWRwL3No
+aWJib2xldGgwDQYJKoZIhvcNAQELBQADggGBAKdsNec8sw4JCRE/FPDwwi7RVlQj
+OWQg5bkGXTDYSNlsU9IeORD8lZS0b18pEQXTWadyNiyrnaJwSfh4olHUuRJEG9cR
+45JoScrg8Qsvd/qo/QmDty02MYEdFhBdIKhqEX28pi+fwHfQ/C4MA9Opgh02LgEN
+T/JRhzAeJVAalJV/5XKA60yUGzBWtWeQY0MZh1T8ZMAaZPvetqomO2RaR6YnW2/f
+z+0p2SYlBrZkcCC6L7UweT/exi1so+PMnQaQSZ/OomPgpAKTw+9592WToCzXyfyf
+3oTBRje5YP2LYtqsemgtEmnrSAK2UyQ9IgW/feij5HqJFsMBkP7wHKvzPqmRnMR8
+PPJpszWP7MRYRXCSULfZkuFAulag/gh9cvDijz5EGNUuQIDDVHfn/aVDE7W2jsz6
+9H1Vbf2cBSQkAyePTXbmEb8cDRq3l+tZyTx2uCRA1LppYaD7WpBM07AZTEMnj85o
+I+Gw1TCc5NpI1S7PWrG94x7O9SnYNL/OzyLNew==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://test.idph.switch.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://test.idph.switch.ch/idp/profile/SAML2/Redirect/SLO"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://test.idph.switch.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.idph.switch.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">test.idph.switch.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://test.idph.switch.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.idph.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SWITCH IdP Hosting Test Login</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.test.idph.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- University of Bern Test IdP -->
+ <EntityDescriptor entityID="https://aai-login.test.unibe.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.id.unibe.ch/content/helpdesk/index_ger.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">test.unibe.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">Universität Bern Test IdP</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">University of Bern Test IdP</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Test IdP Instanz der Universität Bern</mdui:Description>
+ <mdui:Description xml:lang="en">University of Bern test IdP instance</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.unibe.ch/</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="de">http://www.unibe.ch/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.rechtsdienst.unibe.ch/content/rechtssammlung/informatik/index_ger.html</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="de">http://www.rechtsdienst.unibe.ch/content/rechtssammlung/informatik/index_ger.html</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:IPHint>130.92.0.0/16</mdui:IPHint>
+ <mdui:DomainHint>unibe.ch</mdui:DomainHint>
+ <mdui:GeolocationHint>geo:46.9505,7.43814</mdui:GeolocationHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDSDCCAjCgAwIBAgIVAIfsb4anTrY/mdF71i0xrMTwNFH9MA0GCSqGSIb3DQEB
+CwUAMCIxIDAeBgNVBAMMF2FhaS1sb2dpbi50ZXN0LnVuaWJlLmNoMB4XDTE4MDEy
+MjA3NDMxOVoXDTIxMDEyMjA3NDMxOVowIjEgMB4GA1UEAwwXYWFpLWxvZ2luLnRl
+c3QudW5pYmUuY2gwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCxYu8S
+rV0nAkV7Es07ht/pUjsYuDbfe1r+wEHjObunZFIw32weHCpfUYNmd1JhoS7bFOYL
+CnRFOU76no7PB8TcyjxkCfaVgm60OJaFjyH2FWbPUtYmY4h2nYreonsV4M3VyK49
+vebEQGnhGcEE/jMTvsDq7Z7paYn1Z0y6tAheNGGndGlFWvSsA8oIpi09gFpRdowE
+vkk/SHRdzzk4IhFTaVbNsS8l+XMdT+tJlzyonB3L4+5Kych7K5LeytQdLIvVZaqy
+6l0aDbR+isK8U/+HHL8uJ2C9ZBE/t0XvQ/+ADHPQkb+1dF87Z5h0VdYvp8dgH8XP
+9qLqj1OWk1P5bl7xAgMBAAGjdTBzMB0GA1UdDgQWBBQ5prtWUCE5RxfSVadvUPVf
+bTT1szBSBgNVHREESzBJghdhYWktbG9naW4udGVzdC51bmliZS5jaIYuaHR0cHM6
+Ly9hYWktbG9naW4udGVzdC51bmliZS5jaC9pZHAvc2hpYmJvbGV0aDANBgkqhkiG
+9w0BAQsFAAOCAQEATatl0/dIFePkD1t9ONdkjAO8jKuNPfVdXYgdAi+24lMil92T
+pxoZSgYqP6kFDYnyPzGW/1kmJ3ZKd0znBThforK/w4dBEN8TFqBo2VA1m9BoQvd9
+3d1SIq9dt67Ti6IaqbS/bFy5bjxPR7CVgAsrP7WX5vrKJCSvUN6wd3DG9wNSRx+v
+HZVikT+qm32dI3ZQVaRctAwbZP56f2Yd0Wt7weuq7yQno/2UgvH30JUeFc2tZyKh
+Iv6IdEgknQtJLEjyzMluU2YeaogGL1ghA8HsPYkKDLY01n27nQU27jXNud9aTYHt
+iHTraMOaCZWrdTour6KckJigCYEL6t11LM0eNw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aai-login.test.unibe.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-login.test.unibe.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">test.unibe.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-login.test.unibe.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.unibe.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">Universität Bern Test IdP</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">University of Bern Test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.unibe.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.unibe.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Universita della Svizzera Italiana -->
+ <EntityDescriptor entityID="https://tlogin.usi.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <Extensions>
+ <shibmd:Scope regexp="false">test.unisi.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Universita della Svizzera Italiana</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="it">Universita della Svizzera Italiana</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Universita della Svizzera italiana</mdui:Description>
+ <mdui:Description xml:lang="it">Universita della Svizzera italiana</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>test.unisi.ch</mdui:DomainHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://tlogin.usi.ch:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://tlogin.usi.ch:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://tlogin.usi.ch/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tlogin.usi.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tlogin.usi.ch/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tlogin.usi.ch/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">test.unisi.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://tlogin.usi.ch:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://tlogin.usi.ch:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.unisi.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Universita della Svizzera Italiana</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">Universita della Svizzera Italiana</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.test.unisi.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.unisi.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Test Virtual Home Organization -->
+ <EntityDescriptor entityID="https://aai-logon.test.vho-switchaai.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <Extensions>
+ <shibmd:Scope regexp="false">test.vho-switchaai.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Test Virtual Home Organization</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test Virtual Home Organization</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>test.vho-switchaai.ch</mdui:DomainHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aai-logon.test.vho-switchaai.ch:8443/idp/profile/SAML1/SOAP/ArtifactResolution" index="1"/>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-logon.test.vho-switchaai.ch:8443/idp/profile/SAML2/SOAP/ArtifactResolution" index="2"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://aai-logon.test.vho-switchaai.ch/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aai-logon.test.vho-switchaai.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-logon.test.vho-switchaai.ch/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aai-logon.test.vho-switchaai.ch/idp/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">test.vho-switchaai.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding" Location="https://aai-logon.test.vho-switchaai.ch:8443/idp/profile/SAML1/SOAP/AttributeQuery"/>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-logon.test.vho-switchaai.ch:8443/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.vho-switchaai.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Test Virtual Home Organization</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.test.vho-switchaai.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- DLU Test uni-a -->
+ <EntityDescriptor entityID="https://uni-a.dlu.switch.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uni-a.dlu.switch.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">DLU Test uni-a</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test for Affiliation Chooser</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uni-a.dlu.switch.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/SOAP/SLO"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uni-a.dlu.switch.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uni-a.dlu.switch.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uni-a.dlu.switch.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uni-a.dlu.switch.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uni-a.dlu.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DLU Test uni-a</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uni-a.dlu.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- DLU Test uni-be -->
+ <EntityDescriptor entityID="https://uni-be.dlu.switch.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uni-be.dlu.switch.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">DLU Test uni-be</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test for Affiliation Chooser</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uni-be.dlu.switch.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/SOAP/SLO"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uni-be.dlu.switch.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uni-be.dlu.switch.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uni-be.dlu.switch.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uni-be.dlu.switch.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uni-be.dlu.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DLU Test uni-be</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uni-be.dlu.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- DLU Test uni-ci -->
+ <EntityDescriptor entityID="https://uni-ci.dlu.switch.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uni-ci.dlu.switch.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">DLU Test uni-ci</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test for Affiliation Chooser</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uni-ci.dlu.switch.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/SOAP/SLO"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uni-ci.dlu.switch.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uni-ci.dlu.switch.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uni-ci.dlu.switch.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uni-ci.dlu.switch.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uni-ci.dlu.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DLU Test uni-ci</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uni-ci.dlu.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- DLU Test uni-dd -->
+ <EntityDescriptor entityID="https://uni-dd.dlu.switch.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uni-dd.dlu.switch.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">DLU Test uni-dd</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test for Affiliation Chooser</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uni-dd.dlu.switch.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/SOAP/SLO"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uni-dd.dlu.switch.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uni-dd.dlu.switch.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uni-dd.dlu.switch.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDPDCCAiSgAwIBAgIVAMNBzQLCcWrSBNKUpduv12hr51q/MA0GCSqGSIb3DQEB
+CwUAMB8xHTAbBgNVBAMMFHVuaS1kZC5kbHUuc3dpdGNoLmNoMB4XDTE3MDQwNjA4
+MDkzMVoXDTIwMDQwNjA4MDkzMVowHzEdMBsGA1UEAwwUdW5pLWRkLmRsdS5zd2l0
+Y2guY2gwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQCEFokQXZ09OX/u
+3MCcdpabmTYL9lHRJOmsISEzfHXUf91vOiAV8UKL9e5jVmMiHj3XErhaBTqfNl9t
+NaGD3C6JNNhuuty3NAtvgJu7YSpZlV9a8AeNANEC62iAozUr6GA7MLnsiRMCLXV3
+qgTy4eT+BAO0SHQZlEux8bK4PHKM42C8+lgGu9Jion6cMabKepglPPwmQnSDHP4H
+SiMnciJZJd/YRrN4E7DBvOjtWGSi4/vPd8Fh//ip07ORDUI1eoEUFqQNoDpsgvBi
+2ucOytE945z0dpKXimDm+6DTM2kdETJPz1TJ2VJhfYP4kohPry/7YPCG/AhcJ3Vn
+3TaX3sjXAgMBAAGjbzBtMB0GA1UdDgQWBBRdvoAMgWTfg3HjJy6Ird6B2ri4nzBM
+BgNVHREERTBDghR1bmktZGQuZGx1LnN3aXRjaC5jaIYraHR0cHM6Ly91bmktZGQu
+ZGx1LnN3aXRjaC5jaC9pZHAvc2hpYmJvbGV0aDANBgkqhkiG9w0BAQsFAAOCAQEA
+Z9Nj9q60+XgoB2Yxg0qXRrzpmo9AaNzXeiVa+vMU43weaf8GIoqKMO0C44NeDZ/K
+k+rIaTAMvBgWgCzG2C5j8ktervKqlx4357Do3VF0QCmJpkujq2h5Hezd6HLRWV+F
+AeVD3/WNZ3V9RdHcgMoDvegt8bl72tT6PC15Sn7TMnomhE3N33f3dF4BrD6T1i0t
+npSpsqPqEC+jugGhHlGZXpSepVB512EnYoVegORk5WyCeWoOZxL5XP4XlQTQX1Mc
+QpKQOS83bXMX4kCzIAUiyUxOV5Aozd+fCzH38G4bCAn6d120EUH89FTXbPJ8kNIL
+GlSXPnnSHdT/1UCI/+HOaw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uni-dd.dlu.switch.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uni-dd.dlu.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DLU Test uni-dd</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uni-dd.dlu.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Demo University -->
+ <EntityDescriptor entityID="https://aai-login.uni-demo.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uni-demo.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Demo University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Representation of typical Swiss university for demonstration purposes.</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,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</mdui:Logo>
+ <mdui:Logo height="60" width="80">data:image/png;base64,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</mdui:Logo>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>uni-demo.ch</mdui:DomainHint>
+ <mdui:DomainHint>unidemo.ch</mdui:DomainHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.uni-demo.test.eduid.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.test.eduid.ch/idp/profile/SAML2/Redirect/SLO"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.uni-demo.test.eduid.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login.uni-demo.test.eduid.ch/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.uni-demo.test.eduid.ch/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uni-demo.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login.uni-demo.test.eduid.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uni-demo.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Demo University</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uni-demo.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- DLU Test uni-ee -->
+ <EntityDescriptor entityID="https://uni-ee.dlu.switch.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uni-ee.dlu.switch.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">DLU Test uni-ee</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test for Affiliation Chooser</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uni-ee.dlu.switch.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://idpv3.dlu.switch.ch/idp/profile/SAML2/SOAP/SLO"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://uni-ee.dlu.switch.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uni-ee.dlu.switch.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uni-ee.dlu.switch.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDOzCCAiOgAwIBAgIUIBTVL940vNCPGfmN8VqtLx7OGuIwDQYJKoZIhvcNAQEL
+BQAwHzEdMBsGA1UEAwwUdW5pLWVlLmRsdS5zd2l0Y2guY2gwHhcNMTcwNDA2MDgw
+OTMzWhcNMjAwNDA2MDgwOTMzWjAfMR0wGwYDVQQDDBR1bmktZWUuZGx1LnN3aXRj
+aC5jaDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAJg4sNl3tZh3w4k7
+56GXjYiCjY5LCu3Wu9MrtMBhh7dbDVTksQkfDgN68sZRQDr6xL/F8C0BsrRdC2lQ
+FqJuBSTiNMYMIk+TNiAl2lRr0gcVBMadvC1qHy0g72YjMso7e3IYuUKKPwZfZuBP
+S7fV046rfW+Z3PJIZSNAfCXVm6cbNjgiUqOy8XGrhy+aCOIRVC6Wbhgm54mGqVj9
+NgN1Ajy/H7gjJFMaTWT7OEjKezP8LLZ5l6Tf0OGd+ou1aztW4/+TuiL4Rn/EiTSM
+8ykTqAYMQoFThqDEKeydRemZuSB0oHBsSRqM0n0BOEPqd65qTHAjTtzxKbQoYuxU
+0acz8ZMCAwEAAaNvMG0wHQYDVR0OBBYEFJXjW3p0L71DEecvmxh/7ogNTDbqMEwG
+A1UdEQRFMEOCFHVuaS1lZS5kbHUuc3dpdGNoLmNohitodHRwczovL3VuaS1lZS5k
+bHUuc3dpdGNoLmNoL2lkcC9zaGliYm9sZXRoMA0GCSqGSIb3DQEBCwUAA4IBAQCO
+W06pcMW9bTTio8wslimPDzOnd5Cvj3ptKv56EItpnt3P4yyVJsCb1hMDjKcbMCSy
+56gYjsPhlT2+VuEK+soXuX+yO/LKZUUCQZcV3S6mLWCHgb+2/MSPEy1GKe3isugp
+ECyQJtnTwf7D8yjUykyroC+Y4v0qD57dc+5MCsbqUtUItLWlUsV8HvBop0nqYL56
+YV7k4w2hZk9B8yFhaeFz39Q0o/GYl+/Gt3e3XgAaIr12s2fjuSDOyMRD+MAunacG
+VYN3yLnYSXAKAXGLTpN6Ld6rKcmMd/6HgFcWH0SfiO22jsPtjubhezpJZiIhvQz6
+FhIibiHtPAsQca8arbR6
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://uni-ee.dlu.switch.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uni-ee.dlu.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DLU Test uni-ee</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.uni-ee.dlu.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Uni Basel Test IdP -->
+ <EntityDescriptor entityID="https://aai-logon-qm.its.unibas.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:assurance-certification" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/sirtfi</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unibas.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Uni Basel Test IdP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Uni Basel Test IdP</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.unibas.ch/de/</mdui:InformationURL>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDVDCCAjygAwIBAgIVAN2vZZvw/VaR9U+fgXCdhN21fG3gMA0GCSqGSIb3DQEB
+CwUAMCUxIzAhBgNVBAMMGmFhaS1sb2dvbi1xbS5pdHMudW5pYmFzLmNoMB4XDTE5
+MDEwNzA4MzIyMFoXDTIyMDEwNzA4MzIyMFowJTEjMCEGA1UEAwwaYWFpLWxvZ29u
+LXFtLml0cy51bmliYXMuY2gwggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIB
+AQCy4qjqX7z6KitNzC1YVLjp4UEGYgRzDntcKhEEs/9o2A4bnDtggBWBhALvhq9p
+2KIJpSUo4nwW1TiegFtT87PoQtmrXSAT0CUMENrHGWgHXh0nPBZW8k83KinqPXul
++Vx2GJ3yVTjIcdwIwY96S7cxYHmAYLXcx1RkbNfoR3HEMd1eiC1I7mbExl9UnyXh
+Z31e9tv+NpXM67kcnz2xA2c1BjBCXt+ty+aKK/ln4HzGJJDyXy5/b7kVfBrrO5d7
+I/92ZPwLhOSlNQ2kkQ4r7u7K52uq1a25bCQqdzY7a468niV72gWKAuY0zkcqcdvd
+kjlKqRKt8NLk4PuOPFNew3PbAgMBAAGjezB5MB0GA1UdDgQWBBRYzG55y4BMCmjP
+O4EvqVcdX2zdGTBYBgNVHREEUTBPghphYWktbG9nb24tcW0uaXRzLnVuaWJhcy5j
+aIYxaHR0cHM6Ly9hYWktbG9nb24tcW0uaXRzLnVuaWJhcy5jaC9pZHAvc2hpYmJv
+bGV0aDANBgkqhkiG9w0BAQsFAAOCAQEAHvYeb6n7RocwHepmH8xpBCECeWO0KIF9
+WlwEFlpO7K/+fKizi3ZjWEgGQefY+37qPQOwlAwAUTdGbyZyen7r6TOaVGQ46h0j
+Udr5300rAQ2GbCuD9Zm80KC37PhXO33Uz80+4B18kYJA35mGoWuSghoOvslEKyJk
+gTS/OfS+jwroMGHb/5vbS46Q6gzQ81jnZ9MzNEfNycqwXh4hKQZTPD1MaQjRYom3
+JrATwyBrhhNHkGwBPAcPpevg55DWIx4j492sgtu1KnLeeEpD/EaYtXQIfm+2DYH/
+YMyUrqQEclnRjgzYs/iwcpdKSKhPjjjkCDvOfo7lBy8x0GDV78p3pQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aai-logon-qm.its.unibas.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-logon-qm.its.unibas.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unibas.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-logon-qm.its.unibas.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">unibas.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Uni Basel Test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unibas.ch/</OrganizationURL>
+ </Organization>
+ <ContactPerson xmlns:remd="http://refeds.org/metadata" contactType="other" remd:contactType="http://refeds.org/metadata/contactType/security">
+ <GivenName>Security</GivenName>
+ <SurName>Team</SurName>
+ <EmailAddress>mailto:security@unibas.ch</EmailAddress>
+
+ </ContactPerson>
+ </EntityDescriptor>
+
+ <!-- Université de Fribourg Test Home Organization -->
+ <EntityDescriptor entityID="https://testidp.unifr.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unifr.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Université de Fribourg Test Home Organization</mdui:DisplayName>
+ <mdui:Description xml:lang="en">L'Université suisse bilingue. Die zweisprachige Universität.</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>unifr.ch</mdui:DomainHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://unifr.login.test.eduid.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login.test.eduid.ch/idp/profile/SAML2/Redirect/SLO"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://unifr.login.test.eduid.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://unifr.login.test.eduid.ch/idp/profile/SAML2/POST/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unifr.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://unifr.login.test.eduid.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">unifr.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Université de Fribourg Test Home Organization</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unifr.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Université de Lausanne Test -->
+ <EntityDescriptor entityID="https://tstaai.unil.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor errorURL="http://www.unil.ch/ci/page33_fr.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol urn:mace:shibboleth:1.0">
+ <Extensions>
+ <shibmd:Scope regexp="false">unil.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Université de Lausanne Test</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="fr">Université de Lausanne Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test HomeOrg for the University of Lausanne</mdui:Description>
+ <mdui:Description xml:lang="fr">HomeOrg de test pour l'Université de Lausanne</mdui:Description>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:DomainHint>unil.ch</mdui:DomainHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tstaai.unil.ch/idp/profile/SAML2/Redirect/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tstaai.unil.ch/idp/profile/SAML2/POST/SLO"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://tstaai.unil.ch/idp/profile/SAML2/SOAP/SLO"/>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest" Location="https://tstaai.unil.ch/idp/profile/Shibboleth/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://tstaai.unil.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tstaai.unil.ch/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://tstaai.unil.ch/idp/profile/SAML2/SOAP/ECP"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">unil.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://tstaai.unil.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">unil.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Université de Lausanne Test</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Université de Lausanne Test</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unil.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.unil.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- University of Zurich TEST -->
+ <EntityDescriptor entityID="https://aai-test-idp.uzh.ch/idp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category-support" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>http://www.geant.net/uri/dataprotection-code-of-conduct/v1</saml:AttributeValue>
+ <saml:AttributeValue>http://refeds.org/category/research-and-scholarship</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ </mdattr:EntityAttributes>
+
+ </Extensions>
+ <IDPSSODescriptor errorURL="https://www.zi.uzh.ch/support.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uzh.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">Universität Zürich TEST</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">University of Zurich TEST</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Universität Zürich</mdui:Description>
+ <mdui:Description xml:lang="en">University of Zurich TEST</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,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</mdui:Logo>
+ <mdui:Logo height="60" width="80">data:image/png;base64,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</mdui:Logo>
+ <mdui:InformationURL xml:lang="en">https://www.uzh.ch/en.html</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="de">https://www.uzh.ch/de.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.zi.uzh.ch/support/identitaet-zugang/nutzungsbedingungen.html</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="de">https://www.zi.uzh.ch/support/identitaet-zugang/nutzungsbedingungen.html</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ <mdui:IPHint>130.60.205.17</mdui:IPHint>
+ <mdui:DomainHint>uzh.ch</mdui:DomainHint>
+ <mdui:GeolocationHint>geo:47.39763,8.54976</mdui:GeolocationHint>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-test-idp.uzh.ch/idp/profile/SAML2/SOAP/ArtifactResolution" index="1"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aai-test-idp.uzh.ch/idp/profile/SAML2/Redirect/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-test-idp.uzh.ch/idp/profile/SAML2/POST/SSO"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://aai-test-idp.uzh.ch/profile/SAML2/POST-SimpleSign/SSO"/>
+ </IDPSSODescriptor>
+ <AttributeAuthorityDescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">uzh.ch</shibmd:Scope>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <AttributeService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://aai-test-idp.uzh.ch/idp/profile/SAML2/SOAP/AttributeQuery"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ </AttributeAuthorityDescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uzh.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">Universität Zürich TEST</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">University of Zurich TEST</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.uzh.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.uzh.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Service Provider Metadata -->
+
+ <!-- Vader SP -->
+ <EntityDescriptor entityID="https://sp.vader.local/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Vader SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Vader SP, Shibboleth test install</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp.vader.local/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp.vader.local/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp.vader.local/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Vader SP</ServiceName>
+ <ServiceDescription xml:lang="en">Vader SP, Shibboleth test install</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Development Resource -->
+ <EntityDescriptor entityID="https://ebulobo.switch.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">Entwicklungs Resource (ebulobo.switch.ch)</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Development Resource</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Wird benutzt um Webapplikationan an Shibboleth anzupassen.</mdui:Description>
+ <mdui:Description xml:lang="en">Used to develop and test various web applications.</mdui:Description>
+ <mdui:Keywords xml:lang="en">resource moodle ilias experimental development test</mdui:Keywords>
+ <mdui:Keywords xml:lang="de">test resource experimentell entwicklung moodle ilias</mdui:Keywords>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://ebulobo.switch.ch/Shibboleth.sso/SLO/Redirect"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev.rr.aai.switch.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ebulobo.switch.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.rr.aai.switch.ch/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dev.rr.aai.switch.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ebulobo.switch.ch/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test.rr.aai.switch.ch/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dev.rr.aai.switch.ch/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ebulobo.switch.ch/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test.rr.aai.switch.ch/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">Entwicklungs Resource (ebulobo.switch.ch)</ServiceName>
+ <ServiceName xml:lang="en">Development Resource</ServiceName>
+ <ServiceDescription xml:lang="de">Wird benutzt um Webapplikationan an Shibboleth anzupassen.</ServiceDescription>
+ <ServiceDescription xml:lang="en">Used to develop and test various web applications.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1029" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliationUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1032" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Valery's Ubuntu Shibboleth VM -->
+ <EntityDescriptor entityID="https://fl-7-216.zhdk.cloud.switch.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.eduid.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.eduid.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Valery's Ubuntu Shibboleth VM</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Valery's Ubuntu Bionic shibboleth test VM</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fl-7-216.zhdk.cloud.switch.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fl-7-216.zhdk.cloud.switch.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fl-7-216.zhdk.cloud.switch.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Valery's Ubuntu Shibboleth VM</ServiceName>
+ <ServiceDescription xml:lang="en">Valery's Ubuntu Bionic shibboleth test VM</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.eduid.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.eduid.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-TEC/DEPLOIEMENT CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/tec/deploiement/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-TEC/DEPLOIEMENT CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-TEC/DEPLOIEMENT CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEJDCCAoygAwIBAgIJAN4Z3Smm+NxXMA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV
+BAMTDnd3d2l0LnVuaWdlLmNoMB4XDTE4MDMwMjA4MDc1OVoXDTIxMDMwMTA4MDc1
+OVowGTEXMBUGA1UEAxMOd3d3aXQudW5pZ2UuY2gwggGiMA0GCSqGSIb3DQEBAQUA
+A4IBjwAwggGKAoIBgQCwrSfMZWN2VmxgKe2ueCb5jKr0yiT3fPVO8eDYRTaorCpk
+sVLfgRI9yBQ/z9Ep6od6xbyWi1jVT/fEhWnCQmJHbj/cWrsaBr2X/QV1+IEKsnhG
+VhCcf/i9l/tdjKNxSsRJ5DghTjXwOJIN3OuLUZ8OyAg+lSQjR0XPChDRSyWq9kGY
+O/zRBkgcnlbq/weKuN4iLxQFQT/6R6GY148lMl4vLuuFDO4mS/5SUMW/M8npK9QI
+priL9XuWbFvYoZdFgzo9Kj11ne92iAW7SGyDPI1TjJnvwebA/x3D8MHPI+53sYwh
+cECz3qFbY/XeB5qVIRK5K06nvNPr/hJXWU0j0hB0gZH0CEj2VDJUf0ArIkrrBsc9
+kHXHiHTVMVXGtMs7kdyEVdyLRjSJvc9ksAM0QcXFP0jhaEhwAevlTcC+dAaikQnV
+DVsde2/eeGqc/YoKtTiz8bixS1JRE6x3JiDhPdChZAb2vCXWPJKyzYsVlAQqn/Lj
+4iE1BeN2LhNF7sXuOOMCAwEAAaNvMG0wTAYDVR0RBEUwQ4IOd3d3aXQudW5pZ2Uu
+Y2iGMWh0dHBzOi8vd3d3aXQudW5pZ2UuY2gvdGVjL2RlcGxvaWVtZW50L3NoaWJi
+b2xldGgwHQYDVR0OBBYEFD2uhx7+6ZHtxqdzMBVnHohwx4wJMA0GCSqGSIb3DQEB
+CwUAA4IBgQAH5MjWmevLHMEwB1oSFAdREdP9gOGVo8ZWih6Ms2Pk1qaG2IlbvAdE
+/bR6QlANDa2+DaUDU91fK5fMR0pM1DxAiw8FdBoxLoqmqFen/Wc2dP72GYGqhIOz
+ggdReCQ4n5kSof5bCG2k5QhLVM7rFRd9u5btCL9oYHhMFJ+V0+2EH8QovR1Ecc4+
+cYjC5TPrXNAf3jdnIZVZodt3YDB9J9DcQ/MakwI9FBtf0eK9MmNhMaYAOOEZ1Ksg
+iZKpd5ilCitbCOZvgQ3eVdY3TXBvQ5fKNsyikLjhkILI3XWsI6G5B2RCsTRMREuN
+QkpXPyjtrZU8Wbk+8vNHfLuxz801Wje5/wTAHbVAaceVmTX4fZTcgJgvs8Br/f9X
+kcp9JqNLuE7bP51GWPCQtV+nOwJPmliE91O1+0NfHGSfRuS76EXue5Qu53b8O4kn
+xxmyC4BVqqFB5CloQcNqGm6AAt6VAGjARirb1k0la1C5teoNutNKvodQTwJw1aIk
+r4YDetxPYOM=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwot.intranet.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wwwit.intranet.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/POST-SimpleSign" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wwwot.intranet.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/Artifact" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/Artifact" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwot.intranet.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/Artifact" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/ECP" index="15"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/ECP" index="16"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/ECP" index="17"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/ECP" index="18"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/ECP" index="19"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwot.intranet.unige.ch/tec/deploiement/Shibboleth.sso/SAML2/ECP" index="20"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wwwit.intranet.unige.ch/tec/deploiement/Shibboleth.sso/SAML/POST" index="21"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wwwot.intranet.unige.ch/tec/deploiement/Shibboleth.sso/SAML/POST" index="22"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wwwit.intranet.unige.ch/tec/deploiement/Shibboleth.sso/SAML/Artifact" index="23"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wwwot.intranet.unige.ch/tec/deploiement/Shibboleth.sso/SAML/Artifact" index="24"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-TEC/DEPLOIEMENT CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-TEC/DEPLOIEMENT CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- asknet vaas-stage -->
+ <EntityDescriptor entityID="https://sp-vaas-stage.asknet.de/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://sp-vaas-stage.asknet.de" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">asknet vaas-stage</mdui:DisplayName>
+ <mdui:Description xml:lang="en">asknet AG - Stage-Service-provider</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp-vaas-stage.asknet.de/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sp-vaas-stage.asknet.de/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp-vaas-stage.asknet.de/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp-vaas-stage.asknet.de/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sp-vaas-stage.asknet.de/Shibboleth.sso/SAML/POST" index="5" isDefault="true"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sp-vaas-stage.asknet.de/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">asknet vaas-stage</ServiceName>
+ <ServiceDescription xml:lang="en">asknet AG - Stage-Service-provider</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="isMemberOf" Name="urn:oid:1.3.6.1.4.1.5923.1.5.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="primaryGroupID" Name="urn:oid:1.3.6.1.4.1.7165.2.1.15" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- BPM Test Server Intranet -->
+ <EntityDescriptor entityID="https://bpm-test.unige.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">BPM Test Server Intranet</mdui:DisplayName>
+ <mdui:Description xml:lang="en">BPM Test Server Intranet</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bpm-test.intranet.unige.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bpm-test.unige.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lunibpmtest1.unige.ch/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lunibpmtestint1.unige.ch/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bpm-test.intranet.unige.ch/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bpm-test.unige.ch/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lunibpmtest1.unige.ch/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lunibpmtestint1.unige.ch/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bpm-test.intranet.unige.ch/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bpm-test.unige.ch/Shibboleth.sso/SAML2/ECP" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lunibpmtest1.unige.ch/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lunibpmtestint1.unige.ch/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">BPM Test Server Intranet</ServiceName>
+ <ServiceDescription xml:lang="en">BPM Test Server Intranet</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- HSLU Onlineanmeldung Test -->
+ <EntityDescriptor entityID="https://test-onlineanmeldung.hslu.ch/CLX.Evento/Authentication/SwissEduId">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>hslu.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="hslu.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">HSLU Onlineanmeldung Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">HSLU Onlineanmeldung Test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://test-onlineanmeldung.hslu.ch/CLX.Evento/Authentication/SwissEduId/Logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test-onlineanmeldung.hslu.ch/CLX.Evento/Authentication/SwissEduId/Acs" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">HSLU Onlineanmeldung Test</ServiceName>
+ <ServiceDescription xml:lang="en">HSLU Onlineanmeldung Test</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonCardUID" Name="urn:oid:2.16.756.1.2.5.1.1.12" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">hslu.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">HSLU - Hochschule Luzern (Test IdP)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">HSLU - Lucerne University of Applied Sciences and Arts (Test IdP)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.hslu.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.hslu.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Moodle-test -->
+ <EntityDescriptor entityID="https://moodle-test.unifr.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>unifr.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="unifr.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">unifr.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Moodle-test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Moodle-test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle-test.unifr.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sr-svx-43.unifr.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle-test.unifr.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sr-svx-43.unifr.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle-test.unifr.ch/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sr-svx-43.unifr.ch/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Moodle-test</ServiceName>
+ <ServiceDescription xml:lang="en">Moodle-test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonCardUID" Name="urn:oid:2.16.756.1.2.5.1.1.12" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStaffCategory" Name="urn:oid:2.16.756.1.2.5.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch1" Name="urn:oid:2.16.756.1.2.5.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch2" Name="urn:oid:2.16.756.1.2.5.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch3" Name="urn:oid:2.16.756.1.2.5.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyLevel" Name="urn:oid:2.16.756.1.2.5.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="isMemberOf" Name="urn:oid:1.3.6.1.4.1.5923.1.5.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">unifr.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Université de Fribourg Test Home Organization</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unifr.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Demo SP 123 -->
+ <EntityDescriptor entityID="https://sp123.example.org/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Demo SP 123</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SP used for improving my Shib knowledge</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDIDCCAgigAwIBAgIJAK+2yyPlm/DBMA0GCSqGSIb3DQEBBQUAMBwxGjAYBgNV
+BAMTEXNwMTIzLmV4YW1wbGUub3JnMB4XDTE2MTEyODE1NTA1MFoXDTE5MTEyODE1
+NTA1MFowHDEaMBgGA1UEAxMRc3AxMjMuZXhhbXBsZS5vcmcwggEiMA0GCSqGSIb3
+DQEBAQUAA4IBDwAwggEKAoIBAQChC4U7WI4TBt7zsBtq+Yz8a6q/6yOqWQPA77c1
+jBYl57LwcyLN/If1ZZ1U4S3ei/lXyQaNNEhkvktovqGJzB1oCjPjXglHsKe1qSuT
+fOsIsFRAE5Mqez6SHP5/0OKy+xX+9SRq6dExJ/ga0zRgSb6SfIvVX0TupW5A7p+W
+ejUQOogfSGEHlKmAcl5h4aNYPhGPY08lfnO2Zb/6V1AMMyu1rFnEKs+VrZFvXzh0
+vctiCzEP0CZckEN1LauNbhK/piW85fcxlekP40cutZtB5gEFViFl1E3Yma/tG12P
+e1idbSpAvEo9XCoDqfCrPQmecciqepdR5OfZ4lTk5hnLLyThAgMBAAGjZTBjMEIG
+A1UdEQQ7MDmCEXNwMTIzLmV4YW1wbGUub3JnhiRodHRwczovL3NwMTIzLmV4YW1w
+bGUub3JnL3NoaWJib2xldGgwHQYDVR0OBBYEFKNv/Md2Cm0ZTPro6q2KkAPaWmij
+MA0GCSqGSIb3DQEBBQUAA4IBAQCdNVJk515uVZOMYOqSHV2hRh7oGThONOOYTFUl
+8qF0KMq9cYfi9ewNBY6H1TSNF9e4ycx/lqzVe6YzF4UH9WPoVqjgom5P/MtinPkS
+ZtFCmB3O9wgAacl3umwJQ5Rw66bIIMv5o+xvhRq3MxtT9eHk+lIUcK6kqDw1vc4i
+XNIZq6OGkzBZLgYneDfq8xJeKpfPoyQ5eDxHLTqTH02KeLx0xart2BQQENfgrExi
+nnyZ/iIm9tsmw3NxqNwgzf3Ke4/mTXYWgOaWQ4DHyhmHpXKQVuuxuObNIs6o3HVv
+boK2KDYTFPRtORgmOC/nkv06BJrTDbq22rUV9J+w6hl18zgp
+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp123.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp123.example.org/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp123.example.org/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Demo SP 123</ServiceName>
+ <ServiceDescription xml:lang="en">SP used for improving my Shib knowledge</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETHZ EduApp Dev Server -->
+ <EntityDescriptor entityID="https://eduapp-dev.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ETHZ EduApp Dev Server</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ETHZ EduApp Development Server Backend</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduapp-dev.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://eduapp-dev.let.ethz.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://eduapp-dev.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://eduapp-dev.ethz.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://eduapp-dev.ethz.ch/Shibboleth.sso/SAML/POST" index="5" isDefault="true"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://eduapp-dev.ethz.ch/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ETHZ EduApp Dev Server</ServiceName>
+ <ServiceDescription xml:lang="en">ETHZ EduApp Development Server Backend</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStaffCategory" Name="urn:oid:2.16.756.1.2.5.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Test SWITCH VHO -->
+ <EntityDescriptor entityID="https://tools.test.vho-switchaai.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/profile/mfa</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Test SWITCH VHO</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test VHO Tools</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,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</mdui:Logo>
+ <mdui:Logo height="60" width="80">data:image/png;base64,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</mdui:Logo>
+ <mdui:InformationURL xml:lang="en">http://www.switch.ch/aai/join/vho.html</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.switch.ch/aai/about/privacy.html</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tools.test.vho-switchaai.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tools.test.vho-switchaai.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tools.test.vho-switchaai.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tools.test.vho-switchaai.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tools.test.vho-switchaai.ch/Shibboleth.sso/SAML/POST" index="5" isDefault="true"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tools.test.vho-switchaai.ch/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Test SWITCH VHO</ServiceName>
+ <ServiceDescription xml:lang="en">Test VHO Tools</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Softfactors -->
+ <!-- Federation Partner Resource of Partner: softfactors AG (https://www.softfactors.com/) -->
+ <EntityDescriptor entityID="https://ethz-techpreview-test-admin.softfactors.com">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-logon-bi-test.ethz.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://www.softfactors.com" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Softfactors</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Auth service to Softfactors.com HR Solution users</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.softfactors.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.iubenda.com/privacy-policy/910915</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDBDCCAeygAwIBAgIJcb26jciqSrATMA0GCSqGSIb3DQEBBQUAMCkxJzAlBgNV
+BAMTHnNvZnRmYWN0b3JzLXRlc3QxLmV1LmF1dGgwLmNvbTAeFw0xNzAxMDMxMzI5
+MTRaFw0zMDA5MTIxMzI5MTRaMCkxJzAlBgNVBAMTHnNvZnRmYWN0b3JzLXRlc3Qx
+LmV1LmF1dGgwLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAKd3
+l8uz5HxpBsrZCylT9uo0hfv8s8G+jVSKjz49R+te6pBgpW85N89jbD9m49oSL8TU
+iKZaNbOx+T0FW3FiAON+49oMihL4wCsKO1M95g/nTua2KG7Y1jZvX7b4nQ+RWyhi
+4Zrc+G2HBisR+WpZ1IcDQVD4cRKyWxMbBL7sJJ9nteDC+aQ9VU9QK05S9Nhj2nvH
+NvD8ycZCeU9z7R/eMtm3RrGse5O8lrkMTOU2H0s0uygRKBzYK6LKZ5ydWMwRE5zu
+qevRpvj3Pjii/jmxNhOfQ5TdKVMUetQXeePpU2Z/iZGeiqwmwvjEIDGdrx/qNp2w
+PMj7an8QDUB7Jw8GM3ECAwEAAaMvMC0wDAYDVR0TBAUwAwEB/zAdBgNVHQ4EFgQU
+Kpkjpa5aO4pPzEy9X64VqPKs5zwwDQYJKoZIhvcNAQEFBQADggEBAKcKFPaH3css
+N6fl6rPG9RLoB5Ya4Rvco7kpbVmh/6hh5TSBreXoCoRQDEya/4OeI7oeEJN/BhjQ
+PToX/1FwzT3Yc7m79O/mxP26RPtVtlHuWylna5yGRKUiPLG2IW6qGlcnKmlLGk8q
+Js8RH165SP9Tsp7BTuKvtmyMzrXKTh/puXtIb5wiW+qETx9mmBxWwdFYhMV1Z22i
+C12TmmD2t6ToqrSehRZc/T0hbhFcM1/ACbaY4pngHWDbzPAbqP45y0mwZh7mchh2
+H9nQGl701jEuncuv/NxVnnRKT4shvyL3KVW0zlG1F3Ii8ixZVPA7Wb4loQV71Kq8
+N8brGjxp1aU=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://softfactors-test1.eu.auth0.com/logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://softfactors-test1.eu.auth0.com/login/callback?connection=sofaethzdevtest1" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Softfactors</ServiceName>
+ <ServiceDescription xml:lang="en">Auth service to Softfactors.com HR Solution users</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">softfactors.com</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">softfactors AG</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.softfactors.com/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- AAI Demo Resource -->
+ <EntityDescriptor entityID="https://aai-demo.switch.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">AAI Demo Resource</mdui:DisplayName>
+ <mdui:Description xml:lang="en">It illustrates the basic principles of AAI with various examples of Shibboleth features.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://aai-demo.switch.ch/Shibboleth.sso/SLO/Redirect"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-demo.switch.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webdav-demo.aai.switch.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aai-demo.switch.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webdav-demo.aai.switch.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://aai-demo.switch.ch/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webdav-demo.aai.switch.ch/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">AAI Demo Resource</ServiceName>
+ <ServiceDescription xml:lang="en">It illustrates the basic principles of AAI with various examples of Shibboleth features.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStaffCategory" Name="urn:oid:2.16.756.1.2.5.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch1" Name="urn:oid:2.16.756.1.2.5.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch2" Name="urn:oid:2.16.756.1.2.5.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch3" Name="urn:oid:2.16.756.1.2.5.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyLevel" Name="urn:oid:2.16.756.1.2.5.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="homePostalAddress" Name="urn:oid:0.9.2342.19200300.100.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonOrcid" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="homePhone" Name="urn:oid:0.9.2342.19200300.100.1.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-COMMUNICATION/UNILISTE CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/communication/uniliste/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-COMMUNICATION/UNILISTE CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-COMMUNICATION/UNILISTE CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/communication/uniliste/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/communication/uniliste/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/communication/uniliste/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/communication/uniliste/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/communication/uniliste/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/communication/uniliste/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/communication/uniliste/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/communication/uniliste/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/communication/uniliste/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/communication/uniliste/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/communication/uniliste/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/communication/uniliste/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/communication/uniliste/Shibboleth.sso/SAML2/ECP" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/communication/uniliste/Shibboleth.sso/SAML2/ECP" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/communication/uniliste/Shibboleth.sso/SAML2/ECP" index="15"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-COMMUNICATION/UNILISTE CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-COMMUNICATION/UNILISTE CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Test -->
+ <EntityDescriptor entityID="https://otrs-test.ezq.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.eduid.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.eduid.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test my test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="http://86.119.39.196/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://otrs-test.ezq.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="http://86.119.39.196/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://otrs-test.ezq.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="http://86.119.39.196/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://otrs-test.ezq.ch/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Test</ServiceName>
+ <ServiceDescription xml:lang="en">Test my test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="isMemberOf" Name="urn:oid:1.3.6.1.4.1.5923.1.5.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.eduid.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.eduid.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Crealogix Test SP -->
+ <EntityDescriptor entityID="https://dubai.crealogix.com/CLX.Evento/Authentication/SwissEduId">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Crealogix Test SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Crealogix Test SP</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://dubai.crealogix.com/CLX.Evento/Authentication/SwissEduId/Logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dubai.crealogix.com/CLX.Evento/Authentication/SwissEduId/Acs" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dubai.crealogix.com/CLX.Evento/Authentication/SwissEduId/Acs" index="2"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Crealogix Test SP</ServiceName>
+ <ServiceDescription xml:lang="en">Crealogix Test SP</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonCardUID" Name="urn:oid:2.16.756.1.2.5.1.1.12" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="homePostalAddress" Name="urn:oid:0.9.2342.19200300.100.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SWAPP test collaborative-site-plone-swapp -->
+ <EntityDescriptor entityID="https://swapp-test.unige.ch/collaborative-site-plone-swapp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-lab.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="http://cad.unige.ch" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">SWAPP test collaborative-site-plone-swapp</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SWAPP which display the user's Plone collaborative sites</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDSTCCAjGgAwIBAgIJANazwn2foQXMMA0GCSqGSIb3DQEBBQUAMB4xHDAaBgNV
+BAMTE3N3YXBwLXRlc3QudW5pZ2UuY2gwHhcNMTcwNDIzMjIyMjQyWhcNMjAwNDIy
+MjIyMjQyWjAeMRwwGgYDVQQDExNzd2FwcC10ZXN0LnVuaWdlLmNoMIIBIjANBgkq
+hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwUau3Eljghkhu7lUUYnSi0DKsC9Uc9Op
+hsChe8aChDNuaxnad5wfwcjlvIQfp29cd410DVY9ZeirhFRFhC0vltrIqI1GuYzP
+M3tvx+Wn8SNufOpfUIZtYDO2pIuwDkRgcPy80A0re2sXkD/3mXiB9GPToNE/dQKr
+kHgWy5I8wYD13M40Zvw223rF1RGTVPUUImrF4lklLFYhyHDWiVwK4XLoEBeV6lKv
+RkA9uDEwBD8WNqBOlqwJr5VhnZl2t4mmobfzdKSkjXNqQyQ3dAlyPXCQvfThU5K0
+zQsavatco3GuIBF6CparD/bjvDh4zY4Ny0jeI8v4jxd6xXB1fMc/kQIDAQABo4GJ
+MIGGMGUGA1UdEQReMFyCE3N3YXBwLXRlc3QudW5pZ2UuY2iGRWh0dHBzOi8vc3dh
+cHAtdGVzdC51bmlnZS5jaC9jb2xsYWJvcmF0aXZlLXNpdGUtcGxvbmUtc3dhcHAv
+c2hpYmJvbGV0aDAdBgNVHQ4EFgQUztKrfTYCliqrOKJhblY46D5/6okwDQYJKoZI
+hvcNAQEFBQADggEBALrejtVZxEcUAMkBMaVI4w549cw2zn9rNp/cDW4WeAyY8gyP
+C/aAfXWaADoIxdNfG7D7aoiT5UXX3BdLViydQK3gtaeEC3dW5pux0NlMYH81AF2C
+bFQU0gq02hXpqxNZPiEcskRPCxAvuggr2gvLewQuu0+4A0wUCmcBGC2vPI8AOmQn
+q4/AmZGG2lkgBqGBLWxHJNXKf4jcYmA/Yl2MyTGwItphBT3WV5dZhCZXk7Jo2h5c
+GaacgU06kziImh6TO2LGMGaewAkNwJ9ZZreFR2W4iNoHp0pmsgFbS/5E47NH/tnf
+BbkUNprGZRQbClQFpIphIJCYOI5mLBebyFCPtLI=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://swapp-test.unige.ch/collaborative-site-plone-swapp/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://swapp-test.unige.ch/collaborative-site-plone-swapp/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://swapp-test.unige.ch/collaborative-site-plone-swapp/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://swapp-test.unige.ch/collaborative-site-plone-swapp/Shibboleth.sso/SAML/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://swapp-test.unige.ch/collaborative-site-plone-swapp/Shibboleth.sso/SAML/Artifact" index="5"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">SWAPP test collaborative-site-plone-swapp</ServiceName>
+ <ServiceDescription xml:lang="en">SWAPP which display the user's Plone collaborative sites</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- WEB-Entwicklungsserver -->
+ <EntityDescriptor entityID="https://www.dev.fhnw.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.fhnw.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.fhnw.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.fhnw.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">WEB-Entwicklungsserver</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">WEB-Entwicklungsserver</mdui:DisplayName>
+ <mdui:Description xml:lang="de">WEB-Entwicklungsserver</mdui:Description>
+ <mdui:Description xml:lang="en">WEB-Entwicklungsserver</mdui:Description>
+ <mdui:Keywords xml:lang="de">web-entwicklungsserver</mdui:Keywords>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://m.dev.fhnw.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tools.dev.fhnw.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tools4.dev.fhnw.ch/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcms.dev.fhnw.ch/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.dev.fhnw.ch/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://m.dev.fhnw.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tools.dev.fhnw.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tools4.dev.fhnw.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webcms.dev.fhnw.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.dev.fhnw.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://m.dev.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tools.dev.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tools4.dev.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcms.dev.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.dev.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="15"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://m.dev.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="16"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tools.dev.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="17"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tools4.dev.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="18"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webcms.dev.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="19"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.dev.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="20"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://m.dev.fhnw.ch/Shibboleth.sso/SAML/POST" index="21"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tools.dev.fhnw.ch/Shibboleth.sso/SAML/POST" index="22"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tools4.dev.fhnw.ch/Shibboleth.sso/SAML/POST" index="23"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://webcms.dev.fhnw.ch/Shibboleth.sso/SAML/POST" index="24"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.dev.fhnw.ch/Shibboleth.sso/SAML/POST" index="25"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://m.dev.fhnw.ch/Shibboleth.sso/SAML/Artifact" index="26"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tools.dev.fhnw.ch/Shibboleth.sso/SAML/Artifact" index="27"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tools4.dev.fhnw.ch/Shibboleth.sso/SAML/Artifact" index="28"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://webcms.dev.fhnw.ch/Shibboleth.sso/SAML/Artifact" index="29"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.dev.fhnw.ch/Shibboleth.sso/SAML/Artifact" index="30"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">WEB-Entwicklungsserver</ServiceName>
+ <ServiceName xml:lang="en">WEB-Entwicklungsserver</ServiceName>
+ <ServiceDescription xml:lang="de">WEB-Entwicklungsserver</ServiceDescription>
+ <ServiceDescription xml:lang="en">WEB-Entwicklungsserver</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwIDPerson" Name="urn:oid:2.16.756.1.2.5.1.1.1009" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.fhnw.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.fhnw.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.fhnw.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS - CLUSTER test EKO -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/eko/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS - CLUSTER test EKO</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS - CLUSTER test EKO</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/eko/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/eko/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/eko/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/eko/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/eko/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwot.intranet.unige.ch/eko/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://wwwit.intranet.unige.ch/eko/Shibboleth.sso/SAML2/POST-SimpleSign" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/eko/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/eko/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/eko/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/eko/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/eko/Shibboleth.sso/SAML2/Artifact" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwot.intranet.unige.ch/eko/Shibboleth.sso/SAML2/Artifact" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/eko/Shibboleth.sso/SAML2/ECP" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/eko/Shibboleth.sso/SAML2/ECP" index="15"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/eko/Shibboleth.sso/SAML2/ECP" index="16"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/eko/Shibboleth.sso/SAML2/ECP" index="17"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/eko/Shibboleth.sso/SAML2/ECP" index="18"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwot.intranet.unige.ch/eko/Shibboleth.sso/SAML2/ECP" index="19"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wwwit.intranet.unige.ch/eko/Shibboleth.sso/SAML/POST" index="20"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wwwot.intranet.unige.ch/eko/Shibboleth.sso/SAML/POST" index="21"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wwwit.intranet.unige.ch/eko/Shibboleth.sso/SAML/Artifact" index="22"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wwwot.intranet.unige.ch/eko/Shibboleth.sso/SAML/Artifact" index="23"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS - CLUSTER test EKO</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS - CLUSTER test EKO</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Support-Tools ERP (Test) -->
+ <EntityDescriptor entityID="https://tools1.fhnw.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.fhnw.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.fhnw.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.fhnw.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Support-Tools ERP (Test)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Support-Tools ERP (Test)</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tools1.fhnw.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tools1.fhnw.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tools1.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tools1.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tools1.fhnw.ch/Shibboleth.sso/SAML/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tools1.fhnw.ch/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Support-Tools ERP (Test)</ServiceName>
+ <ServiceDescription xml:lang="en">Support-Tools ERP (Test)</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStaffCategory" Name="urn:oid:2.16.756.1.2.5.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch1" Name="urn:oid:2.16.756.1.2.5.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch2" Name="urn:oid:2.16.756.1.2.5.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch3" Name="urn:oid:2.16.756.1.2.5.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyLevel" Name="urn:oid:2.16.756.1.2.5.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="fhnwAbrKst" Name="urn:oid:2.16.756.1.2.5.1.1.1007" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="fhnwDetailedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1008" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="fhnwIDPerson" Name="urn:oid:2.16.756.1.2.5.1.1.1009" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="fhnwOeID" Name="urn:oid:2.16.756.1.2.5.1.1.1013" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="fhnwSapUserInfo" Name="urn:oid:2.16.756.1.2.5.1.1.1011" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="fhnwSapUserID" Name="urn:oid:2.16.756.1.2.5.1.1.1010" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="fhnwUPN" Name="urn:oid:2.16.756.1.2.5.1.1.1012" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.fhnw.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.fhnw.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.fhnw.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- local swissubase -->
+ <EntityDescriptor entityID="https://local.swissubase.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">local swissubase</mdui:DisplayName>
+ <mdui:Description xml:lang="en">swissubase development enviroment setup</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://local.swissubase.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://local.swissubase.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://local.swissubase.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">local swissubase</ServiceName>
+ <ServiceDescription xml:lang="en">swissubase development enviroment setup</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1029" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Asknet Test-Service-provider -->
+ <EntityDescriptor entityID="https://test-sp.asknet.de/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://sp2-stage.asknet.de/shibboleth/index.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">Asknet Test-Service-provider</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Asknet Test-Service-provider</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Test-Service-Provider der asknet AG</mdui:Description>
+ <mdui:Description xml:lang="en">test-service-provider of asknet AG</mdui:Description>
+ <mdui:Keywords xml:lang="it">asknet</mdui:Keywords>
+ <mdui:Keywords xml:lang="fr">asknet</mdui:Keywords>
+ <mdui:Keywords xml:lang="en">asknet</mdui:Keywords>
+ <mdui:Keywords xml:lang="de">asknet</mdui:Keywords>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp2-stage.asknet.de/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://sp2-stage.asknet.de/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp2-stage.asknet.de/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp2-stage.asknet.de/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://sp2-stage.asknet.de/Shibboleth.sso/SAML/POST" index="5" isDefault="true"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://sp2-stage.asknet.de/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">Asknet Test-Service-provider</ServiceName>
+ <ServiceName xml:lang="en">Asknet Test-Service-provider</ServiceName>
+ <ServiceDescription xml:lang="de">Test-Service-Provider der asknet AG</ServiceDescription>
+ <ServiceDescription xml:lang="en">test-service-provider of asknet AG</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETHZ, LET, LDA Dev-Server -->
+ <EntityDescriptor entityID="https://dlda-1.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">ETHZ, LET, LDA Dev-Server</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">ETHZ, LET, LDA Dev-Server</mdui:DisplayName>
+ <mdui:Description xml:lang="de">ILIAS Dev-Server für LDA von LET ETHZ</mdui:Description>
+ <mdui:Description xml:lang="en">ILIAS Dev server for LDA of LET ETHZ</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dlda-1.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dlda-1.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dlda-1.ethz.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">ETHZ, LET, LDA Dev-Server</ServiceName>
+ <ServiceName xml:lang="en">ETHZ, LET, LDA Dev-Server</ServiceName>
+ <ServiceDescription xml:lang="de">ILIAS Dev-Server für LDA von LET ETHZ</ServiceDescription>
+ <ServiceDescription xml:lang="en">ILIAS Dev server for LDA of LET ETHZ</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- UniFR, Web Server Test&Dev -->
+ <EntityDescriptor entityID="https://svx-uo1151web.unifr.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>unifr.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="unifr.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">unifr.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="http://www.unifr.ch/aai" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">UniFR, Web Server Test&amp;Dev</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">UniFR, Web Server Test&amp;Dev</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="fr">UniFR, Web Server Test&amp;Dev</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Die Fakultäten können den durch Shibboleth geschützten Web Server der Universität Freiburg verwenden, um ihre Dokumente ihrer Studenten zu Verfügung zu stellen.</mdui:Description>
+ <mdui:Description xml:lang="en">The Web Server at the University of Fribourg is now AAI-enabled. Professors, assistants, services have now a simple solution to make their documents available to their students and assistants.</mdui:Description>
+ <mdui:Description xml:lang="fr">Les facultés peuvent utiliser le serveur web de l'Université de Fribourg pour mettre leurs documents à disposition de leurs étudiants, en utilisant la protection par Shibboleth.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="http://svx-uo1151web.unifr.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://svx-uo1151web.unifr.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="http://svx-uo1151web.unifr.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://svx-uo1151web.unifr.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="http://svx-uo1151web.unifr.ch/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://svx-uo1151web.unifr.ch/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">UniFR, Web Server Test&amp;Dev</ServiceName>
+ <ServiceName xml:lang="en">UniFR, Web Server Test&amp;Dev</ServiceName>
+ <ServiceName xml:lang="fr">UniFR, Web Server Test&amp;Dev</ServiceName>
+ <ServiceDescription xml:lang="de">Die Fakultäten können den durch Shibboleth geschützten Web Server der Universität Freiburg verwenden, um ihre Dokumente ihrer Studenten zu Verfügung zu stellen.</ServiceDescription>
+ <ServiceDescription xml:lang="en">The Web Server at the University of Fribourg is now AAI-enabled. Professors, assistants, services have now a simple solution to make their documents available to their students and assistants.</ServiceDescription>
+ <ServiceDescription xml:lang="fr">Les facultés peuvent utiliser le serveur web de l'Université de Fribourg pour mettre leurs documents à disposition de leurs étudiants, en utilisant la protection par Shibboleth.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStaffCategory" Name="urn:oid:2.16.756.1.2.5.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch3" Name="urn:oid:2.16.756.1.2.5.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyLevel" Name="urn:oid:2.16.756.1.2.5.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">unifr.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Université de Fribourg Test Home Organization</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unifr.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETH Zürich Red5 -->
+ <EntityDescriptor entityID="https://www.red5.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ETH Zürich Red5</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ETH Zürich AAI-Test Red5</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-bitest.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-lbtest.ethz.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.red5.ethz.ch/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aai-bitest.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aai-lbtest.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.red5.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://aai-bitest.ethz.ch/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://aai-lbtest.ethz.ch/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.red5.ethz.ch/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ETH Zürich Red5</ServiceName>
+ <ServiceDescription xml:lang="en">ETH Zürich AAI-Test Red5</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="homePostalAddress" Name="urn:oid:0.9.2342.19200300.100.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-COMPTA/ACHATS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/compta/achats/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-COMPTA/ACHATS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-COMPTA/ACHATS test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEIjCCAoqgAwIBAgIJAN05WLstTlUCMA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV
+BAMTDnd3d2l0LnVuaWdlLmNoMB4XDTE3MDgxNjEzNTQ1MloXDTIwMDgxNTEzNTQ1
+MlowGTEXMBUGA1UEAxMOd3d3aXQudW5pZ2UuY2gwggGiMA0GCSqGSIb3DQEBAQUA
+A4IBjwAwggGKAoIBgQDFAw/umB1mxEidYxzYxJSs8u5FVoSvCn9u/TxNrZ9MCHXp
+qtLWOEtZNxv9URErkZpwnUPYt0QLyK4jx8hLcP7dUktghFTbXT4PyTzgFAe7ozWm
+vanjomQMvfktjyO8R1r2N1hbE3PFE7hmOgF4Trg94640jMhKEqhXG2QEpW/yna+L
+LoABUqwsGUx3VwWZeLit0bG7mfdMxIxqhLS7SJcMQuwljYYmLctRiiR7jUzmt90i
+67n4CkMMOFpyJjtUhIu0mLrCZ4TyI/NCqWuaxu4y1WtN2vWScaE/5jP6YFPwvpMX
+9p6yb9M8tKzH5MA0+OZxfRDB3HjfcD/J8pqEqVoyixl8F+XiN1LjBSlj9oa6PfWq
+W3ok4VB1NhZDkdqTl1uXfKYIYAHpVMzT1UiwwU02dvT3b80EOIfPoqpdPgZ5DAjM
+eEsALabM6tstiTSbb5s/vhAGlyrOtKkEgs3YyvUNZpXLa+tGprb+Dhe6KLqF9LZ4
+Wf6JYttm2ptHlg8IcS0CAwEAAaNtMGswSgYDVR0RBEMwQYIOd3d3aXQudW5pZ2Uu
+Y2iGL2h0dHBzOi8vd3d3aXQudW5pZ2UuY2gvY29tcHRhL2FjaGF0cy9zaGliYm9s
+ZXRoMB0GA1UdDgQWBBQx34IcqjZLqJ0tI4KZg7i8gvjfqjANBgkqhkiG9w0BAQsF
+AAOCAYEAeYrmWenJFznoQQstLqdccG9irCSH1LQ2JcoflQB/6DVRy2Iw2gALynYl
+iOv+KmccKf+A0CZrEEQOaQ9eCuAf7W2cZmLQ0a5y9mZuxWXH95ew6uOM6iYuZfmb
+ArzI6e/0PAQBIOIJSlgL1GZwSfNjGOKnNDBkYrQ8PiDa52XLDV7wOwjnkeeKsxgZ
+smOpLVrpakylV5qwMgU/GSF86acVvk1kMoMEPZ8mOm5VBQZ5rwi3aYnzHFhxe0nt
+yxdSOxtKfON5vvw2sro11XsGtq3YwcC/COxXlUKqftDUjyqkRna+qdqCi34/QDx5
+0Oxf8IrGkaRuJKjqcTlNAJCHQnyINMPnEm+fXpJhicOKdGAb9aEAiOQNCml12LDG
+Gc25RACF/KpDTxd35oqPaoGCn7juAgV9pRiMUg5hGVRIZW87wsiempUXnHwOaOdF
+BB0EyEJCDnk+eHZE13T9CpqqYMALjoNKi1mxCVrG58AGQmB0ulQVKhqnYp2roM4O
+i0921Nqj
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/compta/achats/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/compta/achats/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/compta/achats/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/compta/achats/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/compta/achats/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/compta/achats/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/compta/achats/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/compta/achats/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/compta/achats/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-COMPTA/ACHATS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-COMPTA/ACHATS test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-CURSUS/EXAW CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/cursus/exaw/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-CURSUS/EXAW CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-CURSUS/EXAW CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/POST" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/POST" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/Artifact" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/Artifact" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/Artifact" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/Artifact" index="15"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/Artifact" index="16"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/ECP" index="17"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/ECP" index="18"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/ECP" index="19"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/ECP" index="20"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/ECP" index="21"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/ECP" index="22"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/ECP" index="23"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/cursus/exaw/Shibboleth.sso/SAML2/ECP" index="24"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wwwit.unige.ch/cursus/exaw/Shibboleth.sso/SAML/POST" index="25"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wwwit.unige.ch/cursus/exaw/Shibboleth.sso/SAML/Artifact" index="26"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-CURSUS/EXAW CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-CURSUS/EXAW CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SWITCH Cloud Service Platform -->
+ <EntityDescriptor entityID="https://cloud-id-stage.switch.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">SWITCH Cloud Service Platform</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">SWITCH Cloud Service Platform</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="fr">SWITCH Cloud Service Platform</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="it">SWITCH Cloud Service Platform</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Um die SWITCH Cloud-Dienste zu verwenden benötigen Sie eine Swiss EduID.</mdui:Description>
+ <mdui:Description xml:lang="en">To use SWITCH cloud services you need a Swiss EduID.</mdui:Description>
+ <mdui:Description xml:lang="fr">Pour utiliser les services SWITCH cloud, vous avez besoin d'un Swiss EduID.</mdui:Description>
+ <mdui:Description xml:lang="it">Per utilizzare i servizi SWITCH cloud avete bisogno di una Swiss EduID.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://cloud-id-stage.switch.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://cloud-id-stage.switch.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://cloud-id-stage.switch.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">SWITCH Cloud Service Platform</ServiceName>
+ <ServiceName xml:lang="en">SWITCH Cloud Service Platform</ServiceName>
+ <ServiceName xml:lang="fr">SWITCH Cloud Service Platform</ServiceName>
+ <ServiceName xml:lang="it">SWITCH Cloud Service Platform</ServiceName>
+ <ServiceDescription xml:lang="de">Um die SWITCH Cloud-Dienste zu verwenden benötigen Sie eine Swiss EduID.</ServiceDescription>
+ <ServiceDescription xml:lang="en">To use SWITCH cloud services you need a Swiss EduID.</ServiceDescription>
+ <ServiceDescription xml:lang="fr">Pour utiliser les services SWITCH cloud, vous avez besoin d'un Swiss EduID.</ServiceDescription>
+ <ServiceDescription xml:lang="it">Per utilizzare i servizi SWITCH cloud avete bisogno di una Swiss EduID.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1029" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliationMail" Name="urn:oid:2.16.756.1.2.5.1.1.1031" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETHZ, LDA QSS-Server -->
+ <EntityDescriptor entityID="https://lda-1-qss.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">ETHZ, LDA QSS-Server</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">ETHZ, LDA QSS-Server</mdui:DisplayName>
+ <mdui:Description xml:lang="de">QSS-Server für die Lehrdokumentenablage (LDA) der ETHZ</mdui:Description>
+ <mdui:Description xml:lang="en">This is the LDA QSS-Server of ETHZ</mdui:Description>
+ <mdui:Keywords xml:lang="en">lms lda ilias</mdui:Keywords>
+ <mdui:Keywords xml:lang="de">lms lda ilias</mdui:Keywords>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lda-1-qss.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://lda-1-qss.ethz.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lda-1-qss.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lda-1-qss.ethz.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://lda-1-qss.ethz.ch/Shibboleth.sso/SAML/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://lda-1-qss.ethz.ch/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">ETHZ, LDA QSS-Server</ServiceName>
+ <ServiceName xml:lang="en">ETHZ, LDA QSS-Server</ServiceName>
+ <ServiceDescription xml:lang="de">QSS-Server für die Lehrdokumentenablage (LDA) der ETHZ</ServiceDescription>
+ <ServiceDescription xml:lang="en">This is the LDA QSS-Server of ETHZ</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Demo SP 1337 -->
+ <EntityDescriptor entityID="https://sp1337.example.org/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Demo SP 1337</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SP used for improving my Shib knowledge</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp1337.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp1337.example.org/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp1337.example.org/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Demo SP 1337</ServiceName>
+ <ServiceDescription xml:lang="en">SP used for improving my Shib knowledge</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS - CLUSTER test fco -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/fco/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS - CLUSTER test fco</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS - CLUSTER test fco</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/fco/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/fco/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/fco/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/fco/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/fco/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/fco/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/fco/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/fco/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/fco/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/fco/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/fco/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/fco/Shibboleth.sso/SAML2/Artifact" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/fco/Shibboleth.sso/SAML2/ECP" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/fco/Shibboleth.sso/SAML2/ECP" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/fco/Shibboleth.sso/SAML2/ECP" index="15"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/fco/Shibboleth.sso/SAML2/ECP" index="16"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/fco/Shibboleth.sso/SAML2/ECP" index="17"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/fco/Shibboleth.sso/SAML2/ECP" index="18"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS - CLUSTER test fco</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS - CLUSTER test fco</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-SERVICE/BOURSE CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/service/social/bourse/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-logon-test.hes-so.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-SERVICE/BOURSE CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-SERVICE/BOURSE CLUS test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEKjCCApKgAwIBAgIJAKC2pmXjEjTUMA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV
+BAMTDnd3d2l0LnVuaWdlLmNoMB4XDTE5MTAxODA2Mzc0N1oXDTIyMTAxNzA2Mzc0
+N1owGTEXMBUGA1UEAxMOd3d3aXQudW5pZ2UuY2gwggGiMA0GCSqGSIb3DQEBAQUA
+A4IBjwAwggGKAoIBgQDJqE5r9MqIOM3wqNIR3HDGR3d6nW1atp4OBlfEm6sYhKGA
+zhpzmqSZiX1WX7wWzs8WFfVSYFhP/MQ9cI5uj0kyfjNHRiPHQ4e6GxPgFZ78JWnc
+wokkJGz6Mvc1tn6Z7olR/D9EYqdbNOhOWVyi5/UUlVVq4aK7xVhoOOC/A1fd1LR4
+JAZk+r9qSuko7kCx5EzBfZlRFyGzkAkESaqb8350GBxvJtamckDvslIEji19zmAt
+wRW5WZ/G0GFJj8vLhbEuss74EENcHuAs4quYDzbhoypHrO0tkDjmY0iJX5hYcr2n
+Lt0C+V5gRqbmKtRnvp/T5RCTGfqJAXlnfIH2ezhPFkbOGbLXHJKncP9adJ5/kbTf
+Uxo7A8/t0x5BP6jl3NJgY2QARDYZ5m7RFBNbKtgJcivt0+Rvl9PBJeD20PVLck/+
+/EVA2l5GL6yt0E9MPw/DHZh7FwMdJfrGxzX0039qpzGO9pUQPO//QgQvee5Aeat5
+tGMemXZqlV6IxlnqnR0CAwEAAaN1MHMwUgYDVR0RBEswSYIOd3d3aXQudW5pZ2Uu
+Y2iGN2h0dHBzOi8vd3d3aXQudW5pZ2UuY2gvc2VydmljZS9zb2NpYWwvYm91cnNl
+L3NoaWJib2xldGgwHQYDVR0OBBYEFBYPWsErsLgDdp27wm+73w9qf5o6MA0GCSqG
+SIb3DQEBCwUAA4IBgQCatjMaNdipe85yBlPg39LpRpb2UY+ry3IODhehWDralNwI
+Kh56GRXgQ0jspCNbG/RTHJNr45WE8CQ1sxxtgH8bAHzD8HvpN+KT4VdW8PwBlDdZ
+89T5C3t7UBkManwUkx0jcfbUytSHOV7i39oZd6oPM3CXNwWULw7uHtdtEvLAS1zL
+c4crD8hyRJgJPnuyKAiLT+CGBJ42tZP+ANJeDYAIyDbnc5j6p3Z8n2K472AHn1DG
+PhiEnEh1R27vEjsr0M9lvGo9Iq5dgX0qWj/Wd3OnMOxxJqGnbWYrbcbKaY5/AGf2
+6AtNiwc8NZ26ApxNCjROT3hVpjMqDfLqAZwtS2+vX3SzbNVnhgIr4iZiu2uNX3Z1
+3w1Nzbq/fp3fLZcqpoznv+kGjSrX6nNbBLu3GVM+MP38Ic/aRC1mh7p1KcOMJaAG
+spqF4CMQrHgLNMFLb3c1zxC6P9XKU3nWK5jjymktgnvzRob5Z2Njd8R8JNZvwYGo
+S3DTVbePrYjUDiMIFWw=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib.unige.ch/service/social/bourse/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/service/social/bourse/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib.unige.ch/service/social/bourse/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/service/social/bourse/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/service/social/bourse/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib.unige.ch/service/social/bourse/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/service/social/bourse/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib.unige.ch/service/social/bourse/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/service/social/bourse/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/service/social/bourse/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib.unige.ch/service/social/bourse/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/service/social/bourse/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib.unige.ch/service/social/bourse/Shibboleth.sso/SAML2/ECP" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/service/social/bourse/Shibboleth.sso/SAML2/ECP" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/service/social/bourse/Shibboleth.sso/SAML2/ECP" index="15"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wwwit.unige.ch/service/social/bourse/Shibboleth.sso/SAML/POST" index="16"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wwwit.unige.ch/service/social/bourse/Shibboleth.sso/SAML/Artifact" index="17"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-SERVICE/BOURSE CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-SERVICE/BOURSE CLUS test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETHZ, Moodle OIS Test User -->
+ <EntityDescriptor entityID="https://moodle-test-user.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ETHZ, Moodle OIS Test User</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Moodle test server for ETH-OIS integration</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle-test-user.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle-test-user.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle-test-user.ethz.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ETHZ, Moodle OIS Test User</ServiceName>
+ <ServiceDescription xml:lang="en">Moodle test server for ETH-OIS integration</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- IdP Hosting Service Monitor -->
+ <EntityDescriptor entityID="https://idp-monitor.aai.switch.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.idph.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.idph.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.idph.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">libraries.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">zhaw.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">educa.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">IdP Hosting Service Monitor</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Monitoring for SWITCHaai IdP Hosting customers</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEQDCCAqigAwIBAgIJAMGXJLL2BQyoMA0GCSqGSIb3DQEBCwUAMCQxIjAgBgNV
+BAMTGWlkcC1tb25pdG9yLmFhaS5zd2l0Y2guY2gwHhcNMTkwOTI0MDgyNjU2WhcN
+MjIwOTIzMDgyNjU2WjAkMSIwIAYDVQQDExlpZHAtbW9uaXRvci5hYWkuc3dpdGNo
+LmNoMIIBojANBgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEApO+oc6+GGErq3Xcc
+Vdt8O0UN9v6twWqRjneffV5XFEWTxDVAWEqx0CoTpCtnOuxs+uEz3AQDQTGx+7yI
+gtGL+MqUVG/bCeR9kTfUy/+1tl+NrcQpNamGRWP4i4SMwRmxFnTU0RpRIOiBwHxy
+7Yj0pC6DEpmcVAu6CRa2LU7CD50WICZ03phBem4lrkYxt5jjrcSHacHvmHrxw+rx
+e0jsUES3oyj4XVTM0xqIWX5d37uWIkTTxygCj9jmrjRxjTmaoDCJx0P7CKlCQReL
+DoaZThxsKlTWa2ZEy6Of6bl+C61tZvpTvuJS2vJmH5odtBnPMDeeMv9r/vUhVTGE
+/Z9q/MLRsQyFY7BRKgQcx1iVM/+6rlKm0qxR/psrue1gqz37vHaxOLqUp3EBwRz3
+vsNKy+4lx7fwnqkSbyLtOa2Kp96OMFpRn5NBoULFvL0MmVJLqzqaTWvh7FFajGWk
+Ve8RFG/W3KOhKXoeKw18TxnmQ1dUawa0aRnEvD2qmy3ll3HhAgMBAAGjdTBzMFIG
+A1UdEQRLMEmCGWlkcC1tb25pdG9yLmFhaS5zd2l0Y2guY2iGLGh0dHBzOi8vaWRw
+LW1vbml0b3IuYWFpLnN3aXRjaC5jaC9zaGliYm9sZXRoMB0GA1UdDgQWBBTBWQXs
+cg1CneS3cd+hhKT9AVangTANBgkqhkiG9w0BAQsFAAOCAYEAEFalqY2SrFJwBmS/
+pgmKf7zgkBGSIa5BDGlV6cT8ZGJc2k4YdWlYYmdiMxtAp38aZpZa11AB8IbcBuuU
+gSp750NufXndmtZakhJTh1rNBhZ3wUdqtIvP3tkMScCxMEERs2jyzltDBVLQnsKz
+8WBBLUAI1W5XmW0TwbD5cSlG53KPFQUP7NxnYoKqWAyU1eCdnlbXEbL4UCB3BNSg
+K91zp0ERn2kLmGhz6ugTx37IK6kEe6CQ0IydzHeGyWd1xmfVR+GQllCXQtRh29YD
+vZtYhIFEdQ06ryQGsiF1CN3MZolyfrz9OUADcFv8J4S53ihFpsbBYDskGtM3LNgU
+0dQdh8cxtfTVSCLfIkjK7W6XAfziKr0c62gc7hoijPBMSAusW6M4i1u/d4dOe00S
+5cgXtFjos1kVWlz4des1bmXxyeeRaFfx6hYbyG5xfkh6QtiZgt/TCR7sfe9Ujgud
+VoKn/h3zwT0KHKkq84AYNlHf8hAIDLtzujj31Lu+ozSFucud
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idp-monitor.aai.switch.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">IdP Hosting Service Monitor</ServiceName>
+ <ServiceDescription xml:lang="en">Monitoring for SWITCHaai IdP Hosting customers</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonCardUID" Name="urn:oid:2.16.756.1.2.5.1.1.12" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissLibraryPersonAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1023" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissLibraryPersonResidence" Name="urn:oid:2.16.756.1.2.5.1.1.1025" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStaffCategory" Name="urn:oid:2.16.756.1.2.5.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch1" Name="urn:oid:2.16.756.1.2.5.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch2" Name="urn:oid:2.16.756.1.2.5.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch3" Name="urn:oid:2.16.756.1.2.5.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyLevel" Name="urn:oid:2.16.756.1.2.5.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="homePostalAddress" Name="urn:oid:0.9.2342.19200300.100.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="isMemberOf" Name="urn:oid:1.3.6.1.4.1.5923.1.5.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonNickname" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrcid" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="homePhone" Name="urn:oid:0.9.2342.19200300.100.1.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDUsage1y" Name="urn:oid:2.16.756.1.2.5.1.1.1026" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssuranceLevel" Name="urn:oid:2.16.756.1.2.5.1.1.1027" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1029" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliationMail" Name="urn:oid:2.16.756.1.2.5.1.1.1031" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliationUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1032" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.idph.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SWITCH IdP Hosting Test Login</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.test.idph.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS - CLUSTER test tec/logon -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/tec/logon/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS - CLUSTER test tec/logon</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS - CLUSTER test tec/logon</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEHjCCAoagAwIBAgIJAJ+Ru7ZOcImMMA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV
+BAMTDnd3d2l0LnVuaWdlLmNoMB4XDTE4MDIxNTE0MDA0N1oXDTIxMDIxNDE0MDA0
+N1owGTEXMBUGA1UEAxMOd3d3aXQudW5pZ2UuY2gwggGiMA0GCSqGSIb3DQEBAQUA
+A4IBjwAwggGKAoIBgQDJcSmF+7J6fRGe8OCEj45TLqrDqYtrWCh8Yvc4AhYZlgEC
+w12r6kim1LA1k9gcAzKC7zVroPG004XxLHu/BhMM2s324scjRLCHGP/XYmdtDyUY
+7uvsUPGPRyCv71ys5FHt03kH8qkUFR0nLHvbOPSpTMbml/QbXwUtfAY6ltQAB2z9
+hJ6PBAyGsrNpT6z6Jv+Mifpo/4SkVFnanjGERkRI4vGgz4NY/0r5AAUrc4eqPdgp
+rrn6W8HJNlmYtL6NrOq2IqoNbKadvTFBSR8JDvX/FoeWYpBcyeijrz8OqtQahMgD
+K5WBjWgj6aw/MXFcg5hDy/s+eBC2hfwv6YsT1dPECk4EclPGLLmvWIxmEKVlbhV3
+MNlhWm3wzg9eJ7nHVIs4ojxynjWRtYp1tdG44i7kyv4CSwqsW5FzHVHhye/tcdkD
+Z/F7kh4D5SyMRCSihznIGxsbzapSTQ3Egf5dOZ2BcGA0cNl93cK08Ik6cMWnBPbD
+9f8oviumDhtcMvuvZHsCAwEAAaNpMGcwRgYDVR0RBD8wPYIOd3d3aXQudW5pZ2Uu
+Y2iGK2h0dHBzOi8vd3d3aXQudW5pZ2UuY2gvdGVjL2xvZ29uL3NoaWJib2xldGgw
+HQYDVR0OBBYEFHVgnix8XGUKVMmi/ltqHmMSZdcJMA0GCSqGSIb3DQEBCwUAA4IB
+gQCk8UQ+CcqY6Pfw65quzdyK1N9o2D9Huox4FEccKXMXVVMmbmHxCItOMLr9Nvxx
++FWId16zxgFz6I1pSl2NqIY1g15UX8VzYAs5PPCu/ZOu9VDeHcRIHpKNzgMzYyei
+WJvgO1Y0dwnbJsfU5vLkJZYaOJPW03qDbvLkQFlbOglEMwYaAWgaeq+JOMb7AHZg
+WECyJm1fvm6Te2pKHh07t+fmuKbAbc4g3AVThNwPlK8njdLar4JydsfW8t+Zlh5A
+rzFCyjCsXRPrK9o4TJw1p2Jz7wgqxmhrR25ZGvXLiW5oHHGnlpYroizJFcVEL+u7
+ltkeHEFCW45pPBFTceHs72LG10K5cnsJHXyY3DvZtVKejzMsvDGG6iIxV2JDBzvD
++6DAcL7ZptxC2HEVXpRfc+xP6LTrxENR4XKLtV/N1njgEat7jvXnDMlwo3fod0bU
+RC1SyfJWIbFicVy6CAqg4SGC70eSHAv6/IfzUf/0YPrmRBbbELol+N0fNYH5iRYl
+35k=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/tec/logon/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/tec/logon/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/tec/logon/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/tec/logon/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/tec/logon/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/tec/logon/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/tec/logon/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/tec/logon/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/tec/logon/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/tec/logon/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/tec/logon/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/tec/logon/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/tec/logon/Shibboleth.sso/SAML2/ECP" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/tec/logon/Shibboleth.sso/SAML2/ECP" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/tec/logon/Shibboleth.sso/SAML2/ECP" index="15"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS - CLUSTER test tec/logon</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS - CLUSTER test tec/logon</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ACM Digital Library Development Environment -->
+ <!-- Federation Partner Resource of Partner: Association for Computing Machinery (http://acm.org/) -->
+ <EntityDescriptor entityID="https://dldev.acm.org/shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="http://www.acm.org/about/contact-us" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ACM Digital Library Development Environment</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Development environment for the ACM Digital Library</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIC9zCCAd+gAwIBAgIJAI+sbsQ8QmviMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV
+BAMTEGFjbXdlYjEwLmFjbS5vcmcwHhcNMTMwNTMwMTk1NzI5WhcNMjMwNTI4MTk1
+NzI5WjAbMRkwFwYDVQQDExBhY213ZWIxMC5hY20ub3JnMIIBIjANBgkqhkiG9w0B
+AQEFAAOCAQ8AMIIBCgKCAQEAxJG8see4mAOsTX6VGC6W7gTjIxZp007VCSvwYkH5
+I1Q2R4Hkl0DBWwwXlYklsZE07ycxDCEjGaqvxpON8/8V67IvlmvDdlpTmt8OQDmp
+h8NpUR/FnOHuwdR8RDyQkQaCCLwFdeUBfAwvjZVpmAV/AgtPRd6nxb4PZW4XizAL
+rmwWnPz3hxos5lyDKyzzwJJcqcTGSwD/qvYIk5miPfJgG0lhFTMJuukzpfdHv5Z0
+BofyhshiiVE+soJ3ebPTcE1f2BBG+zLMuQT5ory36adzgnuvOjZC0f0RU53KYYf3
+fCuC+/GUXzFBItOhSUatko38aib0QeQt4oD9yHsZA3ERQwIDAQABoz4wPDAbBgNV
+HREEFDASghBhY213ZWIxMC5hY20ub3JnMB0GA1UdDgQWBBSINwJG8YRgFRwXUSje
+6ydcAruXGjANBgkqhkiG9w0BAQUFAAOCAQEAiXKVkyxo8XBOs/Zs68wBX4bQqwmD
+oz8qNKyDGRzoM86MrtoAX+GNcn1qs2xyAnQPM2YIdimUjxerdZv3YypCAwMrqwZk
+UGFCQndqZs05IiQV6BxjJFXTCOV0dwQy5iJMM1cWtYS8DDN25J2WF6CsmNDXESpf
+StYEnGYryPbfXB5QP5lJhafq67na/W5XlgOSdypgYLd+okt2KZxJrxGEGJ/Hvxdd
+lpyyFlpO4zleVRFXhb2QFfX+bskV1H8L8NSPj+vhrAC8AQC/uotzzqoSx17Ka4ih
+GmYriqXUnK+P3S5FP9oikKzKFzhgx+4xcNEroRKNHCVN3ZL2P/ORdCE0dQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dldev.acm.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://dldev.acm.org/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dldev.acm.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dldev.acm.org/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ACM Digital Library Development Environment</ServiceName>
+ <ServiceDescription xml:lang="en">Development environment for the ACM Digital Library</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">acm.org</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Association for Computing Machinery</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://acm.org/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- FHNW STS PROD -->
+ <EntityDescriptor entityID="https://sts.fhnw.ch/saml2">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.fhnw.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.fhnw.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.fhnw.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">FHNW STS PROD</mdui:DisplayName>
+ <mdui:Description xml:lang="en">WS-Federation PROD implementation with IdentityServer3</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sts.fhnw.ch/identity/logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sts.fhnw.ch/identity/AuthServices/eduid-unsolicited" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sts.fhnw.ch/identity/AuthServices/saml2/eduid/Acs" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sts.fhnw.ch/identity/AuthServices/saml2/fhnw/Acs" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sts.fhnw.ch/identity/AuthServices/eduid-unsolicited" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sts.fhnw.ch/identity/AuthServices/saml2/eduid/Acs" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sts.fhnw.ch/identity/AuthServices/saml2/fhnw/Acs" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">FHNW STS PROD</ServiceName>
+ <ServiceDescription xml:lang="en">WS-Federation PROD implementation with IdentityServer3</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwDetailedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1008" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwIDPerson" Name="urn:oid:2.16.756.1.2.5.1.1.1009" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.fhnw.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.fhnw.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.fhnw.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- studentservices-hf -->
+ <EntityDescriptor entityID="https://idsape22.lan.bap.uzh.ch/">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uzh.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="uzh.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uzh.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">studentservices-hf</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Student Services Hot Fix</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIGtjCCBZ6gAwIBAgIUf1M9gGePN4J3/DRt9fydhTf1nBMwDQYJKoZIhvcNAQEL
+BQAwTTELMAkGA1UEBhMCQk0xGTAXBgNVBAoTEFF1b1ZhZGlzIExpbWl0ZWQxIzAh
+BgNVBAMTGlF1b1ZhZGlzIEdsb2JhbCBTU0wgSUNBIEcyMB4XDTE5MDMyNTE2MTA1
+MFoXDTIxMDMyNTE2MjAwMFowgbAxCzAJBgNVBAYTAkNIMRAwDgYDVQQIDAdadWVy
+aWNoMRAwDgYDVQQHDAdadWVyaWNoMR0wGwYDVQQKDBRVbml2ZXJzaXRhZXQgWnVl
+cmljaDEeMBwGA1UECwwVQnVzaW5lc3MgQXBwbGljYXRpb25zMRwwGgYDVQQLDBNa
+ZW50cmFsZSBJbmZvcm1hdGlrMSAwHgYDVQQDDBdpZHNhcGUyMi5sYW4uYmFwLnV6
+aC5jaDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMX0AowPUS7XIt3P
+yaoi4X+wA3SUrbLBIaRQVdZTCYOtB8BoilhDQay2pMQM4caIyXjnet9GH9ngLzjq
+hfdU/Fyftzl/UAVp/C2bvvDKGyucqodg+IgQSEwHw3OiFjVqaRxBqBYUMksZmKRi
+DSjs5ALtaArkMZhibbijrg6OQt7CtpnOR3dIXX2ecIiyLNtENmqspO1uQ9n1T1Ry
+KmkXJrgJ6w2XploI8KqZztE8p56vG1kyaFPuqjeLhe2ng7glj8wipcXDzegXSNc2
+WLFATH6rXc57H9/V3bVONsmhqVn1rwEX4k0wbel1XbRfaEzXEuriZs9HdqXcmhg3
+B+5eRiUCAwEAAaOCAygwggMkMAkGA1UdEwQCMAAwHwYDVR0jBBgwFoAUkRlirVsX
+pzD78N45JbG9jLm4UScwcwYIKwYBBQUHAQEEZzBlMDcGCCsGAQUFBzAChitodHRw
+Oi8vdHJ1c3QucXVvdmFkaXNnbG9iYWwuY29tL3F2c3NsZzIuY3J0MCoGCCsGAQUF
+BzABhh5odHRwOi8vb2NzcC5xdW92YWRpc2dsb2JhbC5jb20wIgYDVR0RBBswGYIX
+aWRzYXBlMjIubGFuLmJhcC51emguY2gwUQYDVR0gBEowSDBGBgwrBgEEAb5YAAJk
+AQEwNjA0BggrBgEFBQcCARYoaHR0cDovL3d3dy5xdW92YWRpc2dsb2JhbC5jb20v
+cmVwb3NpdG9yeTAdBgNVHSUEFjAUBggrBgEFBQcDAgYIKwYBBQUHAwEwOgYDVR0f
+BDMwMTAvoC2gK4YpaHR0cDovL2NybC5xdW92YWRpc2dsb2JhbC5jb20vcXZzc2xn
+Mi5jcmwwHQYDVR0OBBYEFM8EQv83yCoC4MU/BYRJ5Wi1SMyqMA4GA1UdDwEB/wQE
+AwIFoDCCAX4GCisGAQQB1nkCBAIEggFuBIIBagFoAHUAb1N2rDHwMRnYmQCkURX/
+dxUcEdkCwQApBo2yCJo32RMAAAFptaeOfQAABAMARjBEAiA5ypzJR1+EAlDTprAu
+7lxuYqOoH/9N0SQazxIF0+d0kgIgQnD2SuLfqNu7Ar5oNtWztzFHTtOC0TReJwmI
+zNndKKgAdwC72d+8H4pxtZOUI5eqkntHOFeVCqtS6BqQlmQ2jh7RhQAAAWm1p44Q
+AAAEAwBIMEYCIQCWKiOCcW6AMXNBR9RfaY3odASPmxdDjH38b1UiGoVL6gIhAJuI
+Txzjiwp7Al1oGYbfjmOIc8g8z8t00N7Jx+Jxe6esAHYAVYHUwhaQNgFK6gubVzxT
+8MDkOHhwJQgXL6OqHQcT0wwAAAFptaePAQAABAMARzBFAiEAkPjY5hMtH1WvjGXE
+r0BKPIG5HUE8ng3RstzO/XRBFCYCIB0eLvP4tJ4mZWc7CaByZv06TzjOzP7poAxL
++VUt7f6MMA0GCSqGSIb3DQEBCwUAA4IBAQB/E7eL6boAQZOv+roKyh9ZQPJO4JeE
+/nCiwY8oo10pFvOfSXcVgSeRIrR3XJmjjNw4Z8SrCrxOxhRHpcAasTvybEkZb45r
+r9LbNnlEHEHIAS8iOx66dufWD69eT3+moKZNRf7XtJZ7DWi0NA0UO2tqVenYDWXu
+gjbvcSN7KuGA7QX0Hyt8uu/h6l+vB25EvQgyXbS5OTgsPmeVyYmoA19BomZYk3R9
+5RYnWNULPUhXgqTk9QR8jcP6VJ+YZND3CodvJDexGeXr4j+3CTNR1K2HAwrl4Bw6
+yW8ZqPt7fi93E14X0GydpSbfsRMHJGvIVOP3ghpYg1XZ7hLwjf6diKuH
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://studentservices-hf.uzh.ch/sap/saml2/sp/acs/001" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://studentservices-hf.uzh.ch/sap/saml2/sp/acs/001" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://studentservices-hf.uzh.ch/sap/saml2/sp/acs/001" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">studentservices-hf</ServiceName>
+ <ServiceDescription xml:lang="en">Student Services Hot Fix</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uzhSapUserIdStaff" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.27" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uzhSapUserId" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uzh.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">Universität Zürich TEST</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">University of Zurich TEST</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.uzh.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.uzh.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- HSLU EDUID Test (Team AD) -->
+ <EntityDescriptor entityID="https://test-eduid.hslu.ch/saml2">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>hslu.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="hslu.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">HSLU EDUID Test (Team AD)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">HSLU EDUID Test (Team AD)</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://test-eduid.hslu.ch/Saml2/Logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test-eduid.hslu.ch/Saml2/Acs" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">HSLU EDUID Test (Team AD)</ServiceName>
+ <ServiceDescription xml:lang="en">HSLU EDUID Test (Team AD)</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">hslu.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">HSLU - Hochschule Luzern (Test IdP)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">HSLU - Lucerne University of Applied Sciences and Arts (Test IdP)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.hslu.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.hslu.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- HighWire Press, Stanford University -->
+ <EntityDescriptor entityID="https://shibboleth.highwire.org/entity/secure-sp">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">HighWire Press, Stanford University</mdui:DisplayName>
+ <mdui:Description xml:lang="en">HighWire Press partners with independent scholarly publishers to digitally disseminate journals and books.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth.highwire.org/applications/secure-sp/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth.highwire.org/applications/secure-sp/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shibboleth.highwire.org/applications/secure-sp/Shibboleth.sso/SAML/POST" index="3" isDefault="true"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shibboleth.highwire.org/applications/secure-sp/Shibboleth.sso/SAML/Artifact" index="4"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">HighWire Press, Stanford University</ServiceName>
+ <ServiceDescription xml:lang="en">HighWire Press partners with independent scholarly publishers to digitally disseminate journals and books.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- test server idp-lab -->
+ <EntityDescriptor entityID="https://lnticevote3.unige.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-lab.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">test server idp-lab</mdui:DisplayName>
+ <mdui:Description xml:lang="en">test server idp-test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lnticevote3.unige.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lnticevote3.unige.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lnticevote3.unige.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">test server idp-lab</ServiceName>
+ <ServiceDescription xml:lang="en">test server idp-test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- UNIGE Grouper test -->
+ <EntityDescriptor entityID="https://grouper-test.unige.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-lab.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">UNIGE Grouper test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Grouper test at the university of Geneva</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEMDCCApigAwIBAgIJANBCQop5tx4mMA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV
+BAMTFWdyb3VwZXItdGVzdC51bmlnZS5jaDAeFw0xODA2MTgxNTM4MTRaFw0yMTA2
+MTcxNTM4MTRaMCAxHjAcBgNVBAMTFWdyb3VwZXItdGVzdC51bmlnZS5jaDCCAaIw
+DQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAMdlaNVn3+dUect/NB86iT2ciqqp
+jViRpKIqAHkxkJuNjSk9R6xrGT/TeGPirE+Oxp6a1bgHhJMDoAc7z1WqfsMpzUjR
+K0UHMUWyAi9RDxErG2ifCOvkdF32Sm+RhCNk3J2RJHurvtAskoF2kNG3pb70b5Sg
+LwPJjlnDhaSFrS9qwPtclr8qghZKppnyLTa/EWPpJk3Nf5qzgKeRNYFR1Zlsljrc
+xVwu+a/PfAvbAiou1JFIDhe8sDKraGRIHwWvNqQ4ZKj9cr/gaOK5urrkx8JRtgy4
+roGYKPUbE9CJ77IH7qQX7oFMS3xr3unye4wNuD5vNnoQ31Ih5xbQgU0+hq6yHwpx
+uDeCZDBdBKCUq7wnfmKvM2j0MH05nRH8pZUXdLRjvyiCoV8oXn/JfRtlNYLUUhT/
+WVzs4NViiVcz0QDlNdsoKzPOlD0v37OKE+EdSMIpWc19f0Dx+8EuKy31TzhV4g+Z
+Q43vDpahFbE/dxLiJ7eACpYRel+F1Jd406Rv/QIDAQABo20wazBKBgNVHREEQzBB
+ghVncm91cGVyLXRlc3QudW5pZ2UuY2iGKGh0dHBzOi8vZ3JvdXBlci10ZXN0LnVu
+aWdlLmNoL3NoaWJib2xldGgwHQYDVR0OBBYEFAfEAuw8jzCnbw1Hd66wuWUH3Vrz
+MA0GCSqGSIb3DQEBCwUAA4IBgQAOhs917hcobBNiPh/OxGfChz01rvqKUP7SosWJ
+GrsU1NHp8Caj9xgQAGuJjwyajH+HZrbRZlMZYE1s20xT2+t43+hrC45LEmuYXucE
+uu69AD4fdGGoDtatD+rdvmqB6MN1RnbnnqizrtUmFUyAH5atiLKnEg016rza5hpN
+N+U9NtX64OzLR3aOS1ceaa5zfwXAW2IEdcFAuDnpCAdjUL0Lkp6Oq4tPhQ/fRZDb
+CrNm6w+MIupcibxazIhxzlbQ2kZM3aUGvUQqua6+aQJFVwU1YZlVvA+RAgTy+oTe
+Jy9Irk//sdXodhLE4CbOEVKja+dyP6V+r+vebBOyhfOmJWmF30Flf3mtxCJbLyMa
+jYWMqiq4hE0dJhPdgq9GzzKqVmRN1t/1JHdRt8qARmzDYzcubD47hj6xVugrbhqN
+JCbc1OVeKjnZDDfiaE1e3BmjzR1tKtU3AFDQ/WtvlRF4SPcFYX+fA0SwZPuYe22P
+9cSM+ydX1Vd0eHQWA9EzXA8NK9E=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://grouper-test.unige.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lunigroupertst1.unige.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://grouper-test.unige.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://grouper-test.unige.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lunigroupertst1.unige.ch/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://grouper-test.unige.ch/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lunigroupertst1.unige.ch/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://grouper-test.unige.ch/Shibboleth.sso/SAML/POST" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://grouper-test.unige.ch/Shibboleth.sso/SAML/Artifact" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">UNIGE Grouper test</ServiceName>
+ <ServiceDescription xml:lang="en">Grouper test at the university of Geneva</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-CURSUS/IEL CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/cursus/iel/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-CURSUS/IEL CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-CURSUS/IEL CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/cursus/iel/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/cursus/iel/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/cursus/iel/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/cursus/iel/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/cursus/iel/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/cursus/iel/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/cursus/iel/Shibboleth.sso/SAML2/POST" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/cursus/iel/Shibboleth.sso/SAML2/POST" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/cursus/iel/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/cursus/iel/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/cursus/iel/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/cursus/iel/Shibboleth.sso/SAML2/Artifact" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/cursus/iel/Shibboleth.sso/SAML2/Artifact" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/cursus/iel/Shibboleth.sso/SAML2/Artifact" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/cursus/iel/Shibboleth.sso/SAML2/Artifact" index="15"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/cursus/iel/Shibboleth.sso/SAML2/Artifact" index="16"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/cursus/iel/Shibboleth.sso/SAML2/ECP" index="17"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/cursus/iel/Shibboleth.sso/SAML2/ECP" index="18"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/cursus/iel/Shibboleth.sso/SAML2/ECP" index="19"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/cursus/iel/Shibboleth.sso/SAML2/ECP" index="20"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/cursus/iel/Shibboleth.sso/SAML2/ECP" index="21"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/cursus/iel/Shibboleth.sso/SAML2/ECP" index="22"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/cursus/iel/Shibboleth.sso/SAML2/ECP" index="23"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/cursus/iel/Shibboleth.sso/SAML2/ECP" index="24"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wwwit.unige.ch/cursus/iel/Shibboleth.sso/SAML/POST" index="25"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wwwit.unige.ch/cursus/iel/Shibboleth.sso/SAML/Artifact" index="26"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-CURSUS/IEL CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-CURSUS/IEL CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-CURSUS/CRSW CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/cursus/crsw/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-CURSUS/CRSW CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-CURSUS/CRSW CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEIDCCAoigAwIBAgIJANEBa7FaZWbSMA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV
+BAMTDnd3d2l0LnVuaWdlLmNoMB4XDTE4MTAxMTA4NDc0OVoXDTIxMTAxMDA4NDc0
+OVowGTEXMBUGA1UEAxMOd3d3aXQudW5pZ2UuY2gwggGiMA0GCSqGSIb3DQEBAQUA
+A4IBjwAwggGKAoIBgQClpKBBf6Tvm5+epsUvlyqFIXnXK84F40MtDUpINI/NMY4R
+7QtVlvvln+uITbX9CDi1+Fvl2uWpa9OihCpEaikVDR19Hzqku1KPvKgImhJ9cNkN
+ycJZEgaXft/UxVz+kzODwCLOnQTY9WiV7ySmm9oaz7XtOsIdp8vfsKL5saCGiEJA
+vQqxyC8IPxOSR47IVe0M/o/xlhyOcI0fBMt955h3dO8YJ/LXWEa5zEq9ObmXG3cL
+WEWZ99dwDpjfjJgHH2QZ3mxe4K5nPLdkfjaIbB1Jk3HqjLVtGkuaGja1JqS/5b0s
+dikEM5YMF7hdwtE7Fjgr/dikCBdsIy8+LjKxby9w9PjBX0QXaBG0t6Pj2SpGuLk0
+lzmDbid/XYqb37yxp1Eg51AOyfMigrGObymoeRCWMqdSXNLWbcq1SdgTMSCdkJaU
++zSXjOsfP0wWfUVUzaz7tRBAh4yrQ0DkHATOUWmdOiyGs2PkYwAo5hkN0D8T6g5b
+wtdGtYM8Y2Skcmth99cCAwEAAaNrMGkwSAYDVR0RBEEwP4IOd3d3aXQudW5pZ2Uu
+Y2iGLWh0dHBzOi8vd3d3aXQudW5pZ2UuY2gvY3Vyc3VzL2Nyc3cvc2hpYmJvbGV0
+aDAdBgNVHQ4EFgQUXi+O75jlZzlRtjNGd6YnWN5lWagwDQYJKoZIhvcNAQELBQAD
+ggGBAI/sRr6OTb8Hxu4A8O/gw1PvtHf5bLAbmXDfBPJ18Le3Agv5dzTSEBmcu4Kb
+hOoQwBfcr/JjRTk8L8r/Kzc50us942ei8OwHitXKCzFS0RWzCWX5sD5zpB71ZTau
+u2nSeEhfMUb8Gff5pOc7Q+UMscKJ8qO8VWrJqMgDlLGeLs9BBthM+p7TV48HPWo7
+ao9A5PmZTTYNpuDFCO9i85QwJ7+JYn1q1MZZSLNGcnA/RJjHEOFqHr0B2Ns/6Gvv
+3XlbBCdr+/zs5cVVQtcMu2S7ISC6+BURl+hXbTu7aJstAiOhyHUFHB64MV6d2reX
+BL0e9ISAz13ipJAPtqz7hD5AAFhYA6+qB90BffZvxbOVlaRYkBdFawgovvCkGU2g
+qBiBvrDi2Gk68KOtid2fa2Vd5Fw75ZvvDmBwTO5KzJI1YnQXGk0kyadok54iXGbm
+N+AZxv00wqyKnnwEh+znZkhRxZBA0OOVvCzndm9Qxz0ZDB+EQx5eo9c9IhhiNf9X
+nCctsw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/cursus/crsw/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/cursus/crsw/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/cursus/crsw/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/cursus/crsw/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/cursus/crsw/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/cursus/crsw/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/cursus/crsw/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/cursus/crsw/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/cursus/crsw/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wwwit.unige.ch/cursus/crsw/Shibboleth.sso/SAML/POST" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wwwit.unige.ch/cursus/crsw/Shibboleth.sso/SAML/Artifact" index="11"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-CURSUS/CRSW CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-CURSUS/CRSW CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-RH CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/rh/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-RH CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-RH CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/rh/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/rh/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/rh/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/rh/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet-mfa.unige.ch/rh/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/rh/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/rh/Shibboleth.sso/SAML2/POST" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/rh/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/rh/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/rh/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/rh/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet-mfa.unige.ch/rh/Shibboleth.sso/SAML2/Artifact" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/rh/Shibboleth.sso/SAML2/Artifact" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/rh/Shibboleth.sso/SAML2/Artifact" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/rh/Shibboleth.sso/SAML2/ECP" index="15"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/rh/Shibboleth.sso/SAML2/ECP" index="16"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/rh/Shibboleth.sso/SAML2/ECP" index="17"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/rh/Shibboleth.sso/SAML2/ECP" index="18"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet-mfa.unige.ch/rh/Shibboleth.sso/SAML2/ECP" index="19"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/rh/Shibboleth.sso/SAML2/ECP" index="20"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/rh/Shibboleth.sso/SAML2/ECP" index="21"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-RH CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-RH CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-CURSUS/ERASMUS CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/cursus/erasmus/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-CURSUS/ERASMUS CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-CURSUS/ERASMUS CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/cursus/erasmus/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/cursus/erasmus/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/cursus/erasmus/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/cursus/erasmus/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/cursus/erasmus/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/cursus/erasmus/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/cursus/erasmus/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/cursus/erasmus/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/cursus/erasmus/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wwwit.unige.ch/cursus/erasmus/Shibboleth.sso/SAML/POST" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wwwit.unige.ch/cursus/erasmus/Shibboleth.sso/SAML/Artifact" index="11"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-CURSUS/ERASMUS CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-CURSUS/ERASMUS CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-PERSO CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/perso/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-PERSO CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-PERSO CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/perso/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/perso/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/perso/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/perso/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/perso/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/perso/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/perso/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/perso/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/perso/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wwwit.unige.ch/perso/Shibboleth.sso/SAML/POST" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wwwit.unige.ch/perso/Shibboleth.sso/SAML/Artifact" index="11"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-PERSO CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-PERSO CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-CURSUS/DOS CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/cursus/dos/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-CURSUS/DOS CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-CURSUS/DOS CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/cursus/dos/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/cursus/dos/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/cursus/dos/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/cursus/dos/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/cursus/dos/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/cursus/dos/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/cursus/dos/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/cursus/dos/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/cursus/dos/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wwwit.unige.ch/cursus/dos/Shibboleth.sso/SAML/POST" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wwwit.unige.ch/cursus/dos/Shibboleth.sso/SAML/Artifact" index="11"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-CURSUS/DOS CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-CURSUS/DOS CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-ISIS/EXT CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/isis/ext/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-ISIS/EXT CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-ISIS/EXT CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/isis/ext/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/isis/ext/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/isis/ext/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/isis/ext/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/isis/ext/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/isis/ext/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/isis/ext/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/isis/ext/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/isis/ext/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/isis/ext/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/isis/ext/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/isis/ext/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/isis/ext/Shibboleth.sso/SAML2/ECP" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/isis/ext/Shibboleth.sso/SAML2/ECP" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/isis/ext/Shibboleth.sso/SAML2/ECP" index="15"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-ISIS/EXT CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-ISIS/EXT CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Softfactors -->
+ <!-- Federation Partner Resource of Partner: softfactors AG (https://www.softfactors.com/) -->
+ <EntityDescriptor entityID="https://moonconnectordev.westeurope.cloudapp.azure.com">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-logon-bi-test.ethz.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://www.softfactors.com" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Softfactors</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Auth service to Softfactors.com HR Solution users</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.softfactors.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.iubenda.com/privacy-policy/910915</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moonswitch.eu.auth0.com/logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moonswitch.eu.auth0.com/login/callback?connection=ethzidp2019" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Softfactors</ServiceName>
+ <ServiceDescription xml:lang="en">Auth service to Softfactors.com HR Solution users</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">softfactors.com</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">softfactors AG</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.softfactors.com/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-COMMUNICATION/ECRA CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/communication/ecrans-information/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-COMMUNICATION/ECRA CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-COMMUNICATION/ECRANS-INFORMATION CLUS test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/communication/ecrans-information/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/communication/ecrans-information/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/communication/ecrans-information/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/communication/ecrans-information/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/communication/ecrans-information/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/communication/ecrans-information/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/communication/ecrans-information/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/communication/ecrans-information/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/communication/ecrans-information/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-COMMUNICATION/ECRA CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-COMMUNICATION/ECRANS-INFORMATION CLUS test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Répertoire de compétences -->
+ <EntityDescriptor entityID="https://people.hes-so.local/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-test.hes-so.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-test.hes-so.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-logon-test.hes-so.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Répertoire de compétences</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="fr">Répertoire de compétences</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Répertoire de compétences</mdui:Description>
+ <mdui:Description xml:lang="fr">Répertoire de compétences</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEKDCCApCgAwIBAgIJAL/HoJxlkpgJMA0GCSqGSIb3DQEBCwUAMB4xHDAaBgNV
+BAMTE3Blb3BsZS5oZXMtc28ubG9jYWwwHhcNMTYxMjA2MjAzMjQyWhcNMTkxMjA2
+MjAzMjQyWjAeMRwwGgYDVQQDExNwZW9wbGUuaGVzLXNvLmxvY2FsMIIBojANBgkq
+hkiG9w0BAQEFAAOCAY8AMIIBigKCAYEA1fG/V+/QWkZmNilfQuwA0KUSUd0z4I2d
+ngN2QtCo440j1cCLwKnM+DLeeHYhR/YyZacXbplR3sewoG8lZAUxuAAnry2qfCpz
+azeZesnzkgUGQ6FdL03LtvWzVXI67kHQUDq67CthETonm8dZm9hiymOqD52cG/q9
+8ZxwcgIoNCzgo+tPn4qrdN6AC6vmJtGUHZXdk7fBFw90PLcK7uktu0gLHMhBoN8v
+XthwdyRL5SgJ3k7bcZunvCH8mK9yg3zMm4LWbmXSbpAM5mEQ5pydNGsgmbz5rXZ6
+7hEDupPUQrFblinFXSh1Phj5IEu6Stv1q9hyVi4PDyBlDj38sM1YtA7d4XEE30yn
+Tuop3us9+Yc88HkKlG6g9NCIWA/fjG2p5mn91btf9n8RWB/UN/mrjHKNI42eEEQp
+sh1E3JJu2KYxtOzPedc1PKBC46B9xQSMZxpGm/YUdk9QPNno4eGN+a+PBmlIwoiz
++I2f2/6ptCdeFuAMjOOvqwU+zhVftRg1AgMBAAGjaTBnMEYGA1UdEQQ/MD2CE3Bl
+b3BsZS5oZXMtc28ubG9jYWyGJmh0dHBzOi8vcGVvcGxlLmhlcy1zby5sb2NhbC9z
+aGliYm9sZXRoMB0GA1UdDgQWBBRKmXxvKcWKM82A0o6x/CuAZyrIcDANBgkqhkiG
+9w0BAQsFAAOCAYEAY63pl6itwKFPs06HaPhNpdao9kAAZgEdFEb5NOtRm0w0EA4M
+y9LH/Fzh4Pe0zYPO1JX8YNAMiIrC/DUkgDI883yUf9NRl93N8rBzAHbvgziHduo8
+OdpN5B5OgSG0ClyDMU85AzkmUhEY5eu0y7VhFRRueSdAG9441hUUUmS20MLK79/6
+aqIWE3kAbadzyG9j5/OK/Gj0yoSH2scp5AWwHj00VzZSCadu+qNTPcENRkZMccd8
+HFAsG8aL7vxyWeNCc3eXenOX3a4NTHdOloLU2ohRvxvKS+T+Jsun8sW6SgcD6iWj
+DQrITfjskDgPfgwUEM7iMACYrwx+xq182WTo7nGzzebOSACmbzSyEGgmYMpTDP/y
+uLkvY1KLrxz+2DzdBYkZZcfP0uROQLTCE9MlzRDdxbts2TUqB/uKZ56GTcjOP83H
+PAKYzMn0ovtXr0bVhDWE+RU8O9r4agBZDTx2OHgnIzcIe8PPshKBSbWQTMywipTJ
+fkBA1mnmJaKbQiSv
+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://people.hes-so.local/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://people.hes-so.local/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://people.hes-so.local/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Répertoire de compétences</ServiceName>
+ <ServiceName xml:lang="fr">Répertoire de compétences</ServiceName>
+ <ServiceDescription xml:lang="en">Répertoire de compétences</ServiceDescription>
+ <ServiceDescription xml:lang="fr">Répertoire de compétences</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-test.hes-so.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">HES-SO Test IdP</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">HES-SO Test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-test.hes-so.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.aai-logon-test.hes-so.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-SERVICE-SPORT CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/service/sport/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-logon-test.hes-so.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">graduateinstitute.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-SERVICE-SPORT CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-SERVICE-SPORT CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/service/sport/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/service/sport/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/service/sport/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/service/sport/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/service/sport/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/service/sport/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/service/sport/Shibboleth.sso/SAML2/POST" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/service/sport/Shibboleth.sso/SAML2/POST" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/service/sport/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/service/sport/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/service/sport/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/service/sport/Shibboleth.sso/SAML2/Artifact" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/service/sport/Shibboleth.sso/SAML2/Artifact" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/service/sport/Shibboleth.sso/SAML2/Artifact" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/service/sport/Shibboleth.sso/SAML2/Artifact" index="15"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/service/sport/Shibboleth.sso/SAML2/Artifact" index="16"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/service/sport/Shibboleth.sso/SAML2/ECP" index="17"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/service/sport/Shibboleth.sso/SAML2/ECP" index="18"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/service/sport/Shibboleth.sso/SAML2/ECP" index="19"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/service/sport/Shibboleth.sso/SAML2/ECP" index="20"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/service/sport/Shibboleth.sso/SAML2/ECP" index="21"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/service/sport/Shibboleth.sso/SAML2/ECP" index="22"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/service/sport/Shibboleth.sso/SAML2/ECP" index="23"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/service/sport/Shibboleth.sso/SAML2/ECP" index="24"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-SERVICE-SPORT CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-SERVICE-SPORT CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- studentservices-sb -->
+ <EntityDescriptor entityID="https://idsaps22.lan.bap.uzh.ch/">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uzh.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="uzh.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uzh.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">studentservices-sb</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UZH Student Services Sandbox</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://studentservices-sb.uzh.ch/sap/saml2/sp/acs/001" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://studentservices-sb.uzh.ch/sap/saml2/sp/acs/001" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://studentservices-sb.uzh.ch/sap/saml2/sp/acs/001" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">studentservices-sb</ServiceName>
+ <ServiceDescription xml:lang="en">UZH Student Services Sandbox</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uzhSapUserIdStaff" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.27" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uzhSapUserId" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uzh.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">Universität Zürich TEST</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">University of Zurich TEST</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.uzh.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.uzh.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Mobility Online Development -->
+ <EntityDescriptor entityID="https://www.monlineent.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Mobility Online Development</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Mobility Online development instance.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://monlineent.ethz.ch/mobility/saml/SAMLAssertionConsumer" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://monlineent.ethz.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.monlineent.ethz.ch/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://monlineent.ethz.ch/mobility/saml/SAMLAssertionConsumer" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://monlineent.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.monlineent.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://monlineent.ethz.ch/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.monlineent.ethz.ch/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Mobility Online Development</ServiceName>
+ <ServiceDescription xml:lang="en">Mobility Online development instance.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SLSP Test UBS Primo -->
+ <EntityDescriptor entityID="https://slsp-ubs.primo.exlibrisgroup.com/mng/login">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.eduid.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.eduid.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">SLSP Test UBS Primo</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SLSP Test instance</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://slsp-ubs.primo.exlibrisgroup.com/mng/samlSingleLogout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slsp-ubs.primo.exlibrisgroup.com/mng/pdsHandleLogin" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">SLSP Test UBS Primo</ServiceName>
+ <ServiceDescription xml:lang="en">SLSP Test instance</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.eduid.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.eduid.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-ADMIN/STRUCTURE CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/admin/structure/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-ADMIN/STRUCTURE CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-ADMIN/STRUCTURE CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/admin/structure/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/admin/structure/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/admin/structure/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/admin/structure/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/admin/structure/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/admin/structure/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/admin/structure/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/admin/structure/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/admin/structure/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/admin/structure/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/admin/structure/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/admin/structure/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/admin/structure/Shibboleth.sso/SAML2/ECP" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/admin/structure/Shibboleth.sso/SAML2/ECP" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/admin/structure/Shibboleth.sso/SAML2/ECP" index="15"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-ADMIN/STRUCTURE CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-ADMIN/STRUCTURE CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-COMPTA/RMBF CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/compta/rmbf/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-COMPTA/RMBF CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-COMPTA/RMBF CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEIDCCAoigAwIBAgIJAJQWLYbpOVcnMA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV
+BAMTDnd3d2l0LnVuaWdlLmNoMB4XDTE5MDYxNzA3MTUwMFoXDTIyMDYxNjA3MTUw
+MFowGTEXMBUGA1UEAxMOd3d3aXQudW5pZ2UuY2gwggGiMA0GCSqGSIb3DQEBAQUA
+A4IBjwAwggGKAoIBgQDOOTWf47dL/FXs8uujA+xbA/7az4ZF+mKvL9wXzAK9+ZQJ
+NH4UDwR80EtYiZoPuzdrUvx92Vum5qqge/y944Lo6s+gFRcgVLqxXvZLd+T7LKD2
+X+lfhwBQoWN45OBk6Qd3GuwBHltMSAqo+qKfurIgY5mmGUHAyA+G1FCPRAUo6dAR
+MgJ7B2EycBaGT/AVynpnVzmsuMLXeuFjtc+neP9CkJaoRD6feo4IZTgbIpBKDsfa
+dVE72g5r9bPMGmus4oYiNKtGA4339PDtOyvZO6Vt2pequeJfSU9+Ouv8Xa+A+zK5
+lcSXi0ntvg1xKtOPNOj3xu6QJTIbE7LG0Nerw5pinOXfweXT2DM86aQKjQJa/mlP
+G7JlmCt2dHGxoDvcKAHF8WbFrmN8NhPlrSNoCgXvlzYsbMrfsOLzOUlkyeCZRhSu
+Jcf/3oCRF10J/C0GxHYPaxL05X7/tVzNk/KF/yJb1COYWFhDTfXcIq6o5fPAUbiy
+X6EnIIfVq+g810k3h2kCAwEAAaNrMGkwSAYDVR0RBEEwP4IOd3d3aXQudW5pZ2Uu
+Y2iGLWh0dHBzOi8vd3d3aXQudW5pZ2UuY2gvY29tcHRhL3JtYmYvc2hpYmJvbGV0
+aDAdBgNVHQ4EFgQU3UHBylBzVcpit/rpwcNr2x54rMMwDQYJKoZIhvcNAQELBQAD
+ggGBAGO4RvzkA6+hEuSB7A9U+IGmx8t+kHeTnlHkWDt1tbRTwYNa9azpwObeaqKg
+ee92bC+xV7br0+hfWP/VXIz/qGizrStpupSYYpnj0q32DpKyiZQDHlxukuLbWGgF
+HRHn6rV4VETw5tl3pJej7yyXkYvbyvcD4YZpvRaNdpq92Pi+oQ/AoOjaQSH5gvc8
+dTOYzw1uvUZPuGjF5pFi63aD4yv002Rby4xN7y+cicjFspG0w0RYmpkSY4qZu3NR
+g1KdILQayQ3oX4NhzPCZpqdCh7ZDkHUr4PRc6t7/LEkmmU5dOIx65S5Z2QNac/qy
+hDq8JhGQiTe3vwHaCJnWdK0XzgPVTY4bSG80h/Pd3k2kXTY6OYlTr8icNGZjS7bX
++BiZ1dwCoSNieQdw5mBX0vVE5hjq5H4rpWten5agqAy+5lbMoKO2IIQab7/2O5wm
+ywZJk9f8KiXU3lK23hD/GHQ/Z6LlZoUVgZF2RxKo57/NTZeCqB3aI95TGMA+tA8v
+xHEtsA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int-nonmaint.unige.ch/compta/rmbf/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/compta/rmbf/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/compta/rmbf/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/compta/rmbf/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int-nonmaint.unige.ch/compta/rmbf/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/compta/rmbf/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/compta/rmbf/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/compta/rmbf/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int-nonmaint.unige.ch/compta/rmbf/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/compta/rmbf/Shibboleth.sso/SAML2/ECP" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/compta/rmbf/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/compta/rmbf/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-COMPTA/RMBF CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-COMPTA/RMBF CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-DIM CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/dim/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-DIM CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-DIM CLUS test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/dim/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/dim/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/dim/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/dim/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/dim/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/dim/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/dim/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/dim/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/dim/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-DIM CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-DIM CLUS test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Mobility Online Testing -->
+ <EntityDescriptor entityID="https://www.monlineusr.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Mobility Online Testing</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Mobility Online test instance.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://monlineusr.ethz.ch/mobility/saml/SAMLAssertionConsumer" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://monlineusr.ethz.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.monlineusr.ethz.ch/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://monlineusr.ethz.ch/mobility/saml/SAMLAssertionConsumer" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://monlineusr.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.monlineusr.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://monlineusr.ethz.ch/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.monlineusr.ethz.ch/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Mobility Online Testing</ServiceName>
+ <ServiceDescription xml:lang="en">Mobility Online test instance.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Test Resource 2 dlu -->
+ <EntityDescriptor entityID="https://sp2-test.dlu.switch.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idpv3.dlu.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idpv3.dlu.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idpv3.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uni-a.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uni-be.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uni-ci.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uni-dd.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uni-ee.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Test Resource 2 dlu</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test Resource 2 dlu</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sp2-test.dlu.switch.ch/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp2-test.dlu.switch.ch/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp2-test.dlu.switch.ch/Shibboleth.sso/SLO/Artifact"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sp2-test.dlu.switch.ch/Shibboleth.sso/SLO/SOAP"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp2-test.dlu.switch.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp2-test.dlu.switch.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Test Resource 2 dlu</ServiceName>
+ <ServiceDescription xml:lang="en">Test Resource 2 dlu</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idpv3.dlu.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DLU Test IdPv3</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idpv3.dlu.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Test Resource 3 dlu -->
+ <EntityDescriptor entityID="https://sp3-test.dlu.switch.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idpv3.dlu.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idpv3.dlu.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idpv3.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uni-a.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uni-be.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uni-ci.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uni-dd.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uni-ee.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Test Resource 3 dlu</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test Resource 3 dlu</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sp3-test.dlu.switch.ch/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp3-test.dlu.switch.ch/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp3-test.dlu.switch.ch/Shibboleth.sso/SLO/Artifact"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sp3-test.dlu.switch.ch/Shibboleth.sso/SLO/SOAP"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp3-test.dlu.switch.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp3-test.dlu.switch.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Test Resource 3 dlu</ServiceName>
+ <ServiceDescription xml:lang="en">Test Resource 3 dlu</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idpv3.dlu.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DLU Test IdPv3</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idpv3.dlu.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- TestAAISIB -->
+ <EntityDescriptor entityID="https://devmaster.vital-it.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">TestAAISIB</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This is a test AAI that is currently behind a firewall - to get experience with AAI</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://devmaster.vital-it.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://devmaster.vital-it.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://devmaster.vital-it.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://devmaster.vital-it.ch/Shibboleth.sso/SAML/POST" index="4" isDefault="true"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://devmaster.vital-it.ch/Shibboleth.sso/SAML/Artifact" index="5"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">TestAAISIB</ServiceName>
+ <ServiceDescription xml:lang="en">This is a test AAI that is currently behind a firewall - to get experience with AAI</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SP Training Catch-up Demo SP -->
+ <EntityDescriptor entityID="https://sp1.example.org/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">SP Training Catch-up Demo SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SP Training Catch-up Demo SP to get everybody in a working state.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp1.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp1.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp1.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp1.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp1.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp1.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">SP Training Catch-up Demo SP</ServiceName>
+ <ServiceDescription xml:lang="en">SP Training Catch-up Demo SP to get everybody in a working state.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ZHdK ONLA Dev -->
+ <EntityDescriptor entityID="https://go-dev.zhdk.ch/CLX.Evento/Authentication/SwissEduId">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>zhdk.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="zhdk.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ZHdK ONLA Dev</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Evento Onlineanmeldung Development Instance</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://go-dev.zhdk.ch/CLX.Evento/Authentication/SwissEduId/Logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://go-dev.zhdk.ch/CLX.Evento/Authentication/SwissEduId/Acs" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ZHdK ONLA Dev</ServiceName>
+ <ServiceDescription xml:lang="en">Evento Onlineanmeldung Development Instance</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">zhdk.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">ZHdK</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.zhdk.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Auth0 Federation Services (Test) -->
+ <EntityDescriptor entityID="urn:auth0:fmi-test">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Auth0 Federation Services (Test)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Auth0 Federation Services provides access to integrated applications.</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,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</mdui:Logo>
+ <mdui:Logo height="60" width="80">data:image/png;base64,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</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fmi-test.auth0.com/login/callback" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Auth0 Federation Services (Test)</ServiceName>
+ <ServiceDescription xml:lang="en">Auth0 Federation Services provides access to integrated applications.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- card2brain.ch dev -->
+ <!-- Federation Partner Resource of Partner: Webapps Burgdorf GmbH (http://webapps.ch/) -->
+ <EntityDescriptor entityID="https://dev.webapps.ch/shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">hftm.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://dev.webapps.ch/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">card2brain.ch dev</mdui:DisplayName>
+ <mdui:Description xml:lang="en">card2brain.ch Clever clicks.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev.webapps.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dev.webapps.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dev.webapps.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">card2brain.ch dev</ServiceName>
+ <ServiceDescription xml:lang="en">card2brain.ch Clever clicks.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">webacons.com</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Webapps Burgdorf GmbH</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://webapps.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- studentservices-dev -->
+ <EntityDescriptor entityID="https://idsapr22.lan.bap.uzh.ch/701/">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uzh.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="uzh.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uzh.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">studentservices-dev</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UZH Student Services Release Development</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://studentservices-dev.uzh.ch/Shibboleth.sso/SLO/Redirect"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://studentservices-dev.uzh.ch/sap/saml2/sp/acs/701" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://studentservices-dev.uzh.ch/sap/saml2/sp/acs/701" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://studentservices-dev.uzh.ch/sap/saml2/sp/acs/701" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">studentservices-dev</ServiceName>
+ <ServiceDescription xml:lang="en">UZH Student Services Release Development</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uzhSapUserIdStaff" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.27" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uzhSapUserId" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uzh.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">Universität Zürich TEST</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">University of Zurich TEST</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.uzh.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.uzh.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETHZ LET Moodle Exam LBA QSS -->
+ <EntityDescriptor entityID="https://moodle-exam-qss.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ETHZ LET Moodle Exam LBA QSS</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Moodle exam test QSS server of LET for LBA integration</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle-exam-qss.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://moodle-exam-qss.ethz.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle-exam-qss.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle-exam-qss.ethz.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://moodle-exam-qss.ethz.ch/Shibboleth.sso/SAML/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://moodle-exam-qss.ethz.ch/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ETHZ LET Moodle Exam LBA QSS</ServiceName>
+ <ServiceDescription xml:lang="en">Moodle exam test QSS server of LET for LBA integration</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETHZ, LDA Testserver -->
+ <EntityDescriptor entityID="https://ilias-app2-test.let.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">ETHZ, LDA Testserver</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">ETHZ, LDA Testserver</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Testserver für die Lehrdokumentenablage (LDA) der ETHZ</mdui:Description>
+ <mdui:Description xml:lang="en">This is the LDA testserver of ETHZ</mdui:Description>
+ <mdui:Keywords xml:lang="en">ilias lda lms</mdui:Keywords>
+ <mdui:Keywords xml:lang="de">ilias lda lms</mdui:Keywords>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ilias-app2-test.let.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://ilias-app2-test.let.ethz.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ilias-app2-test.let.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ilias-app2-test.let.ethz.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://ilias-app2-test.let.ethz.ch/Shibboleth.sso/SAML/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://ilias-app2-test.let.ethz.ch/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">ETHZ, LDA Testserver</ServiceName>
+ <ServiceName xml:lang="en">ETHZ, LDA Testserver</ServiceName>
+ <ServiceDescription xml:lang="de">Testserver für die Lehrdokumentenablage (LDA) der ETHZ</ServiceDescription>
+ <ServiceDescription xml:lang="en">This is the LDA testserver of ETHZ</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-SERVICE-LOGEMENTCLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/service/logement/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-SERVICE-LOGEMENTCLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-SERVICE-LOGEMENT CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/service/logement/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/service/logement/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/service/logement/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/service/logement/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/service/logement/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/service/logement/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/service/logement/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/service/logement/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/service/logement/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-SERVICE-LOGEMENTCLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-SERVICE-LOGEMENT CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- perfSONAR Test SP -->
+ <EntityDescriptor entityID="http://saml.ps-ui-test.qalab.geant.net">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">perfSONAR Test SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">perfSONAR Test SP</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="http://ps-ui-test.qalab.geant.net/perfsonar-ui/saml/SAMLAssertionConsumer" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uat-adfs.geant.net/adfs/ls/" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://uat-sp-adfs.geant.net/adfs/ls/" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">perfSONAR Test SP</ServiceName>
+ <ServiceDescription xml:lang="en">perfSONAR Test SP</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- AAI Attribute Viewer -->
+ <EntityDescriptor entityID="https://attribute-viewer.aai.switch.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>any</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="http://www.switch.ch/aai/support/help" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">AAI Attribute Viewer</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">AAI Attribute Viewer</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="fr">AAI Attribute Viewer</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="it">AAI Attribute Viewer</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Zeigt zu Test und Informationszwecken alle Attribute eines Benutzers.</mdui:Description>
+ <mdui:Description xml:lang="en">Displays all available attributes of a user for debugging and informational purposes.</mdui:Description>
+ <mdui:Description xml:lang="fr">Présente tous les attributs d'un utilisateur pour tester et pour obtenir des renseignements.</mdui:Description>
+ <mdui:Description xml:lang="it">Ha tutti gli attributi di un utente per testare e per ottenere informazioni.</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,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</mdui:Logo>
+ <mdui:Logo height="60" width="80">data:image/png;base64,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</mdui:Logo>
+ <mdui:InformationURL xml:lang="it">https://attribute-viewer.aai.switch.ch/?lang=it</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="de">https://attribute-viewer.aai.switch.ch/?lang=de</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="fr">https://attribute-viewer.aai.switch.ch/?lang=fr</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="en">https://attribute-viewer.aai.switch.ch/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="de">https://attribute-viewer.aai.switch.ch/privacy_statement.php?lang=de</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://attribute-viewer.aai.switch.ch/privacy_statement.php</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="fr">https://attribute-viewer.aai.switch.ch/privacy_statement.php?lang=fr</mdui:PrivacyStatementURL>
+ <mdui:PrivacyStatementURL xml:lang="it">https://attribute-viewer.aai.switch.ch/privacy_statement.php?lang=it</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEVDCCArygAwIBAgIJAOBNjofbtrxUMA0GCSqGSIb3DQEBCwUAMCkxJzAlBgNV
+BAMTHmF0dHJpYnV0ZS12aWV3ZXIuYWFpLnN3aXRjaC5jaDAeFw0xNzA1MDIxNDQ2
+NDhaFw0yMDA1MDExNDQ2NDhaMCkxJzAlBgNVBAMTHmF0dHJpYnV0ZS12aWV3ZXIu
+YWFpLnN3aXRjaC5jaDCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAKGh
+hLV4SrPqUoEeqLDq2svEI8aqx0xyzGIgSJMHzDRgJyqzFhckWQMRytHH6Bk3pUSG
+YCsjAjCaQWhVqzkHsMsdxl8Xb34GTG6ObWdNccsiSuZOpWrGsavfUOX4XfDXZm9x
+QKaI53k06EJNnDG5OJAsQE1sT+nKlzJF7Lokl2yJyqIQgfssqn9bipdmeSrtGYqI
+9PYNhK8V+MJkfu40PMQEhb/9+dGHRZsoJrE8mcxiDdnoXMIoCOAp3XlRiU9ve+a0
+f9l+JNYpQtNpiIAYVQPLZiboDvNqAQtxv66ojxXI8MbShLMGEk7IDq/P+1tjcAqs
+HktNVfvqMqc5zLto8aoegLmOITjPhqa1N4P/x38lj5Iam1VhAgkh9b2a/0e+Z0zr
+wIr3VpmezmYePr58TqQtMzCTpEew3lzT/I/ZYbnbQZ/ScEtljA6mMyuCJPDewfHY
+jCf5/6BwYlCR3qVNYHRcUvSTorTxYye1aVqGoq/dmB5RXlaF2Q9LEi3NsU5MBwID
+AQABo38wfTBcBgNVHREEVTBTgh5hdHRyaWJ1dGUtdmlld2VyLmFhaS5zd2l0Y2gu
+Y2iGMWh0dHBzOi8vYXR0cmlidXRlLXZpZXdlci5hYWkuc3dpdGNoLmNoL3NoaWJi
+b2xldGgwHQYDVR0OBBYEFO7o5ta26IowBnkW12rmXiSeLzSfMA0GCSqGSIb3DQEB
+CwUAA4IBgQBllXLZ052tcdYHyNOUu5+fQzRsun1iEpOgisRfdpS43MTAsWJwn69k
+/pCUmRkN3a8VBFFwKzhQMwmlv248W4JwgUZdsEFmrTtG0kSfgzrVbGg0a78FVtAH
+fIDcXD7JI/kS04/jdncHAHLGSifkdMvIQohHdjeH5Oy7BktaDEL3nBR1sKLySmD1
+qOe4HAAoYVWfvwzmXxmWL+OgIgObIywJjmEoGgAy9UnHIfqM431ayGN1+0N2C+2c
+szrWTRom515WA+Guh2rUQxcQ/PRZjhtf2dXPcbxbu1ScW+XIHnNboHmetmdjI+rl
+40AcLmr4wNa02koGRZxmvM7MnQ72sRob5h43BmJKR8gefa9/3KjY2WGK2Toi25W8
+um82XQxvLQVSvxeD0Nny9vYPLUxY4SIsn1uRPp4vA3tHEcBE7Jgkmp07aUOPiude
+ZwGMHngs4/mbECRVYDv7G8TNbYK2fpfqv9EeoTmgIx+5Lm1ez4g0jSUjBmwnsI+L
+QbJjc0MjiKk=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://attribute-viewer.aai.switch.ch/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attribute-viewer.aai.switch.ch/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://attribute-viewer.aai.switch.ch/Shibboleth.sso/SLO/SOAP"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attribute-viewer.aai.switch.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://attribute-viewer.aai.switch.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://attribute-viewer.aai.switch.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">AAI Attribute Viewer</ServiceName>
+ <ServiceName xml:lang="en">AAI Attribute Viewer</ServiceName>
+ <ServiceName xml:lang="fr">AAI Attribute Viewer</ServiceName>
+ <ServiceName xml:lang="it">AAI Attribute Viewer</ServiceName>
+ <ServiceDescription xml:lang="de">Zeigt zu Test und Informationszwecken alle Attribute eines Benutzers.</ServiceDescription>
+ <ServiceDescription xml:lang="en">Displays all available attributes of a user for debugging and informational purposes.</ServiceDescription>
+ <ServiceDescription xml:lang="fr">Présente tous les attributs d'un utilisateur pour tester et pour obtenir des renseignements.</ServiceDescription>
+ <ServiceDescription xml:lang="it">Ha tutti gli attributi di un utente per testare e per ottenere informazioni.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonCardUID" Name="urn:oid:2.16.756.1.2.5.1.1.12" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissLibraryPersonAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1023" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissLibraryPersonResidence" Name="urn:oid:2.16.756.1.2.5.1.1.1025" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStaffCategory" Name="urn:oid:2.16.756.1.2.5.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch1" Name="urn:oid:2.16.756.1.2.5.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch2" Name="urn:oid:2.16.756.1.2.5.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch3" Name="urn:oid:2.16.756.1.2.5.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyLevel" Name="urn:oid:2.16.756.1.2.5.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="homePostalAddress" Name="urn:oid:0.9.2342.19200300.100.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="isMemberOf" Name="urn:oid:1.3.6.1.4.1.5923.1.5.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonNickname" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrcid" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="pairwiseSubjectIdentifier" Name="urn:oasis:names:tc:SAML:attribute:pairwise-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="homePhone" Name="urn:oid:0.9.2342.19200300.100.1.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="subjectIdentifier" Name="urn:oasis:names:tc:SAML:attribute:subject-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="ASVZ" Name="urn:oid:2.16.756.1.2.5.1.1.1014" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="Shib-Custom-UserType" Name="urn:oid:2.16.756.1.2.5.1.1.1022" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwAbrKst" Name="urn:oid:2.16.756.1.2.5.1.1.1007" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwDetailedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1008" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwIDPerson" Name="urn:oid:2.16.756.1.2.5.1.1.1009" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwOeID" Name="urn:oid:2.16.756.1.2.5.1.1.1013" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwSapUserInfo" Name="urn:oid:2.16.756.1.2.5.1.1.1011" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwSapUserID" Name="urn:oid:2.16.756.1.2.5.1.1.1010" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwUPN" Name="urn:oid:2.16.756.1.2.5.1.1.1012" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="primaryGroupID" Name="urn:oid:1.3.6.1.4.1.7165.2.1.15" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDUsage1y" Name="urn:oid:2.16.756.1.2.5.1.1.1026" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAffiliationProfile" Name="urn:oid:2.16.756.1.2.5.1.1.1028" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssuranceLevel" Name="urn:oid:2.16.756.1.2.5.1.1.1027" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1029" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliationMail" Name="urn:oid:2.16.756.1.2.5.1.1.1031" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliationUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1032" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unibasChPublicId" Name="urn:oid:1.3.6.1.4.1.22865.10.1.1.93" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unibasChRoles" Name="urn:oid:1.3.6.1.4.1.22865.10.1.1.19" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="UniBEapplAuthorisation" Name="urn:oid:2.16.756.1.2.5.1.1.1000" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unige.ch-OuCode" Name="urn:oid:2.16.756.1.2.5.1.1.1004" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unilFacultePrincipale" Name="urn:oid:2.16.756.1.2.5.1.1.1006" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unilMemberOf" Name="urn:oid:2.16.756.1.2.5.1.1.1003" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uzhSapUserIdStaff" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.27" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uzhSapUserId" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="zhawDepartmentCode" Name="urn:oid:2.16.756.1.2.5.1.1.1015" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="zhawInstituteCode" Name="urn:oid:2.16.756.1.2.5.1.1.1016" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="zhawInstitute" Name="urn:oid:2.16.756.1.2.5.1.1.1017" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Test System Shibboleth SP for Royal Society of Chemistry. -->
+ <EntityDescriptor entityID="https://shib.rsc-uat.org/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Test System Shibboleth SP for Royal Society of Chemistry.</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test System Shibboleth SP for Royal Society of Chemistry.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIC9zCCAd+gAwIBAgIJAIdMRZNoOlUKMA0GCSqGSIb3DQEBBQUAMBsxGTAXBgNV
+BAMTEHNoaWIucnNjLXVhdC5vcmcwHhcNMTMwNjEzMTUxMTA3WhcNMjMwNjExMTUx
+MTA3WjAbMRkwFwYDVQQDExBzaGliLnJzYy11YXQub3JnMIIBIjANBgkqhkiG9w0B
+AQEFAAOCAQ8AMIIBCgKCAQEAvCYfBRJznhtFJ6ObF/CZd2L+NfFHkc3Xc1Hq8ahf
+B3OjIWGT86P11rSBoqgKAKjc/paf3H8fqbieWcl23zFYZt2p5Tgn/N+0gWEDqU3E
+FElv3BkG1qDm6dzASfUe2d6UmywWxA8o755qiR61EyW44t8zBnMlP3zz/4D/c30c
+60pE6ey7vjYo/OSUU1NtJKiSnRVul4ojisBcyQBqTEA+rSz3tdY5tDahZs0ETY15
+OulSEeIgAJ+jyixna5hG88LujxTLfP8eJ5c44bB6tlj+zxX6t2NffbJvmbGA7tsO
+m9HNLaEYpIkvB85FcFU0okDKvEVb0oCi9bxV1G1KnwW5pQIDAQABoz4wPDAbBgNV
+HREEFDASghBzaGliLnJzYy11YXQub3JnMB0GA1UdDgQWBBStPkn6a3WJboUaFzSW
+4gO3/fZFDTANBgkqhkiG9w0BAQUFAAOCAQEAC63PW0yGjrWEiHKCIPHQJfekHD1/
+EVXsk3Acjv9Hi6oCgMc3aWPvOwdL6CaeiX4VHGkVtiTWpSaG/6UbsjMVF9sdG4PD
+/DsYKjsjVj3+72zIpVhSrKQt5tbl0fvgaZWLjiCTua1NI+Iw2BSI1C6NCgguvpP8
+LKnz7yF0ck8omkoQVuAEUEJcniWzdaxXPeU53/4LeWti2tH7240yH3gjNeN3J09v
+/rfTDcT7i58eKalUZtWL7XvKZ+kp5ziyyWnjqRyLUbrWaBXOlBsyZkrhu4i+XwHl
+E9Z+U+Ne35q+J2NuQ3Z3TXADXkPmz5i2O87MoZcKhdcm1EoZdpi3iUJAgA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shib.rsc-uat.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shib.rsc-uat.org/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shib.rsc-uat.org/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shib.rsc-uat.org/Shibboleth.sso/SAML/POST" index="4" isDefault="true"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shib.rsc-uat.org/Shibboleth.sso/SAML/Artifact" index="5"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Test System Shibboleth SP for Royal Society of Chemistry.</ServiceName>
+ <ServiceDescription xml:lang="en">Test System Shibboleth SP for Royal Society of Chemistry.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-ISIS/CARTELEG CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/isis/carteleg/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-ISIS/CARTELEG CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-ISIS/CARTELEG CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/isis/carteleg/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/isis/carteleg/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/isis/carteleg/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/isis/carteleg/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/isis/carteleg/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/isis/carteleg/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/isis/carteleg/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/isis/carteleg/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/isis/carteleg/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/isis/carteleg/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/isis/carteleg/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/isis/carteleg/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/isis/carteleg/Shibboleth.sso/SAML2/ECP" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/isis/carteleg/Shibboleth.sso/SAML2/ECP" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/isis/carteleg/Shibboleth.sso/SAML2/ECP" index="15"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-ISIS/CARTELEG CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-ISIS/CARTELEG CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-REF/API tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/ref/api/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-REF/API tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-REF/API tEst</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/ref/api/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/ref/api/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/ref/api/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/ref/api/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/ref/api/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/ref/api/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/ref/api/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/ref/api/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/ref/api/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-REF/API tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-REF/API tEst</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- AAI Viewer Interfederation Test -->
+ <EntityDescriptor entityID="https://attribute-viewer.aai.switch.ch/interfederation-test/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="http://www.switch.ch/aai/support/help" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">AAI Viewer Interfederation Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used to test the interfederation readiness of SWITCHaai Identity Providers.</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,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</mdui:Logo>
+ <mdui:Logo height="60" width="80">data:image/png;base64,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</mdui:Logo>
+ <mdui:InformationURL xml:lang="en">https://aai-viewer.switch.ch/interfederation-test/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://aai-viewer.switch.ch/interfederation-test/privacy-statement.html</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://attribute-viewer.aai.switch.ch/interfederation-test/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attribute-viewer.aai.switch.ch/interfederation-test/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://attribute-viewer.aai.switch.ch/interfederation-test/Shibboleth.sso/SLO/SOAP"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attribute-viewer.aai.switch.ch/interfederation-test/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://av.aai.switch.ch/interfederation-test/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://attribute-viewer.aai.switch.ch/interfederation-test/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://av.aai.switch.ch/interfederation-test/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://attribute-viewer.aai.switch.ch/interfederation-test/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://av.aai.switch.ch/interfederation-test/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">AAI Viewer Interfederation Test</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used to test the interfederation readiness of SWITCHaai Identity Providers.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ProQuest Test -->
+ <!-- Federation Partner Resource of Partner: ProQuest LLC (http://proquest.com/) -->
+ <EntityDescriptor entityID="https://shibboleth-sp.pre.proquest.com/shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ProQuest Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PreProd Shibboleth instance.</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://www.proquest.com</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.proquest.com/about/privacy-statement.html</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibboleth-sp.pre.proquest.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibboleth-sp.pre.proquest.com/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibboleth-sp.pre.proquest.com/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shibboleth-sp.pre.proquest.com/Shibboleth.sso/SAML/POST" index="4" isDefault="true"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://shibboleth-sp.pre.proquest.com/Shibboleth.sso/SAML/Artifact" index="5"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ProQuest Test</ServiceName>
+ <ServiceDescription xml:lang="en">PreProd Shibboleth instance.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">proquest.com</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">ProQuest LLC</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://proquest.com/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Infoclio (Test Umgebung) -->
+ <EntityDescriptor entityID="https://www.infoclio.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">Infoclio (Test Umgebung)</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Infoclio (Test Umgebung)</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Das Ziel von infoclio.ch ist es, eine digitale Infrastruktur für die Schweizer Geschichtswissenschaften aufzubauen, die die relevanten Träger und Akteure koordiniert und den Zugang der Forschenden zu digitalen, internationalen Initiativen erleichtert.</mdui:Description>
+ <mdui:Description xml:lang="en">Das Ziel von infoclio.ch ist es, eine digitale Infrastruktur für die Schweizer Geschichtswissenschaften aufzubauen, die die relevanten Träger und Akteure koordiniert und den Zugang der Forschenden zu digitalen, internationalen Initiativen erleichtert.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.infoclio.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www.infoclio.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.infoclio.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.infoclio.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www.infoclio.ch/Shibboleth.sso/SAML/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www.infoclio.ch/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">Infoclio (Test Umgebung)</ServiceName>
+ <ServiceName xml:lang="en">Infoclio (Test Umgebung)</ServiceName>
+ <ServiceDescription xml:lang="de">Das Ziel von infoclio.ch ist es, eine digitale Infrastruktur für die Schweizer Geschichtswissenschaften aufzubauen, die die relevanten Träger und Akteure koordiniert und den Zugang der Forschenden zu digitalen, internationalen Initiativen erleichtert.</ServiceDescription>
+ <ServiceDescription xml:lang="en">Das Ziel von infoclio.ch ist es, eine digitale Infrastruktur für die Schweizer Geschichtswissenschaften aufzubauen, die die relevanten Träger und Akteure koordiniert und den Zugang der Forschenden zu digitalen, internationalen Initiativen erleichtert.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- EduApp Backend QSS -->
+ <EntityDescriptor entityID="https://www.eduqss.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-logon-bi-test.ethz.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">EduApp Backend QSS</mdui:DisplayName>
+ <mdui:Description xml:lang="en">QSS Instance of EduApp back office service application.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://eduqss.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://eduqss.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://eduqss.ethz.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">EduApp Backend QSS</ServiceName>
+ <ServiceDescription xml:lang="en">QSS Instance of EduApp back office service application.</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SAP Portal Test -->
+ <EntityDescriptor entityID="https://sap-epd.test.fhnw.ch/saml2">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.fhnw.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.fhnw.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.fhnw.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">SAP Portal Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SAP Portal Test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEJzCCAo+gAwIBAgIJANNXEtNo2m4kMA0GCSqGSIb3DQEBCwUAMB8xHTAbBgNV
+BAMTFHNhcC1lcGQudGVzdC5maG53LmNoMB4XDTE5MDEwODA5MzAzNVoXDTIyMDEw
+NzA5MzAzNVowHzEdMBsGA1UEAxMUc2FwLWVwZC50ZXN0LmZobncuY2gwggGiMA0G
+CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDY2nL6zHyHgUL7LxjOnvhPnhIX+UsH
++luI51SsTSmilrOAT0GpcxR95SXibKc98KlbPMYJlIyOYXbEr56sxQBHk0YkvSVb
+NAfM/pI9mcjK3TkNz4jPf13itoX6T1Yd8hCgIAlY9L7uas/3z8/kEOrz41iUnzFJ
+iOfEkeOVIfT+9mQTYcNZz+6iZncbS3qvmg+F+4FUvT+lGpBVLik7fgVj87EkfGjb
+f1Wg/erLA7IXGj/Bk6tJZwrvR7v7lu323Obv/86eRdpmc99MUUrtWS/VSTcGP307
+bOOa1ltKraX9cXE1mPl+jJLtVmIdfIUtCMTgk/kfA6947GVAoIzacmcD0+Vh7W1M
+18xZSWxoCkdezsQHdKSfkxS2booNJ4tg8vkNu9J56EJeV2ANuNT0h4XkcxjI1PvP
+QRGIduvokvvP0TIejIx4Y7d6pPR+TAHH8yDCOECLw5+Xv/0olc3gkjm78yrSKcxq
+92cfJGgPzTdS9pYxbzYXQudwNnnX9GApAaECAwEAAaNmMGQwQwYDVR0RBDwwOoIU
+c2FwLWVwZC50ZXN0LmZobncuY2iGImh0dHBzOi8vc2FwLWVwZC50ZXN0LmZobncu
+Y2gvc2FtbDIwHQYDVR0OBBYEFDCnmDXg/y8+I+KQ5/j79bpQ9/yxMA0GCSqGSIb3
+DQEBCwUAA4IBgQBt7HdNj2eWpqfouwLzK30wHuri5UabTGLiwsd0RpYNmL90Io7x
+SZnKkUjKE0jI/iIbkLvIln57gF4H3hh9QNIXWyD9z+PSE386yhpJz3ma8VVDvWmw
+nPN/l+vFlK/H2+1urVDtNFZTWL0nkQ8domO2k86h4Gb04eytbJW1XNd8LeykxUDf
+l2nMmLNQfLASJGgOH6CSoYXzxptZq/RrJL/5pC9NdBIS5PuW1ioI1QpcYUGcwQz9
+Nq5Rj6rDaMgg4IDx9Gu8yV7yJFdw33f0LTVuQWzYZfryYA0f9UcPqQx3TgdRAdS8
+fUwURJOkyXNc3ipM07D5ffK4Uux1unA+6YhR0/TwUUwP4sm8sZpK70xh9vQnQOmA
+rXrh+8J9MB1uErdykrDualTYUADEdTe3u0TT8aCLYsKx403Sl/h91f2RzVnnHSSJ
+f/sT4km7oaZidduAF7RayQyEIYwFgrB5uV6cpYyGTT11gsLNUjXHB8tcs/T+F0cY
+YqGJzVlpnP5ZbUc=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sap-epd.test.fhnw.ch/saml2/sp/acs" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sap-epd.test.fhnw.ch/saml2/sp/acs" index="2"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">SAP Portal Test</ServiceName>
+ <ServiceDescription xml:lang="en">SAP Portal Test</ServiceDescription>
+ <RequestedAttribute FriendlyName="fhnwSapUserID" Name="urn:oid:2.16.756.1.2.5.1.1.1010" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.fhnw.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.fhnw.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.fhnw.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- FHNW Moodle Testserver -->
+ <EntityDescriptor entityID="https://moodle.test.fhnw.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.fhnw.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.fhnw.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.fhnw.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">FHNW Moodle Testserver</mdui:DisplayName>
+ <mdui:Description xml:lang="en">FHNW Moodle Testserver</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.test.fhnw.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.test.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle.test.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">FHNW Moodle Testserver</ServiceName>
+ <ServiceDescription xml:lang="en">FHNW Moodle Testserver</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.fhnw.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.fhnw.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.fhnw.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETHZ LET Moodle Exam LBA User -->
+ <EntityDescriptor entityID="https://moodle-exam-user.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ETHZ LET Moodle Exam LBA User</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Moodle exam test user server of LET for LBA integration</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle-exam-user.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://moodle-exam-user.ethz.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle-exam-user.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle-exam-user.ethz.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://moodle-exam-user.ethz.ch/Shibboleth.sso/SAML/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://moodle-exam-user.ethz.ch/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ETHZ LET Moodle Exam LBA User</ServiceName>
+ <ServiceDescription xml:lang="en">Moodle exam test user server of LET for LBA integration</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-CURSUS/APPW CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/cursus/appw/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-CURSUS/APPW CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-CURSUS/APPW CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEIDCCAoigAwIBAgIJAO3rlFto8q0yMA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV
+BAMTDnd3d2l0LnVuaWdlLmNoMB4XDTE4MDEyMzA4MjExNVoXDTIxMDEyMjA4MjEx
+NVowGTEXMBUGA1UEAxMOd3d3aXQudW5pZ2UuY2gwggGiMA0GCSqGSIb3DQEBAQUA
+A4IBjwAwggGKAoIBgQC0amQty4wE4+QJr/C678nVNoDjr1TR0RvxkPzorn/qoviL
+74lLgOuyX6fugOdDesqDlL/ZcHMkC+D99d5yfYjJpZLlZortLb+eRav3B4pPZd42
+VHhPN/4BYSGpBBOEnO/PgS5Pqrmlnuq7Tp49Gz6q4Rlx2NLW90MK4FNZnG5WJ0U9
+5E+ZoM6CI18+WcbyodMuS54Da9aI67aUs80VIqOgPhYRq5ovMQnNxRrtqZZEGmda
+Z91GiHvCUr5kjEk4rXE79rU/LWvn3jRUDhNXYuHnBOLhlVNytjmwr3VlZgAak8O2
+pcXF1f8jLieqkx1s/h0ioPtPKSuu0ZMaghRYOtRG6GDffUy8onyACHPFqu7YdS7g
+Sde1OlM++27g5p28o3QPs/bTyw59BuUq405dVHrw6BRtDAU8cP8ujazLuvxfE3vv
+jobUTUHQhUnjJxSO/JOGi70q7Wc+fuA+3b59gfGXBoRx5Wve6oU1zaK1dE8s3Bn9
+Dw3S3AmgohW3QiKuvasCAwEAAaNrMGkwSAYDVR0RBEEwP4IOd3d3aXQudW5pZ2Uu
+Y2iGLWh0dHBzOi8vd3d3aXQudW5pZ2UuY2gvY3Vyc3VzL2FwcHcvc2hpYmJvbGV0
+aDAdBgNVHQ4EFgQUIxsfbhaZkD2dtbQQO0ede/kEVY8wDQYJKoZIhvcNAQELBQAD
+ggGBAEyo4MST3hX2lootonQ+sjSXsXjBmZT+5xa8WFSil9x6XNRrnIGpObJZ4oNv
+UH/FxB/uw1MRmLPX/g2Xskt5kMLN+h/SXZLH20riK9bW+W5NHwL/FTY4tmBB4QHu
+BjxeXyhwTRl8+PyywCT2jqUGiYvoRKe15DQ1eAHfyleAKJbfsSi2kDLyXOboW1sV
+CeuqCDgkmMFckhaCSfhN9h7inJhT5HtVgMH83BfzesfFNRaRbr6vGJrtkeYAsoVX
+JKXdBvBAsVfjP21MMab3BU+CCLe0AXwzHiM+N6mTETKVd+BlicOhYVYlIVuWhbN7
+XM9IuvXZCrgTsZu5BRd0L+FFz50JqCozmyAzad7pQiy29ZaDbD3Wj5f+dhxa5s4Z
+r2ju+3f0kZNFB5APWip/UdKbngqSOx74OcEJ/3tBmam+1MxkJ+pE3g5sx6mkNrli
+xmjU715yLioqiHJ//tLvsnXR/ukCotEyMUo8KMs8HzciDLPWTMTZGW61rhm9jQKd
+KIFSVw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/cursus/appw/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/cursus/appw/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/cursus/appw/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/cursus/appw/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/cursus/appw/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/cursus/appw/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/cursus/appw/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/cursus/appw/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/cursus/appw/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://wwwit.unige.ch/cursus/appw/Shibboleth.sso/SAML/POST" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://wwwit.unige.ch/cursus/appw/Shibboleth.sso/SAML/Artifact" index="11"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-CURSUS/APPW CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-CURSUS/APPW CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ASVZ Auth Test -->
+ <EntityDescriptor entityID="https://test.auth.asvz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">ASVZ Auth Test</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">ASVZ Auth Test</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Login für ASVZ Mitglieder.</mdui:Description>
+ <mdui:Description xml:lang="en">Authentication for ASVZ members.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEIDCCAoigAwIBAgIJAPDyHU2IQh7YMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV
+BAMTEXRlc3QuYXV0aC5hc3Z6LmNoMB4XDTE4MDgzMTE3NTAwMFoXDTIxMDgzMDE3
+NTAwMFowHDEaMBgGA1UEAxMRdGVzdC5hdXRoLmFzdnouY2gwggGiMA0GCSqGSIb3
+DQEBAQUAA4IBjwAwggGKAoIBgQDcPaY1eDAhkv19v8KQ3/vp3KxYGNfxdUwqj5Rd
+9JIobboIkI85uFjDbj8mm7qRskmL9S2y8ox7Lm/uvEP9MGAgpNayN/2ln/ezz7ds
+kdNmr087OaSOp8DClrK74qI9gEQ+xc9nndAj3aRwNoTG5200fk/m78zcO6cdS7yj
+JOYhx71GaZw5vgsopfl0B+pJ9n8Peu3rGQWTQS5JIJjVxq1B7Oy5HYxtwoG8LpS5
+8BjnUsYk4fT6ch1IpOOT4xQ+1t3khxukllZVnNt1DRHQvF8LPBXtN7H1iMAluWQH
+x3w9zVBkTkJfo8S4tHOhOMsoVNt2ryFygYlvzm9FQh6RmNI6XMpF68ilFR7xVLUQ
+Iz2j7mLvUiKL6/3g+XDNswekyO95RuOeBoU4abAe3GN97i0yQSmvDhNIYquuk9L9
+v6YHSYhwQxZ5UqGx0RvLAFgY8Qfx/zJ5qotA8+919+0wB8gKhJjSkUDKmY8UDo9a
+zB/pzcdSH9nf61FStojS2CriuU0CAwEAAaNlMGMwQgYDVR0RBDswOYIRdGVzdC5h
+dXRoLmFzdnouY2iGJGh0dHBzOi8vdGVzdC5hdXRoLmFzdnouY2gvc2hpYmJvbGV0
+aDAdBgNVHQ4EFgQUiVF2OCDgcFrwMxD7SJYj4kgzSj4wDQYJKoZIhvcNAQELBQAD
+ggGBAL6pRK7Zbw/n8ykrRupL8L503X3emtEv3Aj6pKG/iNzKALGgrrSX5dVDjsB0
+SQfXeTd56wxF3vY30hhpA6HYoaouuYdIuWNh83zuxCDY53TOeuH90TqKDVQC4Q6+
+8fC/2RwRRXjXG+Px3P2nkiIeRGm4aGPXBMfGC3XCbkj+nuo2+9wrgslqQ7NplBq2
+aigLtK2qo6fOhaP5rN2kIKhAbuz3oQM5/BX4SNWuWa9YlD7uapXvCb59WLmpW1Vz
+vFDBIjz6Q0oR9cUQKATG8X07QglGTiYRq7GXMhA6Pb6//G2jOC9VhfdwQHSDI8ae
+tO6BgZ4KXkn4NTZWQOUCs5mK973glqb58rw4sq/9oA7AxydXau7HCi1MAl3wH4nq
+O3imgjid5HzuwUGldY81YZ737yTsEcQsbTYPEYBSTQ7peEUKPlcr936IpClyugBR
+YyOWzLJ8kJU09IXrQtG6QAIUHHqqiCOgSX64QM2nFMV6LwU4KAEtOE8aM9ixjABl
+KgsLww==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.auth.asvz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test.auth.asvz.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test.auth.asvz.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">ASVZ Auth Test</ServiceName>
+ <ServiceName xml:lang="en">ASVZ Auth Test</ServiceName>
+ <ServiceDescription xml:lang="de">Login für ASVZ Mitglieder.</ServiceDescription>
+ <ServiceDescription xml:lang="en">Authentication for ASVZ members.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ASVZ Online-Schalter Test -->
+ <EntityDescriptor entityID="https://test.schalter.asvz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ASVZ Online-Schalter Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ASVZ Online-Schalter Test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDMDCCAhigAwIBAgIJAPJqIFQdJ9VeMA0GCSqGSIb3DQEBBQUAMCAxHjAcBgNV
+BAMTFXRlc3Quc2NoYWx0ZXIuYXN2ei5jaDAeFw0xODAxMjIwNzQ0MDlaFw0yMTAx
+MjEwNzQ0MDlaMCAxHjAcBgNVBAMTFXRlc3Quc2NoYWx0ZXIuYXN2ei5jaDCCASIw
+DQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBANVDncvIrps1C51GG1GD8SF6L9ka
+lnI4spbbvJ5ypMTpWqMXvOIhN2o4heyTKYzm2kZn4SvT47BJi5tLbA5yPlJsZ0UC
+4YHUV4MjA3z3DXfAUsMrwgavLtSsBzst03+EFGURUT4/YipNUMz951SWKnu3vpD6
+9YhitOXWd5VE4rBmhEYs7w4Cw/g19Pays+W7tEiF5VfZoHNnvUhnZuhD6qwRXIvO
+rxcc1Zy1zwEKtUyc+fLaIOANmV5OfMFnH0s9HHzrg/xJ+7pfworQiB/6VWBYKhAj
+rQDjvdoX+c6Pntrbz9gwqcjJ/fdBuVtwtdlZx0prJBuLLV8TRMytvmu6zO8CAwEA
+AaNtMGswSgYDVR0RBEMwQYIVdGVzdC5zY2hhbHRlci5hc3Z6LmNohihodHRwczov
+L3Rlc3Quc2NoYWx0ZXIuYXN2ei5jaC9zaGliYm9sZXRoMB0GA1UdDgQWBBQ0i2uL
+bUHl4E7t+t4Yi8iT4gh3NDANBgkqhkiG9w0BAQUFAAOCAQEAUkfH2ck/0bdzrZML
+Il3VYbZeCpOmfM4eDPc8vYJ1lO4G/69hfpD3oJaCUh6V9+VqbxpzQI5dtcy0BXnz
+IND5FIKsWfIYWnXh659KKY+zAkdg5mHuvBBCJu/PmVUcshmsI/Al3GdUT24TdshU
+f355hnLECsQqDTH4WioD89Gh318lITxRCuxzB4Kt0/egix8PgAPrWvp8xYb4ZqTc
+8LyxdrPKzIjQzFkGCs1+ZnJ2E74DNRw2SWgXWtvDACYP5Mwruc+hOOeTibSF+QVi
+EpafHbDQGCaCLB7iNSVND3zSZ/o92QfzEWVZAfygT4Jfs4FQTbItVtRe/7RrMEZs
+Qf5iLw==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.schalter.asvz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test.schalter.asvz.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test.schalter.asvz.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ASVZ Online-Schalter Test</ServiceName>
+ <ServiceDescription xml:lang="en">ASVZ Online-Schalter Test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Knovel Corporation: Phoenix Dev-SSO Test -->
+ <!-- Federation Partner Resource of Partner: Elsevier (https://www.elsevier.com/) -->
+ <EntityDescriptor entityID="https://dev-sso.knewknovel.com/entry/uk_federation/Metadata">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Knovel Corporation: Phoenix Dev-SSO Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The Knovel website integrates technical reference information with analytical and search tools for engineers.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev-sso.knewknovel.com/saml/module.php/saml/sp/saml2-acs.php/default-sp" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dev-sso.knewknovel.com/saml/module.php/saml/sp/saml2-acs.php/default-sp" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://dev-sso.knewknovel.com/saml/module.php/saml/sp/saml1-acs.php/default-sp" index="3" isDefault="true"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://dev-sso.knewknovel.com/saml/module.php/saml/sp/saml1-acs.php/default-sp/artifact" index="4"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Knovel Corporation: Phoenix Dev-SSO Test</ServiceName>
+ <ServiceDescription xml:lang="en">The Knovel website integrates technical reference information with analytical and search tools for engineers.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">elsevier.com</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Elsevier</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.elsevier.com/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Staging Graduate Institute Moodle -->
+ <EntityDescriptor entityID="https://moodle-dev.graduateinstitute.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>graduateinstitute.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="graduateinstitute.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">graduateinstitute.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Staging Graduate Institute Moodle</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test Moodle eLearning Platform for Graduate Institute</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle-dev.graduateinstitute.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle-dev.graduateinstitute.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle-dev.graduateinstitute.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://moodle-dev.graduateinstitute.ch/Shibboleth.sso/SAML/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://moodle-dev.graduateinstitute.ch/Shibboleth.sso/SAML/Artifact" index="5"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Staging Graduate Institute Moodle</ServiceName>
+ <ServiceDescription xml:lang="en">Test Moodle eLearning Platform for Graduate Institute</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">graduateinstitute.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Graduate Institute - Test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.graduateinstitute.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Swiss EduChain -->
+ <EntityDescriptor entityID="https://educhain.csg.uzh.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uzh.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="uzh.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Swiss EduChain</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The purpose of Swiss EduChain is to issue digital diplomas.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://educhain.csg.uzh.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://educhain.csg.uzh.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://educhain.csg.uzh.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Swiss EduChain</ServiceName>
+ <ServiceDescription xml:lang="en">The purpose of Swiss EduChain is to issue digital diplomas.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uzh.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">Universität Zürich TEST</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">University of Zurich TEST</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.uzh.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.uzh.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETHZ LB-red8.ethz.ch -->
+ <EntityDescriptor entityID="https://www.red8.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ETHZ LB-red8.ethz.ch</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ETHZ LB-red8.ethz.ch</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.lb-test.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.red8.ethz.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.lb-test.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.red8.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.lb-test.ethz.ch/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.red8.ethz.ch/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ETHZ LB-red8.ethz.ch</ServiceName>
+ <ServiceDescription xml:lang="en">ETHZ LB-red8.ethz.ch</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETHZ LB-red7.ethz.ch -->
+ <EntityDescriptor entityID="https://www.red7.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ETHZ LB-red7.ethz.ch</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ETHZ LB-red7.ethz.ch</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.lb-test.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.red7.ethz.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.lb-test.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.red7.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.lb-test.ethz.ch/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.red7.ethz.ch/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ETHZ LB-red7.ethz.ch</ServiceName>
+ <ServiceDescription xml:lang="en">ETHZ LB-red7.ethz.ch</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETHZ, Moodle-Exam OIS-Dev-Server -->
+ <EntityDescriptor entityID="https://moodle-exam-entw.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ETHZ, Moodle-Exam OIS-Dev-Server</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Moodle Exam development server for OIS integration of ETHZ</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEPDCCAqSgAwIBAgIJAKE/aJvyH+m1MA0GCSqGSIb3DQEBCwUAMCMxITAfBgNV
+BAMTGG1vb2RsZS1leGFtLWVudHcuZXRoei5jaDAeFw0xOTAxMTcxMDU5MTVaFw0y
+MjAxMTYxMDU5MTVaMCMxITAfBgNVBAMTGG1vb2RsZS1leGFtLWVudHcuZXRoei5j
+aDCCAaIwDQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAJ3cpBHuyWin8u+QZgsR
+JF107SADN740P4IqJpU7D7O8fkV9TdncYRWurgpIoGVoIA6UULoCiiLROlGEl5kI
+lwqhMUTyCS2oBBRdH4sxBanTNwAxmcdfNCkGhOPstehilYT4AbzMDup4R1B+1Kkq
+vWTZeybTGxw0ds5T609ANaA2bOOd0k6ax5eLNff22rcFpa4oOfg6oy2JQCsRsOj9
+/soCJhjIiAbUVcLSoCLuRwtDGy0oVRoyyQBdf2ZeDQ1KVUVj5UiqbomQneUT+m75
+aMCloO/QmvR4v8TXWZmbsqdSnv+fjehQAs2l0BRtMJ2a8UTxM+2ZHFbUXHNLqZNH
+lPX3aQT0T+Co3zhqwl6KCwOPIRepdC156J13LOJYJujvTfEGuFh7VH8/R5V7/WU1
+yyI24Muj8CM33YTPHg+bKX1picmHyhLj//rqRUzh4hFpArNPCzujLuW/7jNZvDx5
+4Y79gxICz+oJnXCL5rnFeGgMEY0U4xustr4XSx0b9fIkNQIDAQABo3MwcTBQBgNV
+HREESTBHghhtb29kbGUtZXhhbS1lbnR3LmV0aHouY2iGK2h0dHBzOi8vbW9vZGxl
+LWV4YW0tZW50dy5ldGh6LmNoL3NoaWJib2xldGgwHQYDVR0OBBYEFCUHorAAnIGz
+Fu6IwYPRTn7/u19hMA0GCSqGSIb3DQEBCwUAA4IBgQCNyHJ13S5v0rI9o18HwkPo
+tNHC8QCK7LRr4WOOnvqx1/P/ZSgDNhevSKjnxQ4aVYmq7ObEVwgB3nRtH9/WpE9o
+eJonHcasdeDV01mq2S173AW4sm8sAaau6GlIfx/SRC50KEZ2rtBATdxNxpgDAg9y
+ZJof7dQ5X8iuHt1bLfqp4XC0ldm7WGa0ULXulGzuf4/gjTUgjJ586KHuv2IS4bP1
+SKh7HXHVeRUT+g/zkAkHvANMxzrsg1fnQz4Axhz+uSaCARLYsWV7YraPDPzK8sw0
+uFItfXhohLgPXFbMfw5Fth6aIo2/KmzE2vU7Oysz8hpHyDazVEdR1EVa6b86mrHo
+/2S/oyIw1vUAvqfpsGR9/jG53nUYh1jilqf8CH6jhakwJU1lR/8RMcYqaFzbwVI2
+LCcOg+jckzlpMOMk9RLkXSkse2PQpqTduZPtqawQwkH0zi+1OiU+qK1lHB+Iubqp
+lthzF9Jp2LD1gJp+9wNX8JugoPgNSNB0vnJGT0kIekM=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle-exam-entw.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle-exam-entw.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle-exam-entw.ethz.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ETHZ, Moodle-Exam OIS-Dev-Server</ServiceName>
+ <ServiceDescription xml:lang="en">Moodle Exam development server for OIS integration of ETHZ</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Springer-Verlag London Ltd -->
+ <!-- Federation Partner Resource of Partner: Springer-Verlag London Ltd (https://www.springer.com) -->
+ <EntityDescriptor entityID="https://fsso-qa1.springer.com">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="http://www.springer.com" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Springer-Verlag London Ltd</mdui:DisplayName>
+ <mdui:Description xml:lang="en">QA 1 Springer Service Provider</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDpjCCAo4CCQDEC3NoQurXpjANBgkqhkiG9w0BAQUFADCBlDELMAkGA1UEBhMC
+R0IxDzANBgNVBAgTBkxvbmRvbjEPMA0GA1UEBxMGTG9uZG9uMRgwFgYDVQQKEw9T
+cHJpbmdlciBOYXR1cmUxHjAcBgNVBAMTFWZzc28tcWExLnNwcmluZ2VyLmNvbTEp
+MCcGCSqGSIb3DQEJARYaY2FzcGVyc3VwcG9ydEBzcHJpbmdlci5jb20wHhcNMTUw
+ODExMTMwNDA5WhcNMzAwODA3MTMwNDA5WjCBlDELMAkGA1UEBhMCR0IxDzANBgNV
+BAgTBkxvbmRvbjEPMA0GA1UEBxMGTG9uZG9uMRgwFgYDVQQKEw9TcHJpbmdlciBO
+YXR1cmUxHjAcBgNVBAMTFWZzc28tcWExLnNwcmluZ2VyLmNvbTEpMCcGCSqGSIb3
+DQEJARYaY2FzcGVyc3VwcG9ydEBzcHJpbmdlci5jb20wggEiMA0GCSqGSIb3DQEB
+AQUAA4IBDwAwggEKAoIBAQDSBZBY3JNf6ymg6Sa7MwlfFZ0sKuhFSZEaR2Nuhzme
+1Rgh7Jerthr9i97fXq2MBLvS5hI14rqFubJhET0QuAaolPlC1NEt4xM4wsjNLzni
+fY/LjY2Jm8WCc4IIjdWPDLoUPiT7Y96XQd3K9hTjRbRXjdluGrIB+NiJcpBq3YSi
+j6FEZC1rhyUcNVNGYUQe612PLVQ/goamlfyCXpSCKL6S1HxHTDgt8EMxKIHrgrUi
+qW6riSYUBW7TqqeOvnYhCBSZA/S/D+7U8xmIBn1i/v+BGudcIAiqlg3opyNFVY37
+VSqcSHq8GMijpjgJeKcOwxBL09/D2xSuTm6MJC4JbM4jAgMBAAEwDQYJKoZIhvcN
+AQEFBQADggEBALLDEftdIFmRKY2g9r7vAz2kWu59dePgY549TzvIkjdABjF+HufZ
+2eyPddoN2jM6LGycZ9SS//0/BHC/ClPon0A69+1kygYAWhWI0y7+7DhR34Uu0N3G
+AMeq+VC1zizApD9WWxLw2MVaz2R67AAOIO9C1niOV056FePDV8qA6aut6xhN9fCg
+Ep3iXISmuAkyLUVMyTURYGQfm6YtUFeV+OwIN7KZoSqVKR8Ip7R9YL8DVLnoj0wj
+pFbrFKC2mGsR1jg+BCJKDAK/7snX+2UMkI3CjlAiNO13XQF3FsyoVP2+CIKdNV/h
+Gf4Gupnkh8oSSqO3d3brgXvHIeU5mlKOGVw=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fsso-qa1.springer.com/federation/Consumer/metaAlias/SpringerServiceProvider" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Springer-Verlag London Ltd</ServiceName>
+ <ServiceDescription xml:lang="en">QA 1 Springer Service Provider</ServiceDescription>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">springer.com</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Springer-Verlag London Ltd</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.springer.com</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- test user-DB for libraries.ch -->
+ <EntityDescriptor entityID="https://test.libraries.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>libraries.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>library</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="libraries.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">libraries.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://www.library.ethz.ch" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">test user-DB for libraries.ch</mdui:DisplayName>
+ <mdui:Description xml:lang="en">to be reviewed</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEIDCCAoigAwIBAgIJAIOJkK6gTCkAMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV
+BAMTEXRlc3QubGlicmFyaWVzLmNoMB4XDTE4MTAwMjEyMDkxMFoXDTIxMTAwMTEy
+MDkxMFowHDEaMBgGA1UEAxMRdGVzdC5saWJyYXJpZXMuY2gwggGiMA0GCSqGSIb3
+DQEBAQUAA4IBjwAwggGKAoIBgQDJaAqfoon6qYsv6LkWs7OkBvpkVGIdWKMLptRC
+CuaR+JlFZnI/GWF3ht47ajiMSfKWTEBZvGmYsU9XiKpnFzacweBpzZlKW3KXRrVG
+HloDo2m3B8jzh/vy8zFa9hHXMzBwM9wcXHsZ0z9m21FO2JTvdvsNsuUITW4/Blsz
+hDJDqYp8fX/eha02SHMGCvzKG/eD/PwYbVSdzs4gif6KebnwzqWMZdfgEHmxvUjo
+UhQDHOYGZ6hweiDM78UmMaazkufImWAKTw+UhjSPU35Sm5ix9cHRIKeeIfhONc8f
+SnYQLMOjS0JJnZ0uosYDZqtqO0ji3wMcKZgxg2yanV6odHqasiW3LMXmjmaNUFsY
+6j6JzgH6qHcHJK45Zx+Qq1b7lXv9aBCfM+daiQ7AS5h7FjhhVhMOYqB3HbskU888
+MJ9kFV2WtNNqE+vVTVY/YYoDzVdykejyWIZZyh4h89WPsDP4xfedsSkBLuFwfgxk
+1W2qfjvM8BBwBffZWEE4Hut8cs0CAwEAAaNlMGMwQgYDVR0RBDswOYIRdGVzdC5s
+aWJyYXJpZXMuY2iGJGh0dHBzOi8vdGVzdC5saWJyYXJpZXMuY2gvc2hpYmJvbGV0
+aDAdBgNVHQ4EFgQUjWNGcG5TRZdWHouDqFrAw74iS/QwDQYJKoZIhvcNAQELBQAD
+ggGBAA2444ofRV6xgnF7PV4J5YKbS32HSS4R6w688EyiRvhNLD0WK/BXdKUFY3P2
+N97UQoqUqH7PzY5rTLli3cp+B6C6aLyevZxuxv8bXrNwSsvtvH9WURXOe1oioFba
+oqruWx2+uxGcm5pxUZr7rXOvXApg1AQN855fofl0WvwC+k0wawme99mbScnbINbz
+wYtFM9CpeZSC8U4y/tquLdt2vfgsP0QIwq4EVuAvlemBXZUlo0ba+TGtwrNuLSxv
+7rLj1LOMxtaIw3zgIpIKaeCjXrJfE+wk4gR9Epo142CMIU4/ccV9+u+OWMKTZHIa
+OPkM2I7a5iModPS1oJL8odbh2VqQZCGMujk89x+LuC9Ya2PN3gKbfELLow60+rjD
+VRb2jt4kwb0xW6Ywgkefm4sc4QINXAzA/SwImpLhDZhCZ4EOVir2T4j2bBmHg9dN
+xQDtt6DJp0dhjy9znSabAKaU1ULxMDKCZNhyjcR5LFiPS03XxJKthkRkO90R0RKI
+SwIIfg==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.libraries.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test.libraries.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test.libraries.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">test user-DB for libraries.ch</ServiceName>
+ <ServiceDescription xml:lang="en">to be reviewed</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">libraries.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">libraries.ch Test</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">libraries.ch Test</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.libraries.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.libraries.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Testserver Webdienste/Webtools (TROUBADIX) -->
+ <EntityDescriptor entityID="https://web.test.fhnw.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.fhnw.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.fhnw.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.fhnw.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">Testserver Webdienste/Webtools (TROUBADIX)</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Testserver Webdienste/Webtools (TROUBADIX)</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Testserver Webdienste/Webtools (TROUBADIX)</mdui:Description>
+ <mdui:Description xml:lang="en">Testserver Webdienste/Webtools (TROUBADIX)</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://help.test.fhnw.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://kurogo.test.fhnw.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://teampad.test.fhnw.ch/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tools.test.fhnw.ch/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tools4.test.fhnw.ch/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://web.test.fhnw.ch/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://help.test.fhnw.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://kurogo.test.fhnw.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://teampad.test.fhnw.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tools.test.fhnw.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://tools4.test.fhnw.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://web.test.fhnw.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://help.test.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://kurogo.test.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://teampad.test.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="15"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tools.test.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="16"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tools4.test.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="17"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://web.test.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="18"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://help.test.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="19"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://kurogo.test.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="20"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://teampad.test.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="21"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tools.test.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="22"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tools4.test.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="23"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://web.test.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="24"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">Testserver Webdienste/Webtools (TROUBADIX)</ServiceName>
+ <ServiceName xml:lang="en">Testserver Webdienste/Webtools (TROUBADIX)</ServiceName>
+ <ServiceDescription xml:lang="de">Testserver Webdienste/Webtools (TROUBADIX)</ServiceDescription>
+ <ServiceDescription xml:lang="en">Testserver Webdienste/Webtools (TROUBADIX)</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch3" Name="urn:oid:2.16.756.1.2.5.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyLevel" Name="urn:oid:2.16.756.1.2.5.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwIDPerson" Name="urn:oid:2.16.756.1.2.5.1.1.1009" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwOeID" Name="urn:oid:2.16.756.1.2.5.1.1.1013" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="fhnwSapUserID" Name="urn:oid:2.16.756.1.2.5.1.1.1010" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.fhnw.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.fhnw.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.fhnw.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- FHNW Webserver (AAITEST) -->
+ <EntityDescriptor entityID="https://www0.fhnw.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.fhnw.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.fhnw.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.fhnw.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">FHNW Webserver (AAITEST)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The Webserver of the Unversity of Applied Sciences (AAITEST)</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEDDCCAnSgAwIBAgIJAMPiNrEEdY7CMA0GCSqGSIb3DQEBCwUAMBcxFTATBgNV
+BAMTDHd3dzAuZmhudy5jaDAeFw0xNzA5MjUxMTM2MTdaFw0yMDA5MjQxMTM2MTda
+MBcxFTATBgNVBAMTDHd3dzAuZmhudy5jaDCCAaIwDQYJKoZIhvcNAQEBBQADggGP
+ADCCAYoCggGBAMPtuASNRefFhAYzZBjmMx3OhFufVUXNZ6KCq3jmmj/voBNK43Ep
+Khi6Dw7pTpyORKEkJTJezP4Q5PzsIa+RthKPrBdqf0VhohktdJuE5At/3PHCK61R
+Gr5m3kREBhdpzaAdxvxjo/gdnMHRl0NH08H6WB94EQOCBae7E1WYOOcFkg6cyKzG
+X6mi7SVxMHSNKhymJ/+2TiEsRqwgVY1/oaQprF/OM3/43XMy5GNo2QghcGDADhvy
+848mPwsla2Bnwz263DuRlZrPmICHMl3K2tfcoJCmnPi9nblU+CPblBYcBT8UkHbn
+yxwJcwurQnJ5FZtwS5PSa3UK32a/czi2m3D7F5dVXOxNqqZV60uk5x/eAtOvFx47
+WmnmdQlvNKz2HJDXUle5nGYbzBB5ibo7p9gd++deT5qxbAlN3pP8AAYHYgLOU76Z
+lMezrKRcc34wfyhJhp29uQS+lvVUyDJ1V3pajD35qx5pd0ztLzFfIGE3fqi+DfJA
++sj1uCy3qLpbaQIDAQABo1swWTA4BgNVHREEMTAvggx3d3cwLmZobncuY2iGH2h0
+dHBzOi8vd3d3MC5maG53LmNoL3NoaWJib2xldGgwHQYDVR0OBBYEFPy4fQsDPmRG
+W/Y2Zuh8CESb/aWwMA0GCSqGSIb3DQEBCwUAA4IBgQA8LWuM1LnzHRKYs+ZKNb38
+PLWXGx2p6NkMsJSMoglhprjRSsD5f7v+AulTJ8jDU99hihL0cXhiFcARTwTBzhBR
+uRVXrp2PsTNBXA6oYnQYQ5stud2QIh3uUEn41qvKPdNwKGbO76P3LlISDCrmq8xN
+rCCV2qar4lYZ1Y864+NHeRHf4tSBrOjXscwsbu1WazwNVG2GDpLc00kOkvwiAUWT
+VHuKOtxAj+oxvSpMhNilyK5ISWXMNyEN1m+qH0Pb/7M2LtOy5xDlmJreOVAtLBmi
+xa/3udmZAkxQCFEEDaSJJ971vexf0K33VcXq+LLa0BOh0Q/AFt4P1ZZLwgTKlhGY
+l8IWVTYqcuZGqKZEiXvnFDybDdug0JWHJUxNI3ZC16ds1ra36irRrDsAhY/3dT2/
+ATxamQPdBjJSlJomBkCqXnxrkSQP139DLiAhsBm5jxqhsNEGXKn1EHB11ZAxQBH5
+0jcp3kzPbzecLVKbTyl3xeU0LaTEH/gFRBl21vnoAaM=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://webcms0.fhnw.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www0.fhnw.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://webcms0.fhnw.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://www0.fhnw.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://webcms0.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www0.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://webcms0.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www0.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://webcms0.fhnw.ch/Shibboleth.sso/SAML/POST" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://www0.fhnw.ch/Shibboleth.sso/SAML/POST" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://webcms0.fhnw.ch/Shibboleth.sso/SAML/Artifact" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://www0.fhnw.ch/Shibboleth.sso/SAML/Artifact" index="12"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">FHNW Webserver (AAITEST)</ServiceName>
+ <ServiceDescription xml:lang="en">The Webserver of the Unversity of Applied Sciences (AAITEST)</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch3" Name="urn:oid:2.16.756.1.2.5.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyLevel" Name="urn:oid:2.16.756.1.2.5.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwIDPerson" Name="urn:oid:2.16.756.1.2.5.1.1.1009" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="fhnwOeID" Name="urn:oid:2.16.756.1.2.5.1.1.1013" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="fhnwSapUserID" Name="urn:oid:2.16.756.1.2.5.1.1.1010" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.fhnw.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.fhnw.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.fhnw.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- inilab -->
+ <!-- Federation Partner Resource of Partner: INILAB AG (https://inilab.ch/) -->
+ <EntityDescriptor entityID="https://inilab.pro/shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">inilab</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The purpose of this service is to offer collaborative and consutative platform to members</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="http://inilab.pro/sp/consume/27412ba6-4727-4947-bb75-b0bc5c1d73dd" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="http://inilab.pro/sso/sp/consume/27412ba6-4727-4947-bb75-b0bc5c1d73dd" index="2"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">inilab</ServiceName>
+ <ServiceDescription xml:lang="en">The purpose of this service is to offer collaborative and consutative platform to members</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">inilab.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">INILAB AG</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://inilab.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- AAI Attribute Viewer Test -->
+ <EntityDescriptor entityID="https://attribute-viewer-test.aai.switch.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>any</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">AAI Attribute Viewer Test</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">AAI Attribute Viewer Test</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="fr">AAI Attribute Viewer Test</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="it">AAI Attribute Viewer Test</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Entwicklungs- und Test-Resource</mdui:Description>
+ <mdui:Description xml:lang="en">Instance for Testing and Developing (Displays all available attributes of a user)</mdui:Description>
+ <mdui:Description xml:lang="fr">Présente tous les attributs d'un utilisateur pour tester et pour obtenir des renseignements.</mdui:Description>
+ <mdui:Description xml:lang="it">Ha tutti gli attributi di un utente per testare e per ottenere informazioni.</mdui:Description>
+ <mdui:InformationURL xml:lang="it">https://attribute-viewer.aai.switch.ch/?lang=it</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="en">https://attribute-viewer-test.aai.switch.ch/</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="fr">https://attribute-viewer.aai.switch.ch/?lang=fr</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="de">https://attribute-viewer.aai.switch.ch/?lang=de</mdui:InformationURL>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://attribute-viewer-test.aai.switch.ch/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attribute-viewer-test.aai.switch.ch/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://attribute-viewer-test.aai.switch.ch/Shibboleth.sso/SLO/SOAP"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attribute-viewer-test.aai.switch.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://attribute-viewer-test.aai.switch.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://attribute-viewer-test.aai.switch.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://attribute-viewer-test.aai.switch.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">AAI Attribute Viewer Test</ServiceName>
+ <ServiceName xml:lang="en">AAI Attribute Viewer Test</ServiceName>
+ <ServiceName xml:lang="fr">AAI Attribute Viewer Test</ServiceName>
+ <ServiceName xml:lang="it">AAI Attribute Viewer Test</ServiceName>
+ <ServiceDescription xml:lang="de">Entwicklungs- und Test-Resource</ServiceDescription>
+ <ServiceDescription xml:lang="en">Instance for Testing and Developing (Displays all available attributes of a user)</ServiceDescription>
+ <ServiceDescription xml:lang="fr">Présente tous les attributs d'un utilisateur pour tester et pour obtenir des renseignements.</ServiceDescription>
+ <ServiceDescription xml:lang="it">Ha tutti gli attributi di un utente per testare e per ottenere informazioni.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonCardUID" Name="urn:oid:2.16.756.1.2.5.1.1.12" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissLibraryPersonAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1023" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissLibraryPersonResidence" Name="urn:oid:2.16.756.1.2.5.1.1.1025" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStaffCategory" Name="urn:oid:2.16.756.1.2.5.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch1" Name="urn:oid:2.16.756.1.2.5.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch2" Name="urn:oid:2.16.756.1.2.5.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch3" Name="urn:oid:2.16.756.1.2.5.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyLevel" Name="urn:oid:2.16.756.1.2.5.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="homePostalAddress" Name="urn:oid:0.9.2342.19200300.100.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="isMemberOf" Name="urn:oid:1.3.6.1.4.1.5923.1.5.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonNickname" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrcid" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="pairwiseSubjectIdentifier" Name="urn:oasis:names:tc:SAML:attribute:pairwise-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="homePhone" Name="urn:oid:0.9.2342.19200300.100.1.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="subjectIdentifier" Name="urn:oasis:names:tc:SAML:attribute:subject-id" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="ASVZ" Name="urn:oid:2.16.756.1.2.5.1.1.1014" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="Shib-Custom-UserType" Name="urn:oid:2.16.756.1.2.5.1.1.1022" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwAbrKst" Name="urn:oid:2.16.756.1.2.5.1.1.1007" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwDetailedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1008" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwIDPerson" Name="urn:oid:2.16.756.1.2.5.1.1.1009" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwOeID" Name="urn:oid:2.16.756.1.2.5.1.1.1013" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwSapUserInfo" Name="urn:oid:2.16.756.1.2.5.1.1.1011" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwSapUserID" Name="urn:oid:2.16.756.1.2.5.1.1.1010" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwUPN" Name="urn:oid:2.16.756.1.2.5.1.1.1012" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="primaryGroupID" Name="urn:oid:1.3.6.1.4.1.7165.2.1.15" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDUsage1y" Name="urn:oid:2.16.756.1.2.5.1.1.1026" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAffiliationProfile" Name="urn:oid:2.16.756.1.2.5.1.1.1028" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssuranceLevel" Name="urn:oid:2.16.756.1.2.5.1.1.1027" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1029" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliationMail" Name="urn:oid:2.16.756.1.2.5.1.1.1031" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliationUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1032" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unibasChPublicId" Name="urn:oid:1.3.6.1.4.1.22865.10.1.1.93" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unibasChRoles" Name="urn:oid:1.3.6.1.4.1.22865.10.1.1.19" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="UniBEapplAuthorisation" Name="urn:oid:2.16.756.1.2.5.1.1.1000" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unige.ch-OuCode" Name="urn:oid:2.16.756.1.2.5.1.1.1004" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unilFacultePrincipale" Name="urn:oid:2.16.756.1.2.5.1.1.1006" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unilMemberOf" Name="urn:oid:2.16.756.1.2.5.1.1.1003" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uzhSapUserIdStaff" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.27" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uzhSapUserId" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="zhawDepartmentCode" Name="urn:oid:2.16.756.1.2.5.1.1.1015" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="zhawInstituteCode" Name="urn:oid:2.16.756.1.2.5.1.1.1016" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="zhawInstitute" Name="urn:oid:2.16.756.1.2.5.1.1.1017" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PROD-CURSUS/DONNEESPERSO tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/cursus/donneesperso/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PROD-CURSUS/DONNEESPERSO tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PROD-CURSUS/DONNEESPERSO test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/cursus/donneesperso/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/cursus/donneesperso/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/cursus/donneesperso/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/cursus/donneesperso/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/cursus/donneesperso/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/cursus/donneesperso/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/cursus/donneesperso/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/cursus/donneesperso/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/cursus/donneesperso/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PROD-CURSUS/DONNEESPERSO tst</ServiceName>
+ <ServiceDescription xml:lang="en">PROD-CURSUS/DONNEESPERSO test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- FHNW Moodle Restore Server -->
+ <EntityDescriptor entityID="https://moodle.restore.fhnw.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.fhnw.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.fhnw.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.fhnw.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">FHNW Moodle Restore Server</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Preparing Data Server for Backup Restores</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle.restore.fhnw.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle.restore.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle.restore.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://moodle.restore.fhnw.ch/Shibboleth.sso/SAML/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://moodle.restore.fhnw.ch/Shibboleth.sso/SAML/Artifact" index="5"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">FHNW Moodle Restore Server</ServiceName>
+ <ServiceDescription xml:lang="en">Preparing Data Server for Backup Restores</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.fhnw.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.fhnw.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.fhnw.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- zjeannino1 test resource -->
+ <EntityDescriptor entityID="https://zjeannino1.unige.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">zjeannino1 test resource</mdui:DisplayName>
+ <mdui:Description xml:lang="en">zjeannino1 test resource</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zjeannino1-mfa.unige.ch/rh/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zjeannino1-mfa.unige.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zjeannino1.unige.ch/rh/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://zjeannino1.unige.ch/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://zjeannino1-mfa.unige.ch/rh/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://zjeannino1-mfa.unige.ch/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://zjeannino1.unige.ch/rh/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://zjeannino1.unige.ch/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://zjeannino1-mfa.unige.ch/rh/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://zjeannino1-mfa.unige.ch/Shibboleth.sso/SAML2/ECP" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://zjeannino1.unige.ch/rh/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://zjeannino1.unige.ch/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">zjeannino1 test resource</ServiceName>
+ <ServiceDescription xml:lang="en">zjeannino1 test resource</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- testing SP's metadata -->
+ <EntityDescriptor entityID="https://vps463343.ovh.net/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">testing SP's metadata</mdui:DisplayName>
+ <mdui:Description xml:lang="en">testing SP's metadata service</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEIDCCAoigAwIBAgIJAL3eS+XOmh2hMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNVBAMTEXZwczQ2
+MzM0My5vdmgubmV0MB4XDTE3MTAwNjA0NDcyMloXDTIwMTAwNjA0NDcyMlowHDEaMBgGA1UEAxMR
+dnBzNDYzMzQzLm92aC5uZXQwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDtGyuKmZC6
+oYMljY4QgDsKVsCxd1wY/VdQBu3/FppUs9znqt6YaUvYHuwgXqgcpO7VasIWLNTqIEujKAHTQkLb
+yqnJMj57eXGS+Dl2vS3hhWAuJJSrxNXBAKp3BXPaduov9dsIQIniBVz4EZUK47Few7A1TCnRuiHe
+acV3rs2W7Nwmw/UoQh3c+tUepattLfhkkYBttuHXh3wrpIksCUHzvUc/klv1uGWj3helDaSm6Ol+
+WrlNV8ud7b6ggb2oAPnumcN9VeyvKGHEJsuMBvu8UOFZWeJvf1YKEUvIkrZ+5odIoVLaNPOsd7GT
+4+jDNYaRJ7xdXFqTfX+nf7hM1mEpLJAFn+bOOaj4/vU1FZLu5dfcZg5pA3v8mtl0hTmLPk3SdIRh
+G3JPI9EY0GjIh3kS2bhrXEU3LqG+tJdOZBohnF/dKgNIkrEiIzNWuCXMlntXZnYmVVM/z+dyZsAv
+zYWCvoxXaApQTJAigB9o2C1Axw45bCu6apIiZ8/GnXScg10CAwEAAaNlMGMwQgYDVR0RBDswOYIR
+dnBzNDYzMzQzLm92aC5uZXSGJGh0dHBzOi8vdnBzNDYzMzQzLm92aC5uZXQvc2hpYmJvbGV0aDAd
+BgNVHQ4EFgQUJW/sFOq5zY4ZkcbOKlW6vF1YxwAwDQYJKoZIhvcNAQELBQADggGBAMFSaFFPitR6
+pksdZGGaGj7DW24YcA2AdAewN7QsuawwQD1/ekaaREzYEOEui2spZjyKisLywBEiM6hztURxPoP1
+OhAGL8gm1vVbqRgSkkQxwaZHNUxJ25cpD6+R3vc2KS5krkBXAOGv2CWkLjoGLfvGmnjQ0BXrQdLb
+gT0kW7+o0KlPG3ewpZAQNaANoYZBWpTsQgxaxwh/SuMF7bYiQSnpJbcZLuAL4/wwzyPL/ctZKa4z
+qZYJ5IlVaTT3cjootYnF/OMLC2EFyodThOTJsdkhW11FaTJwx7KjWVcIyUR5xjftfQHw1TUSQtFr
+abrrFAjqIk3w+ui+B/9uvK1rc2rqVMw0kFSSqmWDRHQiHmQaCd9F8OxK34RT4Y9Ksw5r2oDzBO5T
+OeSdGhkV9TodMC5F4pnL42f8waCJqUEzsATDrnEjRNafPGR9Oaov76xRWZhH24m58/15PsWJa2pg
+DHWlrnrvz3Lnd5nlI8PHH6Q58p84i6/WrfvIFl660a7aMQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="http://vps463343.ovh.net/saml/SSO" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="http://vps463343.ovh.net/saml/SSO" index="2"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">testing SP's metadata</ServiceName>
+ <ServiceDescription xml:lang="en">testing SP's metadata service</ServiceDescription>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETHZ, Moodle OIS Test QSS -->
+ <EntityDescriptor entityID="https://moodle-test-qss.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ETHZ, Moodle OIS Test QSS</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Moodle QSS server for OIS integration</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle-test-qss.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle-test-qss.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle-test-qss.ethz.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ETHZ, Moodle OIS Test QSS</ServiceName>
+ <ServiceDescription xml:lang="en">Moodle QSS server for OIS integration</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- FHNW MIS Test System -->
+ <EntityDescriptor entityID="https://mis.test.adm.ds.fhnw.ch/saml2">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.fhnw.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.fhnw.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.fhnw.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">FHNW MIS Test System</mdui:DisplayName>
+ <mdui:Description xml:lang="en">FHNW MIS Test System</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mis.test.adm.ds.fhnw.ch/identity/saml2/Acs" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mis.test.adm.ds.fhnw.ch/saml2" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mis.test.adm.ds.fhnw.ch/saml2/Acs" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mis.test.adm.ds.fhnw.ch/identity/saml2/Acs" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mis.test.adm.ds.fhnw.ch/saml2" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://mis.test.adm.ds.fhnw.ch/saml2/Acs" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">FHNW MIS Test System</ServiceName>
+ <ServiceDescription xml:lang="en">FHNW MIS Test System</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.fhnw.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.fhnw.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.fhnw.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- UZH Test SP R22/001 -->
+ <EntityDescriptor entityID="https://idsapr22.lan.bap.uzh.ch/001/">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uzh.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="uzh.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uzh.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">UZH Test SP R22/001</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UZH Test SP R22/001</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idablue.uzh.ch:44324/sap/saml2/sp/acs/001" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://idablue.uzh.ch:44324/sap/saml2/sp/acs/001" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://idablue.uzh.ch:44324/sap/saml2/sp/acs/001" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">UZH Test SP R22/001</ServiceName>
+ <ServiceDescription xml:lang="en">UZH Test SP R22/001</ServiceDescription>
+ <RequestedAttribute FriendlyName="uzhSapUserIdStaff" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.27" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uzhSapUserId" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uzh.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">Universität Zürich TEST</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">University of Zurich TEST</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.uzh.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.uzh.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ZHdK go-dev2 R6 AAI Test -->
+ <EntityDescriptor entityID="https://go-dev2.zhdk.ch/CLX.Evento/R6/Authentication/SwissEduId">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>zhdk.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="zhdk.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ZHdK go-dev2 R6 AAI Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Evento Onlineanmeldung Development Instance 2</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://go-dev2.zhdk.ch/CLX.Evento/R6/Authentication/SwissEduId/Logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://go-dev2.zhdk.ch/CLX.Evento/R6/Authentication/SwissEduId/Acs" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ZHdK go-dev2 R6 AAI Test</ServiceName>
+ <ServiceDescription xml:lang="en">Evento Onlineanmeldung Development Instance 2</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">zhdk.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">ZHdK</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.zhdk.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-SERVICE/ALUMNI tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/service/alumni/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-SERVICE/ALUMNI tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-SERVICE/ALUMNI test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/service/alumni/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/service/alumni/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/service/alumni/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/service/alumni/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/service/alumni/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/service/alumni/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/service/alumni/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/service/alumni/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/service/alumni/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/service/alumni/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/service/alumni/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/service/alumni/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/service/alumni/Shibboleth.sso/SAML2/ECP" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/service/alumni/Shibboleth.sso/SAML2/ECP" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/service/alumni/Shibboleth.sso/SAML2/ECP" index="15"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-SERVICE/ALUMNI tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-SERVICE/ALUMNI test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Citavi Web -->
+ <!-- Federation Partner Resource of Partner: Swiss Academic Software GmbH (https://www.citavi.com/) -->
+ <EntityDescriptor entityID="https://citaviweb.citavi.com/test-shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://www.citavi.com/support" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Citavi Web</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Citavi Web</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://citaviweb.citavi.com/identity/AuthServices/Acs" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://localhost:444/identity/AuthServices/Acs" index="2"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Citavi Web</ServiceName>
+ <ServiceDescription xml:lang="en">Citavi Web</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">citavi.com</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Swiss Academic Software GmbH</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.citavi.com/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Hepl_SP_Test -->
+ <EntityDescriptor entityID="https://aai-login-int.hepl.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>hepl.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="hepl.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">hepl.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://helpdesk.hepl.ch" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Hepl_SP_Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Service provider test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEMDCCApigAwIBAgIJAOBq+Xx5vzEYMA0GCSqGSIb3DQEBCwUAMCAxHjAcBgNV
+BAMTFWFhaS1sb2dpbi1pbnQuaGVwbC5jaDAeFw0xOTAxMjgxNjA4MDBaFw0yMjAx
+MjcxNjA4MDBaMCAxHjAcBgNVBAMTFWFhaS1sb2dpbi1pbnQuaGVwbC5jaDCCAaIw
+DQYJKoZIhvcNAQEBBQADggGPADCCAYoCggGBAL1e+Atl6ZfmHV/FxxhVQJ21zDXJ
+RAWsVU2EJ2fxHkihP0DSh0oyR59UnLIg/O0s2qEEpp4mmHuGR/lmUuuHepPFP6Xo
+jK4u9FErlopWO0L2Z0zkRbRc04lLoq9ZBa8VaBZ8oJQoVLL5rVK6wz0AwGzNzjZH
+DsT3eQVAYRrw1qlLIFn1pgL0rE2ctetC5fYPQZdj/FbGYVsruskt37w/Vieg4Pak
+FratqFN/lovNCEONGThhh3E60RhRpm7sqL+3L0+unD9nj9mo9aP1rXAyx48NKeqD
+jklSGlAuhfwDbZTIxxOhNEe7/vWcRQXeWi00daCQZ4E+4Rhtyq+oC1p+eg9fiZVx
+p2yQ/ZJPaC5AB+RUov98sJ0RqWZ5b8LZys8LBm7lb8tFPPEUs2A85kON50Votsic
+WVUdPNqA6E6jtHDoCWB4/CTUagI1d6NfXmxemY2yJxN4m1S7QmlQvxJQEEvvrJ2F
+QZnD+HS+jU1TkfQcXI4FKKtjfvXVw/TEIpNkwwIDAQABo20wazBKBgNVHREEQzBB
+ghVhYWktbG9naW4taW50LmhlcGwuY2iGKGh0dHBzOi8vYWFpLWxvZ2luLWludC5o
+ZXBsLmNoL3NoaWJib2xldGgwHQYDVR0OBBYEFJOoBdyhDWLpQayqCvD7zSTYmmoK
+MA0GCSqGSIb3DQEBCwUAA4IBgQBaSkJHRCsqQh0fGQ8No9rwNAmU8GpfLez+NIgY
+QtuN89uNmHySmVF+R/fBTquedX3vlj98XvPnOPrgOel2Sm3WSt9rQy1SnrOuefJU
+b90CB2bR02yOyMvpmwltElY/QpXRkahVC+iEVda8fDZxZT7SFwe90/t3kY7uB4u/
+hasmuB3bdhCepOLCKMpKxUV1spnm2D/GYTlAj5f6N26MtrCyfzHY6RJ7mA/9h1YB
+oMx3jimgS7esztHrpyorL/tpvC99LBVjZ/J0xZDzNJoOrzUrgDLqIxrZfZNFt8gK
+gjp6Yk79zFxn7qLzbjIFDiCkeP5C/qv9bOkvXX/vksUCqELY30Z4tYSzuGJLiPkH
+8qmvichiEiYXW4i3hmepHFkJNRaEBRWksr7EMgkVwwegMUY8dP5aTJBtt90mdgq6
+FN38AhCRFlhO1YDFa9j6RGM//zjQD04OJKLnXDuVPw/JChHJgX6Xwo0x2hxCSjxI
+OlJomeJZUEuUDXYkhm0sU57J6Yc=
+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-login-int.hepl.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aai-login-int.hepl.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://aai-login-int.hepl.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Hepl_SP_Test</ServiceName>
+ <ServiceDescription xml:lang="en">Service provider test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">hepl.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">HEP Vaud - TEST - Haute école pédagogique du canton de Vaud</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">HEP Vaud - TEST - Haute école pédagogique du canton de Vaud</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hepl.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.hepl.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Marugoto Test Environment -->
+ <EntityDescriptor entityID="https://marugoto.s3it.uzh.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uzh.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="uzh.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://github.com/uzh/marugoto/issues" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Marugoto Test Environment</mdui:DisplayName>
+ <mdui:Description xml:lang="en">eLearning platform Marugoto</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://marugoto.s3it.uzh.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://marugoto.s3it.uzh.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://marugoto.s3it.uzh.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Marugoto Test Environment</ServiceName>
+ <ServiceDescription xml:lang="en">eLearning platform Marugoto</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uzh.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">Universität Zürich TEST</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">University of Zurich TEST</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.uzh.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.uzh.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SAP Development System -->
+ <EntityDescriptor entityID="https://idape1.uzh.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uzh.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="uzh.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uzh.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">SAP Development System</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Reverse Proxy for SAP development systems</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIIdjCCB16gAwIBAgIUVFPYZ3xDBoDnHAXuyaCUxVoj0WUwDQYJKoZIhvcNAQEL
+BQAwSTELMAkGA1UEBhMCQk0xGTAXBgNVBAoTEFF1b1ZhZGlzIExpbWl0ZWQxHzAd
+BgNVBAMTFlF1b1ZhZGlzIEVWIFNTTCBJQ0EgRzEwHhcNMTgwMjE5MDkwNzAyWhcN
+MjAwMjE5MDkxNjAwWjCB5jETMBEGCysGAQQBgjc8AgEDEwJDSDEYMBYGCysGAQQB
+gjc8AgECDAdadWVyaWNoMRowGAYDVQQPDBFHb3Zlcm5tZW50IEVudGl0eTETMBEG
+A1UEBRMKMTgzMi0wOS0yODELMAkGA1UEBhMCQ0gxEDAOBgNVBAgMB1p1ZXJpY2gx
+EDAOBgNVBAcMB1p1ZXJpY2gxHTAbBgNVBAoMFFVuaXZlcnNpdGFldCBadWVyaWNo
+MRwwGgYDVQQLDBNaZW50cmFsZSBJbmZvcm1hdGlrMRYwFAYDVQQDDA1pZGFwZTEu
+dXpoLmNoMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0g/KOcyWyUIv
+Q6HiNCfwlC1b4zuKSxxD8cc39aOdyiF0ToUNnTWiXXebGHpvABiQ5Bie8YykpaTb
+cvq4jVNuc9YMo5kfEv2/f/yVmOmaVdrGLCXTDq6ioyPMhxJdDT56nUov7kE1i3AE
+w1GaaN1JO0mPF4igRu/TYfpiC8iTn5ZJNcPiReHkMvSq+jihK0XH2XMpbGok8MTj
+REKqZ81xke0y8+WQP/yxZ4XoHgrYk3epI9/hm57UwopnaT9aLwXUbxAv34fgVomb
+k0L68LrYw322927r09XalsBw3FYCZLHtNlGDgvQiVgSK+RMpxN0waeGol5iRjowa
+52Uq5bHUaQIDAQABo4IEtjCCBLIwdwYIKwYBBQUHAQEEazBpMDgGCCsGAQUFBzAC
+hixodHRwOi8vdHJ1c3QucXVvdmFkaXNnbG9iYWwuY29tL3F2ZXZzc2wxLmNydDAt
+BggrBgEFBQcwAYYhaHR0cDovL2V2Lm9jc3AucXVvdmFkaXNnbG9iYWwuY29tMB0G
+A1UdDgQWBBRMo5efySDyEAx2vwFGeHk/kYOn2TAMBgNVHRMBAf8EAjAAMB8GA1Ud
+IwQYMBaAFFVYhs66fHZOmROpD9Nsn8L10zzjMFoGA1UdIARTMFEwRgYMKwYBBAG+
+WAACZAECMDYwNAYIKwYBBQUHAgEWKGh0dHA6Ly93d3cucXVvdmFkaXNnbG9iYWwu
+Y29tL3JlcG9zaXRvcnkwBwYFZ4EMAQEwOwYDVR0fBDQwMjAwoC6gLIYqaHR0cDov
+L2NybC5xdW92YWRpc2dsb2JhbC5jb20vcXZldnNzbDEuY3JsMA4GA1UdDwEB/wQE
+AwIFoDAdBgNVHSUEFjAUBggrBgEFBQcDAgYIKwYBBQUHAwEwggElBgNVHREEggEc
+MIIBGIINaWRhcGUxLnV6aC5jaIIOaWRhZ3JhdS51emguY2iCDWlkYWl0ZS51emgu
+Y2iCFWFwcGxpY2F0aW9uLXNiLnV6aC5jaIITYmV3ZXJidW5nLXNiLnV6aC5jaIIR
+Y291cnNlcy1zYi51emguY2iCG2RlY2lzaW9ud29ya2JlbmNoLXNiLnV6aC5jaIIW
+Zm9ybWRlc2lnbmVyLXNiLnV6aC5jaIISaWRvbWVuaS1kZXYudXpoLmNoghNsYXVu
+Y2hwYWQtc2IudXpoLmNoghdzdGFmZnNlcnZpY2VzLXNiLnV6aC5jaIIZc3R1ZGVu
+dHNlcnZpY2VzLXNiLnV6aC5jaIIXdGVzdC12b3JsZXN1bmdlbi51emguY2gwggH2
+BgorBgEEAdZ5AgQCBIIB5gSCAeIB4AB2AKS5CZC0GFgUh7sTosxncAo8NZgE+Rvf
+uON3zQ7IDdwQAAABYa1aKOUAAAQDAEcwRQIhAMWy5tR2L6lDkMgNw66VHQFxzunG
+6pm80QVCmAxte0NpAiAiNNKblYND0uK45oYNuJ59BYvmWrjxeG6oZPaWEmPD3gB2
+ALvZ37wfinG1k5Qjl6qSe0c4V5UKq1LoGpCWZDaOHtGFAAABYa1aKLkAAAQDAEcw
+RQIgBREmlUiAgur7hi3IBlOQXkKeudZZgf6LWFKLRbzxiuoCIQCbfkhpTIRAzlg0
+rk1BWVtN8mZ8ACBfA/4y+Huyb9DGgAB1AG9Tdqwx8DEZ2JkApFEV/3cVHBHZAsEA
+KQaNsgiaN9kTAAABYa1aKpYAAAQDAEYwRAIgbpUeciOm3cURwvd/o4gMPm0t0Iux
+rx/EnoP4i6p8VUcCIBQAMVIoHE0QTO/JntcgKiEwvpKo0e2yTGbIWQRdJ64VAHcA
+VhQGmi/XwuzT9eG9RLI+x0Z2ubyZEVzA75SYVdaJ0N0AAAFhrVoq0wAABAMASDBG
+AiEAjMMpLk0Ziwt/oLT3amJPoNVCDpmDcdS7f3a2Z5DfuVYCIQCCtbNQn59HnTWS
+4C1tNNOfPd1dHA8cb5UKfP67pJSKhjANBgkqhkiG9w0BAQsFAAOCAQEAK2Q4nbch
++4eWw0IaY/wdTLv802wAAjqztBcBHWtUjI4bJGsFr1NO8lcPbLjgQWKiQk1ZTgxL
+KeJhix/U60+7FKkyChJpQMTJae7LqCmmXStFUTrUQdRW/Ndsqq6NsIgPly9jN8m1
+PfjoXhG8sZmbHTFvXcyG0fGES/AlII6cGT2PxQEtEYAKN895qRbDt1OQX50VmJ3T
+Gsc9XU6OBfu/S2Hn13KUQwyvhykI05i97hKmm6VzinaxJ4wpYOzDKotUg/6eFvL5
+pwq4guMsm4GH6/GL6deojaTMJALgklpFPN29c5hXkxRO1OFH7J+XtLkdJcO1gQOH
+1jNwvcBLYOqT2w==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idape1.uzh.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idape1.uzh.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://idape1.uzh.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://idape1.uzh.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://idape1.uzh.ch/Shibboleth.sso/SAML/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://idape1.uzh.ch/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">SAP Development System</ServiceName>
+ <ServiceDescription xml:lang="en">Reverse Proxy for SAP development systems</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uzhSapUserIdStaff" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.27" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uzhSapUserId" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uzh.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">Universität Zürich TEST</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">University of Zurich TEST</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.uzh.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.uzh.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- studentservices-test -->
+ <EntityDescriptor entityID="https://idsapq22.lan.bap.uzh.ch/">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uzh.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="uzh.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uzh.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">studentservices-test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UZH Student Services Test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://studentservices-test.uzh.ch/sap/saml2/sp/acs/001" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://studentservices-test.uzh.ch/sap/saml2/sp/acs/001" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://studentservices-test.uzh.ch/sap/saml2/sp/acs/001" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">studentservices-test</ServiceName>
+ <ServiceDescription xml:lang="en">UZH Student Services Test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uzhSapUserIdStaff" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.27" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uzhSapUserId" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uzh.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">Universität Zürich TEST</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">University of Zurich TEST</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.uzh.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.uzh.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- I-Markt -->
+ <EntityDescriptor entityID="https://imarkt.sook.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.fhnw.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.fhnw.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">I-Markt</mdui:DisplayName>
+ <mdui:Description xml:lang="en">I-Markt: Die Platform für Studierende und die Region</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="http://imarkt.sook.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://imarkt.sook.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="http://imarkt.sook.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://imarkt.sook.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="http://imarkt.sook.ch/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://imarkt.sook.ch/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">I-Markt</ServiceName>
+ <ServiceDescription xml:lang="en">I-Markt: Die Platform für Studierende und die Region</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.fhnw.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.fhnw.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.fhnw.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-CURSUS/EASSESSMENT CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/cursus/eassessment/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-CURSUS/EASSESSMENT CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-CURSUS/EASSESSMENT CLUSTER test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/cursus/eassessment/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/cursus/eassessment/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/cursus/eassessment/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/cursus/eassessment/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/cursus/eassessment/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/cursus/eassessment/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/cursus/eassessment/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/cursus/eassessment/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/cursus/eassessment/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-CURSUS/EASSESSMENT CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-CURSUS/EASSESSMENT CLUSTER test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- AAI Viewer Test Interfederation Test -->
+ <EntityDescriptor entityID="https://attribute-viewer-test.aai.switch.ch/interfederation-test/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="http://www.switch.ch/aai/support/help" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">AAI Viewer Test Interfederation Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used to test the interfederation readiness of SWITCHaai Identity Providers.</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,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</mdui:Logo>
+ <mdui:Logo height="60" width="80">data:image/png;base64,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</mdui:Logo>
+ <mdui:InformationURL xml:lang="en">https://aai-viewer.switch.ch/interfederation-test/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://aai-viewer.switch.ch/interfederation-test/privacy-statement.html</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://attribute-viewer-test.aai.switch.ch/interfederation-test/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attribute-viewer-test.aai.switch.ch/interfederation-test/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://attribute-viewer-test.aai.switch.ch/interfederation-test/Shibboleth.sso/SLO/SOAP"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://attribute-viewer-test.aai.switch.ch/interfederation-test/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://attribute-viewer-test.aai.switch.ch/interfederation-test/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://attribute-viewer-test.aai.switch.ch/interfederation-test/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">AAI Viewer Test Interfederation Test</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used to test the interfederation readiness of SWITCHaai Identity Providers.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-COMMUNICATION/FEEDS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/communication/feeds/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-COMMUNICATION/FEEDS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-COMMUNICATION/FEEDS test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/communication/feeds/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/communication/feeds/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/communication/feeds/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/communication/feeds/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/communication/feeds/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/communication/feeds/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/communication/feeds/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/communication/feeds/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/communication/feeds/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-COMMUNICATION/FEEDS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-COMMUNICATION/FEEDS test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Groups-dev -->
+ <EntityDescriptor entityID="https://groups-dev.iheid.loc/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>graduateinstitute.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="graduateinstitute.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">graduateinstitute.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Groups-dev</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Groups-dev</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIELDCCApSgAwIBAgIJAPTrZ8i7ejj2MA0GCSqGSIb3DQEBCwUAMB8xHTAbBgNV
+BAMTFGdyb3Vwcy1kZXYuaWhlaWQubG9jMB4XDTE5MDcyMjEzMTExNloXDTIyMDcy
+MTEzMTExNlowHzEdMBsGA1UEAxMUZ3JvdXBzLWRldi5paGVpZC5sb2MwggGiMA0G
+CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDZG4hzthRdApSg9hRkRJNSbA/WBpFG
+dyWJwGbU7C2AqmdRxjKrt4d68Htm/+4AYwmZfE2z/ErjBI42xetnr8SVFAb+acjv
+4bQnYr0zVZ8Hr5/9vDxWfGyXwz9Wj/k6bXzaSmnwEFig/glQ1kKWeEEn83vYK61W
+Idgf4wuOPE+dPLVAte8ZZ/l2dvb24DUAf7VXk87TS+gD7pgnRzVj7h3pItf9jWoJ
+jAaJADV12cKrMgJmm3o58gmyNxLl8vQgDbBHQ+oGsN1zQIcusWBupjPf6q/5gw/u
+HDYx2LoIU6Qx1viVu/Z0rpWc2QZT03ZGPx+zjnFV04IX1ulIAWkXXgguXppMCfEF
+JttLCGTapqEwRMnIAvtb/BI/jmPr5ountk7uMAU17tcsUQfM0hJviZvvjP/wImZc
+cu5aXLiYoCD5H8zyEOt6ZH+1czB92Xa4txdHLENC/RF0TDbaSqpVvZeKdDAopeFn
+OlxvSU8wTqB/5HcsE/7KH96OMHOWWt+lx7MCAwEAAaNrMGkwSAYDVR0RBEEwP4IU
+Z3JvdXBzLWRldi5paGVpZC5sb2OGJ2h0dHBzOi8vZ3JvdXBzLWRldi5paGVpZC5s
+b2Mvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU7sbAsDk5ypYe8ayAOqkJw4BzVT4wDQYJ
+KoZIhvcNAQELBQADggGBAI1O/kdt5k9VJ9irqEPx2kUvOqIwWrfYcqNCPesdQPSd
+U5GkpWFv2KEu8PE1yMfurd3/iWgnaT9C4QJFlkFaHAj9GKFJpzV2GDyMu+l0J/UE
+HIHnKKJQyFOhM+f3CG0jKAxKwxduB4S6Yp/q8RS4sleqOa+0lpjcP9Bm7SoTKg/t
+4F/8tkyvN8ifzOsjypKTf9NY/SJ7PknVL6OMdpiL8rnxfyvMz6SBoVAH+RMHlL++
+2TgGTMW5YwLE58Hdg8uF5DoxS7Cx07qhdqWAokoaqW70rN7nmvVCp+gEBqlQnvB0
+mTJtnM5Yy9+frp+Do7xMyHfHDEDnmCPSbEI+vjpqJf05TUOJ5b7iVImTZvZfuDne
+h4+aeFqKGvvhhseAEsFKyUS4k8C2x84PTYq49sP4Wc5Vcm2GPGYC4JKMm5FHvuzH
+fCN1vDMr2WOvf2VGHijXXNFA1VWRqYgvD+KMPUTEiOaXKGigwtXldA4+H2pBX4gy
+EuctHkWnSZqmeikomk288g==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://groups-dev.iheid.loc/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://groups-dev.iheid.loc/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://groups-dev.iheid.loc/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Groups-dev</ServiceName>
+ <ServiceDescription xml:lang="en">Groups-dev</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">graduateinstitute.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Graduate Institute - Test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.graduateinstitute.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Dhcp-dev -->
+ <EntityDescriptor entityID="https://dhcp-dev.iheid.loc/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>graduateinstitute.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="graduateinstitute.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">graduateinstitute.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Dhcp-dev</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Dhcp-dev</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEJDCCAoygAwIBAgIJANKoEqZewighMA0GCSqGSIb3DQEBCwUAMB0xGzAZBgNV
+BAMTEmRoY3AtZGV2LmloZWlkLmxvYzAeFw0xOTA3MjIxMzEwNTJaFw0yMjA3MjEx
+MzEwNTJaMB0xGzAZBgNVBAMTEmRoY3AtZGV2LmloZWlkLmxvYzCCAaIwDQYJKoZI
+hvcNAQEBBQADggGPADCCAYoCggGBALvBcp261LqAImDFOoo2d4SdORt6roHCaaFr
+mIQqqwP7r6vgtJXblCDiwSAW0LzOCWvjMx1FyHbiLQK+KuKVQDaA6AVGjJi2O8HX
+ESIYj4XRSkUmOrx3p7GipGWTXitiIRKd0p1d0R+I+yZ2fohaKD/ezyr27quBBFZ6
+QyIcccAC6SRNfpZtXRA2CSi8hbGp0wml6fw80H6Bgd2rt6ZyYCtYf82pq0S4F1Sc
+tn9hYsXPbyLfBuXou9hXAvSMBPerzZkYLEL5U9z1IiV7rZV1fr3mgJh/25g3L2To
+fuPubGL/5GDSIhVfe9FmGCg0tnprWSPJQjZnLGfkR6cIUGMuqq6b4h9HHf56lk+4
+lX5ptwgZ14xY0nKnmw2J7s9PcyLt+3BmvDfcJ/rcs9xiEe6bh5/kzXYkF7XS8iHm
+jorRCFhId6zG3D0bU9RGOum8xjoElRGHVj8+ay+Hee5TIo4PQG1xRkZpJ3RTDwHW
+FO87gdTdSCkZrjaIHXtYXiYDlRaiZQIDAQABo2cwZTBEBgNVHREEPTA7ghJkaGNw
+LWRldi5paGVpZC5sb2OGJWh0dHBzOi8vZGhjcC1kZXYuaWhlaWQubG9jL3NoaWJi
+b2xldGgwHQYDVR0OBBYEFIaLizdCqSATYixIvrRYbtACyEW9MA0GCSqGSIb3DQEB
+CwUAA4IBgQB8xPxABFIcHaQxyPBiDoafoTdqgHrLm2VmdNFg0u8P7dyjwjZZUov2
+NCrXX/D84U2OjhYzKKXRhg08azBC1HMyaz4vKYPfIVOHpMiQ+lHzzIWBR+/Gmgli
+ryUmFQy7euE+FvsDXsxZ+5YWMgQC3oEtEo2dZpiMNWM8Y/yBrBow470r/3ILqGg1
+iZgCdDzPAbUNfBNwSRt5lVUXEc1XAs+uQBb3A4CwATXIxr7CAyQ2pRkH0G8wJ1ax
+2JLStPlTcNK3J4fb98GavG2FXuLmLghuEOCf4E0hLzHAKW+zHEo23NMRx/49qrPG
+Be5m+OZWmxCfqXdpKTYBEfAhUi6njnWu5M64wlfg6IcP8x2YGpau8Ixe+0exQ3lt
+vVDAtfxe4y+8wd37ciOEudU79lK15R8LighYuYvkupwcaPbiuf9NNK0sO2m94LT+
+KsGnfTg7LnjNacAYu5z0gupElA874HHhJsdZwdzNKPCs8dCjaxJmzHMUOfmp17cV
+g86L4u+cn8U=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dhcp-dev.iheid.loc/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dhcp-dev.iheid.loc/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dhcp-dev.iheid.loc/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Dhcp-dev</ServiceName>
+ <ServiceDescription xml:lang="en">Dhcp-dev</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">graduateinstitute.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Graduate Institute - Test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.graduateinstitute.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Activate-dev -->
+ <EntityDescriptor entityID="https://activate-dev.graduateinstitute.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>graduateinstitute.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="graduateinstitute.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">graduateinstitute.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Activate-dev</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Activate-dev</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://activate-dev.graduateinstitute.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://activate-dev.graduateinstitute.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://activate-dev.graduateinstitute.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Activate-dev</ServiceName>
+ <ServiceDescription xml:lang="en">Activate-dev</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">graduateinstitute.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Graduate Institute - Test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.graduateinstitute.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- dev swissubase openshift -->
+ <EntityDescriptor entityID="https://dev.swissubase.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">dev swissubase openshift</mdui:DisplayName>
+ <mdui:Description xml:lang="en">dev swissubase openshift</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev.swissubase.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dev.swissubase.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dev.swissubase.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">dev swissubase openshift</ServiceName>
+ <ServiceDescription xml:lang="en">dev swissubase openshift</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- FHNW STS DEV -->
+ <EntityDescriptor entityID="https://sts.dev.fhnw.ch/saml2">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.fhnw.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.fhnw.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.fhnw.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">FHNW STS DEV</mdui:DisplayName>
+ <mdui:Description xml:lang="en">WS-Federation DEV implementation with IdentityServer3</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sts.dev.fhnw.ch/identity/logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sts.dev.fhnw.ch/identity/AuthServices/eduid-unsolicited" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sts.dev.fhnw.ch/identity/AuthServices/saml2/eduid/Acs" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sts.dev.fhnw.ch/identity/AuthServices/saml2/fhnw/Acs" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sts.dev.fhnw.ch/identity/AuthServices/eduid-unsolicited" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sts.dev.fhnw.ch/identity/AuthServices/saml2/eduid/Acs" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sts.dev.fhnw.ch/identity/AuthServices/saml2/fhnw/Acs" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">FHNW STS DEV</ServiceName>
+ <ServiceDescription xml:lang="en">WS-Federation DEV implementation with IdentityServer3</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwDetailedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1008" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwIDPerson" Name="urn:oid:2.16.756.1.2.5.1.1.1009" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.fhnw.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.fhnw.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.fhnw.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- FHNW STS TEST -->
+ <EntityDescriptor entityID="https://sts.test.fhnw.ch/saml2">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.fhnw.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.fhnw.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.fhnw.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">FHNW STS TEST</mdui:DisplayName>
+ <mdui:Description xml:lang="en">WS-Federation TEST implementation with IdentityServer3</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sts.test.fhnw.ch/identity/logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sts.test.fhnw.ch/identity/AuthServices/eduid-unsolicited" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sts.test.fhnw.ch/identity/AuthServices/saml2/eduid/Acs" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sts.test.fhnw.ch/identity/AuthServices/saml2/fhnw/Acs" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sts.test.fhnw.ch/identity/AuthServices/eduid-unsolicited" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sts.test.fhnw.ch/identity/AuthServices/saml2/eduid/Acs" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sts.test.fhnw.ch/identity/AuthServices/saml2/fhnw/Acs" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">FHNW STS TEST</ServiceName>
+ <ServiceDescription xml:lang="en">WS-Federation TEST implementation with IdentityServer3</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwDetailedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1008" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwIDPerson" Name="urn:oid:2.16.756.1.2.5.1.1.1009" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.fhnw.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.fhnw.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.fhnw.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-TEC/COMMON-DEMO tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/tec/common-demo/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-TEC/COMMON-DEMO tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-TEC/COMMON-DEMO test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/tec/common-demo/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/tec/common-demo/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/tec/common-demo/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/tec/common-demo/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/tec/common-demo/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/tec/common-demo/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/tec/common-demo/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/tec/commondemo/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/tec/common-demo/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-TEC/COMMON-DEMO tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-TEC/COMMON-DEMO test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-TEC/ORISIS tst -->
+ <EntityDescriptor entityID="https://wwwot.unige.ch/tec/orisis/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-TEC/ORISIS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-TEC/ORISIS test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/tec/orisis/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/tec/orisis/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/tec/orisis/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/tec/orisis/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/tec/orisis/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/tec/orisis/Shibboleth.sso/SAML2/POST" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwot.intranet.unige.ch/tec/orisis/Shibboleth.sso/SAML2/POST" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwot.unige.ch/tec/orisis/Shibboleth.sso/SAML2/POST" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/tec/orisis/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/tec/orisis/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/tec/orisis/Shibboleth.sso/SAML2/Artifact" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/tec/orisis/Shibboleth.sso/SAML2/Artifact" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/tec/orisis/Shibboleth.sso/SAML2/Artifact" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/tec/orisis/Shibboleth.sso/SAML2/Artifact" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwot.intranet.unige.ch/tec/orisis/Shibboleth.sso/SAML2/Artifact" index="15"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwot.unige.ch/tec/orisis/Shibboleth.sso/SAML2/Artifact" index="16"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/tec/orisis/Shibboleth.sso/SAML2/ECP" index="17"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/tec/orisis/Shibboleth.sso/SAML2/ECP" index="18"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/tec/orisis/Shibboleth.sso/SAML2/ECP" index="19"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/tec/orisis/Shibboleth.sso/SAML2/ECP" index="20"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/tec/orisis/Shibboleth.sso/SAML2/ECP" index="21"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/tec/orisis/Shibboleth.sso/SAML2/ECP" index="22"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwot.intranet.unige.ch/tec/orisis/Shibboleth.sso/SAML2/ECP" index="23"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwot.unige.ch/tec/orisis/Shibboleth.sso/SAML2/ECP" index="24"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-TEC/ORISIS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-TEC/ORISIS test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- TalentWerk Demo -->
+ <!-- Federation Partner Resource of Partner: TalentWerk AG (http://www.talentwerk.ch/) -->
+ <EntityDescriptor entityID="https://italent.talentwerk.ch/shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="http://talentwerk.ch/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">TalentWerk Demo</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">TalentWerk Demo</mdui:DisplayName>
+ <mdui:Description xml:lang="de">iTalent von TalentWerk, die Karriereplattform - Testumgebung</mdui:Description>
+ <mdui:Description xml:lang="en">iTalent von TalentWerk, die Karriereplattform - Testumgebung</mdui:Description>
+ <mdui:InformationURL xml:lang="en">http://talentwerk.ch/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">http://talentwerk.ch/</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://italent.talentwerk.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://italent.talentwerk.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://italent.talentwerk.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">TalentWerk Demo</ServiceName>
+ <ServiceName xml:lang="en">TalentWerk Demo</ServiceName>
+ <ServiceDescription xml:lang="de">iTalent von TalentWerk, die Karriereplattform - Testumgebung</ServiceDescription>
+ <ServiceDescription xml:lang="en">iTalent von TalentWerk, die Karriereplattform - Testumgebung</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">talentwerk.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">TalentWerk AG</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.talentwerk.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-SERVICE/EXOTAX CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/service/social/exotaxadmin/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-SERVICE/EXOTAX CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-SERVICE/SOCIAL/EXOTAXADMIN/ CLUS tst</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/service/social/exotaxadmin/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/service/social/exotaxadmin/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/service/social/exotaxadmin/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/service/social/exotaxadmin/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/service/social/exotaxadmin/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/service/social/exotaxadmin/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/service/social/exotaxadmin/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/service/social/exotaxadmin/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/service/social/exotaxadmin/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/service/social/exotaxadmin/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/service/social/exotaxadmin/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/service/social/exotaxadmin/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/service/social/exotaxadmin/Shibboleth.sso/SAML2/ECP" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/service/social/exotaxadmin/Shibboleth.sso/SAML2/ECP" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/service/social/exotaxadmin/Shibboleth.sso/SAML2/ECP" index="15"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-SERVICE/EXOTAX CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-SERVICE/SOCIAL/EXOTAXADMIN/ CLUS tst</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETH course portal QSS -->
+ <EntityDescriptor entityID="https://www.coursereg-qss.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">ETH Kursportal QSS</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">ETH course portal QSS</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Registrierungsportal für Kurse, Seminare und Kolloquien der ETH - QSS (Schulungssystem)</mdui:Description>
+ <mdui:Description xml:lang="en">Registration portal for courses, seminars and colloquia at ETH - QSS (Training environment)</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.coursereg-qss.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.coursereg-qss.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.coursereg-qss.ethz.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">ETH Kursportal QSS</ServiceName>
+ <ServiceName xml:lang="en">ETH course portal QSS</ServiceName>
+ <ServiceDescription xml:lang="de">Registrierungsportal für Kurse, Seminare und Kolloquien der ETH - QSS (Schulungssystem)</ServiceDescription>
+ <ServiceDescription xml:lang="en">Registration portal for courses, seminars and colloquia at ETH - QSS (Training environment)</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-INFORMATION/APPW CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/information/appw/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-INFORMATION/APPW CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-INFORMATION/APPW CLUS test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/information/appw/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/information/appw/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/information/appw/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/information/appw/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/information/appw/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/information/appw/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/information/appw/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/information/appw/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/information/appw/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-INFORMATION/APPW CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-INFORMATION/APPW CLUS test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-BDI CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/bdi/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-BDI CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-BDI CLUS test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/bdi/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/bdi/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/bdi/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/bdi/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/bdi/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/bdi/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/bdi/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/bdi/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/bdi/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/bdi/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/bdi/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/bdi/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/bdi/Shibboleth.sso/SAML2/ECP" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/bdi/Shibboleth.sso/SAML2/ECP" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/bdi/Shibboleth.sso/SAML2/ECP" index="15"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-BDI CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-BDI CLUS test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-SERVICE/EXOTAXETU CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/service/social/exotaxetu/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-SERVICE/EXOTAXETU CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-SERVICE/EXOTAXETU CLUS test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/service/social/exotaxetu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/service/social/exotaxetu/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/service/social/exotaxetu/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/service/social/exotaxetu/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/service/social/exotaxetu/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/service/social/exotaxetu/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/service/social/exotaxetu/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/service/social/exotaxetu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/service/social/exotaxetu/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-SERVICE/EXOTAXETU CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-SERVICE/EXOTAXETU CLUS test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Ringier Axel Springer Schweiz AG -->
+ <EntityDescriptor entityID="https://switchaai.vollmilch.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://switchaai.vollmilch.ch/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Ringier Axel Springer Schweiz AG</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The purpose of this service is to allow students to subscribe to Ringier Axel Springer products.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://192.168.1.83/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://switchaai.vollmilch.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://192.168.1.83/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://switchaai.vollmilch.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://192.168.1.83/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://switchaai.vollmilch.ch/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Ringier Axel Springer Schweiz AG</ServiceName>
+ <ServiceDescription xml:lang="en">The purpose of this service is to allow students to subscribe to Ringier Axel Springer products.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- edu-ID Test Account Management -->
+ <EntityDescriptor entityID="https://test.eduid.ch/web/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.eduid.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.eduid.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">edu-ID Kontoverwaltung</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">edu-ID Test Account Management</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="fr">Gestion du Compte edu-ID</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Aktualisiere und erweitere dein edu-ID Benutzerkonto.</mdui:Description>
+ <mdui:Description xml:lang="en">Update and extend your edu-ID account.</mdui:Description>
+ <mdui:Description xml:lang="fr">Mettez à jour votre compte edu-ID.</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,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</mdui:Logo>
+ <mdui:Logo height="60" width="80">data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAFAAAAA8CAYAAADxJz2MAAAPOElEQVR4nOxaeVyMWx+fslUkkrJnSVS2ri1cOy8u13Kv5dqyhKYmLUpFEmWXJVKWRLK0kC1xhYREdSMqJSEppWjTvjzv8z3TM8Z4ZvhcMe+8H398PzXP2X7ne875nd9yOBRFcX7i30PqAsg6pC6ArEPqAsg6pC6ArEPqAsg6pC6ArEPqAsg6pC6ArEPqAsg6pC6ArOOTH48SM3p6HbtjxLU55anceUVhY02rD0ssjx/Ct4TkN7pMvdhHr/Q9D4ZxM7MLWovruKKyqoFvYNQ8z0Nh3LA7T0dIEuKfuFe/7DsYZvomu6BVZWV1fe+Tdxddvp4wHmV37qcOQdk+73ABPI/c4noevcUV/oY6tyJThgr3G/Mwra+X7x0j81UBbs21bN5zWnCp9r1Wv9qx79qKB4/T+wjXTUh6o4s5pWe8bydJ1re5RS09vW5yY+LS+n5CoPOOEMd6qtwqDKKqvfJdx76OLzr1dXyu1s02h6PKpRTUeaV7vW6aoW7w1ccTOZx51E7P61biBnoYn96b09yY4tQzpHoN3xgHYsTVHTfL/Up9DV4lCMwvLFFp1HZ52fhZ7pdRZrMuaHuDZsYVDdosF4DTdBkFNGprXiaAKrfMYk3gbrRBP7/P9riAOnItTWswH8xFa4BTSoc+DmmYT31VbuWeQ2HLGRncvcJ5HM5cKuRa/ARJBN6PfTmAI29IOW656CwgMD4pUw/kTZzlHpyQlKmbV1DS7ENxeePi4nKl/IISFZChM3BdonJHq8KstwUaH4rLGmvo2meNnLb7hriBtrmHrgQpY6fvudqgpWkFxmCrh8k26WBZNG3BgSD8fp9X3LyZlnXelPn7z+E3xn+d8b7t68w8AfR+dYnXHrg+OT0zr11mVn5rgjf5rUF+DUXJzeEeOcFRMqKcXUMcn6Zmd8V8ikvKlUpKKxSLPpQ1iYt/3Utv0Pr4pp2sCjA+xtl/9LYxp9Ei6u+wxP9IIjD6YVo/TpMlFDacgMCjfvcW8Bs/Edt49cYLG7FCYRH842ho5uOj0GZ5aXpG3mdbvqaGkhv6+85bPYdteHTtVtJoTMbtYJg5W7/+5/6ZyWm4kDoWcH8+G4Fs0B+1KVZviEu8uAVRbG9RIqk94OpxzRrj3ridPPKbCdy1/4YlR3ExdSvy2VBxDSNjnhusWR/kkvoipzN+nwl+8AcGPH46aq5o3bTX7zs0amVWZuV4emdFRVWDVnr2b8ZM3xPK1u9c7pHjSm3Ni7GzvpbAPiM3PdAd4pJQVV1TT7QMuo2jvJRat+2SkyQiTgZFz26ialIUHPp44jcTePhExGJOvQXUUb/IBZIaCwPKtGlHq4JZSw/7iZZhN2FBrt58Mha/55ke9VVqZ1GcmfXppYPj2bK77VvoQObbtxKIiwMTdNlxeY0k+aGiXqblauJoCxOIEyOpHVkgUQJxwzZU55Vr9lr90jfg/ryo2Jf9cSMnpWR1w27CpNg6m2K4/1wL7ZW50DHC32cYeQXgOwjC71NBMX9xGi6iAs7HzhCud+VG4jiOwmLqgM/tZT+aQFEQAhUWUV4nIoww7ycpWd1Fge+BFx9M/4xAwPtU5KLOvR1SOS1MKI4ajdq/9VuZVap0XpE/ZNy2O0GXHk4THvTIqciFIABEMN/y8kuaqXa1eTdzyWF/5huOp2Kb5SULzI4dFW7Ps/N3x8I9T8vtJHUCfWgC6XYcNVP+/CWh8cf+P+mkqLisCW5h2FMwVU6cjpqDlbF3ObdZTcsmR6GVWWn8k4+3aVo6X9ctXxWwh/kGHYLjezzwU92IG7tNz1UZuMHxu7S0QgGm0rDJO8Nx6UidQOxAWu7VG89v9DsbM0scNu2+sop1B34JJ89Ez+bUX0AJ207A8Km7bnbuvza1rLyyEX6brw5wa9TarOxVxvv2wvXIradoRDHGbmT0cwOs5O4DNyyE69UVgcwExaGqqroeVExZGV9uRgfejHg6XFK7R08yen5G4NmQuKnWqwNcoe/ENeQrz6VkhYS/gwDcehC8urpGXmugU8qwybvCRds/jH/dW67pshqm/ZrNF1xge0KvfA8C0b8kIh4nZvRo1902HQsrTOC/uoXn844e48jNl2jGRD+gG9I7hrHAGSQ+faMj35xbvXXPVdvkZ9naINN1H18oYcCc6T7Y+Yn+qM2x2K29RmyM6zd2azRIr0sCYTjLtTCpWWTu6y2JCEI0rb+Z+XwTgfA94Z54HLllIq6h++GbPJg6uGxEjwJIGTF1V9iWPX/byakY18QlvO7F1oflmtO74J0EXoidLt/StBr6RLTOtxKIxdH91SWhXQ/79Jx3RWri+sBcMZ+Dx+4s/WYCcUu20bPPaNLWvMjCIXA3jiXjpMPfRXABF0grHbs3jMErjHXbLznVUzOtQjmERyCBbfCrYYlj4Z926bf2mbw6r5qNaBDYpKNV0aQ5HhfFTQIeTjeD9UlsBAIB5/+ZgZOgO3h9wnrXkLUe3uEmIAzzwenA7oR7iTkznpSHNwg1pC2KhHHixgWiHqT1h7mDOQsIBGIfpevPWHgwAJ0qtbcoZhx3hXYWperdbLMn/bXvYmTMCwO2TtFWq59jSkcduxcbdl52EDc4TByD8dsjNfXsX06a63GRLcAAxd5n1KYHxtYn94vrB23HzXS/Io5A4Ezwwz8Mxm6JhJ8tHHTA3DDHGYsOBsQ+Ttdn6uOS7Kxjm3r73rNfJREI+7hLz1XPmMDKZxVgmWe/LVRnHPes7AINOOCSOgXgqCP4IGlS5IjRtx7qQSeylcOkKSmpUGRudTaUllUowAz6kkxATm6RWsab/DYMsnMK1RnvQxhYTCI/rZIk9QedTeSvPWVfFOAnJEPqAsg6fsgg8CPN7fzczO393Rw2XdgAR/57jwm309zmlBui0ZYOgbuEL7/zl+MmkzLa6JcE67VnXDfsuOzgFxQz69mLt12kRiCivAgmwO5S7mRVmJP7Qax5UVfg2fu7c+QMKY4S7d8qL6OQNmDKYE6RMtqu/SrQN7pyB8vCecbevqIe1g8hkPjHzYwphNI1dO2yct99aPG9x0QskkxezZSqp2FWJZwDsV1/dispa2nKB02QWPKaLv0YXKFd0Z5DXR4xUeyfBNYSuHD5sSMImNi5nNsiDNjEv83ed0mxnUUJZCf1FRdT+P6TwNoyOXVeDSJQkvq6fjt5lIqmVT7Zhc25VPveDq8KCkubiiUQNhrsJ6T4APxfXl7Z8EtCw0ZCXShs/K2u4fu5V2/SHogYAtEvsetosNlgsAthEzJ1RH3nuiAQfvGX+kNUHcEUtJHX4FXDefiMQFjZ3BUnPHv+6vJIvbttNgKpAP7XG+wcv4jn483kQ4VRWlapsN091Kb/6M1RGjq2Wc26WOehzcAxW+4hTXAt/MlokuJkIfDPxYdOa/d1TNbu45Ds43fPULTvd3nFqgYTtkdqD3BK1u6/Njki6vlgaRCILKPg2NObgclbCypE3E8d3KKzdS4yaKQifdbJ/wD+R7S2sRHVTNMqLyIqVTAJ7Agjy+NeuGE5Ksv4Cplp12Ah+Y2UZT0NXhUbgfqjN8eiXzjybHlm5F6ad135nihz5SWCPMuPJtD9cDiPcAAC6Xmeuxw3RUAgjg6iKaQCfcb1R26KRaTE63iEEbBlz1W7XsM3xKEMA0+c7RHMRJGRP5FXM6kmNxW9Mv3GbInGaqEd/o6csusGIRYDsxDY/z9bo0g5S3CVIbCljt1bosTpXRwanjTmf47AF2m5HZU0LYshZOP2Fh+SnmV3E+0AGfn66rxK1FHXscvOece35XB0iTD099a69pnCVzwAn3HUtN3XyWuC/1cCw+8+HcYXkEtp/rLmJZujD13UvKvNe9Rr0Hp5BZMb4dn5uTPG5u9zPS+wDY7IBUNyXRGIE8AKin8yfiiBcG3IJOhjiJ04aa7nxamGB84KY8Jf+0IatjUvZzJTd6OfD0JbQ56PD+mYhpHFcS+2wZHOJDqsDgjEQyVEVQb95noX6gJRbQGGb4w2s/ff+8MJRISYTBCFsHVohc4KHENMlu6IeRIx1+TIcYZAcTE8+KV1dYSR9Hn2IqcLMSkaLKDwPEMAzlxq8G+uEd+DQPJ6o/FHAi/+/WiSgEDyTINM0IRS17XLRvruXEjcFFFgpxKExE1mwuXzeT7HGAKXrjhxkJXA4LojEAsH/Wtq57fP2PrEfiyaABa++90O8N/g1DWBZqv89woIpGUJv5syTEAgwtjE0IUO1Kd1oJiQPBsgOEMg3rmw1TlxJmoOMW/+BYF4eYUcCZ7dSesSQS676wCnp8SWhZrrYFmc+pL/RohUQOfETqOFbNppRQF0jGgnmDQmC4Nab4hzPDOo09bgdUQYegH6jt4SwyYA/MyvuUTYkkx49SCnyq0hLwa+E4Gijy1FT8Bic9/D5ATVHl/oWyYdQSrBr2vfx+EVsfNoIkxsTnnguQW+FxaVKsM0Wbct2InsolqbjnnvRy6gWv0p38KkGjkR1EfMD8cc6kG1i/U7cgRZCBz1h9t10p4ed8DYrfeRlsSKI7mEC0Nn0PpEgR1Z1wTWBhMGjNt2f8yfe0JFMWLq7rB2vVenC8bHItLtYOMyfQkGdNx80ZlcFLhE6AbKnVYUgtQO+mvSWnRbmUvIRQe0h2EwfltkeQXfNwbJOkOcE/nvSvjGNF61duq39jkeYWJArf5OKUhOsRG4be/VlWRcQhCXwiNOvCbFMxCseuse9pmte6zK/C52IBPOUuG/eP0USylGb5N5Q8XRc8e7SGEVJxgQiRzYdMrtLQrJTlM04rtvjGtWe0x7D93wUDg4CcAb6TXEOY45imRguHb0/yOm7ArDpUTK6H5UuqzIFw6oFhWVNZm15LCfvCq3mrEnGTdS6xfHFDw30zZYl0z6o79LegT6idKnzRnkfcltrWL8SUCVkIsyjPUl0HIjl40XrW4HbpiL3g+fDZzy/K2W/9mYmdgZeKc8ZKLrnVUu5zZ5eodzr99KGiUuHI/MXUho/AQX15A1gydsj3DcfME5JPTxBERSsON8/e/Nw9O50xdi/2TLuN2NSh2092CYGdxEG6eg7agH451RE6Q9DVFPRxygo31PRc7zDbw/D49AhZ/o4ZE8UyYJeCCFsR8+Tu+NrCPbOF910/6EeEhdAFmH1AWQdUhdAFmH1AWQdUhdAFmH1AWQdUhdAFmH1AWQdUhdAFmH1AWQdfwXAAD//wMADFti0ijcUs8AAAAASUVORK5CYII=</mdui:Logo>
+ <mdui:InformationURL xml:lang="fr">https://projects.switch.ch/eduid/</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="en">https://projects.switch.ch/eduid/</mdui:InformationURL>
+ <mdui:InformationURL xml:lang="de">https://projects.switch.ch/eduid/</mdui:InformationURL>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://test.eduid.ch/web/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.eduid.ch/web/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://test.eduid.ch/web/Shibboleth.sso/SLO/SOAP"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.eduid.ch/web/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test.eduid.ch/web/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test.eduid.ch/web/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">edu-ID Kontoverwaltung</ServiceName>
+ <ServiceName xml:lang="en">edu-ID Test Account Management</ServiceName>
+ <ServiceName xml:lang="fr">Gestion du Compte edu-ID</ServiceName>
+ <ServiceDescription xml:lang="de">Aktualisiere und erweitere dein edu-ID Benutzerkonto.</ServiceDescription>
+ <ServiceDescription xml:lang="en">Update and extend your edu-ID account.</ServiceDescription>
+ <ServiceDescription xml:lang="fr">Mettez à jour votre compte edu-ID.</ServiceDescription>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.eduid.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.eduid.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SWITCH edu-ID Test Registration -->
+ <EntityDescriptor entityID="https://test.eduid.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.eduid.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.eduid.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">SWITCH edu-ID Test Registration</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SWITCH edu-ID Test Registration</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEEDCCAnigAwIBAgIJAOt4onx8LUQDMA0GCSqGSIb3DQEBCwUAMBgxFjAUBgNV
+BAMTDXRlc3QuZWR1aWQuY2gwHhcNMTcxMTE3MTI1MjI2WhcNMjAxMTE2MTI1MjI2
+WjAYMRYwFAYDVQQDEw10ZXN0LmVkdWlkLmNoMIIBojANBgkqhkiG9w0BAQEFAAOC
+AY8AMIIBigKCAYEAoI9LJR88XgSTLN/DaNr5fHw5zfm0uaZ16yhAbPtwQdSTLXCE
+sp1uGaeJVSX7KtuBgFoO0YGdNe3hcVu/q8dUsg5zNx0p2xVFX3y23Mvw66WIX5yI
+XR/JJpi3ynGQtiIHwWOWj7yD+0szoqkIujknZdkX0K+WVLhA/JwwaZ85dnqIJVVi
+bRMf4j0kPaaN8NL+xhyJ18vlNwZJ2zeef63a/6r/FQxi8JQJKXyWb1Ra5+QcYJP9
+uaWsTDXSIqDnkcwF8Kwv1z4aCzfqJQTz2azBUkozu7qovqE8m/8sGYlsJtLPHff+
+mVIYOyKZC6BrUcM2EFhKTd/JDUJNSRg4nbZGJ/a13NYU9bjfpC0zYXrhnlE8aLb1
+u++YGJlbAzMXnoQGvY9V2L/3k+oR0aj5Twan6LYQDjt3hD4rFyvSBgj/trpnwzNg
+w8TtuMQYv5Vo/1LK9lhCzlWndiKjBwdQGnjhHbTLKaHhjWZZCIkh4hUlDto/bz3/
+8LcMtumPGZlh26iZAgMBAAGjXTBbMDoGA1UdEQQzMDGCDXRlc3QuZWR1aWQuY2iG
+IGh0dHBzOi8vdGVzdC5lZHVpZC5jaC9zaGliYm9sZXRoMB0GA1UdDgQWBBR9TNv3
+zIgoNktikQh9Tsc9+q+5vjANBgkqhkiG9w0BAQsFAAOCAYEAcEFhqRW6tcbljUQ2
+rkiJrBAfwq9kVh0jFFDYe5FWzSVa5KguIcMIhGdu9VgHOmo9RbRSkYHvWNr962kk
+GvkqVzAainHs+ltWRKwqynDC/JHQPEqyiNGi/wSX/VAkVGf5AwU1vObGmjznjMkS
+IRbY3pLh6I5lYi78ot9EbAcCVXVQz6Z9lkXW7iP9tr/O6EvVNYx6HgoHT8FgzdSy
+89MGf6zPpIthZUF8teKkP3cM/rY1dDJ0JhtC9oU/c76wCxu6rS4PHZtcwiXb87A2
+wzh3ZcY4uoqVRhBf6roWrIz3McIteF7K2x92lCzvYLiUBaActRhkc19qoOnjjOgv
+UurE0U05dhadsmZeTyr1U0AGFLwKLXJFghtQk3CHrc7JA/8UL+RdQPsjgrlZLSW1
+FFC/ikhBCVNshJF7AslneWIBdikI8TsqFrwzk67Xy4QUbm366QiNeMy19bhKJ6u+
+QlPrPKBFbKcpV5BU305xXlIqPcmLAzMitn9fEFKNdXzmGTlb
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://test.eduid.ch/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.eduid.ch/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://test.eduid.ch/Shibboleth.sso/SLO/SOAP"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.eduid.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test.eduid.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test.eduid.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">SWITCH edu-ID Test Registration</ServiceName>
+ <ServiceDescription xml:lang="en">SWITCH edu-ID Test Registration</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="homePostalAddress" Name="urn:oid:0.9.2342.19200300.100.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="homePhone" Name="urn:oid:0.9.2342.19200300.100.1.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.eduid.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.eduid.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PROD-CURSUS/MOBILITE tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/cursus/mobilite/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PROD-CURSUS/MOBILITE tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PROD-CURSUS/MOBILITE test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/cursus/mobilite/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/cursus/mobilite/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/cursus/mobilite/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/cursus/mobilite/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/cursus/mobilite/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/cursus/mobilite/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/cursus/mobilite/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/cursus/mobilite/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/cursus/mobilite/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PROD-CURSUS/MOBILITE tst</ServiceName>
+ <ServiceDescription xml:lang="en">PROD-CURSUS/MOBILITE test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- HSLU Login Benedu -->
+ <!-- Federation Partner Resource of Partner: net working AG (http://www.networking.ch/) -->
+ <EntityDescriptor entityID="https://test.benedu.ch/shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="hslu.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">hslu.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">HSLU Login Benedu</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Login for the HSLU Students to the Benedu Platform.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEFDCCAnygAwIBAgIJAN7ypVO0V1cXMA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV
+BAMTDnRlc3QuYmVuZWR1LmNoMB4XDTE3MDQyNDE1MjUzNVoXDTIwMDQyMzE1MjUz
+NVowGTEXMBUGA1UEAxMOdGVzdC5iZW5lZHUuY2gwggGiMA0GCSqGSIb3DQEBAQUA
+A4IBjwAwggGKAoIBgQCp0bujz5ljgBF8M4e3yRXI8KPVuqZeuIhROM9vQARO+app
+wyTrcwE93UdFrTZShKc0M4Ldvzeoz7KmMpoxYd+yVgQg8LUHxNVQDPdEJjilFprq
+3aCVSna8ErsB1Rt5SfbCUcTvZRXIdeWAKULNxD5cqiZFo5SHpqtQYb6gdqwhFw/w
+XcSHWrMafd8oQoqGEG9B2Gje1kq7U0aOJ01taUbdBSbaSHO6v+vQ7rVqGka+to8J
+GlIjDVDGchR+iA13d/0Xal/B1etO36VEdDizj0hm8yqVjG4C+VLFx0Zq2fXCMEyr
+HcSZUtin5iMY+P2ZVYZga+UHfho+Mi0c8bU1voP42ci2o3WUVJRxEPU70VAchl24
+pOLxA+zdgj0rtUTVgJXzXG/v9MUW22CCDAHNCSznidk5mZhjKoBT8pQRWNWIt5hF
+ODNVAR9k1pdOP2v/lJjRLsJIajMMdvW/uAoRYPcdFR/gPPuZCnLz0uQg6VcQcqxC
+ZXsC3BOlxdlbJtTKn88CAwEAAaNfMF0wPAYDVR0RBDUwM4IOdGVzdC5iZW5lZHUu
+Y2iGIWh0dHBzOi8vdGVzdC5iZW5lZHUuY2gvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU
+GB8Y7tY66YjgBTxdXWLl/epnb1UwDQYJKoZIhvcNAQELBQADggGBADZ8az7GsssW
+HMgba3Vtf4f4KYqhy41NxhdAB4kl1ZZDq2xcC2k/d74xrBcNUqE8Ct9CXExAI+1v
+mniZVcjO6h5WXwYsF6lXpYi/fSClT/ogVGv7IwxsAgoKo5ZPv8iWvvpXmnucVZuz
+YslxFv4qnn9q4+pYyHHnRCt580lmzwP873qDHNMEY6BkpK/F4FiI76tw2gky994f
+DF7yOXY9A3lgXxNz2boX6GWU21dVXBhXYeyWzqlwOjoheBwlYcXwXjEGpN+liW4R
+rYtEii16gLNbP5w4/tIjDZ1aH6vRaRlWAaHiGV9Y6RBYBlHCsEwlvgCwmDhRv1l7
+Vy18ophBKzXCjFRJhupX9Aj1s39twaDkLjdziqnoBlIN6g9Raw+sVQf5wT1VDa96
+O4I6fq+VHL1m3ouubJNC//Hd7PV6dQSHq2s7Ob9c/h7Ex/JkAoAkgo855hq/P5oA
+zpuv+2nB45tRTBhslfU5ZSqjr+o8ZIwQemnrOTfdDXTv9YRZ2fe+HA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.benedu.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://test.benedu.newo.rocks/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test.benedu.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://test.benedu.newo.rocks/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test.benedu.ch/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://test.benedu.newo.rocks/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://test.benedu.ch/Shibboleth.sso/SAML/POST" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://test.benedu.ch/Shibboleth.sso/SAML/Artifact" index="8"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">HSLU Login Benedu</ServiceName>
+ <ServiceDescription xml:lang="en">Login for the HSLU Students to the Benedu Platform.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="isMemberOf" Name="urn:oid:1.3.6.1.4.1.5923.1.5.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">networking.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">net working AG</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.networking.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Hes-So Test -->
+ <EntityDescriptor entityID="https://hes-so-test.hypeinnovation.com">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Hes-So Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Hes-So Test https://hes-so-test.hypeinnovation.com</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hes-so-test.hypeinnovation.com/Shibboleth.sso/autologin" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Hes-So Test</ServiceName>
+ <ServiceDescription xml:lang="en">Hes-So Test https://hes-so-test.hypeinnovation.com</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Online Anmeldung Dev COP -->
+ <EntityDescriptor entityID="https://dt-it-500216.hsr.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>hsr.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="hsr.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Online Anmeldung Dev COP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Cops Super Shissoleth Login</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dt-it-500216.hsr.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dt-it-500216.hsr.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dt-it-500216.hsr.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Online Anmeldung Dev COP</ServiceName>
+ <ServiceDescription xml:lang="en">Cops Super Shissoleth Login</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="homePostalAddress" Name="urn:oid:0.9.2342.19200300.100.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="homePhone" Name="urn:oid:0.9.2342.19200300.100.1.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">hsr.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">HSR - Hochschule für Technik Rapperswil</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hsr.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-INFORMATION/RACC CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/information/raccourci/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-INFORMATION/RACC CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-INFORMATION/RACCOURCI CLUS test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/information/raccourci/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/information/raccourci/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/information/raccourci/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/information/raccourci/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/information/raccourci/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/information/raccourci/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/information/raccourci/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/information/raccourci/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/information/raccourci/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-INFORMATION/RACC CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-INFORMATION/RACCOURCI CLUS test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Evento-Test CUR -->
+ <EntityDescriptor entityID="https://evento-test.zhaw.ch/CLX.Evento/Cur/Authentication/SwissEduId">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Evento-Test CUR</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Evento Service Provider</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://evento-test.zhaw.ch/CLX.Evento/Cur/Authentication/SwissEduId/Logout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://evento-test.zhaw.ch/CLX.Evento/Cur/Authentication/SwissEduId/Logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://evento-test.zhaw.ch/CLX.Evento/Cur/Authentication/SwissEduId" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://evento-test.zhaw.ch/CLX.Evento/Cur/Authentication/SwissEduId/Acs" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://evento-test.zhaw.ch/CLX.Evento/Cur/Authentication/SwissEduId" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://evento-test.zhaw.ch/CLX.Evento/Cur/Authentication/SwissEduId/Acs" index="4"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Evento-Test CUR</ServiceName>
+ <ServiceDescription xml:lang="en">Evento Service Provider</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SAP Test System 2 Test AAI -->
+ <EntityDescriptor entityID="https://idapt2.uzh.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uzh.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="uzh.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uzh.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">SAP Test System 2 Test AAI</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">SAP Test System 2 Test AAI</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Reverse Proxy 2 for SAP Test Systems</mdui:Description>
+ <mdui:Description xml:lang="en">Reverse Proxy 2 for SAP Test Systems</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idapt2.uzh.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idapt2.uzh.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://idapt2.uzh.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://idapt2.uzh.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://idapt2.uzh.ch/Shibboleth.sso/SAML/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://idapt2.uzh.ch/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">SAP Test System 2 Test AAI</ServiceName>
+ <ServiceName xml:lang="en">SAP Test System 2 Test AAI</ServiceName>
+ <ServiceDescription xml:lang="de">Reverse Proxy 2 for SAP Test Systems</ServiceDescription>
+ <ServiceDescription xml:lang="en">Reverse Proxy 2 for SAP Test Systems</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uzhSapUserIdStaff" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.27" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uzhSapUserId" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uzh.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">Universität Zürich TEST</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">University of Zurich TEST</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.uzh.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.uzh.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Accueil Nouveaux Etudiants - DEV -->
+ <EntityDescriptor entityID="https://adn-dev.he-arc.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-test.hes-so.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-test.hes-so.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Accueil Nouveaux Etudiants - DEV</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="fr">Accueil Nouveaux Etudiants - DEV</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Accueil Nouveaux Etudiants - DEV</mdui:Description>
+ <mdui:Description xml:lang="fr">Accueil Nouveaux Etudiants - DEV</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://adn-dev.he-arc.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://adn-dev.he-arc.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://adn-dev.he-arc.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Accueil Nouveaux Etudiants - DEV</ServiceName>
+ <ServiceName xml:lang="fr">Accueil Nouveaux Etudiants - DEV</ServiceName>
+ <ServiceDescription xml:lang="en">Accueil Nouveaux Etudiants - DEV</ServiceDescription>
+ <ServiceDescription xml:lang="fr">Accueil Nouveaux Etudiants - DEV</ServiceDescription>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-test.hes-so.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">HES-SO Test IdP</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">HES-SO Test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-test.hes-so.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.aai-logon-test.hes-so.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Test logic UNIL (PULS) -->
+ <!-- Federation Partner Resource of Partner: REALLIENCE SA (http://www.reallience.ch/) -->
+ <EntityDescriptor entityID="https://logic.eu.ngrok.io/organizations/30/saml/metadata">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">unil.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Test logic UNIL (PULS)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">the purpose of this service is to provide a logbook</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://logic.eu.ngrok.io/organizations/30/saml/consume" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Test logic UNIL (PULS)</ServiceName>
+ <ServiceDescription xml:lang="en">the purpose of this service is to provide a logbook</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">reallience.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">REALLIENCE SA</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.reallience.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-COMPTA/CARTELEG CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/compta/carteleg/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-COMPTA/CARTELEG CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-COMPTA/CARTELEG CLUS test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/compta/carteleg/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-shib-int.unige.ch/compta/carteleg/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/compta/carteleg/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-shib-int.unige.ch/compta/carteleg/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/compta/carteleg/Shibboleth.sso/SAML2/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/compta/carteleg/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-shib-int.unige.ch/compta/carteleg/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/compta/carteleg/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-shib-int.unige.ch/compta/carteleg/Shibboleth.sso/SAML2/Artifact" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/compta/carteleg/Shibboleth.sso/SAML2/Artifact" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/compta/carteleg/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-shib-int.unige.ch/compta/carteleg/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/compta/carteleg/Shibboleth.sso/SAML2/ECP" index="13"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-shib-int.unige.ch/compta/carteleg/Shibboleth.sso/SAML2/ECP" index="14"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/compta/carteleg/Shibboleth.sso/SAML2/ECP" index="15"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-COMPTA/CARTELEG CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-COMPTA/CARTELEG CLUS test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Cloud-Federation-Test -->
+ <EntityDescriptor entityID="https://hepiacloudlab.eig.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Cloud-Federation-Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">openstack newton cloud</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIELDCCApSgAwIBAgIJAIyXWI0WtIktMA0GCSqGSIb3DQEBCwUAMB8xHTAbBgNV
+BAMTFGhlcGlhY2xvdWRsYWIuZWlnLmNoMB4XDTE3MDUxNjA5MjcwMloXDTIwMDUx
+NTA5MjcwMlowHzEdMBsGA1UEAxMUaGVwaWFjbG91ZGxhYi5laWcuY2gwggGiMA0G
+CSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQC3j6RQutRF8hVQBTcB0VgA+z03Tlbd
+bLMwuIqxD1g3fa2LkQvX8RTQt59Vm460JjdJphSTkQh5K3r9UDShpcib1g1PkyPt
+b69dLu2RPm/GKFuwZaWLjwExHlbShB6xrt7N5wx22YBUcCjlBVd4cqb+eSdHwhQ5
+FP3hjbLwzMRjwNIW18SiOIvS56nlY1aOBIfl7OHohv2qRsY4+2hf2pVoqh8P9+qC
+u7wGHvyV5exrW85EUSnriSkDhsSU5alunoIBGL9egM41sgC98WgLjLH6Pe2bCjZk
+HlI8ycfMFthsyMmCnlTBOVGV85jig2CAnVx6sdFGvTHkfU/Wo+wCKW4lcxr6aZgO
+5EkDL2XT63J9CBeswywJ4HrCDgvWIQA4tEvkc7Al6R2O6RF4MYfho6qCeAIfbkbh
+JpLm92DxR/J5v5qu0yzKeG1rqEaX/ujUYx1kzsjXDwdJYgvx8hx2pY0uDHTT3iw/
+ydsgaEWZQw07n29p+nVNwzpYKOwm42oLQPkCAwEAAaNrMGkwSAYDVR0RBEEwP4IU
+aGVwaWFjbG91ZGxhYi5laWcuY2iGJ2h0dHBzOi8vaGVwaWFjbG91ZGxhYi5laWcu
+Y2gvc2hpYmJvbGV0aDAdBgNVHQ4EFgQUIllivgbvDps6oYCxyPPLExLazYEwDQYJ
+KoZIhvcNAQELBQADggGBALDU7jgEun6uo8mOVNmfCicwrMrt2sHA1k/2LwWZO9aJ
+iRoOW1Sdb73Crk1kD3IfftKgT0ixjICNmThq/Y0oaTv2J2aYt2a7h8UxEFAMj/4k
+XggV32gFBwiRcQkVFBUDPgma9qX3Dh+00pxwXTM6C0F4Nq2HHdNyFVyVYTjfAuOf
+Ps0Qa2UrHvaKqZmU17eThikBcQ7DGq2XGVadTynXXsxSual19A/NVHgh9u7FDPsI
+k/k3eJ4UKhIK+Ohlv/gCOg6l+GfF5lLYGu1PYy1w8FeFoSlEosgvt4HVyL6QscXc
+f8mZ5seqD+dfE8NcMB5lOSOP1VXzTKhtVtQCoQErLZCp5tV14CuUJYiFnbnU8DOJ
+2essUbQVnNcfmUDOlEcIZmJuXKwW7vguAT3Fsv8N3h+lh86O7nhdaFAfWl8WIjuE
+kWVMTauv8VJJxRgjBT15RUuIj5nGAVuK9OiBblfRQEiyACDBc4n3DZt+uWW/UY+v
+ofwUEZfTt1P+UHRvgQLxRQ==
+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://hepiacloudlab.eig.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://hepiacloudlab.eig.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://hepiacloudlab.eig.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Cloud-Federation-Test</ServiceName>
+ <ServiceDescription xml:lang="en">openstack newton cloud</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Staging Jahia - Dev -->
+ <EntityDescriptor entityID="https://jahia-preprod.iheid.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>graduateinstitute.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="graduateinstitute.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">graduateinstitute.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Staging Jahia - Dev</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test Jahia Platform for Graduate Institute</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://jahia-preprod.iheid.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://jahia-preprod.iheid.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://jahia-preprod.iheid.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://jahia-preprod.iheid.ch/Shibboleth.sso/SAML/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://jahia-preprod.iheid.ch/Shibboleth.sso/SAML/Artifact" index="5"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Staging Jahia - Dev</ServiceName>
+ <ServiceDescription xml:lang="en">Test Jahia Platform for Graduate Institute</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">graduateinstitute.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Graduate Institute - Test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.graduateinstitute.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Test Resource dlu -->
+ <EntityDescriptor entityID="https://sp.dlu.switch.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idpv3.dlu.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idpv3.dlu.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idpv3.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uni-a.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uni-be.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uni-ci.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uni-dd.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uni-ee.dlu.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Test Resource dlu</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test Resource dlu</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEHDCCAoSgAwIBAgIJAOXO0Jx8aCrgMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV
+BAMTEHNwLmRsdS5zd2l0Y2guY2gwHhcNMTcwNTA1MDkwODU5WhcNMjAwNTA0MDkw
+ODU5WjAbMRkwFwYDVQQDExBzcC5kbHUuc3dpdGNoLmNoMIIBojANBgkqhkiG9w0B
+AQEFAAOCAY8AMIIBigKCAYEAvehcaw6EL8txpwbcbZc22g94KD8zPgqEvD34Si2a
+O5vWha/8ehhyK3dNw/NiJ7MvAFB/sSncpPbGhcRkGFVek84eEXrVbskbDHyZfrAv
+aHJYInUSEL3SYBOAHzZ7AVOqlu+ALP7ool3tXJV8tKnGG/tFytdKuxz5YPb5Od20
+NxfV3ffth5b2Y17yZDXw1jfYXEZ+s5DnMjRE6rGdXZXj4RbuE/ef+CuMmRwccwyD
+bpy+aREQXbW6nVEhnx8uijhw54pI0vhvQ0ivzjpEY/35uW2uOHusG0sUD9O45OrU
+GsxSQ/D7VhVcQULh/no5bb3iQ1MOibeZPYx0Ex3vWwldf2xvkdfJbgFenPLP2/hM
+RgFphzwJx51BHP6WnYBwZWXlsvnEv8CWz3F1OMjpWzl2M0TlNu0cAUEuPnul1Muj
+3OeTehi4J6PBavfOFbJDC7TN/YnsvfuggRjsC/SQI/pszfzKIMk42ddcENOg9jEA
+chUowmHkIBPp/iMteWrZKVsxAgMBAAGjYzBhMEAGA1UdEQQ5MDeCEHNwLmRsdS5z
+d2l0Y2guY2iGI2h0dHBzOi8vc3AuZGx1LnN3aXRjaC5jaC9zaGliYm9sZXRoMB0G
+A1UdDgQWBBRG6SO55Nv0rd5wBaKqBX9hGbZUujANBgkqhkiG9w0BAQsFAAOCAYEA
+qGfB2M/O5SpQOpoRFsCxP5Rle9ZRQXsL/dSvVtU+tEReQ02Fx8MaXNpiARv6aTo+
+Pk+9g+OtqkiiEOButUxDgXZR0R5yi4Qx//M9cx7UDXEvyA5QcOalQDa4hP/RtLZk
+wjdJUOYJbscOk+lIDv/fjbr+DshYuJgpuVNf2roKHUQz57tSexz/zLfAZtoUeoSH
+0nfLkdfPesxwgk3Kx5jdth5XrKCeJklYQsegSsQQ2rRcGzn3WAwdbc01r3ganZ55
+1yvsWxd4lLs/S8G0QQjUfGyVyKWOuAgx6O3/fCB3orcmD/vdl0fqOBxowIgAKYOc
+ADTgP1gYwY+e3hDxl15XeS47NVaqSy5jNScIh9b6clXgxHPJxqaMuOyPmaniSnk1
+g2X+7jZM2qTaCPKvdMQM90HjqbOdsWNhVhYNRFk//X1PlHu5IJmInY1OIe4ORmLB
+qrsYb7Y6ej8EMQee/QqZZX8nl31SZTHLn/iabYJes0oCiA5kA32Bwj3fp8/OM4VJ
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://sp.dlu.switch.ch/Shibboleth.sso/SLO/Redirect"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp.dlu.switch.ch/Shibboleth.sso/SLO/POST"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp.dlu.switch.ch/Shibboleth.sso/SLO/Artifact"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://sp.dlu.switch.ch/Shibboleth.sso/SLO/SOAP"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp.dlu.switch.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp.dlu.switch.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Test Resource dlu</ServiceName>
+ <ServiceDescription xml:lang="en">Test Resource dlu</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idpv3.dlu.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">DLU Test IdPv3</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idpv3.dlu.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETHZ, Moodle OIS-Dev-Server -->
+ <EntityDescriptor entityID="https://moodle-test-entw.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ETHZ, Moodle OIS-Dev-Server</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Moodle development server for OIS integration of ETHZ</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moodle-test-entw.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://moodle-test-entw.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://moodle-test-entw.ethz.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ETHZ, Moodle OIS-Dev-Server</ServiceName>
+ <ServiceDescription xml:lang="en">Moodle development server for OIS integration of ETHZ</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- USI NetID profile TEST service -->
+ <EntityDescriptor entityID="https://tnetid.usi.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.unisi.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.unisi.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.unisi.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">USI NetID profile TEST service</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test service for NetID Profile</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://tnetid.usi.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://tnetid.usi.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://tnetid.usi.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://tnetid.usi.ch/Shibboleth.sso/SAML/POST" index="4" isDefault="true"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://tnetid.usi.ch/Shibboleth.sso/SAML/Artifact" index="5"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">USI NetID profile TEST service</ServiceName>
+ <ServiceDescription xml:lang="en">Test service for NetID Profile</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.unisi.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Universita della Svizzera Italiana</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">Universita della Svizzera Italiana</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.test.unisi.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.unisi.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Evento-Dev -->
+ <EntityDescriptor entityID="https://evento-dev.zhaw.ch/CLX.Evento/Authentication/SwissEduId">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Evento-Dev</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Evento Service Provider</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://evento-dev.zhaw.ch/CLX.Evento/Authentication/SwissEduId/Logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://evento-dev.zhaw.ch/CLX.Evento/Authentication/SwissEduId" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://evento-dev.zhaw.ch/CLX.Evento/Authentication/SwissEduId/Acs" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://evento-dev.zhaw.ch/CLX.Evento/Authentication/SwissEduId" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://evento-dev.zhaw.ch/CLX.Evento/Authentication/SwissEduId/Acs" index="4"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Evento-Dev</ServiceName>
+ <ServiceDescription xml:lang="en">Evento Service Provider</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-INFORMATION/ANNUAI CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/information/annuaire/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-INFORMATION/ANNUAI CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-INFORMATION/ANNUAIRE CLUS test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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 </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/information/annuaire/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/information/annuaire/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/information/annuaire/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/information/annuaire/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/information/annuaire/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/information/annuaire/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/information/annuaire/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/information/annuaire/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/information/annuaire/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-INFORMATION/ANNUAI CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-INFORMATION/ANNUAIRE CLUS test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- iTalent Dev -->
+ <EntityDescriptor entityID="https://italent-dev.talentwerk.li/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://talentwerk.ch/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">iTalent Dev</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Dev Environment</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://italent-dev.talentwerk.li/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://italent-dev.talentwerk.li/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://italent-dev.talentwerk.li/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">iTalent Dev</ServiceName>
+ <ServiceDescription xml:lang="en">Dev Environment</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Evento-WebModules -->
+ <EntityDescriptor entityID="https://wmtest.fhgr.ch/CLX.Evento/Authentication/SwissEduId">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Evento-WebModules</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Für WebModule Login mit Switch edu-ID</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://wmtest.fhgr.ch/CLX.Evento/Authentication/SwissEduId/Logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wmtest.fhgr.ch/CLX.Evento/Authentication/SwissEduId/Acs" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Evento-WebModules</ServiceName>
+ <ServiceDescription xml:lang="en">Für WebModule Login mit Switch edu-ID</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- CHUV test SP -->
+ <EntityDescriptor entityID="https://testsp.chuv.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.chuv.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>hospital</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.chuv.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.chuv.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">CHUV test SP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">test SP for testing technical aai stuff</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://testsp.chuv.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://testsp.chuv.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://testsp.chuv.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://testsp.chuv.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://testsp.chuv.ch/Shibboleth.sso/SAML/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://testsp.chuv.ch/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">CHUV test SP</ServiceName>
+ <ServiceDescription xml:lang="en">test SP for testing technical aai stuff</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonCardUID" Name="urn:oid:2.16.756.1.2.5.1.1.12" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.chuv.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">CHUV Test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.test.chuv.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Webshop Printing Center ETH Zürich -->
+ <EntityDescriptor entityID="https://ethzuerich-v3-hr3x4.your-printq.com/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">Webshop Druckzentrum ETH Zürich</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Webshop Printing Center ETH Zürich</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Webshop Druckzentrum ETH Zürich</mdui:Description>
+ <mdui:Description xml:lang="en">Webshop Printing Center ETH Zürich</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ethzuerich-v3-hr3x4.your-printq.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ethzuerich-v3-hr3x4.your-printq.com/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ethzuerich-v3-hr3x4.your-printq.com/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">Webshop Druckzentrum ETH Zürich</ServiceName>
+ <ServiceName xml:lang="en">Webshop Printing Center ETH Zürich</ServiceName>
+ <ServiceDescription xml:lang="de">Webshop Druckzentrum ETH Zürich</ServiceDescription>
+ <ServiceDescription xml:lang="en">Webshop Printing Center ETH Zürich</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Evento-Acceptance -->
+ <EntityDescriptor entityID="https://evento-acceptance.zhaw.ch/CLX.Evento/Authentication/SwissEduId">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Evento-Acceptance</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Evento Service Provider</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://evento-acceptance.zhaw.ch/CLX.Evento/Authentication/SwissEduId/Logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://evento-acceptance.zhaw.ch/CLX.Evento/Authentication/SwissEduId" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://evento-acceptance.zhaw.ch/CLX.Evento/Authentication/SwissEduId/Acs" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://evento-acceptance.zhaw.ch/CLX.Evento/Authentication/SwissEduId" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://evento-acceptance.zhaw.ch/CLX.Evento/Authentication/SwissEduId/Acs" index="4"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Evento-Acceptance</ServiceName>
+ <ServiceDescription xml:lang="en">Evento Service Provider</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Test-Registration-DE -->
+ <EntityDescriptor entityID="https://odootst-registration.fernuni.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">Test-Registration-DE</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Test-Registration-EN</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="fr">Test-Registration-FR</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Test Registrierungsformular Fernuni</mdui:Description>
+ <mdui:Description xml:lang="en">Test registration form Distanceuniversity</mdui:Description>
+ <mdui:Description xml:lang="fr">Formulaire d'inscription au test Unidistance</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://odootst-registration.distanceuniversity.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://odootst-registration.fernuni.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://odootst-registration.unidistance.ch/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://odootst-registration.distanceuniversity.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://odootst-registration.fernuni.ch/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://odootst-registration.unidistance.ch/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://odootst-registration.distanceuniversity.ch/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://odootst-registration.fernuni.ch/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://odootst-registration.unidistance.ch/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">Test-Registration-DE</ServiceName>
+ <ServiceName xml:lang="en">Test-Registration-EN</ServiceName>
+ <ServiceName xml:lang="fr">Test-Registration-FR</ServiceName>
+ <ServiceDescription xml:lang="de">Test Registrierungsformular Fernuni</ServiceDescription>
+ <ServiceDescription xml:lang="en">Test registration form Distanceuniversity</ServiceDescription>
+ <ServiceDescription xml:lang="fr">Formulaire d'inscription au test Unidistance</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="homePostalAddress" Name="urn:oid:0.9.2342.19200300.100.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="homePhone" Name="urn:oid:0.9.2342.19200300.100.1.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SimpleSP -->
+ <EntityDescriptor entityID="https://vm-sp-01.local/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">SimpleSP</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test Service Provider, only localy accessible.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://vm-sp-01.local/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://vm-sp-01.local/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://vm-sp-01.local/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">SimpleSP</ServiceName>
+ <ServiceDescription xml:lang="en">Test Service Provider, only localy accessible.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-ISIS/ADM CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/isis/adm/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-ISIS/ADM CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-ISIS/ADM CLUS test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/isis/adm/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/isis/adm/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/isis/adm/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/isis/adm/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/isis/adm/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/isis/adm/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/isis/adm/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/isis/adm/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/isis/adm/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-ISIS/ADM CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-ISIS/ADM CLUS test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Shahid ASVZ Dev -->
+ <EntityDescriptor entityID="https://shahid.asvz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shahid ASVZ Dev</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Shahid ASVZ Dev</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shahid.asvz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shahid.asvz.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shahid.asvz.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://shahid.asvz.ch/Shibboleth.sso" index="4"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shahid ASVZ Dev</ServiceName>
+ <ServiceDescription xml:lang="en">Shahid ASVZ Dev</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Agrovet-Strickhof Resources -->
+ <EntityDescriptor entityID="https://agrovet-staging.dev.queo-group.com/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Agrovet-Strickhof Resources</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Agrovet-Strickhof Resources</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEZjCCAs6gAwIBAgIJAO2QI6P6NvTtMA0GCSqGSIb3DQEBCwUAMC0xKzApBgNVBAMTImFncm92
+ZXQtc3RhZ2luZy5kZXYucXVlby1ncm91cC5jb20wHhcNMTcxMDEwMTAwMDQyWhcNMjAxMDEwMTAw
+MDQyWjAtMSswKQYDVQQDEyJhZ3JvdmV0LXN0YWdpbmcuZGV2LnF1ZW8tZ3JvdXAuY29tMIIBojAN
+BgkqhkiG9w0BAQEFAAOCAY8AMIIBigKCAYEAwUCId0tYGPEABavUtvUH2d/VqtY1wc12biD2QURT
+8S36Mu3lNuLuYWEH4Mi4f6FZtXWc79PL7pDSqeZSBnF1KcH4E0XhPfy+QlY6PBHJqc92T9BrkCNF
+G3hSx3AUdksTfr1u09g1s1llGfZCi6vw8T0PW5d8yiQFNzRuKCXYpJcXumtMnQipRlo1f0jwDW3x
+Yv4K2fu95ifIJsbOs2G6EeKsShg4mVtwNdWWsEjADlUu7jbW20OlgBEButsh1EV0jWX0vAjitgKf
+9NgGV1DuPmSu7qmFhMizbhWPnG30+NVoXhKXKHuwldsKtuqBqTaPtBAagZNEpM+vJXAL/vm379a5
+Lqc/FGYEIAovxAx+CERmCt/mH+1UeUnpsehbFehZMKTtqyESoMl2ufBG/sezhpFcRmejTCRQ7SFe
+NBcR63jLmqcY+0v5bFaLoDApihsBhgYa9N07Uipf7XQrVXiqqdZ8gb0KGy5+XCroH27eiL/ZuYPT
+4mn+B6LDR4DHnwNnAgMBAAGjgYgwgYUwZAYDVR0RBF0wW4IiYWdyb3ZldC1zdGFnaW5nLmRldi5x
+dWVvLWdyb3VwLmNvbYY1aHR0cHM6Ly9hZ3JvdmV0LXN0YWdpbmcuZGV2LnF1ZW8tZ3JvdXAuY29t
+L3NoaWJib2xldGgwHQYDVR0OBBYEFJ62Xn1PmNK4ERb9CWnOpAZ+vRLIMA0GCSqGSIb3DQEBCwUA
+A4IBgQCxe4vge1iFgvtjr4FLkRU8TybNZPwC0/O9P4nzSsV/AUI10mVGyIGtP/IJZNwZP0sgjZwq
+z0OEoqy4p5LBV19phRgr50wOu+Gr52eTfqTt5Aj+x3kcmDIdfT73CxYzIj6ISItRaBGDGN4T/WNz
+WeWkqIM97oPYTSRM7MTQ2jDy8JUOVRr3DVLABkcAubrUEIDO+APJgHriz6Vnq7U5jcKF32iaoqlF
+5objRiurFonui8DZcKrgomt4VAx7Dudqmi8jJMY+axLbr/p4oTOM/8ftrajaCKevVuGja2nniPJR
+LgXqA1hOaiFrTjv+fIxfuzzwS6AcjdRc/idQ8jlKkNjR/5qLPUMn47CtS5Lxx3nE5K3Xd1MITe9l
+sNYZdaGm2eD2FMTMIa8tye6Ym5ZlfVuyTlA+S1M8JuPH8FjkXybCyQ/9jqCFKCC4pLhWSLQ6akxl
+Gs4LKhcxPBUc2YgzC4gqG4iZd6iyyx287x6r3z8v3eXsnciwKaKZdbWB/e6cVIs=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://agrovet-staging.dev.queo-group.com/saml/SSO" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://agrovet-staging.dev.queo-group.com/saml/SSO" index="2"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Agrovet-Strickhof Resources</ServiceName>
+ <ServiceDescription xml:lang="en">Agrovet-Strickhof Resources</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Agrovet-Strickhof-Demo Resources -->
+ <EntityDescriptor entityID="https://datenas.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Agrovet-Strickhof-Demo Resources</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Agrovet-Strickhof-Demo Resources</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://datenas.ethz.ch/app/saml/SSO" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://datenas.ethz.ch/app/saml/SSO" index="2"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Agrovet-Strickhof-Demo Resources</ServiceName>
+ <ServiceDescription xml:lang="en">Agrovet-Strickhof-Demo Resources</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- EduApp Backend Test -->
+ <EntityDescriptor entityID="https://www.edutest.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-logon-bi-test.ethz.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">EduApp Backend Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test Instance of EduApp back office service application.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://edutest.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://edutest.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://edutest.ethz.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">EduApp Backend Test</ServiceName>
+ <ServiceDescription xml:lang="en">Test Instance of EduApp back office service application.</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- IGD -->
+ <EntityDescriptor entityID="https://igd.unil.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>unil.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="unil.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">IGD</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Institut de géographie et durabilité</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://igd.unil.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://igd.unil.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://igd.unil.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">IGD</ServiceName>
+ <ServiceDescription xml:lang="en">Institut de géographie et durabilité</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">unil.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Université de Lausanne Test</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Université de Lausanne Test</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unil.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.unil.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SAP Testsystem Test AAI -->
+ <EntityDescriptor entityID="https://idapt1.uzh.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uzh.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="uzh.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">uzh.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">SAP Testsystem Test AAI</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">SAP Testsystem Test AAI</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Reverse Proxy für SAP Testsysteme</mdui:Description>
+ <mdui:Description xml:lang="en">Reverse Proxy für SAP Testsysteme</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://idapt1.uzh.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://idapt1.uzh.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://idapt1.uzh.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://idapt1.uzh.ch/Shibboleth.sso/SAML2/ECP" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://idapt1.uzh.ch/Shibboleth.sso/SAML/POST" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://idapt1.uzh.ch/Shibboleth.sso/SAML/Artifact" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">SAP Testsystem Test AAI</ServiceName>
+ <ServiceName xml:lang="en">SAP Testsystem Test AAI</ServiceName>
+ <ServiceDescription xml:lang="de">Reverse Proxy für SAP Testsysteme</ServiceDescription>
+ <ServiceDescription xml:lang="en">Reverse Proxy für SAP Testsysteme</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uzhSapUserIdStaff" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.27" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uzhSapUserId" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uzh.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">Universität Zürich TEST</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">University of Zurich TEST</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.uzh.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.uzh.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Test Geneva Profiles Support (GPS) -->
+ <EntityDescriptor entityID="https://logic.eu.ngrok.io/organizations/42/saml/metadata">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.vho-switchaai.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Test Geneva Profiles Support (GPS)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">the purpose of this service is to provide a logbook for faculté de Médecine Université de Genève</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://logic.eu.ngrok.io/organizations/42/saml/consume" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Test Geneva Profiles Support (GPS)</ServiceName>
+ <ServiceDescription xml:lang="en">the purpose of this service is to provide a logbook for faculté de Médecine Université de Genève</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Abraxas Informatik - Dev Env. -->
+ <!-- Federation Partner Resource of Partner: Abraxas Informatik AG (https://www.abraxas.ch/) -->
+ <EntityDescriptor entityID="https://auth-dev.egov-test.abraxas.ch/auth/ext/saml">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">Abraxas Informatik - Dev Env.</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Abraxas Informatik - Dev Env.</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Abraxas Informatik - Dev Environment</mdui:Description>
+ <mdui:Description xml:lang="en">Abraxas Informatik - Dev Environment</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth-dev.egov-test.abraxas.ch/auth/ext/saml/logout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth-dev.egov-test.abraxas.ch/auth/ext/saml/logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth-dev.egov-test.abraxas.ch/auth/ext/saml/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://auth-dev.egov-test.abraxas.ch/auth/ext/saml/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://auth-dev.egov-test.abraxas.ch/auth/ext/saml/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">Abraxas Informatik - Dev Env.</ServiceName>
+ <ServiceName xml:lang="en">Abraxas Informatik - Dev Env.</ServiceName>
+ <ServiceDescription xml:lang="de">Abraxas Informatik - Dev Environment</ServiceDescription>
+ <ServiceDescription xml:lang="en">Abraxas Informatik - Dev Environment</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">abraxas.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Abraxas Informatik AG</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.abraxas.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- portail-test service -->
+ <EntityDescriptor entityID="https://portail-test.unige.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-lab.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">portail-test service</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Liferay portail de test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portail-test.unige.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://portail-test2.unige.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portail-test.unige.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://portail-test2.unige.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portail-test.unige.ch/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://portail-test2.unige.ch/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">portail-test service</ServiceName>
+ <ServiceDescription xml:lang="en">Liferay portail de test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- BROCKHAUS Wissensservice Test -->
+ <EntityDescriptor entityID="https://auth.brockhaus.de/samlauth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="http://www.brockhaus.de/ueber-uns/kontakt" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">BROCKHAUS Wissensservice Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">BROCKHAUS Wissensservice Test</mdui:Description>
+ <mdui:PrivacyStatementURL xml:lang="en">http://www.brockhaus.de/datenschutzbestimmung</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.brockhaus.de/samlauth/saml/SSO" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">BROCKHAUS Wissensservice Test</ServiceName>
+ <ServiceDescription xml:lang="en">BROCKHAUS Wissensservice Test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- LH demo and development service -->
+ <EntityDescriptor entityID="https://maclh.switch.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="http://www.switch.ch/aai/help/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">MacLH Demo und Entwicklungs Dienst</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">LH demo and development service</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Demonstration and Development Powerbook</mdui:Description>
+ <mdui:Description xml:lang="en">This resource is used for demo and development purposes. May not be online all the time.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEGDCCAoCgAwIBAgIJAKquBra4WMYHMA0GCSqGSIb3DQEBCwUAMBoxGDAWBgNV
+BAMTD21hY2xoLnN3aXRjaC5jaDAeFw0xNzA2MDYwNjUxMTZaFw0yMDA2MDUwNjUx
+MTZaMBoxGDAWBgNVBAMTD21hY2xoLnN3aXRjaC5jaDCCAaIwDQYJKoZIhvcNAQEB
+BQADggGPADCCAYoCggGBANJlNL++yx5HnjpPx5KG5z7k0TdA61vJ6cjeYoLYIldJ
+mSNjXtk2NlonxjpkGbxGQrFAbL9drfZ3Koma0eNztbHhC2YlmszLFQfNUlmxClOB
+VUxYuuu1bLyPxUkvZ56RCsFOP5SPt+h4kFWvoJJy00KV9uBZ6RMB1hAmE/XH/M/H
+p0DtvMZWE8yA8KbreLut7fWUvUtSLt9K1b8VjVbWH3vTepHcz6Gmu6PzEnp5MqK2
+cj4TZv7RQJ76k3q93OZACWW9yDKjqqQma8iFCvgshvPGV45fL7IcDHCPMdBY54vo
+M4RmBicREwEo7ujoZ/Vj+/uJjTJaZ2k+NUpkH6QT+DFCnbWcJYlCtljFmFb1Ub4d
+6BOdRBeV3w36wSKP2nFe2Q1DNxwjFCRpR2dy5QEws3UdkOouab/Pvkmqg2vcyJXn
+ZTxfl1AQxKpFpbBT2bXGfjU9t9uswyIyG/gZQQp4yak9YyyYer4XHQWYdayRR7H/
+ClUzIhhxR/4XUbogAD46bwIDAQABo2EwXzA+BgNVHREENzA1gg9tYWNsaC5zd2l0
+Y2guY2iGImh0dHBzOi8vbWFjbGguc3dpdGNoLmNoL3NoaWJib2xldGgwHQYDVR0O
+BBYEFBisopSkjVFOzgzq76EQu4k7dpu5MA0GCSqGSIb3DQEBCwUAA4IBgQBL0UHG
+JD3TfKT/b69OS3+iQGb2H3VIm9+U83vGVZBG0OgD3DUoy7ImDcGJRVA40ntSac/f
+kdbu/HgJN/Iij7aEZ2FhI6BZdsAg3zlyU9NSsmH4zqACT+srj2CDAoHxlr6KAqGI
+oBKavoVg+g5ucJ1ImIcsr4nnaakricPgznZIZElIXCioVRW0Dk10fHZQMkcDgTN5
+crWJ5gs+qVaE5tO/LE5SKHue4XsEf+GqZ5NF05xTC7R6Wk3N+5MDyNSC/q3/rAVA
+5mJd+5MWEcW6gvTIWN5K+Uo8uT8Ut8BCalDmhQNiQpoodyLOGDAP0WtktCQkjeND
+iod2JPbOR/Mzlnqcy21SDnJaE5L7X87LksoIFT72sqyzJIMsyOD8ZeTWNHFQO+Nm
+8LmlWP5YGc8chX44e2+vRHz5QOqBc/MqKIKfnicqgz1Zs1LLLIeCCBRSUlz66zm4
+OCC4P0Yq4UsUG7gF26yrBL+NLZLFnv5CRJFofl0m02s3CJrylrDBgBVoIyk=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://maclh.switch.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://maclh.switch.ch/web/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign" Location="https://maclh.switch.ch/Shibboleth.sso/SAML2/POST-SimpleSign" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://maclh.switch.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://maclh.switch.ch/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://maclh.switch.ch/Shibboleth.sso/SAML/POST" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://maclh.switch.ch/Shibboleth.sso/SAML/Artifact" index="7"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">MacLH Demo und Entwicklungs Dienst</ServiceName>
+ <ServiceName xml:lang="en">LH demo and development service</ServiceName>
+ <ServiceDescription xml:lang="de">Demonstration and Development Powerbook</ServiceDescription>
+ <ServiceDescription xml:lang="en">This resource is used for demo and development purposes. May not be online all the time.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="homePostalAddress" Name="urn:oid:0.9.2342.19200300.100.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="isMemberOf" Name="urn:oid:1.3.6.1.4.1.5923.1.5.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="homePhone" Name="urn:oid:0.9.2342.19200300.100.1.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="primaryGroupID" Name="urn:oid:1.3.6.1.4.1.7165.2.1.15" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1029" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliationMail" Name="urn:oid:2.16.756.1.2.5.1.1.1031" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliationUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1032" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Abraxas Informatik - Test Env. -->
+ <!-- Federation Partner Resource of Partner: Abraxas Informatik AG (https://www.abraxas.ch/) -->
+ <EntityDescriptor entityID="https://auth.egov-test.abraxas.ch/auth/ext/saml">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">Abraxas Informatik - Test Env.</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Abraxas Informatik - Test Env.</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Abraxas Informatik - Test Environment</mdui:Description>
+ <mdui:Description xml:lang="en">Abraxas Informatik - Test Environment</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.egov-test.abraxas.ch/auth/ext/saml/logout"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.egov-test.abraxas.ch/auth/ext/saml/logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.egov-test.abraxas.ch/auth/ext/saml/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://auth.egov-test.abraxas.ch/auth/ext/saml/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://auth.egov-test.abraxas.ch/auth/ext/saml/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">Abraxas Informatik - Test Env.</ServiceName>
+ <ServiceName xml:lang="en">Abraxas Informatik - Test Env.</ServiceName>
+ <ServiceDescription xml:lang="de">Abraxas Informatik - Test Environment</ServiceDescription>
+ <ServiceDescription xml:lang="en">Abraxas Informatik - Test Environment</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">abraxas.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Abraxas Informatik AG</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.abraxas.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SAP-TST -->
+ <EntityDescriptor entityID="https://rubistst-shib.unige.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">SAP-TST</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SAP accesses in TST</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rubisdev-shib.unige.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://rubistst-shib.unige.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rubisdev-shib.unige.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://rubistst-shib.unige.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rubisdev-shib.unige.ch/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://rubistst-shib.unige.ch/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">SAP-TST</ServiceName>
+ <ServiceDescription xml:lang="en">SAP accesses in TST</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- lnticevote3 aaitest -->
+ <EntityDescriptor entityID="https://lnticevote3-aaitest.unige.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">lnticevote3 aaitest</mdui:DisplayName>
+ <mdui:Description xml:lang="en">lnticevote3 aaitest</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lnticevote3-aaidev.unige.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://lnticevote3-aaitest.unige.ch/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lnticevote3-aaidev.unige.ch/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://lnticevote3-aaitest.unige.ch/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lnticevote3-aaidev.unige.ch/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://lnticevote3-aaitest.unige.ch/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">lnticevote3 aaitest</ServiceName>
+ <ServiceDescription xml:lang="en">lnticevote3 aaitest</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- NZZ AAI Test Login Portal -->
+ <!-- Federation Partner Resource of Partner: Neue Zürcher Zeitung AG (https://www.nzz.ch/) -->
+ <EntityDescriptor entityID="https://aai-test.nzz.ch/shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://abo.nzz.ch/faq/abo/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">NZZ AAI Test Login Portal</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">NZZ AAI Test Login Portal</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Der Zweck dieses Services ist es, Kunden der NZZ Zugriff via dem AAI Netzwerk zu ermöglichen</mdui:Description>
+ <mdui:Description xml:lang="en">Der Zweck dieses Services ist es, Kunden der NZZ Zugriff via dem AAI Netzwerk zu ermöglichen</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://aai-test.nzz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://aai-test.nzz.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://aai-test.nzz.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">NZZ AAI Test Login Portal</ServiceName>
+ <ServiceName xml:lang="en">NZZ AAI Test Login Portal</ServiceName>
+ <ServiceDescription xml:lang="de">Der Zweck dieses Services ist es, Kunden der NZZ Zugriff via dem AAI Netzwerk zu ermöglichen</ServiceDescription>
+ <ServiceDescription xml:lang="en">Der Zweck dieses Services ist es, Kunden der NZZ Zugriff via dem AAI Netzwerk zu ermöglichen</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">nzz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Neue Zürcher Zeitung AG</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.nzz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- iTalent Local -->
+ <!-- Federation Partner Resource of Partner: TalentWerk AG (http://www.talentwerk.ch/) -->
+ <EntityDescriptor entityID="https://italent-dev.local/shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://talentwerk.ch" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">iTalent Local</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Local Development Environment for iTalent</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEIDCCAoigAwIBAgIJANXIUqDw8IiyMA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV
+BAMTEWl0YWxlbnQtZGV2LmxvY2FsMB4XDTE4MDIyMjEyNDE1OVoXDTIxMDIyMTEy
+NDE1OVowHDEaMBgGA1UEAxMRaXRhbGVudC1kZXYubG9jYWwwggGiMA0GCSqGSIb3
+DQEBAQUAA4IBjwAwggGKAoIBgQCdH3NAIBAnxu2fWnPoXjb5nKngu6a93lCXlH7p
+d7sYoskB4L6bNuetIW5t3l1ahf3+TFJdBMp+KUaacAuqp1bQS7dPTalcWRjJaf7b
+Yli805kvO3nhwMTU1++KnyDEfe2jeX5BDUP4NybZ9vuW0mZ6GlJx9V4tMzcQK3Uj
+5hO2EoMyIe1hgulGtRKmBu67Woy19MveOBOo8dmqz5+CrDWGsdgjNfwu+vgilrH8
+ca96vIoVcoMvnKIO0zbLLc7h/HcRJMkglHnzPAGuP/3kgB6sGhB/Z2aIvqaJA+X5
+ubRpHU1mYG4qlbzdHtWzULOfpTaEs3y9zNFIWJL3H3B3qTkk+cWPSDa6YtY2jtD2
+AOSzUGiZYtwQDFqtWjsBpgs4SFuEjR+j4Ni94Xso1mfAabVoyYM1J6pf5ubv9mfG
+b0oMxk+RnINwXd+lQgXmo6jIV4BZxeCjCytbUjhEOC8VW8uw2LyUwLnDzhi7+x+g
+amLVbD6ZezBzCiIsqMUHV0cJKu8CAwEAAaNlMGMwQgYDVR0RBDswOYIRaXRhbGVu
+dC1kZXYubG9jYWyGJGh0dHBzOi8vaXRhbGVudC1kZXYubG9jYWwvc2hpYmJvbGV0
+aDAdBgNVHQ4EFgQUmzb4K2zqoZrlh3LBD3tb3kDhGZowDQYJKoZIhvcNAQELBQAD
+ggGBAA2jrG2n1pUzeLbn0zmhwPaXdsOU8QotjqdXZybQbS8YTDKNQGAdd6fZQj+Z
+KM1iNVI9clbnJyKMIMuUxYoH7925DI+tGa+5mSOVYaCmKEHTMOoHj9eW1gzcBSjs
+bgmEQbOIkB/PRnLS13vh6y3HcSOI0+FLUTXLJJSljRtUYrKymaw27naJNIhJ/JmJ
+87Idm9nuAFvuuxZ+0XStd1GuvjlGa7ExQMX1W6MU/Gr7A+uGH6Odfughwpg4xZ4m
+/Zj3Po0qu/LD5Np9V1TFfqfwaJS866te13VWUN2utJnoIoKuX0C7Rfab7SSywf0N
+UCA5ZapbE5IrkRJVq8tLaFZTS3v5XHTr9JVr7MniP35ISKmck9lk2W4eiWTQ8AkB
+dXIBec9ipDZ/ZQS0d4byY6aGiwWWqoRkJuoCnftcR4+HOMPyNxxLcedVGb43HojF
+Pebo8BUDuqpTCgP4M4lfvYRpSmagHDAhg6Bn3jTc/jfjD86VSVKobkFSePUnkm7t
+eWoY9g==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://italent-dev.local/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://italent-dev.local/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://italent-dev.local/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://italent-dev.local/Shibboleth.sso/Artifact/SOAP" index="4"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">iTalent Local</ServiceName>
+ <ServiceDescription xml:lang="en">Local Development Environment for iTalent</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">talentwerk.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">TalentWerk AG</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.talentwerk.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- HSLU Onlineanmeldung Next -->
+ <EntityDescriptor entityID="https://next-onlineanmeldung.hslu.ch/CLX.Evento/NEXT/Authentication/SwissEduId">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>hslu.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="hslu.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">HSLU Onlineanmeldung Next</mdui:DisplayName>
+ <mdui:Description xml:lang="en">HSLU Onlineanmeldung Next</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDbTCCAlWgAwIBAgIJAK2AcOBvyxr+MA0GCSqGSIb3DQEBBQUAMCcxJTAjBgNV
+BAMTHG5leHQtb25saW5lYW5tZWxkdW5nLmhzbHUuY2gwHhcNMTgwOTI3MTYwODMx
+WhcNMjEwOTI2MTYwODMxWjAnMSUwIwYDVQQDExxuZXh0LW9ubGluZWFubWVsZHVu
+Zy5oc2x1LmNoMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAweDHqkTr
+6ROzkvws5eaxoEVg3eWdIbWnkt+ffkfpGV7qxW44jVEOBqF8D/uv9JWWhPYXLBZQ
+VoU+IUSUJWQt0RvLW+IhweVtkgwZe5Xsz6qbwRn68/fxEX+FKPcBjxrOjDjhc2Dh
+Th9wTMkRBf5DW4q/JMJHy+H8jxW0AQyvYqotuC5OHbMNdF0QXQTKBRCK23CYgQ0c
+ipNn1M9t1nnCsYt2hToN0u/a2TYv0eD8TbqcoISPRLM3rpyJIV9QU41Ronqhb0EX
+xUBQ33HyRZLxRy+gOCzsFEAR6mauxO9o98M+C35dE5TEQhoXx1UQ0DeoJPXTozwb
+xj6cQKgWi4TRvQIDAQABo4GbMIGYMHcGA1UdEQRwMG6CHG5leHQtb25saW5lYW5t
+ZWxkdW5nLmhzbHUuY2iGTmh0dHBzOi8vbmV4dC1vbmxpbmVhbm1lbGR1bmcuaHNs
+dS5jaC9DTFguRXZlbnRvL05FWFQvQXV0aGVudGljYXRpb24vU3dpc3NFZHVJZDAd
+BgNVHQ4EFgQUssMsoXU8PuRiZfiFGMY3e51OTiUwDQYJKoZIhvcNAQEFBQADggEB
+ALTAkOJoY8hJXOZ/CfY5cRF/yOhp+qYQ8KVmkz7xGk9GVas/ivdTra1IYltBwYmf
+cFzASB38Qj4QngfYIGThZHl31wvYYNLZ7Bw39cv7W5VLhWXXCprdLognr5OYO2K3
+H7DB8ClI8X+5WoYhT6vWPE9xLpntLpoDTCxUnXwnDb85izCy9TLOp7/9NvbLIprE
+c24MccI1OlbSSR9opMZ3ZX4AByM4Ia3GDPN+uAe4Tzox1Y/i2nD2yB0cd8pypW2X
+9ObyfwPTLLvC6SdOj5iEIgtNfVuK+gcvbKa8qiPIoMtV6Vgvq0HuXDK17HBazi79
+ODQLJChJr553++xPj8mYFME=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://next-onlineanmeldung.hslu.ch/CLX.Evento/NEXT/Authentication/SwissEduId/Logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://next-onlineanmeldung.hslu.ch/CLX.Evento/NEXT/Authentication/SwissEduId/Acs" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">HSLU Onlineanmeldung Next</ServiceName>
+ <ServiceDescription xml:lang="en">HSLU Onlineanmeldung Next</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonCardUID" Name="urn:oid:2.16.756.1.2.5.1.1.12" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">hslu.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">HSLU - Hochschule Luzern (Test IdP)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">HSLU - Lucerne University of Applied Sciences and Arts (Test IdP)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.hslu.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.hslu.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- edoc.fhnw.ch -->
+ <EntityDescriptor entityID="https://edoc.fhnw.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.fhnw.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.fhnw.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">edoc.fhnw.ch</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">edoc.fhnw.ch</mdui:DisplayName>
+ <mdui:Description xml:lang="de">edoc.fhnw.ch</mdui:Description>
+ <mdui:Description xml:lang="en">edoc.fhnw.ch</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://edoc.fhnw.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://edoc.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://edoc.fhnw.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://edoc.fhnw.ch/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://edoc.fhnw.ch/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">edoc.fhnw.ch</ServiceName>
+ <ServiceName xml:lang="en">edoc.fhnw.ch</ServiceName>
+ <ServiceDescription xml:lang="de">edoc.fhnw.ch</ServiceDescription>
+ <ServiceDescription xml:lang="en">edoc.fhnw.ch</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.fhnw.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">FHNW-TEST - Fachhochschule Nordwestschweiz</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.fhnw.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.fhnw.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ZHdK go-dev2 R5.P4 AAI Test -->
+ <EntityDescriptor entityID="https://go-dev2.zhdk.ch/CLX.Evento/R5P4/Authentication/SwissEduId">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>zhdk.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="zhdk.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ZHdK go-dev2 R5.P4 AAI Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Weil OAuth seit R5 Final instanzfähig.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://go-dev2.zhdk.ch/CLX.Evento/R5P4/Authentication/SwissEduId/Logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://go-dev2.zhdk.ch/CLX.Evento/R5P4/Authentication/SwissEduId/Acs" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ZHdK go-dev2 R5.P4 AAI Test</ServiceName>
+ <ServiceDescription xml:lang="en">Weil OAuth seit R5 Final instanzfähig.</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">zhdk.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">ZHdK</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.zhdk.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-ADMIN/INDIVIDU tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/admin/individu/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-ADMIN/INDIVIDU tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-ADMIN/INDIVIDU test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/admin/individu/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/admin/individu/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/admin/individu/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/admin/individu/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/admin/individu/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/admin/individu/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/admin/individu/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/admin/individu/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/admin/individu/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-ADMIN/INDIVIDU tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-ADMIN/INDIVIDU test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Test SP for SWITCH Shib packages -->
+ <EntityDescriptor entityID="https://shibsp.test.aai.switch.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.idph.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.idph.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.idph.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Test SP for SWITCH Shib packages</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service provider is used for QA of the SWITCHaai-provided Debian packages (available at http://pkg.switch.ch/switchaai/)</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://shibsp.test.aai.switch.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://shibsp.test.aai.switch.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://shibsp.test.aai.switch.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Test SP for SWITCH Shib packages</ServiceName>
+ <ServiceDescription xml:lang="en">This service provider is used for QA of the SWITCHaai-provided Debian packages (available at http://pkg.switch.ch/switchaai/)</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.idph.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">SWITCH IdP Hosting Test Login</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.test.idph.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-COMPTA/FINANCE CLUS tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/compta/finance/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-COMPTA/FINANCE CLUS tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-COMPTA/FINANCE CLUS test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEIzCCAougAwIBAgIJALt/K3ZT062RMA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV
+BAMTDnd3d2l0LnVuaWdlLmNoMB4XDTE4MDYyNTA4MDUzOFoXDTIxMDYyNDA4MDUz
+OFowGTEXMBUGA1UEAxMOd3d3aXQudW5pZ2UuY2gwggGiMA0GCSqGSIb3DQEBAQUA
+A4IBjwAwggGKAoIBgQDD3pJpqVTgk+3adlphMfMDiLbpsRY6xjJVcXmCXjNqOPQI
+VIaL2Inf5F5hkmD1rTd7cHIVAH5QXtAnwVKi0RJ1QVdHHbWrECIfIo9HnwAHYVm9
+shJQqN3cP/OoBkuQgKApWVUURqyeHucpwgD4EfUCm0Pq8ww+QZJkaV7bT6Tt6fMU
+RiUrjic93TNZfBGWMqsNLX6T8qWxuZerHJXYfZOCPTERt0D3RCffY5vRR+egVPk+
+Iju9fnnDBWj2P7myEwkvj3aOuI35/zkH5Wl2ivwkgVhKLE1aoIuK09drchukqSQe
+gTIaFOaBQ0dJ6FsRrow+JqpX/nh32vLxH3oUkSdgZIyVSIgaeKehk9w8i9Bo4nSB
+oQ0PJ/F2V6jgoSYNjfpqoyy+fJtrL4z2Nv6dw0N4x5PHhhjUG3GCEprksCKiB1J/
+pDpoKh++7fBLGbnHRt2sLYeh/84tarn8Iw3jrDOqGqGSbQpWUA2g09pDARxkEdfx
+uytLfut8d/0uMzOdYKMCAwEAAaNuMGwwSwYDVR0RBEQwQoIOd3d3aXQudW5pZ2Uu
+Y2iGMGh0dHBzOi8vd3d3aXQudW5pZ2UuY2gvY29tcHRhL2ZpbmFuY2Uvc2hpYmJv
+bGV0aDAdBgNVHQ4EFgQUzT2CdJ86Ko1hDd38K5sPz85FrgswDQYJKoZIhvcNAQEL
+BQADggGBACStez8oacmy9WHIv+8uyKzM22WDX+1GsKlKQAHZlZh8/9gFKgErGe0y
+ijl1tULzgrM/8WS0Kova5Pu9VY3PgybeHg4FR9i4K3LPX0nXQKTBrfdEgkrW44XM
+BSuQ3uAOlV1z5+BMV7Olt+C5LM+YUFtxczcEMkTUPRaAoQ8mWsaYM3ksVXWHu7xF
+h+xtghF2U7MP5smdMn5Lan4ViZHnGq+vKfhTcbn51VM8S3s+0/dz5d3/ikarqnvh
+RafcrREDeO83DPvHwGLQog4A971j4o1Gn0jH4cDj1HPGLIsa5tgHkRJlVI7ui0DN
+TTzFi5p/MWOsgWyhttqmHfIibSF1g81bQdLHlnD6PYBb6lfexU77dfI9/e4dI7m9
+CZ1w+QzJQ3Ub1SZPJvNLoAnB+MvWkztC1mzbDY6CdS6yWAMEWDzXbXXrHiy+ypGQ
+qguQzApK5ZSzPaZ47tsfYaeiJzfXco6j5qMbKiLGXVKFpOmkVPTr5CCpcHZ/fg22
+EGkXXgbbjQ==
+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf-int.unige.ch/compta/finance/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf-int.unige.ch/compta/finance/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.intranet.unige.ch/compta/finance/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/compta/finance/Shibboleth.sso/SAML2/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf-int.unige.ch/compta/finance/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf-int.unige.ch/compta/finance/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.intranet.unige.ch/compta/finance/Shibboleth.sso/SAML2/Artifact" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/compta/finance/Shibboleth.sso/SAML2/Artifact" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf-int.unige.ch/compta/finance/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf-int.unige.ch/compta/finance/Shibboleth.sso/SAML2/ECP" index="10"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.intranet.unige.ch/compta/finance/Shibboleth.sso/SAML2/ECP" index="11"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/compta/finance/Shibboleth.sso/SAML2/ECP" index="12"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-COMPTA/FINANCE CLUS tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-COMPTA/FINANCE CLUS test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SWAPP test news-swapp -->
+ <EntityDescriptor entityID="https://swapp-test.unige.ch/news-swapp/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-test.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">idp-lab.unige.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol urn:oasis:names:tc:SAML:1.1:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">SWAPP test news-swapp</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SWAPP pour la gestion d'actualités de L'UNIGE</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:mace:shibboleth:1.0:nameIdentifier</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://swapp-test.unige.ch/news-swapp/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://swapp-test.unige.ch/news-swapp/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://swapp-test.unige.ch/news-swapp/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://swapp-test.unige.ch/news-swapp/Shibboleth.sso/SAML/POST" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://swapp-test.unige.ch/news-swapp/Shibboleth.sso/SAML/Artifact" index="5"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">SWAPP test news-swapp</ServiceName>
+ <ServiceDescription xml:lang="en">SWAPP pour la gestion d'actualités de L'UNIGE</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- HFTM Curri - Test -->
+ <EntityDescriptor entityID="https://dev.webapps.ch/shibboleth-curri">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>hftm.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>tertiaryb</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="hftm.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">hftm.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">HFTM Curri - Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test Applikation - HFTM Curri</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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==
+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev.webapps.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dev.webapps.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dev.webapps.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">HFTM Curri - Test</ServiceName>
+ <ServiceDescription xml:lang="en">Test Applikation - HFTM Curri</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">hftm.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">HFTM Test Identity Provider</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hftm.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Weiterbildung Digicomp ETHZ -->
+ <EntityDescriptor entityID="https://ethz.digicomp.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.vho-switchaai.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">Weiterbildung Digicomp ETHZ</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Weiterbildung Digicomp ETHZ</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Weiterbildung bei Digicomp für Angehörige der ETHZ</mdui:Description>
+ <mdui:Description xml:lang="en">Weiterbildung bei Digicomp für Angehörige der ETHZ</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEHDCCAoSgAwIBAgIJAKI0VKkG7JBVMA0GCSqGSIb3DQEBCwUAMBsxGTAXBgNV
+BAMTEGV0aHouZGlnaWNvbXAuY2gwHhcNMTgwODMwMDYyNTAxWhcNMjEwODI5MDYy
+NTAxWjAbMRkwFwYDVQQDExBldGh6LmRpZ2ljb21wLmNoMIIBojANBgkqhkiG9w0B
+AQEFAAOCAY8AMIIBigKCAYEAxVcHVv0ATwfJhVnajAzDLZep0wQJEe6YcJjfDERC
+GtPNKcQslZo4dN6ou3TfjZnjGPd5v5cSLhbp/RVL8QlAslWc5fwxloYV0dIMJU6v
+gxU9tXJiYzqqmQLCHA+LP4Iv+qRbxrWMnf7GcUZlOzMFFUPpSx+oWyt50LslT87b
+F9QHCxKcnWmvLHbc54x54atgfp7XCqHOK4RuGo77OhpLI3sg2WQk4Q+djBE8FWnE
+fv6lGHn5Ove+QiGkLs4u3Ty/VTp5DRid2V5InJrnWlRSAoLR9D8X7ioPQ6Y4Um+E
+NAEoO7S30hS/tYHPx5KZabyuAcbqmb8gU3XVwYwQC8h/OI5yhDRDt7lZqoN+Hk8l
+nS0MX6KKyld0FDq429NFZcRjArmwC2vRKS1CiK3svqe4bMUYL9khQaXAZGjcv+k8
+R5iCcp426m8/l9JpfgMeiy1Ro5zcqKWGmJcXevQKe+JSjPUcxm3VRGljqi8YEywC
+8OjXD/Eav2M2926N4vBeMgedAgMBAAGjYzBhMEAGA1UdEQQ5MDeCEGV0aHouZGln
+aWNvbXAuY2iGI2h0dHBzOi8vZXRoei5kaWdpY29tcC5jaC9zaGliYm9sZXRoMB0G
+A1UdDgQWBBTm1AFd+YbmLlRgHGBs8SrLZHJezzANBgkqhkiG9w0BAQsFAAOCAYEA
+uJkUtE/JsIEBdt3AukDNtpLoW9olLVZupzbjM3CsJoAkhTV+Fw17y+51WTeUrjCt
+ty4uT1NE82v6HNS5ok0dU49wgACOdJ76pdMXZDtky1O4rekR9lde7gLEXmXRrgeP
+x4XzWrOzqxdyZqbfp6zigHf679A8FLqe38yD3JF+FeWK7DT5NG26DSqTs/WZEVHG
+kNruvPp4MpCaxc67fhg+uJTEKjhUsZjtUQILVkzj27RP6/+N5RScV4MdMlAPrBCg
+dhR05uss/w9zwGjvd2BKCjUlmlqfsa1TSCMxOp04r+bDCCH28UMmTJCYxlSSXqTD
+z5xonpN7sJ29nu2WPMoy73VohFUdL6UUty/zF5Jpdis3t4zkq2niTPmxJYy1yl1d
+shDmnDGAWhU8bqMv+oXsR+lfyy3CxO+MwjKDi4dfCH2l86WzJpRoH9xuQVS8Q62d
+ptPr4JZ/t+aF60zObxsCm0Gl6LgW6mQPb1Y3AG/ZS67dZXVD3u5qW5TUQaulqPdL
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://ethz.digicomp.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://ethz.digicomp.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://ethz.digicomp.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">Weiterbildung Digicomp ETHZ</ServiceName>
+ <ServiceName xml:lang="en">Weiterbildung Digicomp ETHZ</ServiceName>
+ <ServiceDescription xml:lang="de">Weiterbildung bei Digicomp für Angehörige der ETHZ</ServiceDescription>
+ <ServiceDescription xml:lang="en">Weiterbildung bei Digicomp für Angehörige der ETHZ</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- RegApp PCMC -->
+ <EntityDescriptor entityID="https://pcmc.switch.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.eduid.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.eduid.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">RegApp Information German</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">RegApp PCMC</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="fr">RegApp Information French</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="it">RegApp Information Italian</mdui:DisplayName>
+ <mdui:Description xml:lang="de">deutsch</mdui:Description>
+ <mdui:Description xml:lang="en">RegApp Test Login english</mdui:Description>
+ <mdui:Description xml:lang="fr">français</mdui:Description>
+ <mdui:Description xml:lang="it">italiano</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://pcmc.switch.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://pcmc.switch.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://pcmc.switch.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">RegApp Information German</ServiceName>
+ <ServiceName xml:lang="en">RegApp PCMC</ServiceName>
+ <ServiceName xml:lang="fr">RegApp Information French</ServiceName>
+ <ServiceName xml:lang="it">RegApp Information Italian</ServiceName>
+ <ServiceDescription xml:lang="de">deutsch</ServiceDescription>
+ <ServiceDescription xml:lang="en">RegApp Test Login english</ServiceDescription>
+ <ServiceDescription xml:lang="fr">français</ServiceDescription>
+ <ServiceDescription xml:lang="it">italiano</ServiceDescription>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.eduid.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.eduid.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ZHdK go-dev2 R5.P3 AAI Test -->
+ <EntityDescriptor entityID="https://go-dev2.zhdk.ch/CLX.Evento/R5P3/Authentication/SwissEduId">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>zhdk.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="zhdk.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ZHdK go-dev2 R5.P3 AAI Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Weil OAuth seit R5 Final instanzfähig.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://go-dev2.zhdk.ch/CLX.Evento/R5P3/Authentication/SwissEduId/Logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://go-dev2.zhdk.ch/CLX.Evento/R5P3/Authentication/SwissEduId/Acs" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ZHdK go-dev2 R5.P3 AAI Test</ServiceName>
+ <ServiceDescription xml:lang="en">Weil OAuth seit R5 Final instanzfähig.</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">zhdk.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">ZHdK</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.zhdk.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- geserTest2018 -->
+ <EntityDescriptor entityID="https://fl-5-244.unil.cloud.switch.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">geserTest2018</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AAI Test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://fl-5-244.unil.cloud.switch.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://fl-5-244.unil.cloud.switch.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://fl-5-244.unil.cloud.switch.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">geserTest2018</ServiceName>
+ <ServiceDescription xml:lang="en">AAI Test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonCardUID" Name="urn:oid:2.16.756.1.2.5.1.1.12" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissLibraryPersonAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1023" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissLibraryPersonResidence" Name="urn:oid:2.16.756.1.2.5.1.1.1025" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStaffCategory" Name="urn:oid:2.16.756.1.2.5.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch1" Name="urn:oid:2.16.756.1.2.5.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch2" Name="urn:oid:2.16.756.1.2.5.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyBranch3" Name="urn:oid:2.16.756.1.2.5.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonStudyLevel" Name="urn:oid:2.16.756.1.2.5.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonAssurance" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="postalAddress" Name="urn:oid:2.5.4.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="employeeNumber" Name="urn:oid:2.16.840.1.113730.3.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="homePostalAddress" Name="urn:oid:0.9.2342.19200300.100.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="isMemberOf" Name="urn:oid:1.3.6.1.4.1.5923.1.5.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonNickname" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrcid" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="ou" Name="urn:oid:2.5.4.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryOrgUnitDN" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.8" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="homePhone" Name="urn:oid:0.9.2342.19200300.100.1.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="ASVZ" Name="urn:oid:2.16.756.1.2.5.1.1.1014" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fschImapPW" Name="urn:oid:2.16.756.1.2.5.1.1.1024" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="Shib-Custom-UserType" Name="urn:oid:2.16.756.1.2.5.1.1.1022" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwAbrKst" Name="urn:oid:2.16.756.1.2.5.1.1.1007" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwDetailedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1008" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwIDPerson" Name="urn:oid:2.16.756.1.2.5.1.1.1009" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwOeID" Name="urn:oid:2.16.756.1.2.5.1.1.1013" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwSapUserInfo" Name="urn:oid:2.16.756.1.2.5.1.1.1011" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwSapUserID" Name="urn:oid:2.16.756.1.2.5.1.1.1010" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="fhnwUPN" Name="urn:oid:2.16.756.1.2.5.1.1.1012" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="primaryGroupID" Name="urn:oid:1.3.6.1.4.1.7165.2.1.15" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDUsage1y" Name="urn:oid:2.16.756.1.2.5.1.1.1026" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAffiliationProfile" Name="urn:oid:2.16.756.1.2.5.1.1.1028" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssociatedMail" Name="urn:oid:2.16.756.1.2.5.1.1.17" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDAssuranceLevel" Name="urn:oid:2.16.756.1.2.5.1.1.1027" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1029" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unibasChPublicId" Name="urn:oid:1.3.6.1.4.1.22865.10.1.1.93" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unibasChRoles" Name="urn:oid:1.3.6.1.4.1.22865.10.1.1.19" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="UniBEapplAuthorisation" Name="urn:oid:2.16.756.1.2.5.1.1.1000" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unige.ch-OuCode" Name="urn:oid:2.16.756.1.2.5.1.1.1004" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unilFacultePrincipale" Name="urn:oid:2.16.756.1.2.5.1.1.1006" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unilMemberOf" Name="urn:oid:2.16.756.1.2.5.1.1.1003" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uzhSapUserIdStaff" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.27" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uzhSapUserId" Name="urn:oid:1.3.6.1.4.1.11817.1.1.2.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- letemps.local -->
+ <EntityDescriptor entityID="https://letemps.local/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">letemps.local</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The purpose of this service is to allow students to subscribe to Ringier Axel Springer products.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="http://letemps.local/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="http://letemps.local/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="http://letemps.local/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">letemps.local</ServiceName>
+ <ServiceDescription xml:lang="en">The purpose of this service is to allow students to subscribe to Ringier Axel Springer products.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Ringier Axel Springer Schweiz AG -->
+ <!-- Federation Partner Resource of Partner: Ringier Axel Springer Schweiz AG (https://www.ringieraxelspringer.ch/) -->
+ <EntityDescriptor entityID="https://stage.boutique.letemps.ch/shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://stage.boutique.letemps.ch" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Ringier Axel Springer Schweiz AG</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The purpose of this service is to allow students to subscribe to Ringier Axel Springer products.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stage.boutique.letemps.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://stage.boutique.letemps.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://stage.boutique.letemps.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Ringier Axel Springer Schweiz AG</ServiceName>
+ <ServiceDescription xml:lang="en">The purpose of this service is to allow students to subscribe to Ringier Axel Springer products.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">ringieraxelspringer.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ringier Axel Springer Schweiz AG</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.ringieraxelspringer.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- EduApp Backend Dev -->
+ <EntityDescriptor entityID="https://edudev.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-logon-bi-test.ethz.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">EduApp Backend Dev</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Development instance of EduApp back office service application</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIGcTCCBVmgAwIBAgIUMCrArZjuoN2rZ2V8BwyXjhwKnsowDQYJKoZIhvcNAQEL
+BQAwTTELMAkGA1UEBhMCQk0xGTAXBgNVBAoTEFF1b1ZhZGlzIExpbWl0ZWQxIzAh
+BgNVBAMTGlF1b1ZhZGlzIEdsb2JhbCBTU0wgSUNBIEcyMB4XDTE4MTAyNDExNDcx
+NloXDTIwMTAyNDExNTcwMFowYDELMAkGA1UEBhMCQ0gxEDAOBgNVBAgMB1p1ZXJp
+Y2gxEDAOBgNVBAcMB1p1ZXJpY2gxFDASBgNVBAoMC0VUSCBadWVyaWNoMRcwFQYD
+VQQDDA5lZHVkZXYuZXRoei5jaDCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC
+ggEBALjtuJwE4mmBMJYcb21r5uho5Zj8x1egu6gZqwdlrXXpKMiixHQLD62QaDiQ
+YTzcrhLO3OelUqEFbej1Gmku3mukl9IR3e1pyWM6e6UjmBYPMCokjC9UhMhZ+WWS
+ncZqBsQDjC+a1NXR7HsFitLne2VInsvwL7x++GEDGH8LDqbJoGT32TaaSNkP+tIc
+72flkXw34bqvf0DDpQqhUam2y5ZLtk27wa1tIwjGQlO3tAJW27tqTByHKRYpI6eb
+aj6PX3M+8+o2+/QPkTUWXf0SERh2ALrPI60T9bpYJVg9qOQP1Br7Lxj2i/W9MYLN
+KghioGExbqJkAqnGRf1DNhTX+6sCAwEAAaOCAzQwggMwMAkGA1UdEwQCMAAwHwYD
+VR0jBBgwFoAUkRlirVsXpzD78N45JbG9jLm4UScwcwYIKwYBBQUHAQEEZzBlMDcG
+CCsGAQUFBzAChitodHRwOi8vdHJ1c3QucXVvdmFkaXNnbG9iYWwuY29tL3F2c3Ns
+ZzIuY3J0MCoGCCsGAQUFBzABhh5odHRwOi8vb2NzcC5xdW92YWRpc2dsb2JhbC5j
+b20wLQYDVR0RBCYwJIIOZWR1ZGV2LmV0aHouY2iCEnd3dy5lZHVkZXYuZXRoei5j
+aDBRBgNVHSAESjBIMEYGDCsGAQQBvlgAAmQBATA2MDQGCCsGAQUFBwIBFihodHRw
+Oi8vd3d3LnF1b3ZhZGlzZ2xvYmFsLmNvbS9yZXBvc2l0b3J5MB0GA1UdJQQWMBQG
+CCsGAQUFBwMCBggrBgEFBQcDATA6BgNVHR8EMzAxMC+gLaArhilodHRwOi8vY3Js
+LnF1b3ZhZGlzZ2xvYmFsLmNvbS9xdnNzbGcyLmNybDAdBgNVHQ4EFgQUjaH3EKyJ
+lzONqwXADBO/6bbUFc0wDgYDVR0PAQH/BAQDAgWgMIIBfwYKKwYBBAHWeQIEAgSC
+AW8EggFrAWkAdwCkuQmQtBhYFIe7E6LMZ3AKPDWYBPkb37jjd80OyA3cEAAAAWal
+76CsAAAEAwBIMEYCIQCwmAKfUYzYm2eBfeX9ShxoO1VFduCCNc7B1Tv1HJz69AIh
+AICJKd1SgKW6GtPapAPtBU2HNhoAeNicFH2vqfIigQ9GAHYAu9nfvB+KcbWTlCOX
+qpJ7RzhXlQqrUugakJZkNo4e0YUAAAFmpe+gfgAABAMARzBFAiEAjKron1sNGqg/
+d4YY01W97HTGb4lrhHFLW0NwdhMComECIEnO7LlCC5ApVbZWU6w2McjLvywRw1KH
+vFiiNnPK2UzNAHYAVYHUwhaQNgFK6gubVzxT8MDkOHhwJQgXL6OqHQcT0wwAAAFm
+pe+gswAABAMARzBFAiEAxjBcwc1iAoYqKqSWWgXiFDbnKACcxT4Gf4PAQfhCTlUC
+IF1qbSV8ASmRrVhQ6f6pSeMrJSsHeKhEtU1ZYqh5rROYMA0GCSqGSIb3DQEBCwUA
+A4IBAQAZZ1LLvccAH8KL2+QBXRWcyhGJcf2y3FZRy45qN9BvBRxx4Pq13zFHkd0H
+bLua9yCBzQrYAP+LWND9sbPUuJ11vL+q3tMvZaFKcWcUqi10Q2zfGY+sVDcPlm00
+CcdT4ZWgyHNeiSaSq7vDjcOKJ5XSZMLfNBd62u3jqzloWahNbWXff/+xXFWREEC6
+OQsU6IY6pac1dmqHoDsxHOEU4cTvC6Rd+8Nn5WiFMsvje04qvn8B2EqqEttk9i0A
+NqxH1eJfgAtIoQFNWrsZjxihdZOrllf/VAJ/AyZlyeH1QOJjORxmx/Yz1LX4uPOl
+shbPmnVTQNvZq750rhN2J9eSoZNf
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ManageNameIDService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://edudev.ethz.ch/Shibboleth.sso/Artifact/SOAP"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://edudev.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://edudev.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://edudev.ethz.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">EduApp Backend Dev</ServiceName>
+ <ServiceDescription xml:lang="en">Development instance of EduApp back office service application</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- win-sp.tlg.ch -->
+ <EntityDescriptor entityID="https://win-sp.tlg.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.idph.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">win-sp.tlg.ch</mdui:DisplayName>
+ <mdui:Description xml:lang="en">win-sp.tlg.ch</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEEDCCAnigAwIBAgIJAKenz+XIR+zAMA0GCSqGSIb3DQEBCwUAMBgxFjAUBgNV
+BAMTDXdpbi1zcC50bGcuY2gwHhcNMTgxMTE1MTAxMTIxWhcNMjExMTE0MTAxMTIx
+WjAYMRYwFAYDVQQDEw13aW4tc3AudGxnLmNoMIIBojANBgkqhkiG9w0BAQEFAAOC
+AY8AMIIBigKCAYEA2yID58RRTBaMhARgsjyS+t/549PHGYK1xsOkpfOsACi5lTBC
+rvUYsUervmrADs5lZxzrocFJLlp/SfnAw1H83jROS5BqKF9afFhgErDSJyo2qMxQ
+AmCKsRHIxpkRCKfMELwYBK/gkOJQRwynr2uTvWOYHkEsCj++hp56AKm+SleT1nqs
+Zk3w8XaVmEzq/zXVE9sEnw9aJEP1QLJ+rhbcutRYrdB/iKz+JbSS+ZAloMfk5GvS
+r7aNSe21aFUahHb/GPYBSkOI/1fcnlVJrsbBC73v+wBxftT/A0KXVBRirkZmTebF
+gwP0BPS0kLI0/vvafm2QLkAydUTEYHoYxr2kk1gVCRr5l/l1cT0kVUH2aQ/U2fFr
+hphfCTCrwXEA0/G8os7vHHBRzk1nBRxIMIY9qwH0vcnYMWCk4bPof+xvocMDnZME
+N95G0PhBhCi1oDgp/McQjfkmNSyyyded4ymL0Gf6RoPmjLbgtxYMw6CBNr789b0B
+N+f039sPH9JhpdIBAgMBAAGjXTBbMDoGA1UdEQQzMDGCDXdpbi1zcC50bGcuY2iG
+IGh0dHBzOi8vd2luLXNwLnRsZy5jaC9zaGliYm9sZXRoMB0GA1UdDgQWBBSsv+fY
+E67QRb6df/9CDRlipQqgiDANBgkqhkiG9w0BAQsFAAOCAYEAC27+6XBBaEeaaIuJ
+NnCl3BwkOPh/BSS49vWYERKvUUQ4oZbZ53T8vy+URGVVViITdazVrl9O+4xKB7hY
+z1b6IChtr5qgBA7THoe8ThzlGMf6FsXrX2UKERNYjjUga/dvI3GMFbUHrkrbDpBA
+7MP63TxoREoFWNH5ngYG19HFeNdHKtVrod8Bi6B/xprKuEE/QrTI/h/acqR1Ii6p
+0kml+i0oN6OrNiZUDMSqIX8IiYhRuNKFqwzYCSc8C7OYBN5yeO1Pa3J7urQIG7i1
+bfyTGIleow3fWVIvLjZuD5JPQmoJHkt82zAeJzuBoOaPYs20bgIB2Y8p5P5IGKSH
+PKkWy9930u9O0LwhLWt/Wwcq3lYTSy6wH9Gk4Tfeo5CywJZBETKMY1H/OOk54mWj
+i5AnW1v+8nGvl29ePV4OcCzE1pTnDIJlcgiAHeqog5mj/1o+nZ01PxzIilLkkLrm
+La/PxeAFOt+t/WK2yRuo/hbhSsLEkJLB1GCxPsXYGCGHNjF0
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://win-sp.tlg.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">win-sp.tlg.ch</ServiceName>
+ <ServiceDescription xml:lang="en">win-sp.tlg.ch</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ZHdK go AAI Test -->
+ <EntityDescriptor entityID="https://go.zhdk.ch/CLX.Evento/Authentication/SwissEduId">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>zhdk.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="zhdk.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://service.itz.zhdk.ch" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ZHdK go AAI Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ONLA Einschreibesystem</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://go.zhdk.ch/CLX.Evento/Authentication/SwissEduId/Logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://go.zhdk.ch/CLX.Evento/Authentication/SwissEduId/Acs" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ZHdK go AAI Test</ServiceName>
+ <ServiceDescription xml:lang="en">ONLA Einschreibesystem</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">zhdk.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">ZHdK</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.zhdk.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ETH course portal TST -->
+ <EntityDescriptor entityID="https://www.coursereg-test.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-logon-bi-test.ethz.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-logon-bi-test.ethz.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://www.ethz.ch/services/de/it-services/service-desk.html" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">ETH Kursportal TST</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">ETH course portal TST</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Registrierungsportal für Kurse, Seminare und Kolloquien der ETH - TST (Testsystem)</mdui:Description>
+ <mdui:Description xml:lang="en">Registration portal for courses, seminars and colloquia at ETH - TST (Test environment)</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.coursereg-test.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.coursereg-test.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.coursereg-test.ethz.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">ETH Kursportal TST</ServiceName>
+ <ServiceName xml:lang="en">ETH course portal TST</ServiceName>
+ <ServiceDescription xml:lang="de">Registrierungsportal für Kurse, Seminare und Kolloquien der ETH - TST (Testsystem)</ServiceDescription>
+ <ServiceDescription xml:lang="en">Registration portal for courses, seminars and colloquia at ETH - TST (Test environment)</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-logon-bi-test.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">ETH Zürich (BI test)</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">ETH Zurich (BI test)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-logon-bi-test.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- UZHPHIL-DEV-EXTERN2 -->
+ <EntityDescriptor entityID="https://phdadmin.erb-technology.net/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uzh.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="uzh.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">UZHPHIL-DEV-EXTERN2</mdui:DisplayName>
+ <mdui:Description xml:lang="en">External development server for a software project of the philosophical faculty of the UZH</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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=
+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://phdadmin.erb-technology.net/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://phdadmin.erb-technology.net/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://phdadmin.erb-technology.net/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">UZHPHIL-DEV-EXTERN2</ServiceName>
+ <ServiceDescription xml:lang="en">External development server for a software project of the philosophical faculty of the UZH</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">uzh.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">Universität Zürich TEST</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">University of Zurich TEST</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.uzh.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.uzh.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- JC_Test_SP_NEW -->
+ <EntityDescriptor entityID="https://mysptest.jamcracker.com/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">JC_Test_SP_NEW</mdui:DisplayName>
+ <mdui:Description xml:lang="en">JC_Test_SP_NEW</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://mysptest.jamcracker.com/Shibboleth.sso/SLO/Redirect"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://mysptest.jamcracker.com/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">JC_Test_SP_NEW</ServiceName>
+ <ServiceDescription xml:lang="en">JC_Test_SP_NEW</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="telephoneNumber" Name="urn:oid:2.5.4.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1029" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliationMail" Name="urn:oid:2.16.756.1.2.5.1.1.1031" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Ringier Axel Springer Schweiz AG -->
+ <!-- Federation Partner Resource of Partner: Ringier Axel Springer Schweiz AG (https://www.ringieraxelspringer.ch/) -->
+ <EntityDescriptor entityID="https://letemps-onki-test.ringieraxelspringer.ch/shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://letemps-onki-test.ringieraxelspringer.ch/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Ringier Axel Springer Schweiz AG</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The purpose of this service is to allow students to subscribe to Ringier Axel Springer products.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://letemps-onki-test.ringieraxelspringer.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://letemps-onki-test.ringieraxelspringer.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://letemps-onki-test.ringieraxelspringer.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Ringier Axel Springer Schweiz AG</ServiceName>
+ <ServiceDescription xml:lang="en">The purpose of this service is to allow students to subscribe to Ringier Axel Springer products.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">ringieraxelspringer.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Ringier Axel Springer Schweiz AG</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.ringieraxelspringer.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Evento-Test -->
+ <EntityDescriptor entityID="https://evento-test.zhaw.ch/CLX.Evento/New/Authentication/SwissEduId">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Evento-Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Evento Service Provider</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://evento-test.zhaw.ch/CLX.Evento/New/Authentication/SwissEduId/Logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://evento-test.zhaw.ch/CLX.Evento/New/Authentication/SwissEduId" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://evento-test.zhaw.ch/CLX.Evento/New/Authentication/SwissEduId/Acs" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://evento-test.zhaw.ch/CLX.Evento/New/Authentication/SwissEduId" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://evento-test.zhaw.ch/CLX.Evento/New/Authentication/SwissEduId/Acs" index="4"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Evento-Test</ServiceName>
+ <ServiceDescription xml:lang="en">Evento Service Provider</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="uid" Name="urn:oid:0.9.2342.19200300.100.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Eduvalidation Stage -->
+ <!-- Federation Partner Resource of Partner: Stiftung Studenten-Discount (SSD) (https://www.ssd.ethz.ch/) -->
+ <EntityDescriptor entityID="https://stage.edu-validation.ch/auth/shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://www.projektneptun.ch" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Eduvalidation Stage</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Stage/Testing! Provides Validation of student/staff status for services of SSD, like Projekt Neptun</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://stage.edu-validation.ch/validate/switch/callback" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Eduvalidation Stage</ServiceName>
+ <ServiceDescription xml:lang="en">Stage/Testing! Provides Validation of student/staff status for services of SSD, like Projekt Neptun</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">ssd.ethz.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Stiftung Studenten-Discount (SSD)</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.ssd.ethz.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- dev-renku -->
+ <EntityDescriptor entityID="https://dev.renku.ch/auth/realms/Renku">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">dev-renku</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Developer instance of the Renku platform.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev.renku.ch/auth/realms/Renku/broker/eduID-test/endpoint"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dev.renku.ch/auth/realms/Renku/broker/eduID-test/endpoint" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">dev-renku</ServiceName>
+ <ServiceDescription xml:lang="en">Developer instance of the Renku platform.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- authr -->
+ <EntityDescriptor entityID="https://authr.dokr.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>hepl.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>uas</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="hepl.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">hepl.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://hepldesk.hepl.ch" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">authr</mdui:DisplayName>
+ <mdui:Description xml:lang="en">authr SP</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://authr.dokr.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://authr.dokr.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://authr.dokr.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">authr</ServiceName>
+ <ServiceDescription xml:lang="en">authr SP</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">hepl.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">HEP Vaud - TEST - Haute école pédagogique du canton de Vaud</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">HEP Vaud - TEST - Haute école pédagogique du canton de Vaud</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.hepl.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.hepl.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- WSyM vhost testing -->
+ <EntityDescriptor entityID="https://wsym-test-001.its.unibas.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>unibas.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="unibas.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">unibas.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://its.unibas.ch/" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">WSyM vhost testing</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Website WSyM vhost testing</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wsym-test-001.its.unibas.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wsym-test-001.its.unibas.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wsym-test-001.its.unibas.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">WSyM vhost testing</ServiceName>
+ <ServiceDescription xml:lang="en">Website WSyM vhost testing</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unibasChPublicId" Name="urn:oid:1.3.6.1.4.1.22865.10.1.1.93" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="unibasChRoles" Name="urn:oid:1.3.6.1.4.1.22865.10.1.1.19" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">unibas.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Uni Basel Test IdP</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unibas.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- COManage Test -->
+ <EntityDescriptor entityID="https://comanagetest.eduid.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.eduid.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.eduid.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">COManage Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Groupmanagement for edu-ID based on COManage</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://comanagetest.eduid.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://comanagetest.eduid.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://comanagetest.eduid.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">COManage Test</ServiceName>
+ <ServiceDescription xml:lang="en">Groupmanagement for edu-ID based on COManage</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduIDLinkedAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1029" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.eduid.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.eduid.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ArcGIS Portal Test -->
+ <EntityDescriptor entityID="https://boulle.esri-de.com.portal">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.eduid.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.eduid.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ArcGIS Portal Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">ArcGIS Portal Test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDPjCCAiagAwIBAgIEY+1xdjANBgkqhkiG9w0BAQsFADA/MSAwHgYDVQQLExdT
+ZWxmIFNpZ25lZCBDZXJ0aWZpY2F0ZTEbMBkGA1UEAxMSQk9VTExFLkVTUkktREUu
+Q09NMCAXDTE5MDMxNzA3MjkyNloYDzIwNTIwMTIzMDcyOTI2WjA/MSAwHgYDVQQL
+ExdTZWxmIFNpZ25lZCBDZXJ0aWZpY2F0ZTEbMBkGA1UEAxMSQk9VTExFLkVTUkkt
+REUuQ09NMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAiJPckj1CFUGU
+KdHHXvkSasz9YxPP5ExCo1m0SSsS+cP3JRW1Nt6k1lfiJXhtPD9OjRpvdV7gM6s7
+tQZNtGOH/+cJuEtA7h4MCL1JqDYo9dsxlezyrXLBLCufibi+nIRaeIpYOoTheUkf
+gIAxSW6DiHpmU2h0249Dy4UjqsQ+mlBnWLe3epb3Uw+hjKEb4e/1z1krK2Za+KGw
+IiaQ0DTMQfrLczILiX//frswtTWAtwEj/nUBHCLSXzPN+DSwETPqfrR4aVUdhJvo
+58rF3kIe8nXwFj7WPVDbjUO5Jdw6HvAcFfWaaazhIIvIrEMOjPXjimmE4usrVEiD
+WWjEfLtsjQIDAQABo0AwPjAdBgNVHREEFjAUghJCT1VMTEUuRVNSSS1ERS5DT00w
+HQYDVR0OBBYEFAl/iJGFYf1d73is+H9UkLVz41w0MA0GCSqGSIb3DQEBCwUAA4IB
+AQB7HPFZU3enJqhZsSDl5Gga4bANlsT0JhOgZIQnafKeILyUwAOFiBuNEBkrAIzO
+mxoZPdWRh+qrsOiEkWnsNQre/XdcaUrrCiNlbWGsqgJ2O3j6IUGtJIil33hklLEY
+2VKC19BNiex72v4Tmf83VFjBaNwYqE0yNAdU1eXmUHJsq071RaWqGGLFiPcCK4G/
+r0EVnkBT18aL7aCZgj8JSLniDtl6du1X0Iv5EymCG8FHaRjB2QD4EFUImD3mPd4/
+SiAgXpAbfEsi7VTT3TtTOgdy/wowGtjmjVKL4jOT5+EfFUSP/KTcCJ3xMhtLqqg1
+trbjv3+62t1oOpr0f+juBKur
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://boulle.esri-de.com/portal/sharing/rest/oauth2/saml/signin" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://boulle.esri-de.com/portal/sharing/rest/oauth2/saml/signin" index="2"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ArcGIS Portal Test</ServiceName>
+ <ServiceDescription xml:lang="en">ArcGIS Portal Test</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.eduid.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.eduid.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- PRODS-CURSUS/HORAIRES tst -->
+ <EntityDescriptor entityID="https://wwwit.unige.ch/cursus/horaires/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>idp-test.unige.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="idp-test.unige.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">PRODS-CURSUS/HORAIRES tst</mdui:DisplayName>
+ <mdui:Description xml:lang="en">PRODS-CURSUS/HORAIRES test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEJDCCAoygAwIBAgIJAIJe1/n1SvL3MA0GCSqGSIb3DQEBCwUAMBkxFzAVBgNV
+BAMTDnd3d2l0LnVuaWdlLmNoMB4XDTE5MDMwODA4NDUzNloXDTIyMDMwNzA4NDUz
+NlowGTEXMBUGA1UEAxMOd3d3aXQudW5pZ2UuY2gwggGiMA0GCSqGSIb3DQEBAQUA
+A4IBjwAwggGKAoIBgQDA3bsLS3WTYeokkhdk4bb0Aws5UTtfWAc1BulSITvjp7XL
+X410g8iZSmtvf7xo0z6mSA88FbcfsJveYmWoOoxT0+ETirkV/9G03/Pn/5UNMpVI
+mraV3jSBujrnAc3y7ZbOBIaMso3RHsImQiwfGy8iL+aBBAAdfBAX3Ur7OzWYt/gk
+U4s9ryKU5CprXmdKHm05XTudSyw4nN8PHmWa2Uuv29afqI5C1ZL9D6wjDHJHsiC/
+n/CKBDS6UVK9GSwOsKA+wUwwxqPF4oThbgni5pAtO2VnvVN59Zo9afPmrwDKCGY0
+jSdMnhmk1sctvSIycWOMUwGc0hvhnteMT3rd5WZboTBahAWMxm88DS7FSefMZdsX
+083jzyGTXyOphEknX+9BUncOn/K2Y0w0hZtI4O9Df6REajU/4tPvyk1/g++z7Bby
+Aehfi4ZQBNFEFC724h8SybyZiXt/aP2ESck6NMUEKEb2E/Uhbaw727MSdbqSF+7p
+HYldpLM4O/lxdJrAXYUCAwEAAaNvMG0wTAYDVR0RBEUwQ4IOd3d3aXQudW5pZ2Uu
+Y2iGMWh0dHBzOi8vd3d3aXQudW5pZ2UuY2gvY3Vyc3VzL2hvcmFpcmVzL3NoaWJi
+b2xldGgwHQYDVR0OBBYEFKLp8qfp/GL1LCBXazhqVuKwLKeKMA0GCSqGSIb3DQEB
+CwUAA4IBgQCr48I5fMJWR5ctbAKiPSRgCL1YxVnVZ5tPZwSJu9GItkNHSHUPVSO8
+aw14DgUdXsvguDTjGURkH5oQyYWAJIjjFv8d+jVR4ngHxUZdoaE1lDokhTiXme6M
+L1U0AsSIwxTKOhdA/W/eBrzqkESCVu7hx54da08X/umcvyY9ZhdokaNkU6A+cyi4
+vUXeLVH0gtQEDR+x2VqkdwZBSumgYhvzldf7GEXegNaLgoWFEpkZpXVF9KC4W3rw
+WV2KomjsiOwhpzOfqJHhqIkKZgJeso7UW7RHbV2POpejhqGvMaVdwuE8I3GyX+so
+XmKbg0vL3c1w/sqZTFMbTVVowz9WImDOYWgFDr6o9MckIvsMxJQnZnC5sEcqSH2/
+e/2ywsHejIPdOfuMIRaxBCQBpDrd/3gO9WX7jEE342jEBzHI1s0PWd479IurqE8f
+0HOCtgGAHU/DD24onhPQn7fedxovFXfHvEknXmEN/FjSBgc2hTFgV+PshxjK5D3t
+GUArF8QDlTI=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://calliope-adf.unige.ch/cursus/horaires/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://clio-adf.unige.ch/cursus/horaires/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://wwwit.unige.ch/cursus/horaires/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://calliope-adf.unige.ch/cursus/horaires/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://clio-adf.unige.ch/cursus/horaires/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://wwwit.unige.ch/cursus/horaires/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://calliope-adf.unige.ch/cursus/horaires/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://clio-adf.unige.ch/cursus/horaires/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://wwwit.unige.ch/cursus/horaires/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">PRODS-CURSUS/HORAIRES tst</ServiceName>
+ <ServiceDescription xml:lang="en">PRODS-CURSUS/HORAIRES test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">idp-test.unige.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">University of Geneva Test Identity Provider</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">Test IdP Université de Genève</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.idp-test.unige.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.idp-test.unige.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Dike -->
+ <!-- Federation Partner Resource of Partner: Dike Verlag AG (https://www.dike.ch/) -->
+ <EntityDescriptor entityID="https://www.dike.ch/shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Dike</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The purpose of this service is student verification.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIECDCCAnCgAwIBAgIJAI2fBauaLuK1MA0GCSqGSIb3DQEBCwUAMBYxFDASBgNV
+BAMTC3d3dy5kaWtlLmNoMB4XDTE5MDMxMjEzMTIxMloXDTIyMDMxMTEzMTIxMlow
+FjEUMBIGA1UEAxMLd3d3LmRpa2UuY2gwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAw
+ggGKAoIBgQDQ3PzvbLGBG14Sv33Cm2M4DZ++p497vC6FMX4hie1mh69Sm0oP2qYW
+gvBGqZKYL6cC5Z7vcj4qlKghp6kaKlbYLB2LkM50NxvSkLJS3GFCTyhOHvIM3kVf
+d9jDY0XEakcsJ7Km2d26HYiO6H7m4Ag1ALRViNY3HARy/v3fyLGY5gm+O5sr42Tu
+/K5NOg7QA3MfszLD+aOIL/GVKVpm+a2A8a3NNYDsdhErylyaPUE7RNrrp3CNO9Ge
+lg+PWgelyxCLhmK1Q+Ka/jlG7pa8PgCeGSuroMqWd9kNiafdG+f9zf0F0/49M7TF
+4wJZMriq5PG+T3/VkZk3LH8KqPMjP+1Tnhz492hekvaBmTzUTka/MuM6o8a9i0Fz
++x7UFz+YeYZDpg0ibqVCV0oSYSA9YZpwZXTE939J2x9MV7yNXMUZ7/7g8zBr/3li
+RyPrnL4pobdgccamk6tZgJKgwLkqcBEkautbojWH/AEg5SOEpKZAecpxnlxJPn+b
+G+T89aYrJPUCAwEAAaNZMFcwNgYDVR0RBC8wLYILd3d3LmRpa2UuY2iGHmh0dHBz
+Oi8vd3d3LmRpa2UuY2gvc2hpYmJvbGV0aDAdBgNVHQ4EFgQU6rSgetYa2IVuaYT0
+giQtAsgPA2kwDQYJKoZIhvcNAQELBQADggGBAGn6PWtVL0ngjwRyw3Mxn90cCmr8
+XHelPloF7Xnva+hdCu4UCJQvvQKKxsDsBYPsiD1T/aJPK1DKB7hvpAP8Sk9y/STG
+pwhOXJI1aKTMxrS4OkmhhRPsSM/jD+lihHqfaRs4OzLeNd3EM2iq1bbNYi5tgpV4
+etyxFOWrg4wtw10wIM4sstC7dGs38ZS58HGdpC+Ae4Y00aNRoSV1v+4KcQCtlFAg
+c0WUNVYbzua5F4b8HL1jCjFnpC7ZxYkPDvU6uB/Flczr56CfhfNfFI9xseQhgmFL
+ygRkXt9JKN71oATExh6zf3sMeeJaS/NhQNcL7lY+snzi0B7CLfx1ENzQasQ/sXMr
+BIlzqt6ZTjg9XdyNLRwwcSZdLCRWzArgGCv9KM/AZ4+u8wB9tWgGokAlF8kDW/kH
+QWPMLps0NABSrAvH8P2T7YQdjrlqQSBJuXC/2eAAuTIM6qrszSaf3QIXW2VD93YX
+8cY1ckepOs3i1GhKo8f/clxxvsTb/fR0xxfTYA==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://www.dike.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://www.dike.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://www.dike.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Dike</ServiceName>
+ <ServiceDescription xml:lang="en">The purpose of this service is student verification.</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">dike.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Dike Verlag AG</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.dike.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Softfactors -->
+ <!-- Federation Partner Resource of Partner: softfactors AG (https://www.softfactors.com/) -->
+ <EntityDescriptor entityID="https://moonswitch.eu.auth0.com">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-demo-idp.switch.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">aai-logon-bi-test.ethz.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://www.softfactors.com" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Softfactors</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Auth service to Softfactors.com HR Solution users</mdui:Description>
+ <mdui:InformationURL xml:lang="en">https://www.softfactors.com/</mdui:InformationURL>
+ <mdui:PrivacyStatementURL xml:lang="en">https://www.iubenda.com/privacy-policy/910915</mdui:PrivacyStatementURL>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moonswitch.eu.auth0.com/logout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://moonswitch.eu.auth0.com/login/callback?connection=ethzidp2019" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Softfactors</ServiceName>
+ <ServiceDescription xml:lang="en">Auth service to Softfactors.com HR Solution users</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">softfactors.com</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">softfactors AG</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.softfactors.com/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Demo sp -->
+ <EntityDescriptor entityID="https://sp100.example.org/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Demo sp</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Using for shibboleth sp knowledge</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEIDCCAoigAwIBAgIJAI/DuUOgXAK0MA0GCSqGSIb3DQEBCwUAMBwxGjAYBgNV
+BAMTEXNwMTAwLmV4YW1wbGUub3JnMB4XDTE5MDMyMDExMjgyNFoXDTIyMDMxOTEx
+MjgyNFowHDEaMBgGA1UEAxMRc3AxMDAuZXhhbXBsZS5vcmcwggGiMA0GCSqGSIb3
+DQEBAQUAA4IBjwAwggGKAoIBgQC5BuFiiOovWMLeoq+6l56V0F7GW2S/lSLsHiGz
+py9ozQytjLNjhjsxm9IQVDl0q8K05DOZZsR7+7a5Sxi2EPmO5vZMEW3FbPc7IdWf
+elMP0ktsOZyacdBw61pkrKDmtC8fxQ9h4PKYpNaChpqgWk4l5jDUDc3Q2ZjLQ45d
+wZ9ZAH9BNkLB5a5EudnLhC5GafBpn+Hkr3mAcSV0wf8nmtRV03Sdttcz3oXgVXZt
+KRY7QakZie8/muWBinCnoxPc4+lc1MUb4y6mh3Di9PvEPGv8zUjT1wGys8q0Jzy6
+ZQUAnqoqMABGcRrq14vGBsu5rHG/t2oJHfcNQzYVJZlfrjfQ7ZJLTwsQlvRcqw69
+6swEez99MrfuTdPVls7KYwQNFgPn0uXIbMuudYU0+Rk21zhyuwYMh78hE9etL9WU
+I1b7ptq7jbg5yeG/FE9XtwZmBGfAHqovZA2+mIe4uFXe22MwNM/ATiK1AeMtioXF
+jFEjhuR1IyjuH1FNb+fN3slv+aUCAwEAAaNlMGMwQgYDVR0RBDswOYIRc3AxMDAu
+ZXhhbXBsZS5vcmeGJGh0dHBzOi8vc3AxMDAuZXhhbXBsZS5vcmcvc2hpYmJvbGV0
+aDAdBgNVHQ4EFgQU/pG3Y1ny6l1yuAWZqCAvb5VIfRcwDQYJKoZIhvcNAQELBQAD
+ggGBACHsfY7SYSJjQlVYomTBR1gOli2SvXZsLO7Olhj0a46Woetv4XNm22ZUDIed
+ZoM64XU25m9Bh4gLZ2albLI1FWlKV5rIP3XJjSTDGICsSmHANBhQxC1mDhUvTEjQ
+kVqPXXdsZzEYtaUz4fETVEHLGdPiIAnUaEo6MPojoXIMOtk4AUR+Hi+FM9UkmCgP
+2XPAbkhlCUsinaolebkr3UMnoC6Dl4UihgPIfjCxh8b5yoR+zyx0xOT5l5U1aYvM
+kcrIQShmM4xko+G8IXRbRwt8ywSEaZb/fXaJfrDcKWul4Ov0rbRE9jK6WTmOrnF8
+Rl2e3yb7frsQk5BVMJrPF06V5jV2e/iTmJcTmtOyPPaAQ1f1Hkz8NIL4/2cCJVp7
+OUJbodd0g0Y2XEjQbpj9hgmwktlwoojBQZpyP+6ZRQ8RYgx5eFZOHZ7vYB8cYGCn
+qE7MqAQZa+nIp0yONsgbuNBXg8j7L24AJcCtp1RD52UYI7SG2tWoWWIOk4MhMpH5
+jf5qRQ==
+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp100.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp100.example.org/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp100.example.org/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Demo sp</ServiceName>
+ <ServiceDescription xml:lang="en">Using for shibboleth sp knowledge</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrimaryAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- openBIS test -->
+ <EntityDescriptor entityID="https://bs-openbis-sis-ci-switchaai.ethz.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">openBIS test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">test instance of openBIS</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://bs-openbis-sis-ci-switchaai.ethz.ch/Shibboleth.sso/SLO/Redirect"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://bs-openbis-sis-ci-switchaai.ethz.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://bs-openbis-sis-ci-switchaai.ethz.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://bs-openbis-sis-ci-switchaai.ethz.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">openBIS test</ServiceName>
+ <ServiceDescription xml:lang="en">test instance of openBIS</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- BioMedIT SPHN -->
+ <EntityDescriptor entityID="https://auth.dcc.sib.swiss/auth/realms/biomedit">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>https://refeds.org/profile/mfa</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.eduid.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.eduid.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">BioMedIT SPHN</mdui:DisplayName>
+ <mdui:Description xml:lang="en">AAI service for BioMedIT SPHN</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://auth.dcc.sib.swiss/auth/realms/biomedit/broker/SWITCH_edu-ID_test/endpoint"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://auth.dcc.sib.swiss/auth/realms/biomedit/broker/SWITCH_edu-ID_test/endpoint" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">BioMedIT SPHN</ServiceName>
+ <ServiceDescription xml:lang="en">AAI service for BioMedIT SPHN</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.eduid.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.eduid.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Medon Dev Test -->
+ <EntityDescriptor entityID="http://local-medon.dvbern.ch/auth/realms/MedonDevTest">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">Medon Entwickler Teststufe</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Medon Dev Test</mdui:DisplayName>
+ <mdui:Description xml:lang="de">Teststufe für Entwicklertests der Medon - EduId integration</mdui:Description>
+ <mdui:Description xml:lang="en">SP for testing the eduId integration for swissuniversities medon on dev-machines</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="http://local-medon.dvbern.ch/auth/realms/MedonDevTest/broker/eduid-test-saml/endpoint"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="http://local-medon.dvbern.ch/auth/realms/MedonDevTest/broker/eduid-test-saml/endpoint"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="http://local-medon.dvbern.ch/auth/realms/MedonDevTest/broker/eduid-test-saml/endpoint" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">Medon Entwickler Teststufe</ServiceName>
+ <ServiceName xml:lang="en">Medon Dev Test</ServiceName>
+ <ServiceDescription xml:lang="de">Teststufe für Entwicklertests der Medon - EduId integration</ServiceDescription>
+ <ServiceDescription xml:lang="en">SP for testing the eduId integration for swissuniversities medon on dev-machines</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganization" Name="urn:oid:1.3.6.1.4.1.25178.1.2.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="schacHomeOrganizationType" Name="urn:oid:1.3.6.1.4.1.25178.1.2.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Medon: Test -->
+ <EntityDescriptor entityID="https://med-test.swissuniversities.ch/auth/realms/MedonDevTest">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Medon: Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The puropose of this SP is to try the integration of Medon with the eduId on the testservers of swu.</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,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</mdui:Logo>
+ <mdui:Logo height="60" width="80">data:image/png;base64,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</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://med-test.swissuniversities.ch/auth/realms/MedonDevTest/broker/eduid-test-saml/endpoint"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://med-test.swissuniversities.ch/auth/realms/MedonDevTest/broker/eduid-test-saml/endpoint"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://med-test.swissuniversities.ch/auth/realms/MedonDevTest/broker/eduid-test-saml/endpoint" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Medon: Test</ServiceName>
+ <ServiceDescription xml:lang="en">The puropose of this SP is to try the integration of Medon with the eduId on the testservers of swu.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SONAR -->
+ <!-- Federation Partner Resource of Partner: RERO (https://www.rero.ch/) -->
+ <EntityDescriptor entityID="https://sonar.ch/shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.eduid.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">SONAR</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Swiss Open Access Repository</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sonar.ch:5000/shibboleth/authorized/eduidtest" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sonar.test.rero.ch/shibboleth/authorized/eduidtest" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sonardev.test.rero.ch/shibboleth/authorized/eduidtest" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">SONAR</ServiceName>
+ <ServiceDescription xml:lang="en">Swiss Open Access Repository</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">rero.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">RERO</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.rero.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SLSP Test -->
+ <EntityDescriptor entityID="https://slsp-uzb.alma.exlibrisgroup.com/mng/login">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.eduid.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.eduid.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">SLSP Test</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Test installation of Exlibris Alma operated by SLSP.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
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
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slsp-uzb.alma.exlibrisgroup.com/mng/pdsHandleLogin" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">SLSP Test</ServiceName>
+ <ServiceDescription xml:lang="en">Test installation of Exlibris Alma operated by SLSP.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.eduid.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.eduid.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SLSP Test UBS -->
+ <EntityDescriptor entityID="https://slsp-ubs.alma.exlibrisgroup.com/mng/login">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.eduid.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.eduid.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">SLSP Test UBS</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SLSP Test instance</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slsp-ubs.alma.exlibrisgroup.com/mng/pdsHandleLogin" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slsp-uzb.alma.exlibrisgroup.com/mng/pdsHandleLogin" index="2"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">SLSP Test UBS</ServiceName>
+ <ServiceDescription xml:lang="en">SLSP Test instance</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.eduid.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.eduid.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- svx-sympa9.unifr.ch -->
+ <EntityDescriptor entityID="https://svx-sympa9.unifr.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:attribute:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>unifr.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>university</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="unifr.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">unifr.ch</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="http://www.unifr.ch/aai" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">svx-sympa9.unifr.ch</mdui:DisplayName>
+ <mdui:Description xml:lang="en">UniFR, Sympa Mailing List - serveur test</mdui:Description>
+ <mdui:Keywords xml:lang="fr">listes diffusion sympa</mdui:Keywords>
+ <mdui:Keywords xml:lang="en">mailing lists sympa</mdui:Keywords>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://svx-sympa9.unifr.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://svx-sympa9.unifr.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://svx-sympa9.unifr.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">svx-sympa9.unifr.ch</ServiceName>
+ <ServiceDescription xml:lang="en">UniFR, Sympa Mailing List - serveur test</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">unifr.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Université de Fribourg Test Home Organization</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.unifr.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- SLSP Test UZB Primo -->
+ <EntityDescriptor entityID="https://slsp-uzb.primo.exlibrisgroup.com/mng/login">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.eduid.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.eduid.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">SLSP Test UZB Primo</mdui:DisplayName>
+ <mdui:Description xml:lang="en">SLSP Test instance for UZB IZ</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIDUDCCAjigAwIBAgIEXBYMGjANBgkqhkiG9w0BAQsFADBqMQswCQYDVQQGEwJJTDESMBAGA1UECAwJSmVydXNhbGVtMRIwEAYDVQQHDAlKZXJ1c2FsZW0xETAPBgNVBAoMCEV4bGlicmlzMQ0wCwYDVQQLDARBbG1hMREwDwYDVQQDDAhTQU1MIEpLUzAeFw0xODEyMTYwODI2MDJaFw0yNTEyMzEyMTU5NTlaMGoxCzAJBgNVBAYTAklMMRIwEAYDVQQIDAlKZXJ1c2FsZW0xEjAQBgNVBAcMCUplcnVzYWxlbTERMA8GA1UECgwIRXhsaWJyaXMxDTALBgNVBAsMBEFsbWExETAPBgNVBAMMCFNBTUwgSktTMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAwu4rvZWy4TxQtqgArXszDncB0uXcjU0UJ26IyPm3czt5wLeOf1bq1eF9JkF3SXUNGnmM3r5QwqW4Y9rTbyO/xUG41elw4T3pk0bqvk+tNsJhU6aDYoeZiGB4WZ4pwlzAuFtX4wKNFJamr85QtthdKdGiouqPMAPkgfyKvh+pPD4MxozTvSRSxPiOym1R8fiLu00wC+PtmVaACwZ9db53wMaygSqPNdK3n8U7pzLr7vnQE6arYlYfqEGUUXDubHPc8g2tEuUd+HZDc45fdKqkhkDzgfMKhcg7RnNtXRIHaWr8rkA1qAP2DvKiC0vzr/trZgrZ3/1fD5WN0FODoVquBwIDAQABMA0GCSqGSIb3DQEBCwUAA4IBAQBBRe35YSyiNKMlXFF7ac27QsUfc4h5X9kBOUJDSQC76YiRXgiBDFxH6d8pafrg2O17BY0SVUA899DVqXU5BxR5Lb4TXt0MSpsSGbSo3z/eXLwg0GogkfnT9JMb+6EOTmjFCTl+bLqcFaornnVov0Nhyt+6wCk7jyZx+qRxrD2Z2nspA7c3EBbb6UIxxRDbmXtpk6pazWlAgisDy3G8Jr6c+wM8EpMXs8AgcGomDgyu6r2dCho3rtx2HoaaoDp/ElCYW264y2V+/Hh7jS6y57UwLiEurLEbDL6/jebxRgr7JmK6MgW1DsdQi9j5scINQSL8B2zwHld4QxQtjG8IkRK5
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://slsp-uzb.primo.exlibrisgroup.com/mng/samlSingleLogout"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://slsp-uzb.primo.exlibrisgroup.com/mng/pdsHandleLogin" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">SLSP Test UZB Primo</ServiceName>
+ <ServiceDescription xml:lang="en">SLSP Test instance for UZB IZ</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="commonName" Name="urn:oid:2.5.4.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.eduid.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.eduid.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Online Anmeldung -->
+ <EntityDescriptor entityID="https://dt-it-500213.hsr.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.eduid.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.eduid.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="de">Online Anmeldung</mdui:DisplayName>
+ <mdui:DisplayName xml:lang="en">Online Anmeldung</mdui:DisplayName>
+ <mdui:Description xml:lang="de">LOKALER TEST EDUID: Über diesen Service kann man sich für ein Studium an der HSR anmelden.</mdui:Description>
+ <mdui:Description xml:lang="en">LOKALER TEST EDUID: Über diesen Service kann man sich für ein Studium an der HSR anmelden.</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,AAABAAEAEBAAAAEAIABoBAAAFgAAACgAAAAQAAAAIAAAAAEAIAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAACjZQL/o2QB/6NkAf+jZAH/o2QB/6NkAf+jZAH/pmoK/6VoB/+jZAH/o2QB/6NkAf+jZAH/o2QB/6NkAf+jZQL/qW4Q//bw5v+jZAD/rXUc//Hp2v+jZAD/uYo+/+jYwP/x6Nn/yaRp/6NkAP/fyqj/v5RP/72QSP/r3cf/o2QB/6luEf/38uv/o2QA/611HP/z69//o2QA/6NkAP+jZAD/yKNo/+fXvv+jZAD/4Myr/8CVUf/j0LH/xp9i/6NkAf+pbhH//fz6/+naw//r3sr/8+vf/6NkAP+rchj/6tvF/+7j0f+5iT3/o2QA/+DMq//x59j/9vHo/7WDM/+jZAH/qW4R//fy6/+jZAD/rXUc//Pr3/+jZAD/xZ5g/+XTuP+jZAD/o2QA/6NkAP/gzKv/wJVQ/8ehZf/hzKv/o2QB/6htDv/r3sn/o2QA/6tzGP/n2L7/o2QA/6tyF//p2sL/6tzF/8ObW/+jZAD/172S/+zfyv/q3cf/vpFK/6NkAf+jZAH/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAH/o2QB/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QB/6NkAf+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAf+jZAH/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAH/o2QB/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QB/6NkAf+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAf+jZAH/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAH/o2QB/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QB/6NkAf+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAP+jZAD/o2QA/6NkAf+jZQL/o2QB/6NkAf+jZAH/o2QB/6NkAf+jZAH/o2QB/6NkAf+jZAH/o2QB/6NkAf+jZAH/o2QB/6NkAf+jZQL/AACsQQAArEEAAKxBAACsQQAArEEAAKxBAACsQQAArEEAAKxBAACsQQAArEEAAKxBAACsQQAArEEAAKxBAACsQQ==</mdui:Logo>
+ <mdui:Logo height="60" width="80">data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAFAAAAA8CAIAAAB+RarbAAAC0GlDQ1BJQ0NQcm9maWxlAAB4nI2Uz0sUYRjHv7ONGChBYGZ7iKFDSKhMFmVE5a6/2LRtWX+UEsTs7Lu7k7Oz08zsmiIRXjpm0T0qDx76Azx46JSXwsAsAuluUUSCl5LteWfG3RHtxwsz83mfH9/ned/hfYEaWTFNPSQBecOxkn1R6fromFT7ESEcQR3CqFNU24wkEgOgwWOxa2y+h8C/K617+/866tK2mgeE/UDoR5rZKrDvF9kLWWoEELlew4RjOsT3OFue/THnlMfzrn0o2UW8SHxANS0e/5q4Q80paaBGJG7JBmJSAc7rRdXv5yA99cwYHqTvcerpLrN7fBZm0kp3P3Eb8ec06+7hmsTzGa03RtxMz1rG6h32WDihObEhj0Mjhh4f8LnJSMWv+pqi6UST2/p2abBn235LuZwgDhMnxwv9PKaRcjunckPXPBb0qVxX3Od3VjHJ6x6jmDlTd/8X9RZ6hVHoYNBg0NuAhCT6EEUrTFgoIEMejSI0sjI3xiK2Mb5npI5EgCXyr1POuptzG0XK5lkjiMYx01JRkOQP8ld5VX4qz8lfZsPF5qpnxrqpqcsPvpMur7yt63v9njx9lepGyKsjS9Z8ZU12oNNAdxljNlxV4jXY/fhmYJUsUKkVKVdp3K1Ucn02vSOBan/aPYpdml5sqtZaFRdurNQvTe/Yq8KuVbHKqnbOq3HBfCYeFU+KMbFDPAdJvCR2ihfFbpqdFwcqGcOkomHCVbKhUJaBSfKaO/6ZFwvvrLmjoY8ZzNJUiZ//hFXIaDoLHNF/uP9z8HvFo7Ei8MIGDp+u2jaS7h0iNC5Xbc4V4MI3ug/eVm3NdB4OPQEWzqhFq+RLC8IbimZ3HD7pKpiTlpbNOVK7LJ+VInQlMSlmqG0tkqLrkuuyJYvZzCqxdBvszKl2T6WedqXmU7m8Qeev9hGw9bBc/vmsXN56Tj2sAS/138C8/UXN/ALEAAAJI2lUWHRYTUw6Y29tLmFkb2JlLnhtcAAAAAAAPD94cGFja2V0IGJlZ2luPSLvu78iIGlkPSJXNU0wTXBDZWhpSHpyZVN6TlRjemtjOWQiPz4KPHg6eG1wbWV0YSB4bWxuczp4PSJhZG9iZTpuczptZXRhLyIgeDp4bXB0az0iWE1QIENvcmUgNC40LjAiPgogICA8cmRmOlJERiB4bWxuczpyZGY9Imh0dHA6Ly93d3cudzMub3JnLzE5OTkvMDIvMjItcmRmLXN5bnRheC1ucyMiPgogICAgICA8cmRmOkRlc2NyaXB0aW9uIHJkZjphYm91dD0iIi8+CiAgIDwvcmRmOlJERj4KPC94OnhtcG1ldGE+CiAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAKICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgIAogICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgCiAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAKICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgIAogICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgCiAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAKICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgIAogICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgCiAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAKICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgIAogICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgCiAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAKICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgIAogICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgCiAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAKICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgIAogICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgCiAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAKICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgIAogICAgICAgICAgICAgICAgICAgICAgICAgICAKPD94cGFja2V0IGVuZD0idyI/Pqfd9JIAAAAhdEVYdFNvZnR3YXJlAEdyYXBoaWNDb252ZXJ0ZXIgKEludGVsKXeH+hkAAAgMSURBVHic7JhpcFtXFcfNB4YBPjDDMHyATkuhECjQTkkhNCZxGjoMn5nS0nSaAAXaEmAGhg+0QGmniV1naRMndrxGlh1v8i5vkrxL8iJFlmPLtnYvkm3ZlnfHljdhfk/PyLZYptNxDFXfmTuao/POO+/+3733f855MVsfMon5X0/goEUCHO0iAY52kQBHu0iAo10kwNEuEuBoFwlwtIsE+D3I3wXZ95kckGwDnl9ZS2q0XdYMbA9Vv8I0HHbaDAZXVlZmZma93lGb3WHu7llcXIoIZLH0FSuKUYLBYH5egdPpRN/Y2CgpLn31T69ly7KxYykrLX/3nSspyamWXssBQdwr24BdU4sf+WVuzAs3Y07LhPFc5tEEVdhpdGy8vcOgb+sQh07f7vP5IgKlpabHPnFM1B995FuKIgF8tkz+tUMPJ19PyczIEgHHHj3+3LOnfnP2d1/50lfdbvdBQNwr24Dd/qVPni2I+UUOsAXkP80+eak+7DQ9PQ1OMIsD3emKnOvNLNmRx58wGm+3t3c8+s3HyssqMJ4/F/+Nrz9itdpEH07CibjvZ6RlGgzGQ19+2GazHQjGPfKeALOfOzqNYcBt7Z09vZaIcyzPzrn/81949plTzzz9k/s+94Cysgrj5OTUKy+ffeiLh1761ct3797F8oOnfnj4sW/ff9+DCfGJBwhzR3YAfyIEOAa0/wKY3Wg23wHn9gq3d4J/dXV1d6CszJsnTzwlOh/5zlHOaviSydT1mU9/lpVHjzt+8lZu3tUrSSfiTq6vrx8ExL2yA/jjv86PeVEuYGackT15UbPbb8Bq0+rawNxpuN3d3WO12QN7AXNK4449iQKMxw8fKS0pQ6+sUL7w/Jmnf/TjY7HHJyYmsHwvNi7vVj5n5MEHHlKr1AeEcpdsAw6sb3a4/XrnlN4VGo5Jy9jcbr/p6Rkoem5uLhBYFeknQsbHx7u772yFDmqXqcs/5Uef8E1UlFcolVXT/mnRrdvc7fMJyM1m8+Dg0L0D9p9EKjzer0BswVC6JveShNfW1jCSeBYWFtb+KV6vFx/28+joaCAQEP2Xl5c5BSgiq/n9fjYLyubmpmfEs7S05LA7LBYL/h6Pl18uzc7O8oj5+fmxsbG5uXme6HK58UTBgTjERCEmv3AN/mGK3TfA9ZoGtUpTpayqra3TaOqVlUosTY1NbpdbUaSorFS2tmpvpNxgirk5t5wOZ011rVqtwbmuts7ldLW2tFYpq4lzIyW1ob4RxTfuu5B40W63c6m9rV2vb3vjb2/WVNdwaXR07N3LVwYHB99OSLTb7KRAg8HAgaqoqKT4aW5qvnzpnYaGRhRDp4HUCMdGAl5Z32yxTzRafeJoGBg3j8yEwaxu7LnaOOAzDc9EAK6uqiksKCoqVBQrSqwD1oKCQp6NMuodTU/LkMmyvR5vWlq6qk6NHS6A1QoLi2A13pGqTqVt1ZLYWIrr15Lb9G0EZDtQn5HYCAgkJn0h8UJdnVAOMXtuZEnjzyUMDQ7lyHPZMr29vdQ5JAuoFQa9dPFyY2MTof7w+z+S9iMBu6aWPvZKfszP5TEv5gjjtCzuwg5Le2aXhSwdvnpG9t34ugjAU5NTgZUAVMykebXsTHYWMFhSalIQYuF9s8f6+vp7e3onJyfRuQvBDb2ry+xwOHlHOAhrsCwUsyj9ff1mcze7lLPg8XhEwIRlzxNwbGx8ZmZGp9NT/C0uLoYC+pkDW0PQ/H4exC7AeQ/g/154eGeXP/Xbwp2rP5PHvq3a+mDKvgGGG1jGrRDZQB4sAi9+czMIaUEea2vrrA/kxKLBVSzX/Nz8ekhwhs/W1wT93ya8/1PAMNAbr7/JvtLr9ApFMfDOvXWekyaX56SnZ5CK8/PyrVbrX//yuk6r54z19PRCchjLSsvq6xsYTU3NnNsDArzdLZ2+yfkUxqk93ZJnZvmjL+XtXH0+6/BbNRGBgARgDiGsA7saDUaoEvpNSb6BXlJSCvFwGl979c/wLT1GXl6+Rq25mHgp/nyC0WiExolANXKvF3kb8MLKWrrWmdJsT2kRRnKTrfLOzsteWt3I1O25Wmb2RASCJynFaIxgY6jL4XDAFtiHh4S+2uVyQZhYIO3BwSGWl36YXdDfP9Bzh+56cXh42O0ebKhvEDPtPQf84REJcLSLBPj9CmxEkQQPLS3dpaynDXSFPgPRAOz+lEOpSH4mD4+Pje++nUZSrKtEwUfsn7dCiV1kPlEooU23TSKZk+TD9pGRERJ+xKwotiI+VOwbYDqEivLKwoJCWZaMqpjcQw0MsPy8Air+jo5OfluaW8i3yddTqOyTribREtA8UIdS9JLGSWA40HhgodO4ekVw6LP0UUWTsQryC8jwBCwqUmCnfuYu8jl1uE6ra2lpLSkukWfL8amqqial19TUcguXTCaT+DVinwE3h8oGfilr1So13VJpSSklFNPCnpWZlZaapqysovolP3GVV0C/wSzpJXhThk6jVqtTqdRg4E3dvm3Stuo06vrc3FvEIci1pGsd7R0EJKVTz/CCyOSgVavVGemZ/CUsb5liJi01nS4CkLk5uXRaZWXldbU7NcW+ARarc36DQaEvCX0bCYTt9KjMVWx62Y2Uk9gpP8nA6MvLQleMne0nNrF0QsEgoYTKFCOe2MXNSYdLcO4SLThQkxIHPfT0YKi2DQVfWOQvTyTa/gP+oIgEONpFAhztIgGOdpEAR7tIgKNdJMDRLhLgaBcJcLTLPwAAAP//AwA466/VOEak8QAAAABJRU5ErkJggg==</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://dt-it-500213.hsr.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://dt-it-500213.hsr.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://dt-it-500213.hsr.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="de">Online Anmeldung</ServiceName>
+ <ServiceName xml:lang="en">Online Anmeldung</ServiceName>
+ <ServiceDescription xml:lang="de">LOKALER TEST EDUID: Über diesen Service kann man sich für ein Studium an der HSR anmelden.</ServiceDescription>
+ <ServiceDescription xml:lang="en">LOKALER TEST EDUID: Über diesen Service kann man sich für ein Studium an der HSR anmelden.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="homePostalAddress" Name="urn:oid:0.9.2342.19200300.100.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="preferredLanguage" Name="urn:oid:2.16.840.1.113730.3.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="homePhone" Name="urn:oid:0.9.2342.19200300.100.1.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.eduid.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.eduid.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ZBZ -->
+ <!-- Federation Partner Resource of Partner: Zentralbibliothek Zürich (https://www.zb.uzh.ch/) -->
+ <EntityDescriptor entityID="https://proxy01-t.zb.uzh.ch/shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ZBZ</mdui:DisplayName>
+ <mdui:Description xml:lang="en">test</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEKDCCApCgAwIBAgIJAK18xBgF4vzwMA0GCSqGSIb3DQEBCwUAMB4xHDAaBgNV
+BAMTE3Byb3h5MDEtdC56Yi51emguY2gwHhcNMTkwOTI3MTQ1MjI4WhcNMjIwOTI3
+MTQ1MjI4WjAeMRwwGgYDVQQDExNwcm94eTAxLXQuemIudXpoLmNoMIIBojANBgkq
+hkiG9w0BAQEFAAOCAY8AMIIBigKCAYEA1LbW3orXiJTZ4IqOYZqzLgzaEXmZR+RO
+DbaOunMBogaHIAGX9kz7inaWP4BzFbHrPemCqupBLOY/sZ304YRhYirVIhtXp38E
+9weEfiUrqcuwVWGpfyeMrnkUyPT8gyfCMvjUCMIBgA38lPOdM3R/mNUj/XO9yPqO
+nOewHPkQk/wSmQAiz+swLgNlB7Xqsxw+KLeI0w6vvtGmvO0eoBleDreUGgINMWKK
+ndvd52dTWDbGnEqSppKMEr+ejOOEeffh5gro4acuv4vD63wE4OfbCnesFK+infyP
+GeVywNrnuoZVals8JDpVOsQ3vhk1AACC+13RF0Z5WKA4wZrOjP1kWqPq9zmkbFyr
+42TXq4f8JJY9sYgF9YRuqYWrL/u8gsYpiG7GNNQNSVx7JNjomvfeVegDuPX4bAAs
+7kh+coLSjIJiypsSZghpAltkE/lyNRR4Dbnk6BK7WNlp4GwwyWuDMzNcgcYKwZeV
+VtanqQ1VTDK72fe7zAAcetH6/go+Qd+ZAgMBAAGjaTBnMEYGA1UdEQQ/MD2CE3By
+b3h5MDEtdC56Yi51emguY2iGJmh0dHBzOi8vcHJveHkwMS10LnpiLnV6aC5jaC9z
+aGliYm9sZXRoMB0GA1UdDgQWBBQCaGBu83sPrHyLK62HdjBdsWjAVzANBgkqhkiG
+9w0BAQsFAAOCAYEAUiqt6+7Ucg6zMeowebmH/4fZiBgxOFqhe5NAvp8axOYcO03g
+NShtsv4NvigyOMCvEaj0P7up5LSfNJI7OuYzgW6Nz4Tm2UTxvsg8vh1YDzrMTdjS
+mJuc1//5CGoWAFQkr7HyplWFOlSslWSjePLfAofIbLVhub+PezaX3gUYrqKUigcw
+FhRESVaIf0hsZAUj56WVhM+vEcccbXWqrbND4HxYQlcV8jMUTjJJcSXkSdc88X7Z
+yZr035HHO9doxnRXIvOx6RXbmZK38USsp1cbi02p79dZMsCJlcMQGKEwYDrl6ZBP
+Ta2mP6tDtjzV32ZssC+abrdXeyFzFbyh0z0IpXawfyNo8fnFZd3ZvXciyXP0Woep
+xNyCWkul+Rx1MKqWpBxYPsZpsrJOhMFeInHYmaxQDR2YWJwUzTSe8JWKJSaPf1DG
+Ie5mSDSqPCGhVm53LuCCd6tebBb+gRkVG6HJz50WjJuZ8xoNz24V2mE6K7F8xAwQ
+BzBKFl2wVeMn1cyP
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy01-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy02-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy01-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy02-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy01-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy02-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ZBZ</ServiceName>
+ <ServiceDescription xml:lang="en">test</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissLibraryPersonAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1023" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">zb.uzh.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Zentralbibliothek Zürich</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.zb.uzh.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- ZBZ -->
+ <!-- Federation Partner Resource of Partner: Zentralbibliothek Zürich (https://www.zb.uzh.ch/) -->
+ <EntityDescriptor entityID="https://proxy02-t.zb.uzh.ch/shibboleth">
+ <Extensions> <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ZBZ</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Zentralbibliothek Zürich</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy01-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://proxy02-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/POST" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy01-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/Artifact" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://proxy02-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/Artifact" index="6"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/ECP" index="7"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy01-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/ECP" index="8"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://proxy02-t.zb.uzh.ch:8443/Shibboleth.sso/SAML2/ECP" index="9"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">ZBZ</ServiceName>
+ <ServiceDescription xml:lang="en">Zentralbibliothek Zürich</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonUniqueId" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissLibraryPersonAffiliation" Name="urn:oid:2.16.756.1.2.5.1.1.1023" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">zb.uzh.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">Zentralbibliothek Zürich</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">https://www.zb.uzh.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Renku experimental AAI instance -->
+ <EntityDescriptor entityID="https://renku.86.119.35.222.xip.io/auth/realms/Renku">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="aai-demo-idp.switch.ch">
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor errorURL="https://renku.86.119.35.222.xip.io/auth/realms/Renku/broker/eduID-test/endpoint" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Renku experimental AAI instance</mdui:DisplayName>
+ <mdui:Description xml:lang="en">The purpose of this service is to experiment with RenkuSWITCH-AAI integration configurations.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIERDCCAqygAwIBAgIJAK6Kn8t6bSKdMA0GCSqGSIb3DQEBCwUAMCUxIzAhBgNV
+BAMTGnJlbmt1Ljg2LjExOS4zNS4yMjIueGlwLmlvMB4XDTE5MTAyODExMjcwNVoX
+DTIyMTAyODExMjcwNVowJTEjMCEGA1UEAxMacmVua3UuODYuMTE5LjM1LjIyMi54
+aXAuaW8wggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQC6WhXKATNL2LPI
+FkPObz88K/6BB9OJx4/NNu0qrLNdr/EWIOCOLiAGxZcSNHKOILsqBO4YJLoQxwTM
+FvRNbWXCrnV0vNC9JfNKjpm4U13VR1SESEP2u/IP8rj6qyjbCBZlkHeyoWYkZ5eu
+Y/ExFnXZ5HsJLH9cUDexhMR1EwNmfpXej4ro9wM/RXHkLO+s6t1clziUR1T5uT5S
+/6jyByKe3HlFZYTO6TIW1bD5+4/E1ZXR8zZBHBerAyUAK8V0S5B3qTpRhAwi/To8
+7n7sBxKbCof1kgihzUQ+eWzDgPrdNl1mYj4oAfWxyibZVb6/kPTNcWWdqs9sDFgR
+EzWqcMVvz0QEp/k+KgZh/4xJXuES+UQuLvl6YAnf01zlBuu7lSfvnD51uTm11UsH
+I2Mizplgu9w3v2RDs9UqobN+HQGvErrgfJ/tT+YHx0z9DOIBLIrjBhID78ftw1jl
+TBxlCtJMoE90fgN2kw8jat6jGFBmH97rsyJs6jDgP1TdRACOoc0CAwEAAaN3MHUw
+VAYDVR0RBE0wS4IacmVua3UuODYuMTE5LjM1LjIyMi54aXAuaW+GLWh0dHBzOi8v
+cmVua3UuODYuMTE5LjM1LjIyMi54aXAuaW8vc2hpYmJvbGV0aDAdBgNVHQ4EFgQU
+/Z/rQaECqlEzacm8iBubONIVwoowDQYJKoZIhvcNAQELBQADggGBAKEpcW29tA7n
+qbyrANRday+a6ADy1LDpl+k2EC/GybBHdV0uVJTZfK471YD/r3kOBHdtLXKdaAsy
+zb94O2aJmTU6ULB2+Of4eC5RUI9xoUc6v88GymyIbR8eBjdUA6faTH3vX+6IkmlN
+577uYhD7KqenWJbeUhs/AJ4ej5cXwJIA/qZOTuHSgzEJMK0dIsdXrMEJhgg60JFL
+k4NoYfC9EOWvHo5E+/Zm87FlqdleemJCJDEGl/2bnbwjiqf1GijwiK79JU+WPLK0
+EE0BsV+QSsdErUA+wKcQE56HMfhrAhHTOOsBYEYShoXgj8BHgfFuf2M1vifKPWLE
+F7s25YpRswgUIW4UY+dawEyCXQTe+mn49b7Kx/MY02cLabhZzAp6zBhp48yataY3
+Oo+veDZavo3vC6Pv18NaKoAOMxv22qajBOWGojJYmwT3KxnLSUF7b+xzT3O/XSYn
+pqfL4u5hX6BYTZDKptOnhUpODMGRA73zDQt8LM/NCBw1Uw5Lo0UjEQ==
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://renku.86.119.35.222.xip.io/auth/realms/Renku/broker/eduID-test/endpoint" index="1"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Renku experimental AAI instance</ServiceName>
+ <ServiceDescription xml:lang="en">The purpose of this service is to experiment with RenkuSWITCH-AAI integration configurations.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonScopedAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.9" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonOrcid" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.16" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Online Anmeldung -->
+ <EntityDescriptor entityID="https://DT-IT-500313.hsr.ch/shibboleth">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="urn:oasis:names:tc:SAML:profiles:subject-id:req" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>none</saml:AttributeValue>
+ </saml:Attribute>
+
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>test.eduid.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ <mdext:SWITCHaaiExtensions xmlns:mdext="https://rr.aai.switch.ch/" federation="urn:mace:switch.ch:aaitest" homeOrganization="test.eduid.ch">
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">university</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uas</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">hospital</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">library</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">tertiaryb</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">uppersecondary</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">vho</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="exclude" type="homeOrganizationType">others</mdext:IntendedAudience>
+ <mdext:IntendedAudience audiencePolicy="include" type="homeOrganization">test.eduid.ch</mdext:IntendedAudience>
+ </mdext:SWITCHaaiExtensions>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Online Anmeldung</mdui:DisplayName>
+ <mdui:Description xml:lang="en">Lokaler Test EduID: Über diese Service kann man sich für ein Studium an der HSR anmelden.</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABAAAAAQCAIAAACQkWg2AAAABnRSTlMAAAAAAABupgeRAAAACXBIWXMAAA3XAAAN1wFCKJt4AAABA0lEQVQokcWSvU7DMBSFjx2HYn6C1CEoDHijSmbKg6Ri5H14At6BkWdopy7MQWFN3FKpxv1RhNyIgbayqxLUiTNdnXu+a+n6Ejw8wdboDcNnqBJAt3uXpulNp8M5Z4z5vj/o9xmOzx3g6ASE/pSc82shoijaNuMkofhdk8nHfD6znTAMmwAppf7UtsMYawKUUlM1Xa2MwzQAdV2XRblYLIMg0FrneZ5lGUFw6aTMF6oZ6vXUOEmEECMpi6KoqsoYs2ewLUqp53mEkD9y/yqC+0fHGL/j9QV6DACtM9z2cBXbfYaLyAGWCt5m15TitL0TYNvL2TxJAWsnhOwEmn56rw4GvgHWzUxD1paiUgAAAABJRU5ErkJggg==</mdui:Logo>
+ <mdui:Logo height="60" width="80">data:image/png;base64,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</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIEMzCCApugAwIBAgIUNOFWyCl1sUbX335bfa6fCuJZHTYwDQYJKoZIhvcNAQEL
+BQAwHjEcMBoGA1UEAxMTRFQtSVQtNTAwMzEzLmhzci5jaDAeFw0xOTExMTMxMTE2
+NDNaFw0yMjExMTIxMTE2NDNaMB4xHDAaBgNVBAMTE0RULUlULTUwMDMxMy5oc3Iu
+Y2gwggGiMA0GCSqGSIb3DQEBAQUAA4IBjwAwggGKAoIBgQDAjTIfNrAknHIpLuyR
+smW0gQYMpImidhHv4gQTXdYITJbxSwZ5+nz/UWzVeOJsavBCzHbAfJlZGHt/AAgf
+nLuyMJVzBnKL287wFDQzwZXFnYKg7fBfvrv2FsMQUZYIYD8fXnihyLEoC5/6uTFK
+SlKALqmHirLHiD57/YASpzlVzKdDYntYOhfZiyLuLaak3oun9R4SIIrmNes6Vboa
+RmkFaxP2eHiaCjImxB+cwttptsKWvSrFDtBmHb82f59tdtqD6B7t7kvMH6PLgtz5
+PHN7v8+0irisooA5tnMeoyTPa7ln3iH4gEnzyg9CJts/myqXoWhOizNaP0tMGw2c
+5ZV9gZ+fnEA5kMiGC+/g19SXiwHUF5wjjITHfKiq6P4Mr1LqRE2APS+9jSk3OuhB
+SQNMSlmXXeWibiK6cPVJ1ospv4FYvZtunTRFX3eWjewooFv9lQuFye9AHiZmMr3R
+bNqn0h/RuaXaTuR0I5MS/yWgzs1o75cUK6A6LvLTlE6YZ0kCAwEAAaNpMGcwRgYD
+VR0RBD8wPYITRFQtSVQtNTAwMzEzLmhzci5jaIYmaHR0cHM6Ly9EVC1JVC01MDAz
+MTMuaHNyLmNoL3NoaWJib2xldGgwHQYDVR0OBBYEFBPB7J4YQdBalRJPbNSs+QP1
+PcBlMA0GCSqGSIb3DQEBCwUAA4IBgQB0o0Uo2C59hzZle/acMfhfV0LO/8nYgpcm
+DnAnm2raCNV/G7JKTrUAiDTC/RmenzDYuvFPUC1V1hydrOtGxk0RJD2cPqP7o+3c
+/6G4fQ4i96MlLyR3ilYB8omBmO3jAXswHyVy/SYeLnzrxLzWKi2tt306BXdbi5A0
+B76bS7gBdz9ML1c0WKYJAWp16+YlwjuibGQ3IUDKtCnQF8QeVSnnsUIHLdgImrxc
+t/ZGhdJBa5eURj5TZ1GD7jnNx+qb/UbM7saVLX9OU0b7jXM5Dp0+s2iyhLwEklat
+o8ARYlaw0XUb7shRs02hxm4CY+oWj4dteeF+gKxUh4/1Q8Qp/MMECU3B5EYF/lw5
+IDBPXPJYhVpWUc7tTIp0PEEyPi7+LZeMVtniwdeOUZdZgyM8fAcrb1pDWengYEj7
+DLRqm4hNd9tYzTpqVxCqWDvuraw+MZMAt6hgVwBurgPP2TeI7bWDqd2kXSHwpioo
+K7WUemZhr6+Th7Bmg5XEcnVisO35w5o=
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://DT-IT-500313.hsr.ch/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://DT-IT-500313.hsr.ch/Shibboleth.sso/SAML2/Artifact" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://DT-IT-500313.hsr.ch/Shibboleth.sso/SAML2/ECP" index="3"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Online Anmeldung</ServiceName>
+ <ServiceDescription xml:lang="en">Lokaler Test EduID: Über diese Service kann man sich für ein Studium an der HSR anmelden.</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="displayName" Name="urn:oid:2.16.840.1.113730.3.1.241" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonDateOfBirth" Name="urn:oid:2.16.756.1.2.5.1.1.2" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonGender" Name="urn:oid:2.16.756.1.2.5.1.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduPersonMatriculationNumber" Name="urn:oid:2.16.756.1.2.5.1.1.11" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="swissEduID" Name="urn:oid:2.16.756.1.2.5.1.1.13" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="homePostalAddress" Name="urn:oid:0.9.2342.19200300.100.1.39" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="mobile" Name="urn:oid:0.9.2342.19200300.100.1.41" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ <RequestedAttribute FriendlyName="homePhone" Name="urn:oid:0.9.2342.19200300.100.1.20" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="false"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">test.eduid.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="fr">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="it">SWITCH edu-ID [Test]</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="fr">http://www.test.eduid.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="it">http://www.test.eduid.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+ <!-- Included EntityDescriptors -->
+ <!-- Aggregated Shibboleth SP Training Metadata -->
+
+<!-- Shibboleth SP Training: SP 10 -->
+<EntityDescriptor entityID="https://sp10.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 10</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp10.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp10.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp10.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp10.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp10.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp10.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 10</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 11 -->
+<EntityDescriptor entityID="https://sp11.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 11</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp11.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp11.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp11.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp11.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp11.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp11.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 11</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 12 -->
+<EntityDescriptor entityID="https://sp12.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 12</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp12.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp12.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp12.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp12.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp12.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp12.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 12</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 13 -->
+<EntityDescriptor entityID="https://sp13.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 13</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp13.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp13.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp13.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp13.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp13.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp13.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 13</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 14 -->
+<EntityDescriptor entityID="https://sp14.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 14</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp14.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp14.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp14.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp14.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp14.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp14.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 14</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 15 -->
+<EntityDescriptor entityID="https://sp15.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 15</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp15.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp15.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp15.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp15.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp15.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp15.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 15</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 16 -->
+<EntityDescriptor entityID="https://sp16.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 16</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIC8TCCAdmgAwIBAgIJAKzaP9V5gTydMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMTDnNwLmV4YW1wbGUub3JnMB4XDTE2MDEyOTEwMTEwOVoXDTE5MDEyODEwMTEw
+OVowGTEXMBUGA1UEAxMOc3AuZXhhbXBsZS5vcmcwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQDHcZp/D5m1Q7cjd5eRgbt9+PY2pN9I7OKWOElj2rhVTftx
+11vc1DjbRKwyfKtj/iU/ztA90K3Cr3MSa4+O4B8KForvKcti08/upbMEBuaS7y9q
+kgapy2W+gwqKRBikeJGldCtJZEKPwDuy13a3mq+fu9/DCRXtNY1h+B3URxR98hF/
+MTyzdntH301RyVb7ucJD0qyOOcyJND1NmhAUS/X/whf2trE//lZ/VokRmEDjvLUS
+4Mqv5cuyS+yXwTO3VccoKQ4VSfZnK6ehag5GAj56Fh8mZuT7J1DUHeslcs4g33SE
+uIulVJ6HY5eFlktjf4jgPA0eu39uDeJ5cWbvwFcVAgMBAAGjPDA6MBkGA1UdEQQS
+MBCCDnNwLmV4YW1wbGUub3JnMB0GA1UdDgQWBBS9XzfG/QCOUwOp7ySnuzmLii12
+8TANBgkqhkiG9w0BAQUFAAOCAQEAGp1AF1qjWX4pkg+l/PPuQL77AwOgqgxIaTE2
+qxCai+udAyfImZS5EeVuo7AOZftnq9F5V3+6V4YSuQlIcPF7/mqBhs6F7cLTVMhU
+AEG+Fo2pK6JUfacDgHSg4aFKmAdvJUYfDyBYaCsdxiht0W1JjPDXbsACeBFY3ptV
+3ZDrk8viSASgrGmR/h1xAofSLvUpYlnOC9hfFGg+HTXqnvx8SoUuyVW6fnHGo2Cs
+qDLdBu8yYyVMFD0vqwrBGNNXVNWVyqjYbAb6IhavHMXMlglFRA22JHUsP9HbYn5a
+anlmUFNqNDlHs4OymFgCy6GOFP27AGjw+NID1uh8ZcHJJKeL1w==
+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp16.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp16.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp16.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp16.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp16.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp16.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 16</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 17 -->
+<EntityDescriptor entityID="https://sp17.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 17</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp17.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp17.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp17.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp17.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp17.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp17.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 17</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 18 -->
+<EntityDescriptor entityID="https://sp18.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 18</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIC8TCCAdmgAwIBAgIJAKzaP9V5gTydMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMTDnNwLmV4YW1wbGUub3JnMB4XDTE2MDEyOTEwMTEwOVoXDTE5MDEyODEwMTEw
+OVowGTEXMBUGA1UEAxMOc3AuZXhhbXBsZS5vcmcwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQDHcZp/D5m1Q7cjd5eRgbt9+PY2pN9I7OKWOElj2rhVTftx
+11vc1DjbRKwyfKtj/iU/ztA90K3Cr3MSa4+O4B8KForvKcti08/upbMEBuaS7y9q
+kgapy2W+gwqKRBikeJGldCtJZEKPwDuy13a3mq+fu9/DCRXtNY1h+B3URxR98hF/
+MTyzdntH301RyVb7ucJD0qyOOcyJND1NmhAUS/X/whf2trE//lZ/VokRmEDjvLUS
+4Mqv5cuyS+yXwTO3VccoKQ4VSfZnK6ehag5GAj56Fh8mZuT7J1DUHeslcs4g33SE
+uIulVJ6HY5eFlktjf4jgPA0eu39uDeJ5cWbvwFcVAgMBAAGjPDA6MBkGA1UdEQQS
+MBCCDnNwLmV4YW1wbGUub3JnMB0GA1UdDgQWBBS9XzfG/QCOUwOp7ySnuzmLii12
+8TANBgkqhkiG9w0BAQUFAAOCAQEAGp1AF1qjWX4pkg+l/PPuQL77AwOgqgxIaTE2
+qxCai+udAyfImZS5EeVuo7AOZftnq9F5V3+6V4YSuQlIcPF7/mqBhs6F7cLTVMhU
+AEG+Fo2pK6JUfacDgHSg4aFKmAdvJUYfDyBYaCsdxiht0W1JjPDXbsACeBFY3ptV
+3ZDrk8viSASgrGmR/h1xAofSLvUpYlnOC9hfFGg+HTXqnvx8SoUuyVW6fnHGo2Cs
+qDLdBu8yYyVMFD0vqwrBGNNXVNWVyqjYbAb6IhavHMXMlglFRA22JHUsP9HbYn5a
+anlmUFNqNDlHs4OymFgCy6GOFP27AGjw+NID1uh8ZcHJJKeL1w==
+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp18.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp18.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp18.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp18.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp18.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp18.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 18</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 19 -->
+<EntityDescriptor entityID="https://sp19.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 19</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIC8TCCAdmgAwIBAgIJAKzaP9V5gTydMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMTDnNwLmV4YW1wbGUub3JnMB4XDTE2MDEyOTEwMTEwOVoXDTE5MDEyODEwMTEw
+OVowGTEXMBUGA1UEAxMOc3AuZXhhbXBsZS5vcmcwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQDHcZp/D5m1Q7cjd5eRgbt9+PY2pN9I7OKWOElj2rhVTftx
+11vc1DjbRKwyfKtj/iU/ztA90K3Cr3MSa4+O4B8KForvKcti08/upbMEBuaS7y9q
+kgapy2W+gwqKRBikeJGldCtJZEKPwDuy13a3mq+fu9/DCRXtNY1h+B3URxR98hF/
+MTyzdntH301RyVb7ucJD0qyOOcyJND1NmhAUS/X/whf2trE//lZ/VokRmEDjvLUS
+4Mqv5cuyS+yXwTO3VccoKQ4VSfZnK6ehag5GAj56Fh8mZuT7J1DUHeslcs4g33SE
+uIulVJ6HY5eFlktjf4jgPA0eu39uDeJ5cWbvwFcVAgMBAAGjPDA6MBkGA1UdEQQS
+MBCCDnNwLmV4YW1wbGUub3JnMB0GA1UdDgQWBBS9XzfG/QCOUwOp7ySnuzmLii12
+8TANBgkqhkiG9w0BAQUFAAOCAQEAGp1AF1qjWX4pkg+l/PPuQL77AwOgqgxIaTE2
+qxCai+udAyfImZS5EeVuo7AOZftnq9F5V3+6V4YSuQlIcPF7/mqBhs6F7cLTVMhU
+AEG+Fo2pK6JUfacDgHSg4aFKmAdvJUYfDyBYaCsdxiht0W1JjPDXbsACeBFY3ptV
+3ZDrk8viSASgrGmR/h1xAofSLvUpYlnOC9hfFGg+HTXqnvx8SoUuyVW6fnHGo2Cs
+qDLdBu8yYyVMFD0vqwrBGNNXVNWVyqjYbAb6IhavHMXMlglFRA22JHUsP9HbYn5a
+anlmUFNqNDlHs4OymFgCy6GOFP27AGjw+NID1uh8ZcHJJKeL1w==
+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp19.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp19.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp19.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp19.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp19.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp19.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 19</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 20 -->
+<EntityDescriptor entityID="https://sp20.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 20</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp20.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp20.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp20.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp20.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp20.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp20.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 20</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 21 -->
+<EntityDescriptor entityID="https://sp21.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 21</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp21.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp21.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp21.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp21.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp21.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp21.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 21</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 22 -->
+<EntityDescriptor entityID="https://sp22.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 22</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp22.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp22.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp22.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp22.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp22.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp22.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 22</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 23 -->
+<EntityDescriptor entityID="https://sp23.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 23</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp23.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp23.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp23.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp23.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp23.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp23.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 23</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 24 -->
+<EntityDescriptor entityID="https://sp24.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 24</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp24.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp24.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp24.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp24.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp24.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp24.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 24</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 25 -->
+<EntityDescriptor entityID="https://sp25.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 25</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp25.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp25.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp25.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp25.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp25.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp25.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 25</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 26 -->
+<EntityDescriptor entityID="https://sp26.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 26</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp26.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp26.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp26.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp26.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp26.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp26.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 26</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 27 -->
+<EntityDescriptor entityID="https://sp27.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 27</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIC8TCCAdmgAwIBAgIJAKzaP9V5gTydMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMTDnNwLmV4YW1wbGUub3JnMB4XDTE2MDEyOTEwMTEwOVoXDTE5MDEyODEwMTEw
+OVowGTEXMBUGA1UEAxMOc3AuZXhhbXBsZS5vcmcwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQDHcZp/D5m1Q7cjd5eRgbt9+PY2pN9I7OKWOElj2rhVTftx
+11vc1DjbRKwyfKtj/iU/ztA90K3Cr3MSa4+O4B8KForvKcti08/upbMEBuaS7y9q
+kgapy2W+gwqKRBikeJGldCtJZEKPwDuy13a3mq+fu9/DCRXtNY1h+B3URxR98hF/
+MTyzdntH301RyVb7ucJD0qyOOcyJND1NmhAUS/X/whf2trE//lZ/VokRmEDjvLUS
+4Mqv5cuyS+yXwTO3VccoKQ4VSfZnK6ehag5GAj56Fh8mZuT7J1DUHeslcs4g33SE
+uIulVJ6HY5eFlktjf4jgPA0eu39uDeJ5cWbvwFcVAgMBAAGjPDA6MBkGA1UdEQQS
+MBCCDnNwLmV4YW1wbGUub3JnMB0GA1UdDgQWBBS9XzfG/QCOUwOp7ySnuzmLii12
+8TANBgkqhkiG9w0BAQUFAAOCAQEAGp1AF1qjWX4pkg+l/PPuQL77AwOgqgxIaTE2
+qxCai+udAyfImZS5EeVuo7AOZftnq9F5V3+6V4YSuQlIcPF7/mqBhs6F7cLTVMhU
+AEG+Fo2pK6JUfacDgHSg4aFKmAdvJUYfDyBYaCsdxiht0W1JjPDXbsACeBFY3ptV
+3ZDrk8viSASgrGmR/h1xAofSLvUpYlnOC9hfFGg+HTXqnvx8SoUuyVW6fnHGo2Cs
+qDLdBu8yYyVMFD0vqwrBGNNXVNWVyqjYbAb6IhavHMXMlglFRA22JHUsP9HbYn5a
+anlmUFNqNDlHs4OymFgCy6GOFP27AGjw+NID1uh8ZcHJJKeL1w==
+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp27.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp27.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp27.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp27.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp27.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp27.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 27</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 28 -->
+<EntityDescriptor entityID="https://sp28.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 28</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp28.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp28.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp28.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp28.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp28.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp28.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 28</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 29 -->
+<EntityDescriptor entityID="https://sp29.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 29</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp29.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp29.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp29.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp29.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp29.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp29.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 29</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 30 -->
+<EntityDescriptor entityID="https://sp30.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 30</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp30.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp30.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp30.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp30.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp30.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp30.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 30</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 31 -->
+<EntityDescriptor entityID="https://sp31.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 31</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp31.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp31.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp31.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp31.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp31.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp31.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 31</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 32 -->
+<EntityDescriptor entityID="https://sp32.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 32</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp32.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp32.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp32.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp32.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp32.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp32.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 32</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 33 -->
+<EntityDescriptor entityID="https://sp33.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 33</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIC8TCCAdmgAwIBAgIJAKzaP9V5gTydMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMTDnNwLmV4YW1wbGUub3JnMB4XDTE2MDEyOTEwMTEwOVoXDTE5MDEyODEwMTEw
+OVowGTEXMBUGA1UEAxMOc3AuZXhhbXBsZS5vcmcwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQDHcZp/D5m1Q7cjd5eRgbt9+PY2pN9I7OKWOElj2rhVTftx
+11vc1DjbRKwyfKtj/iU/ztA90K3Cr3MSa4+O4B8KForvKcti08/upbMEBuaS7y9q
+kgapy2W+gwqKRBikeJGldCtJZEKPwDuy13a3mq+fu9/DCRXtNY1h+B3URxR98hF/
+MTyzdntH301RyVb7ucJD0qyOOcyJND1NmhAUS/X/whf2trE//lZ/VokRmEDjvLUS
+4Mqv5cuyS+yXwTO3VccoKQ4VSfZnK6ehag5GAj56Fh8mZuT7J1DUHeslcs4g33SE
+uIulVJ6HY5eFlktjf4jgPA0eu39uDeJ5cWbvwFcVAgMBAAGjPDA6MBkGA1UdEQQS
+MBCCDnNwLmV4YW1wbGUub3JnMB0GA1UdDgQWBBS9XzfG/QCOUwOp7ySnuzmLii12
+8TANBgkqhkiG9w0BAQUFAAOCAQEAGp1AF1qjWX4pkg+l/PPuQL77AwOgqgxIaTE2
+qxCai+udAyfImZS5EeVuo7AOZftnq9F5V3+6V4YSuQlIcPF7/mqBhs6F7cLTVMhU
+AEG+Fo2pK6JUfacDgHSg4aFKmAdvJUYfDyBYaCsdxiht0W1JjPDXbsACeBFY3ptV
+3ZDrk8viSASgrGmR/h1xAofSLvUpYlnOC9hfFGg+HTXqnvx8SoUuyVW6fnHGo2Cs
+qDLdBu8yYyVMFD0vqwrBGNNXVNWVyqjYbAb6IhavHMXMlglFRA22JHUsP9HbYn5a
+anlmUFNqNDlHs4OymFgCy6GOFP27AGjw+NID1uh8ZcHJJKeL1w==
+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp33.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp33.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp33.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp33.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp33.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp33.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 33</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 34 -->
+<EntityDescriptor entityID="https://sp34.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 34</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp34.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp34.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp34.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp34.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp34.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp34.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 34</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 35 -->
+<EntityDescriptor entityID="https://sp35.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 35</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIC8TCCAdmgAwIBAgIJAKzaP9V5gTydMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMTDnNwLmV4YW1wbGUub3JnMB4XDTE2MDEyOTEwMTEwOVoXDTE5MDEyODEwMTEw
+OVowGTEXMBUGA1UEAxMOc3AuZXhhbXBsZS5vcmcwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQDHcZp/D5m1Q7cjd5eRgbt9+PY2pN9I7OKWOElj2rhVTftx
+11vc1DjbRKwyfKtj/iU/ztA90K3Cr3MSa4+O4B8KForvKcti08/upbMEBuaS7y9q
+kgapy2W+gwqKRBikeJGldCtJZEKPwDuy13a3mq+fu9/DCRXtNY1h+B3URxR98hF/
+MTyzdntH301RyVb7ucJD0qyOOcyJND1NmhAUS/X/whf2trE//lZ/VokRmEDjvLUS
+4Mqv5cuyS+yXwTO3VccoKQ4VSfZnK6ehag5GAj56Fh8mZuT7J1DUHeslcs4g33SE
+uIulVJ6HY5eFlktjf4jgPA0eu39uDeJ5cWbvwFcVAgMBAAGjPDA6MBkGA1UdEQQS
+MBCCDnNwLmV4YW1wbGUub3JnMB0GA1UdDgQWBBS9XzfG/QCOUwOp7ySnuzmLii12
+8TANBgkqhkiG9w0BAQUFAAOCAQEAGp1AF1qjWX4pkg+l/PPuQL77AwOgqgxIaTE2
+qxCai+udAyfImZS5EeVuo7AOZftnq9F5V3+6V4YSuQlIcPF7/mqBhs6F7cLTVMhU
+AEG+Fo2pK6JUfacDgHSg4aFKmAdvJUYfDyBYaCsdxiht0W1JjPDXbsACeBFY3ptV
+3ZDrk8viSASgrGmR/h1xAofSLvUpYlnOC9hfFGg+HTXqnvx8SoUuyVW6fnHGo2Cs
+qDLdBu8yYyVMFD0vqwrBGNNXVNWVyqjYbAb6IhavHMXMlglFRA22JHUsP9HbYn5a
+anlmUFNqNDlHs4OymFgCy6GOFP27AGjw+NID1uh8ZcHJJKeL1w==
+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp35.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp35.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp35.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp35.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp35.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp35.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 35</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 36 -->
+<EntityDescriptor entityID="https://sp36.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 36</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp36.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp36.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp36.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp36.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp36.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp36.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 36</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 37 -->
+<EntityDescriptor entityID="https://sp37.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 37</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIC8TCCAdmgAwIBAgIJAKzaP9V5gTydMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMTDnNwLmV4YW1wbGUub3JnMB4XDTE2MDEyOTEwMTEwOVoXDTE5MDEyODEwMTEw
+OVowGTEXMBUGA1UEAxMOc3AuZXhhbXBsZS5vcmcwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQDHcZp/D5m1Q7cjd5eRgbt9+PY2pN9I7OKWOElj2rhVTftx
+11vc1DjbRKwyfKtj/iU/ztA90K3Cr3MSa4+O4B8KForvKcti08/upbMEBuaS7y9q
+kgapy2W+gwqKRBikeJGldCtJZEKPwDuy13a3mq+fu9/DCRXtNY1h+B3URxR98hF/
+MTyzdntH301RyVb7ucJD0qyOOcyJND1NmhAUS/X/whf2trE//lZ/VokRmEDjvLUS
+4Mqv5cuyS+yXwTO3VccoKQ4VSfZnK6ehag5GAj56Fh8mZuT7J1DUHeslcs4g33SE
+uIulVJ6HY5eFlktjf4jgPA0eu39uDeJ5cWbvwFcVAgMBAAGjPDA6MBkGA1UdEQQS
+MBCCDnNwLmV4YW1wbGUub3JnMB0GA1UdDgQWBBS9XzfG/QCOUwOp7ySnuzmLii12
+8TANBgkqhkiG9w0BAQUFAAOCAQEAGp1AF1qjWX4pkg+l/PPuQL77AwOgqgxIaTE2
+qxCai+udAyfImZS5EeVuo7AOZftnq9F5V3+6V4YSuQlIcPF7/mqBhs6F7cLTVMhU
+AEG+Fo2pK6JUfacDgHSg4aFKmAdvJUYfDyBYaCsdxiht0W1JjPDXbsACeBFY3ptV
+3ZDrk8viSASgrGmR/h1xAofSLvUpYlnOC9hfFGg+HTXqnvx8SoUuyVW6fnHGo2Cs
+qDLdBu8yYyVMFD0vqwrBGNNXVNWVyqjYbAb6IhavHMXMlglFRA22JHUsP9HbYn5a
+anlmUFNqNDlHs4OymFgCy6GOFP27AGjw+NID1uh8ZcHJJKeL1w==
+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp37.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp37.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp37.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp37.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp37.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp37.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 37</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 38 -->
+<EntityDescriptor entityID="https://sp38.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 38</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp38.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp38.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp38.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp38.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp38.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp38.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 38</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 39 -->
+<EntityDescriptor entityID="https://sp39.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 39</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIC8TCCAdmgAwIBAgIJAKzaP9V5gTydMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMTDnNwLmV4YW1wbGUub3JnMB4XDTE2MDEyOTEwMTEwOVoXDTE5MDEyODEwMTEw
+OVowGTEXMBUGA1UEAxMOc3AuZXhhbXBsZS5vcmcwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQDHcZp/D5m1Q7cjd5eRgbt9+PY2pN9I7OKWOElj2rhVTftx
+11vc1DjbRKwyfKtj/iU/ztA90K3Cr3MSa4+O4B8KForvKcti08/upbMEBuaS7y9q
+kgapy2W+gwqKRBikeJGldCtJZEKPwDuy13a3mq+fu9/DCRXtNY1h+B3URxR98hF/
+MTyzdntH301RyVb7ucJD0qyOOcyJND1NmhAUS/X/whf2trE//lZ/VokRmEDjvLUS
+4Mqv5cuyS+yXwTO3VccoKQ4VSfZnK6ehag5GAj56Fh8mZuT7J1DUHeslcs4g33SE
+uIulVJ6HY5eFlktjf4jgPA0eu39uDeJ5cWbvwFcVAgMBAAGjPDA6MBkGA1UdEQQS
+MBCCDnNwLmV4YW1wbGUub3JnMB0GA1UdDgQWBBS9XzfG/QCOUwOp7ySnuzmLii12
+8TANBgkqhkiG9w0BAQUFAAOCAQEAGp1AF1qjWX4pkg+l/PPuQL77AwOgqgxIaTE2
+qxCai+udAyfImZS5EeVuo7AOZftnq9F5V3+6V4YSuQlIcPF7/mqBhs6F7cLTVMhU
+AEG+Fo2pK6JUfacDgHSg4aFKmAdvJUYfDyBYaCsdxiht0W1JjPDXbsACeBFY3ptV
+3ZDrk8viSASgrGmR/h1xAofSLvUpYlnOC9hfFGg+HTXqnvx8SoUuyVW6fnHGo2Cs
+qDLdBu8yYyVMFD0vqwrBGNNXVNWVyqjYbAb6IhavHMXMlglFRA22JHUsP9HbYn5a
+anlmUFNqNDlHs4OymFgCy6GOFP27AGjw+NID1uh8ZcHJJKeL1w==
+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp39.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp39.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp39.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp39.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp39.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp39.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 39</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 40 -->
+<EntityDescriptor entityID="https://sp40.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 40</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp40.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp40.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp40.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp40.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp40.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp40.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 40</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 41 -->
+<EntityDescriptor entityID="https://sp41.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 41</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIC8TCCAdmgAwIBAgIJAKzaP9V5gTydMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMTDnNwLmV4YW1wbGUub3JnMB4XDTE2MDEyOTEwMTEwOVoXDTE5MDEyODEwMTEw
+OVowGTEXMBUGA1UEAxMOc3AuZXhhbXBsZS5vcmcwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQDHcZp/D5m1Q7cjd5eRgbt9+PY2pN9I7OKWOElj2rhVTftx
+11vc1DjbRKwyfKtj/iU/ztA90K3Cr3MSa4+O4B8KForvKcti08/upbMEBuaS7y9q
+kgapy2W+gwqKRBikeJGldCtJZEKPwDuy13a3mq+fu9/DCRXtNY1h+B3URxR98hF/
+MTyzdntH301RyVb7ucJD0qyOOcyJND1NmhAUS/X/whf2trE//lZ/VokRmEDjvLUS
+4Mqv5cuyS+yXwTO3VccoKQ4VSfZnK6ehag5GAj56Fh8mZuT7J1DUHeslcs4g33SE
+uIulVJ6HY5eFlktjf4jgPA0eu39uDeJ5cWbvwFcVAgMBAAGjPDA6MBkGA1UdEQQS
+MBCCDnNwLmV4YW1wbGUub3JnMB0GA1UdDgQWBBS9XzfG/QCOUwOp7ySnuzmLii12
+8TANBgkqhkiG9w0BAQUFAAOCAQEAGp1AF1qjWX4pkg+l/PPuQL77AwOgqgxIaTE2
+qxCai+udAyfImZS5EeVuo7AOZftnq9F5V3+6V4YSuQlIcPF7/mqBhs6F7cLTVMhU
+AEG+Fo2pK6JUfacDgHSg4aFKmAdvJUYfDyBYaCsdxiht0W1JjPDXbsACeBFY3ptV
+3ZDrk8viSASgrGmR/h1xAofSLvUpYlnOC9hfFGg+HTXqnvx8SoUuyVW6fnHGo2Cs
+qDLdBu8yYyVMFD0vqwrBGNNXVNWVyqjYbAb6IhavHMXMlglFRA22JHUsP9HbYn5a
+anlmUFNqNDlHs4OymFgCy6GOFP27AGjw+NID1uh8ZcHJJKeL1w==
+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp41.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp41.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp41.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp41.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp41.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp41.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 41</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 42 -->
+<EntityDescriptor entityID="https://sp42.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 42</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp42.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp42.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp42.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp42.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp42.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp42.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 42</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 43 -->
+<EntityDescriptor entityID="https://sp43.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 43</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp43.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp43.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp43.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp43.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp43.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp43.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 43</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 44 -->
+<EntityDescriptor entityID="https://sp44.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 44</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIC8TCCAdmgAwIBAgIJAKzaP9V5gTydMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMTDnNwLmV4YW1wbGUub3JnMB4XDTE2MDEyOTEwMTEwOVoXDTE5MDEyODEwMTEw
+OVowGTEXMBUGA1UEAxMOc3AuZXhhbXBsZS5vcmcwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQDHcZp/D5m1Q7cjd5eRgbt9+PY2pN9I7OKWOElj2rhVTftx
+11vc1DjbRKwyfKtj/iU/ztA90K3Cr3MSa4+O4B8KForvKcti08/upbMEBuaS7y9q
+kgapy2W+gwqKRBikeJGldCtJZEKPwDuy13a3mq+fu9/DCRXtNY1h+B3URxR98hF/
+MTyzdntH301RyVb7ucJD0qyOOcyJND1NmhAUS/X/whf2trE//lZ/VokRmEDjvLUS
+4Mqv5cuyS+yXwTO3VccoKQ4VSfZnK6ehag5GAj56Fh8mZuT7J1DUHeslcs4g33SE
+uIulVJ6HY5eFlktjf4jgPA0eu39uDeJ5cWbvwFcVAgMBAAGjPDA6MBkGA1UdEQQS
+MBCCDnNwLmV4YW1wbGUub3JnMB0GA1UdDgQWBBS9XzfG/QCOUwOp7ySnuzmLii12
+8TANBgkqhkiG9w0BAQUFAAOCAQEAGp1AF1qjWX4pkg+l/PPuQL77AwOgqgxIaTE2
+qxCai+udAyfImZS5EeVuo7AOZftnq9F5V3+6V4YSuQlIcPF7/mqBhs6F7cLTVMhU
+AEG+Fo2pK6JUfacDgHSg4aFKmAdvJUYfDyBYaCsdxiht0W1JjPDXbsACeBFY3ptV
+3ZDrk8viSASgrGmR/h1xAofSLvUpYlnOC9hfFGg+HTXqnvx8SoUuyVW6fnHGo2Cs
+qDLdBu8yYyVMFD0vqwrBGNNXVNWVyqjYbAb6IhavHMXMlglFRA22JHUsP9HbYn5a
+anlmUFNqNDlHs4OymFgCy6GOFP27AGjw+NID1uh8ZcHJJKeL1w==
+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp44.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp44.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp44.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp44.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp44.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp44.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 44</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 45 -->
+<EntityDescriptor entityID="https://sp45.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 45</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp45.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp45.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp45.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp45.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp45.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp45.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 45</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 46 -->
+<EntityDescriptor entityID="https://sp46.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 46</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIC8TCCAdmgAwIBAgIJAKzaP9V5gTydMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMTDnNwLmV4YW1wbGUub3JnMB4XDTE2MDEyOTEwMTEwOVoXDTE5MDEyODEwMTEw
+OVowGTEXMBUGA1UEAxMOc3AuZXhhbXBsZS5vcmcwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQDHcZp/D5m1Q7cjd5eRgbt9+PY2pN9I7OKWOElj2rhVTftx
+11vc1DjbRKwyfKtj/iU/ztA90K3Cr3MSa4+O4B8KForvKcti08/upbMEBuaS7y9q
+kgapy2W+gwqKRBikeJGldCtJZEKPwDuy13a3mq+fu9/DCRXtNY1h+B3URxR98hF/
+MTyzdntH301RyVb7ucJD0qyOOcyJND1NmhAUS/X/whf2trE//lZ/VokRmEDjvLUS
+4Mqv5cuyS+yXwTO3VccoKQ4VSfZnK6ehag5GAj56Fh8mZuT7J1DUHeslcs4g33SE
+uIulVJ6HY5eFlktjf4jgPA0eu39uDeJ5cWbvwFcVAgMBAAGjPDA6MBkGA1UdEQQS
+MBCCDnNwLmV4YW1wbGUub3JnMB0GA1UdDgQWBBS9XzfG/QCOUwOp7ySnuzmLii12
+8TANBgkqhkiG9w0BAQUFAAOCAQEAGp1AF1qjWX4pkg+l/PPuQL77AwOgqgxIaTE2
+qxCai+udAyfImZS5EeVuo7AOZftnq9F5V3+6V4YSuQlIcPF7/mqBhs6F7cLTVMhU
+AEG+Fo2pK6JUfacDgHSg4aFKmAdvJUYfDyBYaCsdxiht0W1JjPDXbsACeBFY3ptV
+3ZDrk8viSASgrGmR/h1xAofSLvUpYlnOC9hfFGg+HTXqnvx8SoUuyVW6fnHGo2Cs
+qDLdBu8yYyVMFD0vqwrBGNNXVNWVyqjYbAb6IhavHMXMlglFRA22JHUsP9HbYn5a
+anlmUFNqNDlHs4OymFgCy6GOFP27AGjw+NID1uh8ZcHJJKeL1w==
+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp46.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp46.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp46.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp46.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp46.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp46.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 46</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 47 -->
+<EntityDescriptor entityID="https://sp47.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 47</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp47.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp47.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp47.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp47.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp47.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp47.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 47</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 48 -->
+<EntityDescriptor entityID="https://sp48.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 48</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIC8TCCAdmgAwIBAgIJAKzaP9V5gTydMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMTDnNwLmV4YW1wbGUub3JnMB4XDTE2MDEyOTEwMTEwOVoXDTE5MDEyODEwMTEw
+OVowGTEXMBUGA1UEAxMOc3AuZXhhbXBsZS5vcmcwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQDHcZp/D5m1Q7cjd5eRgbt9+PY2pN9I7OKWOElj2rhVTftx
+11vc1DjbRKwyfKtj/iU/ztA90K3Cr3MSa4+O4B8KForvKcti08/upbMEBuaS7y9q
+kgapy2W+gwqKRBikeJGldCtJZEKPwDuy13a3mq+fu9/DCRXtNY1h+B3URxR98hF/
+MTyzdntH301RyVb7ucJD0qyOOcyJND1NmhAUS/X/whf2trE//lZ/VokRmEDjvLUS
+4Mqv5cuyS+yXwTO3VccoKQ4VSfZnK6ehag5GAj56Fh8mZuT7J1DUHeslcs4g33SE
+uIulVJ6HY5eFlktjf4jgPA0eu39uDeJ5cWbvwFcVAgMBAAGjPDA6MBkGA1UdEQQS
+MBCCDnNwLmV4YW1wbGUub3JnMB0GA1UdDgQWBBS9XzfG/QCOUwOp7ySnuzmLii12
+8TANBgkqhkiG9w0BAQUFAAOCAQEAGp1AF1qjWX4pkg+l/PPuQL77AwOgqgxIaTE2
+qxCai+udAyfImZS5EeVuo7AOZftnq9F5V3+6V4YSuQlIcPF7/mqBhs6F7cLTVMhU
+AEG+Fo2pK6JUfacDgHSg4aFKmAdvJUYfDyBYaCsdxiht0W1JjPDXbsACeBFY3ptV
+3ZDrk8viSASgrGmR/h1xAofSLvUpYlnOC9hfFGg+HTXqnvx8SoUuyVW6fnHGo2Cs
+qDLdBu8yYyVMFD0vqwrBGNNXVNWVyqjYbAb6IhavHMXMlglFRA22JHUsP9HbYn5a
+anlmUFNqNDlHs4OymFgCy6GOFP27AGjw+NID1uh8ZcHJJKeL1w==
+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp48.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp48.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp48.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp48.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp48.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp48.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 48</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 49 -->
+<EntityDescriptor entityID="https://sp49.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 49</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp49.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp49.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp49.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp49.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp49.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp49.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 49</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- Shibboleth SP Training: SP 50 -->
+<EntityDescriptor entityID="https://sp50.example.org/shibboleth" xsi:schemaLocation="urn:oasis:names:tc:SAML:2.0:metadata saml-schema-metadata-2.0.xsd urn:mace:shibboleth:metadata:1.0 shibboleth-metadata-1.0.xsd http://www.w3.org/2000/09/xmldsig# xmldsig-core-schema.xsd">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Name="http://macedir.org/entity-category" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>aai-demo-idp.switch.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <SPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdrpi:PublicationInfo creationInstant="2016-01-29T13:34:39Z" publisher="https://rr.aai.switch.ch/gen_saml2md_entity.php?objectType=resource&amp;objectID=2802">
+ </mdrpi:PublicationInfo>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">Shibboleth SP Training Demo Service 50</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</mdui:Description>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIC8TCCAdmgAwIBAgIJAKzaP9V5gTydMA0GCSqGSIb3DQEBBQUAMBkxFzAVBgNV
+BAMTDnNwLmV4YW1wbGUub3JnMB4XDTE2MDEyOTEwMTEwOVoXDTE5MDEyODEwMTEw
+OVowGTEXMBUGA1UEAxMOc3AuZXhhbXBsZS5vcmcwggEiMA0GCSqGSIb3DQEBAQUA
+A4IBDwAwggEKAoIBAQDHcZp/D5m1Q7cjd5eRgbt9+PY2pN9I7OKWOElj2rhVTftx
+11vc1DjbRKwyfKtj/iU/ztA90K3Cr3MSa4+O4B8KForvKcti08/upbMEBuaS7y9q
+kgapy2W+gwqKRBikeJGldCtJZEKPwDuy13a3mq+fu9/DCRXtNY1h+B3URxR98hF/
+MTyzdntH301RyVb7ucJD0qyOOcyJND1NmhAUS/X/whf2trE//lZ/VokRmEDjvLUS
+4Mqv5cuyS+yXwTO3VccoKQ4VSfZnK6ehag5GAj56Fh8mZuT7J1DUHeslcs4g33SE
+uIulVJ6HY5eFlktjf4jgPA0eu39uDeJ5cWbvwFcVAgMBAAGjPDA6MBkGA1UdEQQS
+MBCCDnNwLmV4YW1wbGUub3JnMB0GA1UdDgQWBBS9XzfG/QCOUwOp7ySnuzmLii12
+8TANBgkqhkiG9w0BAQUFAAOCAQEAGp1AF1qjWX4pkg+l/PPuQL77AwOgqgxIaTE2
+qxCai+udAyfImZS5EeVuo7AOZftnq9F5V3+6V4YSuQlIcPF7/mqBhs6F7cLTVMhU
+AEG+Fo2pK6JUfacDgHSg4aFKmAdvJUYfDyBYaCsdxiht0W1JjPDXbsACeBFY3ptV
+3ZDrk8viSASgrGmR/h1xAofSLvUpYlnOC9hfFGg+HTXqnvx8SoUuyVW6fnHGo2Cs
+qDLdBu8yYyVMFD0vqwrBGNNXVNWVyqjYbAb6IhavHMXMlglFRA22JHUsP9HbYn5a
+anlmUFNqNDlHs4OymFgCy6GOFP27AGjw+NID1uh8ZcHJJKeL1w==
+</ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://altsp50.example.org/Shibboleth.sso/SAML2/POST" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://sp50.example.org/Shibboleth.sso/SAML2/POST" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://altsp50.example.org/Shibboleth.sso/SAML2/Artifact" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://sp50.example.org/Shibboleth.sso/SAML2/Artifact" index="4"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://altsp50.example.org/Shibboleth.sso/SAML2/ECP" index="5"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS" Location="https://sp50.example.org/Shibboleth.sso/SAML2/ECP" index="6"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">Shibboleth SP Training Demo Service 50</ServiceName>
+ <ServiceDescription xml:lang="en">This service is used in the context of the AARC/DARIAH/ELIXIR/GEANT Shibboleth SP Training.</ServiceDescription>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonPrincipalName" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.6" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonEntitlement" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.7" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">aai-demo-idp.switch.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="de">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationDisplayName xml:lang="en">AAI Demo Home Organisation</OrganizationDisplayName>
+ <OrganizationURL xml:lang="de">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ <OrganizationURL xml:lang="en">http://www.aai-demo-idp.switch.ch/</OrganizationURL>
+ </Organization>
+</EntityDescriptor>
+
+<!-- ELIXIR IdP -->
+<md:EntityDescriptor xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata" ID="CORTOb24b26858927ac735616ea39790ee97e833ff759" entityID="https://engine.elixir-czech.org/authentication/idp/metadata">
+ <md:IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <md:Extensions>
+ <shibmd:Scope regexp="false">elixir-europe.org</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">ELIXIR research infrastructure AAI</mdui:DisplayName>
+ <mdui:Description xml:lang="en">This service is identity provider for ELIXIR community.</mdui:Description>
+ <mdui:Logo height="96" width="96">
+ https://login.elixir-czech.org/media/elixir-96x96.jpg
+ </mdui:Logo>
+ <mdui:Keywords xml:lang="en">ELIXIR proxy biology life sciences</mdui:Keywords>
+ </mdui:UIInfo>
+ </md:Extensions>
+ <md:KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>MIIFMTCCBBmgAwIBAgIIIespBL5TmnswDQYJKoZIhvcNAQELBQAwgbQxCzAJBgNV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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </md:KeyDescriptor>
+ <md:NameIDFormat>
+ urn:oasis:names:tc:SAML:2.0:nameid-format:persistent
+ </md:NameIDFormat>
+ <md:NameIDFormat>
+ urn:oasis:names:tc:SAML:2.0:nameid-format:transient
+ </md:NameIDFormat>
+ <md:NameIDFormat>
+ urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified
+ </md:NameIDFormat>
+ <md:NameIDFormat>
+ urn:oasis:names:tc:SAML:2.0:nameid-format:unspecified
+ </md:NameIDFormat>
+ <md:SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://engine.elixir-czech.org/authentication/idp/single-sign-on"/>
+ </md:IDPSSODescriptor>
+ <md:ContactPerson contactType="technical">
+ <md:GivenName>AAI support</md:GivenName>
+ <md:SurName>ELIXIR</md:SurName>
+ <md:EmailAddress>aai-contact@elixir-europe.org</md:EmailAddress>
+ </md:ContactPerson>
+ <md:ContactPerson contactType="support">
+ <md:GivenName>AAI support</md:GivenName>
+ <md:SurName>ELIXIR</md:SurName>
+ <md:EmailAddress>aai-contact@elixir-europe.org</md:EmailAddress>
+ </md:ContactPerson>
+ <md:ContactPerson contactType="administrative">
+ <md:GivenName>AAI support</md:GivenName>
+ <md:SurName>ELIXIR</md:SurName>
+ <md:EmailAddress>aai-contact@elixir-europe.org</md:EmailAddress>
+ </md:ContactPerson>
+</md:EntityDescriptor>
+ <EntityDescriptor entityID="https://cern.ch/login">
+ <Extensions>
+ <mdattr:EntityAttributes xmlns:mdattr="urn:oasis:names:tc:SAML:metadata:attribute">
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>cern.ch</saml:AttributeValue>
+ </saml:Attribute>
+ <saml:Attribute xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
+ <saml:AttributeValue>others</saml:AttributeValue>
+ </saml:Attribute>
+ </mdattr:EntityAttributes>
+ </Extensions>
+ <IDPSSODescriptor protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <shibmd:Scope regexp="false">cern.ch</shibmd:Scope>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">CERN (Dev)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">CERN Development Identity Provider</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABAAAAAQCAYAAAAf8/9hAAABPElEQVR42pVT21HDQAx0B5RACSkB25N/SqAEPs+ZfFACJaSElOAPrHwxQwmUkBKMdk+S5YRk4GYuj9NqT7vSNY2tbfl8aMvptRtk1D3/dTO5Kx+bbpi+mVzkGWT9Xh7bMr0bcMRZkxZyeIYPJPeDHDxYKwGhkeK7yLkd5C0IlJgEOATIAyBS8Fe3Oz1leUY2I1b/R/kK1rJ5M8gM0FwsVNUXORqeO0pZdMk537zSrOeUqt64LysCApz1JoHMRjCGZy7BAOMtAvNqbnfTC36HoTQNTt8h4K2Qp3G0Fl7Ak9QyLQ0GeWvSouNaJeMmk2Q6B8sQ8UADTgSgbpJbzIlXBmb3OXmqL/c79z37cNWprMmGJN4DNNeRrlNJbJrIMGnlOCqx0fXtmtmxO92K5DDpt46k4ftX8vKQ8Lgq5geGpVRM3R4TeQAAAABJRU5ErkJggg==</mdui:Logo>
+ <mdui:Logo height="60" width="60">data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAADwAAAA8CAIAAAC1nk4lAAAAGXRFWHRTb2Z0d2FyZQBBZG9iZSBJbWFnZVJlYWR5ccllPAAACC9JREFUeNrsmk1MVFcUxxHF1EEqCR8pWNCkGaGatg6JjdUGSRq6GBa0iY26qEmLi0ZrohtoUk1MYAMbm/iRLqCLdlH7kTYsYFG6ABRjJWG6EANM0iBEsQ4aCIgNNKa/945c3rzvNzwbTXyZmJnLfff+77n/8z/nnuu63Z/8mPW8PdlZz+HzAvQL0C7PuhDH2hjJ2Vaez5ep6YWp6YfPIuiqyqKqiuJYZdG2snzgPtOWBt/B2m3xvVtKCnMxZ3/iTveV8an7aXaNluVHy/P3xTbzvS9xu3tgfGgk5T4s/fN8r3xNIJ0+Ur/jQG2UL10D4z/0JD05wG7E926t27t1aDTV0TnsCT1k0Ni19fM92KOj8+alnrH5hSX/c/BuQ/12oLPO9s7hQO/aPmtfjX3k2Qms7V++x2Qnz17+/frk4tLjQHPwIixKjKaO7n8Tzly78Xcg3Kw2LzcH5w7A6erY5tbje+DDV9//6X8yrFtSGMFTjY3NHYM0wvhA2gIhu9K9Yp2njU837OKdlo5BPxPQnzmqKooAzc/kxMzco5V1QhIx/NDolq4rt/oTt32Ombw041c9EIqLjTVDo/f8IMbnGup3ABegcBfP44vtDtCnuqqU3cPeeAgWCVPysPHcwmKzF2JwnGrYBRSAHmvrdZcIgHbxGRhnQ/Ii608c2on5W74ZdHorqkersQl/lobKfADhzmP6yNo84Vp3BnIfbes9Ur/9QmMNJkdYrN1EvE0YHHOPE4fe6vIKCvg1u0z4OHymJ6gGs4FYGjFpOncV+mFvtsuGohvW+02YQMOms3p3xKeWfTQD6eUVqA9J8BwGYdkswIqbZAbW+QKNo+DansLErD5VxfYhSIGYxYvOQBVb3L4szUAwFUlyf1OUezWBTQ86twW04GZAflbrSYs8rxRGrLazcURJdEwiykCSdqKA0FdlofLMLSwxJb6lWvB34QwgjKImLyoH6B+6g2kl9xJDkDbi2R823pPX+VNixAc9ouk04ucvbfED70fBwdCIMdMwMS5PMkTMo0WsRYsu1cUnDu78ta1O4gudlS0FBN3Uzz7dNNWxUtUiu0ciGUyntQi0rIsSXxhacRdjSIjm+5Ocs9PA8t+SbBFk7Tn/QcnyzgpNxd6miIM56VNdtRn3MDmopGXIf4dFCm0snbchR6kBRgK3ibsuDjr/aFHTYD3lmFseBLgme6eNdn8BZCYHlamDWVqxEClNLrPTRssP7pSI9c6nP6kW+YL6KqPKLhntbRtrFNGZrk93UHJDazh0jIhGlFGDw5kexNXU0t55kwg3Njlj8mMjbnvQFcXG8ATx6hprZAesJsu2TQ/Eh0QrJDn0q2KPFpvOX0V/OOOY/gRu/NsJd7R8k/EnCwArSmK7ydm2JDO+zIaqU5YsgCxHfdeOt/pHnQ5Zc7Melq2kbDo3YE39cCFe4UVTO9vF4vnXH+jphzGD4mIhHBEHv9BUwwe24N1zWk6cohGN4yPhgBYxDNygD2EVJ6ZREYy/EvZMzJEjnK5Iucb2hB4N/Dri3emFfYaYJN5jdaBjrb0uLUpwTN3AjY8a/U+t1vZEk7DLw2wsDY9Zoov/hfiwRQDlw6TGgKrcyW/uIV5sZWSdXgwIG3Sp6FpyYtbWTLbQ7bM89kvCiol88XfDBI1p4bEQT7N0eoiRTNp4CPcALU5gSgCgXUlBJETQeLA6SkoEMRqb9EaCvH9LP5Fno0cb9Xv1T52WbK3kFfOSJxqMTVJqq3fOoHVtx9jGWCBDmNwl4/oqYm86zjF+mqXL8hMORzjHM6KWN4+mWLqKbZKEVKerYWbPRT07NeVhQFSWZktZQJ9DYcQRNOk5DG5Jj22MYsx9M3vYPQA1nR8whWgsDVbxfmaBjbaVE3dLpxiCgYyJZbeeTGfMEOEbQ2Fj6+lddlLSWtxJpDBYsUYWyn5hbGIkkxHbmYxGzetHeoMiVnVXKRPb9sFGWCQvkkNnpz4eVdMtJS9XVRZrxxNNmGYPxysx0sWfbxRseomk6sHsP4GKiM2f7QYKQ31hCOOmp7Qwd8drBWxIcnKm27lc5nZRRGaDpYVk/XpFhrFaj+/RkpuCXJ98YJ0cMdEKDcrEDImeS38JMXik+znfrZYnwkfyJEELwpDrSKFRyofQjj6sxBQC4ACCRZYnBBXVlxTPvawjIWbq/kP3bh6lXuaDysYUD5QQGmPj4KSmTucDvZ57T3O40RRUpsUTsVzTSG7tXmTzAI3wsbMtWYO2p5t5ve5Ibm264zFeyX17ppaefhBLWVkLDpVFLl6Y5Xn5iTDDRVuNw4rAvdBYg3l08698FGIpxIDYSXFVSAexHHnoaT3FBLtzWVx6DKb1OWuv3bhr56l3NKbufwORgdkmPQEx77ojxiKoysfxyp7rkyfPXma6xX8fI1PdA7dcdsb7oujW3TnGSjrkLsN/PQB67dtlRHuMmpyclck8EQP3cPx10cHTX//xXfeItLPyI1ocSDGvE6Q1Yf1/D7aYgC9BQZSOqGQ9pGlkqyhGWORER2frBR8nUSlGZuiI/h85R0p9H99lSk4McmjAXzdGtIyeZEZdILV3DtPflgPodMw1UwjzQl+HlaupjV7ikAJVtHyTIAZKQtfQMeeSlVJruQf7P0DL3YBihbtsuQcHU6EsmOQFRQzQDK7YrIHJtnwTMmhCg5xEVnk3sJKmTs64JMDZoSA21bBX/0CMp2jpp4FYLG0tlIUDWhCTuYeLWBWMnIydOWjCBOmbnq8OPI2KmWROYYKWuxg/KXLmDEkvg6wWtCD2kyKv1hcdiqD/CTAAuHBP9rdH3GwAAAAASUVORK5CYII=</mdui:Logo>
+ </mdui:UIInfo>
+ <mdui:DiscoHints>
+ </mdui:DiscoHints>
+ </Extensions>
+ <KeyDescriptor use="signing">
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>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+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="https://login-dev.cern.ch/adfs/services/trust/artifactresolution" index="1"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login-dev.cern.ch/adfs/ls/"/>
+ <SingleLogoutService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login-dev.cern.ch/adfs/ls/"/>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:persistent</NameIDFormat>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" Location="https://login-dev.cern.ch/adfs/ls/"/>
+ <SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login-dev.cern.ch/adfs/ls/"/>
+ </IDPSSODescriptor>
+ <SPSSODescriptor errorURL="http://cern.ch/serviceportal" protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
+ <Extensions>
+ <mdui:UIInfo>
+ <mdui:DisplayName xml:lang="en">CERN Service Provider Proxy (Dev)</mdui:DisplayName>
+ <mdui:Description xml:lang="en">CERN Development Service Provider Proxy</mdui:Description>
+ <mdui:Logo height="16" width="16">data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAABAAAAAQCAYAAAAf8/9hAAABPElEQVR42pVT21HDQAx0B5RACSkB25N/SqAEPs+ZfFACJaSElOAPrHwxQwmUkBKMdk+S5YRk4GYuj9NqT7vSNY2tbfl8aMvptRtk1D3/dTO5Kx+bbpi+mVzkGWT9Xh7bMr0bcMRZkxZyeIYPJPeDHDxYKwGhkeK7yLkd5C0IlJgEOATIAyBS8Fe3Oz1leUY2I1b/R/kK1rJ5M8gM0FwsVNUXORqeO0pZdMk537zSrOeUqt64LysCApz1JoHMRjCGZy7BAOMtAvNqbnfTC36HoTQNTt8h4K2Qp3G0Fl7Ak9QyLQ0GeWvSouNaJeMmk2Q6B8sQ8UADTgSgbpJbzIlXBmb3OXmqL/c79z37cNWprMmGJN4DNNeRrlNJbJrIMGnlOCqx0fXtmtmxO92K5DDpt46k4ftX8vKQ8Lgq5geGpVRM3R4TeQAAAABJRU5ErkJggg==</mdui:Logo>
+ <mdui:Logo height="60" width="60">data:image/png;base64,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</mdui:Logo>
+ </mdui:UIInfo>
+ </Extensions>
+ <KeyDescriptor>
+ <ds:KeyInfo>
+ <ds:X509Data>
+ <ds:X509Certificate>
+MIIIEjCCBfqgAwIBAgIKLYgjvQAAAAAAMDANBgkqhkiG9w0BAQsFADBRMRIwEAYK
+CZImiZPyLGQBGRYCY2gxFDASBgoJkiaJk/IsZAEZFgRjZXJuMSUwIwYDVQQDExxD
+RVJOIENlcnRpZmljYXRpb24gQXV0aG9yaXR5MB4XDTEzMTEwODA4Mzg1NVoXDTIz
+MDcyOTA5MTkzOFowVjESMBAGCgmSJomT8ixkARkWAmNoMRQwEgYKCZImiZPyLGQB
+GRYEY2VybjESMBAGA1UECxMJY29tcHV0ZXJzMRYwFAYDVQQDEw1sb2dpbi5jZXJu
+LmNoMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAp6t1C0SGlLddL2M+
+ltffGioTnDT3eztOxlA9bAGuvB8/Rjym8en6+ET9boM02CyoR5Vpn8iElXVWccAE
+xPIQEq70D6LPe86vb+tYhuKPeLfuICN9Z0SMQ4f+57vk61Co1/uw/8kPvXlyd+Ai
+8Dsn/G0hpH67bBI9VOQKfpJqclcSJuSlUB5PJffvMUpr29B0eRx8LKFnIHbDILSu
+6nVbFLcadtWIjbYvoKorXg3J6urtkz+zEDeYMTvA6ZGOFf/Xy5eGtroSq9csSC97
+6tx+umKEPhXBA9AcpiCV9Cj5axN03Aaa+iTE36jpnjcd9d02dy5Q9jE2nUN6KXnB
+6qF6eQIDAQABo4ID5TCCA+EwPQYJKwYBBAGCNxUHBDAwLgYmKwYBBAGCNxUIg73Q
+CYLtjQ2G7Ysrgd71N4WA0GIehd2yb4Wu9TkCAWQCARkwHQYDVR0lBBYwFAYIKwYB
+BQUHAwIGCCsGAQUFBwMBMA4GA1UdDwEB/wQEAwIFoDBoBgNVHSAEYTBfMF0GCisG
+AQQBYAoEAQEwTzBNBggrBgEFBQcCARZBaHR0cDovL2NhLWRvY3MuY2Vybi5jaC9j
+YS1kb2NzL2NwLWNwcy9jZXJuLXRydXN0ZWQtY2EyLWNwLWNwcy5wZGYwJwYJKwYB
+BAGCNxUKBBowGDAKBggrBgEFBQcDAjAKBggrBgEFBQcDATAdBgNVHQ4EFgQUqtJc
+wUXasyM6sRaO5nCMFoFDenMwGAYDVR0RBBEwD4INbG9naW4uY2Vybi5jaDAfBgNV
+HSMEGDAWgBQdkBnqyM7MPI0UsUzZ7BTiYUADYTCCASoGA1UdHwSCASEwggEdMIIB
+GaCCARWgggERhkdodHRwOi8vY2FmaWxlcy5jZXJuLmNoL2NhZmlsZXMvY3JsL0NF
+Uk4lMjBDZXJ0aWZpY2F0aW9uJTIwQXV0aG9yaXR5LmNybIaBxWxkYXA6Ly8vQ049
+Q0VSTiUyMENlcnRpZmljYXRpb24lMjBBdXRob3JpdHksQ049Q0VSTlBLSTA3LENO
+PUNEUCxDTj1QdWJsaWMlMjBLZXklMjBTZXJ2aWNlcyxDTj1TZXJ2aWNlcyxDTj1D
+b25maWd1cmF0aW9uLERDPWNlcm4sREM9Y2g/Y2VydGlmaWNhdGVSZXZvY2F0aW9u
+TGlzdD9iYXNlP29iamVjdENsYXNzPWNSTERpc3RyaWJ1dGlvblBvaW50MIIBVAYI
+KwYBBQUHAQEEggFGMIIBQjBcBggrBgEFBQcwAoZQaHR0cDovL2NhZmlsZXMuY2Vy
+bi5jaC9jYWZpbGVzL2NlcnRpZmljYXRlcy9DRVJOJTIwQ2VydGlmaWNhdGlvbiUy
+MEF1dGhvcml0eS5jcnQwgbsGCCsGAQUFBzAChoGubGRhcDovLy9DTj1DRVJOJTIw
+Q2VydGlmaWNhdGlvbiUyMEF1dGhvcml0eSxDTj1BSUEsQ049UHVibGljJTIwS2V5
+JTIwU2VydmljZXMsQ049U2VydmljZXMsQ049Q29uZmlndXJhdGlvbixEQz1jZXJu
+LERDPWNoP2NBQ2VydGlmaWNhdGU/YmFzZT9vYmplY3RDbGFzcz1jZXJ0aWZpY2F0
+aW9uQXV0aG9yaXR5MCQGCCsGAQUFBzABhhhodHRwOi8vb2NzcC5jZXJuLmNoL29j
+c3AwDQYJKoZIhvcNAQELBQADggIBAGKZ3bknTCfNuh4TMaL3PuvBFjU8LQ5NKY9G
+LZvY2ibYMRk5Is6eWRgyUsy1UJRQdaQQPnnysqrGq8VRw/NIFotBBsA978/+jj7v
+4e5Kr4o8HvwAQNLBxNmF6XkDytpLL701FcNEGRqIsoIhNzihi2VBADLC9HxljEyP
+T52IR767TMk/+xTOqClceq3sq6WRD4m+xaWRUJyOhn+Pqr+wbhXIw4wzHC6X0hcL
+j8P9Povtm6VmKkN9JPuymMo/0+zSrUt2+TYfmbbEKYJSP0+sceQ76IKxxmSdKAr1
+qDNE8v+c3DvPM2PKmfivwaV2l44FdP8ulzqTgphkYcN1daa9Oc+qJeyu/eL7xWzk
+6Zq5R+jVrMlM0p1y2XczI7Hoc96TMOcbVnwgMcVqRM9p57VItn6XubYPR0C33i1y
+UZjkWbIfqEjq6Vev6lVgngOyzu+hqC/8SDyORA3dlF9aZOD13kPZdF/JRphHREQt
+aRydAiYRlE/WHTvOcY52jujDftUR6oY0eWaWkwSHbX+kDFx8IlR8UtQCUgkGHBGw
+nOYLIGu7SRDGSfOBOiVhxKoHWVk/pL6eKY2SkmyOmmgO4JnQGg95qeAOMG/EQZt/
+2x8GAavUqGvYy9dPFwFf08678hQqkjNSuex7UD0ku8OP1QKvpP44l6vZhFc6A5Xq
+jdU9lus1
+ </ds:X509Certificate>
+ </ds:X509Data>
+ </ds:KeyInfo>
+ </KeyDescriptor>
+ <NameIDFormat>urn:oasis:names:tc:SAML:2.0:nameid-format:transient</NameIDFormat>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Location="https://login-dev.cern.ch/adfs/ls/" index="1"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact" Location="https://login-dev.cern.ch/adfs/ls/" index="2"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post" Location="https://login-dev.cern.ch/adfs/ls/" index="3"/>
+ <AssertionConsumerService Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01" Location="https://login-dev.cern.ch/adfs/ls/" index="4"/>
+ <AttributeConsumingService index="1">
+ <ServiceName xml:lang="en">CERN</ServiceName>
+ <ServiceDescription xml:lang="en">CERN Resources gateway</ServiceDescription>
+ <RequestedAttribute FriendlyName="email" Name="urn:oid:0.9.2342.19200300.100.1.3" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganization" Name="urn:oid:2.16.756.1.2.5.1.1.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonHomeOrganizationType" Name="urn:oid:2.16.756.1.2.5.1.1.5" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonAffiliation" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="swissEduPersonUniqueID" Name="urn:oid:2.16.756.1.2.5.1.1.1" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="surname" Name="urn:oid:2.5.4.4" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="givenName" Name="urn:oid:2.5.4.42" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ <RequestedAttribute FriendlyName="eduPersonTargetedID" Name="urn:oid:1.3.6.1.4.1.5923.1.1.1.10" NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri" isRequired="true"/>
+ </AttributeConsumingService>
+ </SPSSODescriptor>
+ <Organization>
+ <OrganizationName xml:lang="en">cern.ch</OrganizationName>
+ <OrganizationDisplayName xml:lang="en">CERN</OrganizationDisplayName>
+ <OrganizationURL xml:lang="en">http://www.cern.ch/</OrganizationURL>
+ </Organization>
+ </EntityDescriptor>
+
+</EntitiesDescriptor> \ No newline at end of file
diff --git a/tests/test_30_mdstore.py b/tests/test_30_mdstore.py
index 46a38aea..630821db 100644
--- a/tests/test_30_mdstore.py
+++ b/tests/test_30_mdstore.py
@@ -1,8 +1,10 @@
#!/usr/bin/env python
# -*- coding: utf-8 -*-
import datetime
+import os
import re
from collections import OrderedDict
+from unittest.mock import patch
from six.moves.urllib import parse
@@ -26,6 +28,9 @@ from pathutils import full_path
import responses
+
+TESTS_DIR = os.path.dirname(__file__)
+
sec_config = config.Config()
# sec_config.xmlsec_binary = sigver.get_xmlsec_binary(["/opt/local/bin"])
@@ -362,7 +367,15 @@ def test_load_local_dir():
assert len(mds.keys()) == 4 # number of idps
-def test_load_extern_incommon():
+@patch('saml2.httpbase.requests.request')
+def test_load_extern_incommon(mock_request):
+ filepath = os.path.join(TESTS_DIR, "remote_data/InCommon-metadata-export.xml")
+ with open(filepath) as fd:
+ data = fd.read()
+ mock_request.return_value.ok = True
+ mock_request.return_value.status_code = 200
+ mock_request.return_value.content = data
+
sec_config.xmlsec_binary = sigver.get_xmlsec_binary(["/opt/local/bin"])
mds = MetadataStore(ATTRCONV, sec_config,
disable_ssl_certificate_validation=True)
@@ -387,7 +400,15 @@ def test_load_local():
assert cfg
-def test_load_remote_encoding():
+@patch('saml2.httpbase.requests.request')
+def test_load_remote_encoding(mock_request):
+ filepath = os.path.join(TESTS_DIR, "remote_data/metadata.aaitest.xml")
+ with open(filepath) as fd:
+ data = fd.read()
+ mock_request.return_value.ok = True
+ mock_request.return_value.status_code = 200
+ mock_request.return_value.content = data
+
crypto = sigver._get_xmlsec_cryptobackend()
sc = sigver.SecurityContext(crypto, key_type="", cert_type="")
httpc = HTTPBase()
diff --git a/tests/test_30_mdstore_old.py b/tests/test_30_mdstore_old.py
index cc9a6b4c..7ceb6653 100644
--- a/tests/test_30_mdstore_old.py
+++ b/tests/test_30_mdstore_old.py
@@ -2,6 +2,8 @@
# -*- coding: utf-8 -*-
import datetime
import re
+import os
+from unittest.mock import patch
from saml2.mdstore import MetadataStore, MetaDataMDX
from saml2.mdstore import destinations
@@ -21,6 +23,9 @@ from saml2.s_utils import UnknownPrincipal
from pathutils import full_path
+
+TESTS_DIR = os.path.dirname(__file__)
+
sec_config = config.Config()
#sec_config.xmlsec_binary = sigver.get_xmlsec_binary(["/opt/local/bin"])
@@ -305,7 +310,15 @@ def test_load_local_dir():
assert len(mds.keys()) == 4 # number of idps
-def test_load_external():
+@patch('saml2.httpbase.requests.request')
+def test_load_external(mock_request):
+ filepath = os.path.join(TESTS_DIR, "remote_data/InCommon-metadata-export.xml")
+ with open(filepath) as fd:
+ data = fd.read()
+ mock_request.return_value.ok = True
+ mock_request.return_value.status_code = 200
+ mock_request.return_value.content = data
+
sec_config.xmlsec_binary = sigver.get_xmlsec_binary(["/opt/local/bin"])
mds = MetadataStore(ATTRCONV, sec_config,
disable_ssl_certificate_validation=True)